jobify_logo ×
  • מִשׁתַמֵשׁ
  • התחברות/הרשמה
  • עמוד הבית
  • מי אנחנו
  • מעסיקים מובילים
  • פרסום משרה חינם
  • צרו קשר
  • תנאי שימוש
  • מדיניות פרטיות
  • הצהרת נגישות
קרן עזריאלי טקסט בעברית עם סמל אינסוף social_security the_israeli_employment_service work_office המקום
jobify_logo
  • מי אנחנו
  • מעסיקים מובילים
  • פרסום משרה חינם
  • צרו קשר
דילוג לתוכן

עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!

במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.

מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.

Application Security Engineer

Peer Security

Peer Security Peer Security

  • תל אביב - יפו
  • LinkedIn
LinkedIn

Application Security Engineer

Peer Security

Peer Security Peer Security

  • תל אביב - יפו
  • bag_icon מלאה, עבודה מהבית
  • coins_icon 22,000-32,000 ₪ (הערכה מבוססת AI)
    הערכה מבוססת AI ולא שכר של המעסיק
  • LinkedIn
LinkedIn


Role Description

As an Application Security Engineer at Peer Security, you will work closely with customer development, engineering, and security teams to embed security throughout the Software Development Lifecycle (SSDLC).

The role combines hands-on Application Security, cloud security, vulnerability management, and penetration testing, with a strong focus on modern development environments, including AI-assisted development and AI-powered applications.

You will help customers identify security risks, understand their real-world impact, prioritize remediation, and implement practical security controls across applications, APIs, cloud environments, and CI/CD pipelines.

Responsibilities

  • Support and implement Secure Software Development Lifecycle (SSDLC) practices across customer environments.
  • Perform secure code reviews and identify security vulnerabilities in applications and APIs.
  • Work hands-on with Wiz to identify, investigate, prioritize, and remediate cloud security risks and vulnerabilities.
  • Analyze Wiz findings and help development and security teams understand the actual attack paths, exposure, and business impact behind identified risks.
  • Work closely with developers to promote secure coding practices across traditional and AI-powered applications.
  • Participate in penetration testing activities for web applications and APIs, and support the validation and remediation of identified vulnerabilities.
  • Apply practical understanding of manual penetration testing techniques, including authentication and authorization testing, business logic vulnerabilities, injection flaws, API security issues, and other OWASP Top 10 risks.
  • Participate in threat modeling, architecture reviews, and security design discussions for new features and services.
  • Help integrate security testing tools such as SAST, DAST, and SCA into CI/CD pipelines.
  • Guide development teams through AI-related projects, from architecture and design through implementation and deployment.
  • Advise teams on secure usage of LLMs, AI APIs, and AI-assisted coding tools such as GitHub Copilot, Cursor, and Claude Code.
  • Review AI-generated code and help identify security weaknesses introduced through AI-assisted development.
  • Work with engineering teams to prioritize vulnerabilities based on exploitability, exposure, and business impact.
  • Support automation of security controls and security checks throughout development and deployment workflows.

Qualifications

  • Minimum 3 years of hands-on experience in Application Security, secure software development, cloud security, or a closely related cybersecurity role.
  • Hands-on experience with Wiz – mandatory.
  • Strong understanding of penetration testing methodologies and techniques – mandatory.
  • Good understanding of common web application and API vulnerabilities, including the OWASP Top 10.
  • Ability to understand vulnerability findings beyond automated scanner results and evaluate their exploitability and real-world impact.
  • Solid familiarity with modern software development processes, including Git workflows, pull requests, code reviews, and CI/CD environments.
  • Understanding of cloud security concepts and modern cloud architectures.
  • Basic hands-on familiarity with security testing tools and Application Security methodologies.
  • Strong problem-solving and communication skills, with the ability to work directly with development and engineering teams.

Nice to Have

  • Hands-on experience performing web application and API penetration testing.
  • Experience manually identifying and exploiting vulnerabilities rather than relying solely on automated tools.
  • Experience with Burp Suite or similar application security testing tools.
  • Experience identifying and exploiting OWASP Top 10 vulnerabilities in real-world environments.
  • Experience testing applications and infrastructure in AWS, GCP, or Azure.
  • Experience with additional CNAPP, CSPM, vulnerability management, or cloud security technologies.
  • Familiarity with AI/LLM security risks, including prompt injection, insecure output handling, sensitive information disclosure, excessive agency, and other OWASP LLM-related risks.
  • Experience guiding development teams through AI feature or LLM integration projects.
  • Hands-on experience with AI-assisted development tools such as GitHub Copilot, Cursor, or Claude Code.
  • Familiarity with threat modeling and secure architecture reviews.
  • Relevant Application Security, penetration testing, or cloud security certifications are an advantage.


במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.

מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.

שאלות ותשובות עבור משרת Application Security Engineer

כמהנדס אבטחת יישומים ב-Peer Security, תפקידך המרכזי הוא לשלב אבטחה לאורך כל מחזור חיי פיתוח התוכנה (SSDLC) של הלקוחות. זה כולל עבודה צמודה עם צוותי פיתוח, הנדסה ואבטחה של הלקוחות כדי לזהות סיכוני אבטחה, להבין את השפעתם בעולם האמיתי, לתעדף תיקונים וליישם בקרות אבטחה מעשיות ביישומים, ממשקי API, סביבות ענן וצינורות CI/CD.

לתפקיד זה נדרשות לפחות 3 שנות ניסיון מעשי באבטחת יישומים, פיתוח תוכנה מאובטח, אבטחת ענן או תפקיד קרוב בתחום הסייבר. חובה ניסיון מעשי עם Wiz, הבנה חזקה של מתודולוגיות וטכניקות בדיקות חדירה, והבנה טובה של פגיעויות נפוצות ביישומי אינטרנט ובממשקי API, כולל OWASP Top 10. היכולת להבין ממצאי פגיעות מעבר לתוצאות סורקים אוטומטיים ולהעריך את יכולת הניצול וההשפעה שלהם בעולם האמיתי היא קריטית.

תפקיד זה משלב אבטחת יישומים מעשית, אבטחת ענן, ניהול פגיעויות ובדיקות חדירה, עם דגש חזק על סביבות פיתוח מודרניות, כולל פיתוח בסיוע AI ויישומים מבוססי AI. תעבוד עם מפתחים לקידום שיטות קידוד מאובטחות ביישומים מסורתיים ומבוססי AI, תייעץ לצוותים לגבי שימוש מאובטח ב-LLMs, AI APIs וכלי קידוד בסיוע AI כמו GitHub Copilot, ותסייע בזיהוי חולשות אבטחה בקוד שנוצר על ידי AI.

משרות נוספות מומלצות עבורך
  • רשימת משאלות

    Senior AppSec Engineer

    • map_icon תל אביב - יפו
    Dream

    Dream

  • רשימת משאלות

    Senior Security Engineer

    • map_icon תל אביב - יפו
    Lemonade

    Lemonade

  • רשימת משאלות

    Senior Application Security Engineer

    • map_icon ירושלים
    RYB Technologies

    RYB Technologies

  • רשימת משאלות

    מנחה ומבקר/ת אבטחת מידע אפליקטיבי

    • map_icon תל אביב - יפו
    פרוסיד

    פרוסיד

  • רשימת משאלות

    Senior Product Security Engineer

    • map_icon תל אביב - יפו
    Zenity

    Zenity

  • רשימת משאלות

    Senior/Staff Application Security Engineer

    • map_icon תל אביב - יפו
    Nebius

    Nebius

לכל המשרות של מהנדס אבטחת יישומים

ניתן לצפות במשרות שסימנת בכל שלב תחת התפריט הראשי בקטגוריית 'משרות שאהבתי'

המקום קרן עזריאלי טקסט בעברית עם סמל אינסוף
  • מי אנחנו
  • מעסיקים מובילים
  • צרו קשר
  • תנאי שימוש
  • מדיניות פרטיות
  • הצהרת נגישות

2026 Ⓒ ג'וביפיי - כל הזכויות שמורות

קרן עזריאלי טקסט בעברית עם סמל אינסוף social_security the_israeli_employment_service israel_innovation_authority work_office המקום
המערכת בונה את הפרופיל התעסוקתי שלך

עוד רגע...

המערכת זיהתה ששינית את הנתונים באזור האישי ומעדכנת את ההמלצות על תפקידים ומשרות בהתאם.

מצטערים, לא הצלחנו לנתח בהצלחה את הנתונים שהזנת.
אתם מוזמנים לנסות להזין שוב או להעלות קובץ קורות חיים במידה ויש לכם.
בהצלחה

הגעת להגבלה היומית של שלושה עדכונים בפרופיל האישי ביום

loader

הבקשה שלך נשלחה בהצלחה!

יש באפשרותך לשלוח בקשה לקבלת ייעוץ אישי ללא עלות מיועצת קריירה.

באפשרותך לשלוח בקשה לקבלת ייעוץ אישי ללא עלות

  • בעיה טכנית

  • סיוע בכתיבת קורות חיים או בהכנה לראיון עבודה

  • התאמה של משרות

  • אחר:

פנייתך נשלחה בהצלחה. נציג מטעם ארגון נכי צהל ייצור איתך קשר בהקדם