Neta Oren

DevOps Engineer

London, England, United Kingdom14 yrs 11 mos experience
Most Likely To Switch

Key Highlights

  • Established a successful security research team at Amazon.
  • Launched one of the first bug bounty programs at Meta.
  • Expert in managing cross-functional security initiatives.
Stackforce AI infers this person is a Cybersecurity Professional with extensive experience in security operations and application security.

Contact

Skills

Core Skills

Security EngineeringTeam ManagementApplication SecurityProcess ImprovementBug Bounty ManagementFraud InvestigationSecurity OperationsThreat IntelligenceData AnalysisResearchTeaching

Other Skills

Agile MethodologyAgile Project ManagementAkamai KonaAmazon Web Services (AWS)AnalyticsAsanaBashBig Data AnalysisBig Data AnalyticsCommunicationCross-Functional CollaborationCustomer EngagementCustomer ServiceCyber-securityDocumentation

About

Managed various types of security teams, including security research, SOC, bug bounty, fraud investigations and application security, and worked in the fields of threat intelligence, military intelligence and data analysis. Currently based in London, UK. I lived and worked in Asia, the Middle East and Europe, and am used to working in international companies. I am versed in the worlds of incident response, security operations, vulnerability management, threat intelligence, malware analysis, security monitoring, edge network security, and bug bounty. Working with stakeholders across the company from security/software engineers, product managers, data scientists, legal, privacy, policy, comms and executives. Having concise and direct communication skills, you will always hear the truth from me. Data is my language, and I use it regularly to make data based decisions. Worked in companies ranging in sizes of 100-300,000 employees and feel comfortable at any company size. Worked across industries, including social media, ad-tech, security software vendor, military, fashion, software products and e-commerce. I am a fast learner, adaptable, ambitious, creative, embracing change and constantly growing and improving.

Experience

Amazon

3 roles

Security Engineering Manager

Promoted

Apr 2025Present · 11 mos

  • Built a new research team responsible for identifying recurring security issues across Amazon first party applications and mitigating them at scale.
  • Defined team scope, mission, vision, skills required by team members, processes, prioritisation criteria, key stakeholders, dependencies, hired 7 people within 2 months, identified collaborations with other security teams - all of which set the team up for success to deliver impact from day 1.
Security EngineeringTeam ManagementStakeholder Engagement

Interim Head of AppSec EMEA

Sep 2024Dec 2024 · 3 mos

  • Temporarily filled in the position of Head of AppSec EMEA, supporting 4 AppSec teams (~30 people) in London and Barcelona who are performing security reviews for the most important applications across Amazon.
  • Representing EMEA org to leadership in the US, supporting escalations, prioritisation decisions, and managing the day to day of the org + my own reviews team.
Team ManagementStakeholder Engagement

Manager, Application Security EMEA

Sep 2023Mar 2025 · 1 yr 6 mos

  • Supported security engineers and TPMs performing application security reviews for Amazon’s most important applications.
  • Led the documentation of the security review process for AppSec engineers and security certifies (champions) across the company (~3000 people), which is used as a baseline for further process improvements and automation.
  • AppSec POC for Privacy org to streamline data sharing across orgs, saving 3 days per security review on average (across 1000+ reviews a year).
  • Created role guidelines for AppSec engineers affecting ~200 engineers, used in talent reviews and day to day performance management.
Application SecurityDocumentationProcess Improvement

Meta

2 roles

Manager, Bug Bounty

Jan 2022Aug 2023 · 1 yr 7 mos · London, England, United Kingdom

  • Supported a team of security analysts and engineers responsible for the Meta bug bounty program and supporting the vulnerability management program at Meta.
  • The team owned the program end to end, and covers all Meta products and features.
  • Worked regularly with cross functional partners across the company including legal, policy, comms, product, engineering, integrity, and other security teams.
  • My role included managing the day to day operations of the team, the growth of each team member, creating strategy for the team, and working with the program manager to execute on the strategy through events, media engagements, and projects ranging from operational improvements, improving product security and creating efficient systems.
Bug Bounty ManagementVulnerability ManagementCross-Functional Collaboration

Fraud Investigations Team Lead

Nov 2020Jan 2022 · 1 yr 2 mos · London, England, United Kingdom

  • Managed a team of investigators, supporting career development and growth.
  • Capacity planning and prioritization for the team.
  • Fraud investigations on revenue share and value exchange products.
  • Protected people, advertisers, publishers, creators and the company from fraud risks.
  • Worked side by side with software engineers, product teams, sales partnerships and experience operations.
  • Scaling work through reviewers.
  • Improving operational excellence for existing workflows.
  • As part of my role, I identified an opportunity to create a bug bounty program to allow security researchers to identify and report security issues that allow malicious actors to perform fraud. I collaborated with the bug bounty team, legal, comms and Business Integrity leadership and launched one of the world’s first bug bounty programs that allows reporting integrity related issues and receive a bounty for it. The project’s success led me to move to manage the bug bounty team at Meta and own all bug bounty programs at Meta.
Fraud InvestigationTeam ManagementOperational Excellence

Zalando se

SOC Team Lead

Mar 2018Sep 2020 · 2 yrs 6 mos · Berlin Area, Germany

  • The Zalando SE Security Operations Center (SOC) team operates 24/7/365 and is responsible for detecting, mitigating and handling security incidents and vulnerabilities in the Zalando IT infrastructure.
  • My biggest achievements and responsibilities are:
  • Making the SOC GDPR compliant and maintaining it.
  • Implementing the Agile methodology in the SOC team.
  • Providing focus and prioritisation to the team, working in a highly dynamic environment with a complex IT infrastructure, a diverse service portfolio and millions of customers.
  • Supporting my team in their self development, pushing them towards excellence.
  • Continuous improvement of SOC processes and services.
  • Budget and capacity planning.
  • SOC strategy development.
Security OperationsGDPR ComplianceAgile Methodology

Check point software technologies, ltd.

Security Analyst and Shift Manager

May 2016Feb 2018 · 1 yr 9 mos · Tel Aviv

  • Security Analyst and Shift Manager in the company's TOC (Threat Intelligence Operations Center) team.
  • I was responsible for the shifts management of the team, in addition to handling customers, analyzing different types of malware, finding false positives in the company's products' detections, finding new threats, threat intelligence research and more.
  • I worked with different analysis tools such as Sysinternals Suite, Fiddler, Wireshark, IDA and more.
  • I used many different programming languages in my analysis process, such as Python, Java, JavaScript, VBScript, Assembly and more.
  • As part of my role in the team I wrote intelligence and technical research papers on information security topics.
  • In addition, I built an ElasticSearch database to store information we collected automatically, and made Kibana dashboards to showcase the information in the database and help with its analysis.
Threat IntelligenceMalware AnalysisCustomer Engagement

Taykey (acquired by innovid)

Data Analyst (Research Team)

Nov 2015Apr 2016 · 5 mos · Israel

  • Worked as a Big Data Analyst and had learned using different technologies for big data analysis, including Scala, Spark, ElasticSearch and more.
  • My responsibilities included expanding a database by aggregating popular links on social media.
  • In addition, I was responsible for making conclusions on social media users based on text analysis.
  • Unfortunately, my team that had opened as soon as I started working, had been closed down after 6 months.
Big Data AnalysisText AnalysisData Analysis

Research division, idi, idf

Technologies Analyst

Oct 2013Oct 2015 · 2 yrs

  • Complex technological research for various fields using all source intelligence.
Technological ResearchResearch

Private tutor

Private Tutor

Jan 2010Jan 2013 · 3 yrs · Singapore

  • Worked as a private tutor for children in the age range 8 to 16, helping with school work in the fields of Math, Science, English, Humanities and Business Management.
TeachingCommunication

Education

Overseas Family School (Singapore)

Business Management — Biology and English

Jan 2009Jan 2013

Stackforce found 100+ more professionals with Security Engineering & Team Management

Explore similar profiles based on matching skills and experience