Cyber Security Architect and Researcher

Eran Atias

Cyber security professional with 13 years of experience in various technical, methodological, and management roles — with a particular focus on building teams, operations, and services from the ground up, while staying business-driven and customer-oriented.

Specializing in the design of secure architectures and end-to-end security solutions, from HLD/LLD and policy to deployment and operational monitoring, alongside in-depth cyber security and privacy risk assessments for organizations, systems, and processes.

13+
Years in Cyber Security
7
Roles
10
Publications
Eran Atias

Building cyber security from scratch.

I'm a senior cyber security expert with a rare combination of deep technical hands-on experience and architectural, legal, compliance regulation and business fluency. My work spans InfoSec management, cyber security architecture, security research, SOC/IR operations, cloud security, and Web Application and API Protection — with a consistent throughline: building things from scratch that provide value.

Previously at PwC NEXT (PwC Israel), I designed and delivered security architecture and consulting services, guiding organizations through complex compliance landscapes and building security programs that are both solid and practical.

I hold a B.Sc. in Computer Science and an M.A. in Law (Technology), as well as CISO and DPO certifications, giving me an edge at the intersection of technical risk and legal and regulatory exposure.

Security Architecture Cloud Security Web Application and API Security SOC Operations Incident Response Security Engineering Security Research Information Security Management GRC Risk Management Threat Modeling SSDLC Malware Analysis Consulting Privacy & Data Protection Supply Chain Risk SIEM Engineering

What I can do
for your organization.

From a targeted architecture review to a full security program — I bring a practitioner's precision and a consultant's structure.

🛡️

vCISO

Fractional security leadership — ongoing security program ownership, regulatory liaison, policy writing, vendor evaluation, team building, and board-level risk reporting.

⚖️

Risk Assessment

Structured risk assessments for organizations, systems, and processes — building a threat profile, analyzing likelihood and impact, and producing a residual risk report with actionable treatment recommendations.

NIST CSF
📋

Compliance Readiness Assessment

Assessing where an organization stands against a target framework, identifying gaps, and producing a prioritized remediation roadmap.

ISO 27001 SOC 2 NIS2 DORA Bank of Israel Regulation Israeli MoF Cyber Regulation PCI DSS
🎯

Certification Preparation

End-to-end guidance through the certification process — scoping, policy writing, control implementation, evidence collection, and working alongside auditors to achieve certification.

ISO 27001 SOC 2 PCI DSS
🏗️

Security Architecture Design

HLD/LLD design of secure systems, cloud environments, and hybrid infrastructures — from policy and procedures to deployment and operational monitoring.

☁️

Cloud Security

AWS security architecture, configuration review, incident response, and maturity assessment.

AWS Security Maturity Model
🔗

Web Application and API Security

Web and API security architecture design and testing — covering WAF design, tuning and bypass testing, web security architecture review, and OWASP ASVS assessments.

OWASP ASVS
🧱

AppSec Program Design & Assessment

Building AppSec programs from scratch — defining policy, selecting tooling, and embedding security into the SDLC. Also assessing existing programs against OWASP SAMM to identify gaps and prioritize improvements.

OWASP SAMM
🔒

Privacy & Data Protection

Regulatory advisory covering GDPR and the Israeli Protection of Privacy Regulations. DPO advisory, privacy impact assessments, and data protection program design.

GDPR Israel Protection of Privacy Regulations
🚨

SOC/IR Advisory

SOC design, buildout, and maturity assessment — covering IR readiness, AWS incident response, SIEM engineering, and threat hunting.

Notable milestones.

🏢

PwC NEXT Security Practice

Designed and developed new security architecture and consulting services within a new PwC technology company, while building methodology, optimizing for efficiency and customer value, and driving go-to-market and sales processes.

API Security SOC Founder

Established Salt Security's API Security SOC from scratch, overseeing the Salt API Security SaaS platform — monitoring and investigating API attacks, tuning detection mechanisms, and leading API incident response and threat hunting operations.

AWS DDoS Test Partner

Led Red Button to become the 3rd AWS DDoS Test Partner globally — a rare designation held by only a handful of companies worldwide at the time.

Air-Gap Covert Channel Research

Co-authored the LED-it-GO academic paper on covert data exfiltration from air-gapped computers via hard drive LEDs, published by the BGU Cyber Security Research Center.

IDF Intelligence DFIR Lab

Founded and built a DFIR lab within the Directorate of Military Intelligence from the ground up, leading digital forensics and incident response operations.

Writing at the intersection of theory and practice.

13 years of cyber security
builder experience.

2023 – 2026
Customer-facing Cyber Security Architect
PwC NEXT

Design and development of new architecture and consulting services within a new PwC technology company, while developing methodology, optimizing for better efficiency and customer value, and performing marketing and sales processes.

  • Design of secure architectures and security solutions, from HLD/LLD, policy and procedures to deployment, and operational monitoring.
  • Cyber security and privacy risk assessment for organizations, systems, and processes.
  • Preparing organizations for, and conducting assessments according to, AWS Security Maturity Model, Bank of Israel's Cyber Security Regulation, CIS, CSA STAR, Cyber Essentials, DORA, GDPR, Israeli Ministry of Finance Cyber Regulation, Israeli Securities Authority Open Banking, Israel Protection of Privacy Regulations, ISO 27001, ISO 27017, NIS2 Directive, MITRE ATT&CK, NIST CSF, NIST SP 800-53, PCI DSS, OWASP ASVS, OWASP SAMM, SOC 2 Type 2.
  • AWS security and incident response.
  • Web application and API security.
  • Design and deployment of Secure SDLC processes, tooling, and secure coding standards.
  • Risk management and supply chain risk management.
  • External attack surface analysis.
2021 – 2023
API Security SOC Manager
Salt Security

Establishment and management of Salt Security's API Security SOC.

  • Management of Salt API Security SaaS Platform by monitoring, investigating API attacks, providing mitigation recommendations, configuring detection mechanisms to fix false positives/negatives, and creating detection rules.
  • API incident response and threat hunting.
  • API security testing and attack research.
  • Management of analysts and team leaders in Israel and the US.
2019 – 2021
DDoS Protection Expert
Red Button

As the 2nd person in this role, I took a major part developing it.
I led Red Button to become an AWS DDoS Test Partner — the third one in the world.

  • Security architecture of web and DDoS protection.
  • DDoS incident response, penetration testing and threat research.
  • Security engineering of WAF, DDoS protection solutions, SIEM, and AWS security services.
2019 – 2021
Deputy CISO
Innovid (via Red Button)
  • Implemented, configured, operated, and monitored security solutions as part of IT security responsibilities.
  • Created and maintained information security policies and procedures.
  • Implemented secure development methodologies based on OWASP Top 10, trained R&D and QA engineers, reproduced vulnerabilities identified in penetration testing reports, and guided remediation efforts.
  • Conducted phishing simulation campaigns to assess and improve security awareness.
  • Responded to Request for Information (RFI) questionnaires as part of contract processes.
2018 – 2019
MSSP SOC Analyst (Student position)
Dell EMC
  • Monitored and investigated cyber security incidents, produced detailed reports with findings, conclusions, and mitigation recommendations.
  • Operated, monitored, configured, and developed rules and dashboards for SIEM platforms.
  • Conducted proactive threat hunting to identify indicators of attack and potential security threats.
2016 – 2017
Cyber Security Researcher (Student position)
Deutsche Telekom Innovation Labs @ Ben-Gurion University of the Negev
  • Academic research in the field of cyber security.
  • Malware analysis and research.
  • Research and development of covert data exfiltration from air-gapped networks.
2011 – 2015
Information Security Officer
Israel Defense Forces, Directorate of Military Intelligence
  • Establishment of DFIR lab.
  • Design and implementation of information security policies and procedures for systems, projects, and infrastructure.
  • Security engineering, SOC, DFIR, and malware analysis.

Certified where it counts.

🔐
Chief Information Security Officer (CISO)
2015
🛡️
Data Protection Officer (DPO)
2024
AWS Certified Security - Specialty
2021

Where tech meets law.

M.A. Law (Technology)
Bar-Ilan University
Years
2021-2022
GPA
92 - Honors
B.Sc. Computer Science
Ben-Gurion University of the Negev
Years
2015-2019
GPA
84

Hands-on with the stack.

Application Security & SSDLC
Checkmarx Cycode GitGuardian Jfrog XRay Mend Ox Security Semgrep
Cloud Security
Amazon Detective Aqua Security AWS CloudTrail AWS GuardDuty AWS Security Hub Defender for Cloud Orca Upwind Wiz
DDoS Protection
Akamai Kona Site Defender Akamai Routed (Prolexic) F5 Silverline Radware DefensePro
DLP
CoSoSys Endpoint Protector MyDLP
DNS & Web Filtering
Barracuda Web Security Gateway Cisco Umbrella DNSFilter NextDNS OpenDNS TitanHQ WebTitan
Data Analysis
MongoDB Redash
EDR & Endpoint Security
Avast Business Anti-Virus CrowdStrike Falcon Defender for Endpoint ESET Endpoint Security McAfee ePolicy Orchestrator SentinelOne Sophos Intercept X
Email Security
Barracuda Email Security Gateway
Firewall
Fortinet Fortigate Palo Alto Networks NGFW
GRC & Compliance
Anecdotes Sprinto
IDS & IPS
OSSEC Snort Suricata
Identity & Access Management
Okta
Malware Analysis & Sandboxing
Any.Run Cuckoo Sandbox Hybrid Analysis Intezer Analyze Joe Sandbox
Mobile Device Management
Fleet Device Management Intune Jamf JumpCloud Miradore
Network & Traffic Analysis
Burp Suite cURL CyberChef Fiddler hping Nmap nping OpenVPN Postman Tcpdump Wireshark
Password Management
LastPass Enterprise
Productivity & Collaboration
Google Workspace Jira OpsGenie
SIEM & Log Management
Datadog Elastic SIEM IBM QRadar Microsoft Sentinel RSA NetWitness Splunk
SOAR & Automation
Demisto Tines
SSPM
Wing
Vault & Secrets Management
HashiCorp Vault Piiano
Vulnerability Management
Qualys Tenable Nessus
Web Application & API Security
Akto APIsec AWS WAF Cloudflare WAF F5 ASM Imperva Cloud Security (Incapsula) Imperva SecureSphere Salt Security
XDR
Wazuh