Senior Security Engineer

Posted 5 Hours Ago
Easy Apply
Be an Early Applicant
Tel Aviv, ISR
Hybrid
Senior level
Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
Travel & expense made easy.
The Role
Lead enterprise security operations across vulnerability management, incident response, detection tuning, SOAR workflows, identity governance, access control, and email security. Manage scanning, exposure assessment, remediation prioritization, security incidents, on-call response, SIEM and EDR/XDR optimization, and Zero Trust practices. Partner with engineering, IT, compliance, and vendors to establish risk-based SLAs, improve security processes, and track operational KPIs.
Summary Generated by Built In

As a Senior Enterprise Security Engineer, you will be a foundational architect of Navan’s security posture, directly safeguarding our corporate infrastructure, sensitive financial data, and global user base. This is a highly hands-on, configuration-driven role that requires working directly with systems that power our security program in a modern, cloud-native environment.

Your work will be critical in ensuring Navan becomes globally recognized for secure, unparalleled corporate travel and expense management.

What You’ll Do:

  • Vulnerability Management & Exposure Reduction: Architect, manage, and scale the end-to-end vulnerability management program. Oversee continuous asset discovery, vulnerability scanning, threat exposure assessment, and risk-based prioritization (CVSS, EPSS, threat intelligence). Partner closely with infrastructure, engineering, and IT teams to establish SLAs, streamline patch management workflows, and validate effective remediation.
  • Security Incident Response & On-Call Rotation: Participate in the security engineering on-call rotation. Serve as a responder responsible for identifying, scoping, triaging, managing, and mitigating security incidents, followed by leading thorough post-incident reviews and root-cause analyses.
  • Detection & Automation Optimization: Help improve and maintain our existing detection pipeline by providing feedback on alert quality, reviewing current monitoring coverage, and performing direct tuning in SIEM platforms to reduce noise and increase signal fidelity. Evaluate existing SOAR playbooks and workflows, offering recommendations and performing targeted updates to streamline response processes.
  • Identity Governance & Access Control: Define and enforce strong IAM principles (e.g., Least Privilege, Zero Trust) and contribute to identity governance platforms to ensure secure authentication, authorization, and access across the enterprise.
  • Email Security: Strengthen email security by managing alerts and workflows in platforms like Material Security, reviewing post-delivery threats, and improving automated response to suspicious messages and mailbox activity.
  • Cross-Functional Security Leadership: Proactively partner with Engineering, IT, and Compliance teams to embed security best practices early in the lifecycle, align vulnerability SLAs with business risk objectives, and foster a culture of shared security ownership.
  • Process Improvement & Metrics: Establish and track key performance indicators (KPIs) for vulnerability management and incident response. Participate actively in incident and posture reviews, drive continuous operational improvements, and work with external vendors to align system capabilities and security expectations.

What We’re Looking For:

  • 5+ years of hands-on experience in information or enterprise security, preferably within a high-growth tech environment utilizing cloud infrastructure.
  • Proven track record of designing, implementing, or maturing an enterprise-wide Vulnerability Management program, including expertise with modern exposure management and scanning platforms (e.g., Tenable, Qualys, Rapid7, Wiz) and vulnerability remediation workflows.
  • Demonstrated experience in incident response, with a willingness to participate in an on-call rotation to identify, analyze, contain, and resolve active security incidents.
  • Deep, up-to-date knowledge of modern attacker tactics, techniques, and procedures (TTPs), common exploit vectors, and risk prioritization frameworks (CVSS, EPSS, KEV). You excel at translating technical vulnerabilities and risks into clear business context for a range of stakeholders.
  • Ability to review SIEM and EDR/XDR platform outputs, provide constructive feedback on detection efficacy, and execute direct rule tuning and configuration refinements to optimize signal-to-noise ratio.
  • Comfort interfacing with SOAR workflows (e.g., Phantom, Demisto, XSOAR) to suggest optimizations and perform light playbook updates that improve overall team efficiency.
  • Demonstrated expertise in Zero Trust principles, modern identity governance, and access management solutions (e.g., Okta, Ping, or Azure AD).
  • Experience managing email security using platforms like Material Security, including reviewing post-delivery detections and analyzing mailbox activity.
  • Highly collaborative with strong ownership skills, adept at negotiating SLA timelines with engineering/IT partners and contributing actively within a small, focused security team.


Navan uses AI-assisted Automated Employment Decision Tool (Metaview) to assist with evaluating resumes against job qualifications for this role. All final decisions are made by human recruiters and hiring managers. 

Human oversight: Metaview does not automatically reject candidates or make final hiring decisions. Our recruiters and hiring managers review all outputs and make the final hiring decision regarding every application. 

  • Your rights: If you prefer to have your application reviewed without AI assistance, you may request a human evaluation by entering your email here. Your decision to do so will not affect how your candidacy is evaluated. 

Please refer to our Candidate Privacy Notice for more information about our processing of personal data, and your rights.

Skills Required

  • 5+ years of hands-on experience in information or enterprise security
  • Experience working with cloud infrastructure, preferably in a high-growth technology environment
  • Proven experience designing, implementing, or maturing an enterprise-wide vulnerability management program
  • Experience with vulnerability and exposure management platforms such as Tenable, Qualys, Rapid7, or Wiz
  • Demonstrated incident response experience, including identifying, analyzing, containing, and resolving active incidents
  • Willingness to participate in a security engineering on-call rotation
  • Knowledge of attacker tactics, techniques, procedures, exploit vectors, CVSS, EPSS, and KEV
  • Ability to review SIEM and EDR/XDR outputs and tune detection rules and configurations
  • Experience with SOAR workflows and platforms such as Phantom, Demisto, or XSOAR
  • Expertise in Zero Trust principles, identity governance, and access management solutions such as Okta, Ping, or Azure AD
  • Experience managing email security platforms such as Material Security
  • Strong collaboration, ownership, stakeholder communication, and SLA negotiation skills

What the Team is Saying

Brian Guimond
Adamas Victória Cavalcante Robitz
Bastian Martino
Charlotte Delafosse
Daniella Schuh
Alice Rao-Wyckoff
Mily O Loughlin
Anna
Roshni
Henry Statfeld
Jose Soares

Navan Compensation & Benefits Highlights

  • Healthcare Strength — Medical, dental, and vision coverage for employees and families are explicitly offered, and healthcare is often characterized as a strong part of the package with mental‑health resources included. This breadth of core health benefits is consistently highlighted alongside lifestyle supports.
  • Leave & Time Off Breadth — Policies emphasize flexible/unlimited vacation in the U.S., with region‑specific structures such as five weeks of paid annual leave in the UK. This scope of time‑off options is presented as a clear advantage.
  • Parental & Family Support — Paid parental leave is structured at 16 weeks for birthing parents and 10 weeks for non‑birthing parents. This level of support is positioned as a meaningful benefit for families.

Navan Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Palo Alto, CA
3,300 Employees
Year Founded: 2015

What We Do

Navan (Nasdaq: NAVN) is the leading all-in-one business travel, payments, and expense management platform that makes travel easy for frequent travelers. From finding flights and hotels to automating expense reconciliation, with 24/7 support along the way, Navan delivers an intuitive experience travelers love and finance teams rely on. See how Navan customers benefit and learn more at navan.com.

Why Work With Us

At Navan, we’re never satisfied with the status quo, and we know breakthrough ideas come from diverse perspectives. We are committed to cultivating a workplace that reflects the diversity of the customers we serve while fostering leadership and innovation.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

Navan Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

In-person connections is the foundation of Navan, the connections forged through face-to-face interactions improve company culture and what we can achieve together. We operate on a hybrid working model, which we define as four days a week in-office.

Typical time on-site: 4 days a week
HQPalo Alto, CA
Austin, TX
Bengaluru, IN
Berlin, DE
Boston, MA
Dallas, TX
Gurugram, IN
Lisbon, PT
London, GB
New Delhi, Delhi
New York, NY
Paris, FR
San Francisco, CA
Singapore
Sydney, AU
Tel Aviv-Yafo, IL
Learn more

Similar Jobs

Navan Logo Navan

Support Engineer

Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
Easy Apply
Hybrid
Tel Aviv, ISR
3300 Employees

Navan Logo Navan

Manager, Travel Services

Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
Easy Apply
Hybrid
Tel Aviv, ISR
3300 Employees

Navan Logo Navan

Senior Ios Engineer

Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
Easy Apply
Hybrid
Tel Aviv, ISR
3300 Employees

Navan Logo Navan

Product Director, AI Service Operations

Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
Easy Apply
Hybrid
Tel Aviv, ISR
3300 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account