jobify_logo ×
  • מִשׁתַמֵשׁ
  • התחברות/הרשמה111
  • עמוד הבית
  • מי אנחנו
  • מעסיקים מובילים
  • פרסום משרה חינם
  • צרו קשר
  • תנאי שימוש
  • מדיניות פרטיות
  • הצהרת נגישות
קרן עזריאלי טקסט בעברית עם סמל אינסוף social_security the_israeli_employment_service work_office המקום
jobify_logo
  • מי אנחנו
  • מעסיקים מובילים
  • פרסום משרה חינם
  • צרו קשר
דילוג לתוכן

עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!

במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.

מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.

AppSec Architect

Elementor

Elementor Elementor

  • רמת גן
  • LinkedIn
LinkedIn

AppSec Architect

Elementor

Elementor Elementor

  • רמת גן
  • bag_icon מלאה
  • coins_icon 18,000-26,000 ₪ (הערכה מבוססת AI)
    הערכה מבוססת AI ולא שכר של המעסיק
  • LinkedIn
LinkedIn


Elementor's Security Team protects a platform that powers over 14% of the internet - millions of websites, apps, and businesses built by our community of creators. We combine classic security engineering with modern automation and AI-driven tooling to stay ahead of a fast-moving threat landscape, and we work hand-in-hand with R&D to build security into the product from day one.

About The Role

As an AppSec Engineer, you'll be the security partner for our R&D teams - reviewing code and architecture, closing the loop on vulnerabilities, and helping developers ship secure features faster. You'll also own our external vulnerability disclosure channels end-to-end, including leading our Bug Bounty program. This role is a great fit if you have a development background, enjoy digging into code, and want to use AI tools and agents to scale security impact across a large, fast-growing platform.

Responsibilities:

Application Security & Secure SDLC

  • Partner with R&D: work directly with developers to identify, triage, and remediate application-level vulnerabilities.
  • Review code & architecture: assess security weaknesses and provide clear, actionable, developer-friendly remediation guidance both in the code and architectural levels
  • Own the scanning pipeline: run and tune SAST, DAST, and SCA tools across the codebase and CI/CD.
  • Shift security left: drive secure coding practices, threat modeling, and security requirements into the development process.
  • Review new features: support security reviews for new products, integrations, and third-party dependencies.

Vulnerability Disclosure & Bug Bounty

  • Lead the program: own the Bug Bounty program end-to-end - scoping, triage, severity assessment, payouts, and researcher communication.
  • Manage vendor integrations: run and integrate vulnerability submission and disclosure platforms including Patchstack, Bugcrowd, Wordfence and Wordpress.
  • Triage & resolve: validate inbound vulnerability reports from all channels and drive them to resolution with the relevant teams.
  • Improve the process: continuously raise the bar on intake, triage, and SLA handling for vulnerability reports.

Automation & AI Tooling

  • Build AI agents: design and build automation workflows and AI agents that cut manual triage work and speed up remediation.
  • Use AI daily: leverage AI coding tools (Claude Code, Cursor, etc.) to boost your own productivity - “agentic thinking”.
  • Design AI security Architecture: Build a security apparatus to detect and fix AI produced code and workflows.
  • Explore automation platforms: evaluate tools like n8n and Zapier for AppSec workflows.
  • Connect the stack: build scripts and integrations linking scanning tools, ticketing systems, and vendor platforms.

Requirements:

  • 2-4 years of experience in Application Security, Security Engineering, or Software Development with a strong security focus.
  • Development experience is a clear advantage - a hands-on coding background in any modern language or stack.
  • Solid understanding of common web and application vulnerability classes (e.g., OWASP Top 10).
  • Experience with Application Security Testing tools (such as burp suite, CI/CD pipeline security rule configuration etc)
  • Experience with SAST/DAST/SCA tools and integrating security into CI/CD pipelines.
  • Hands-on, practical familiarity with AI tools and building AI agents for real workflows.
  • Basic coding and scripting skills (Python, Bash, JavaScript, or similar).
  • Strong communication skills and the ability to work closely with developers and cross-functional teams.

Skills & Mindset

  • Ownership mindset - comfortable leading an initiative (like the Bug Bounty program) end-to-end.
  • Ability to work independently, prioritize, and stay calm under pressure.
  • Clear communicator who can translate security findings into practical action for developers and stakeholders.
  • Curiosity for AI tooling and a drive to automate repetitive work.

Nice to Have

  • Prior experience running or participating in a Bug Bounty / responsible disclosure program.
  • Experience with vulnerability disclosure or WAF/plugin security platforms such as Patchstack, Bugcrowd, or Wordfence.
  • Familiarity with n8n, Zapier, or building custom AI agents for security automation.
  • Experience with cloud security fundamentals (AWS, Azure, or GCP)


במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.

מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.

שאלות ותשובות עבור משרת AppSec Architect

כ-AppSec Architect ב-Elementor, תפקידך הוא לשמש כשותף אבטחה לצוותי ה-R&D, לבדוק קוד וארכיטקטורה, לטפל בחולשות אבטחה ולסייע למפתחים לשלוח תכונות מאובטחות במהירות. בנוסף, תנהל את ערוצי חשיפת הפגיעויות החיצוניים, כולל תוכנית ה-Bug Bounty, ותשלב אוטומציה וכלי AI כדי להרחיב את השפעת האבטחה על פני הפלטפורמה הגדלה במהירות.

ה-AppSec Architect ב-Elementor עובד ישירות עם מפתחים לזהות, לתעדף ולתקן חולשות ברמת היישום, מבצע סקירות קוד וארכיטקטורה, ומספק הנחיות ברורות לתיקון. התפקיד כולל גם ניהול צינורות סריקה (SAST, DAST, SCA), הטמעת שיטות קידוד מאובטחות, מודלים של איומים ודרישות אבטחה בתהליך הפיתוח, ותמיכה בסקירות אבטחה עבור מוצרים חדשים ותלויות צד שלישי.

לתפקיד AppSec Architect ב-Elementor נדרשות 2-4 שנות ניסיון באבטחת יישומים, הנדסת אבטחה או פיתוח תוכנה עם דגש חזק על אבטחה. יתרון משמעותי הוא רקע בפיתוח קוד בכל שפה מודרנית. כמו כן, נדרשת הבנה מוצקה של חולשות אינטרנט ויישומים נפוצות (כמו OWASP Top 10), ניסיון בכלי בדיקת אבטחת יישומים (כמו Burp Suite), וניסיון מעשי עם כלי AI ובניית סוכני AI עבור תהליכי עבודה אמיתיים, יחד עם כישורי קידוד בסיסיים (Python, Bash, JavaScript).

משרות נוספות מומלצות עבורך
  • רשימת משאלות

    Senior Security Engineer - AppSec & Cloud

    • map_icon רמת גן
    Sola Security

    Sola Security

  • רשימת משאלות

    Application Security Researcher

    • map_icon תל אביב - יפו
    Novee Security

    Novee Security

  • רשימת משאלות

    Senior Application Security Engineer

    • map_icon תל אביב - יפו
    Peer Security

    Peer Security

  • רשימת משאלות

    Senior Product Security Engineer

    • map_icon תל אביב - יפו
    Tipalti

    Tipalti

  • רשימת משאלות

    Senior Security Engineer - AppSec & Cloud

    • map_icon רמת גן
    Sola Security

    Sola Security

  • רשימת משאלות

    AI Security Researcher

    • map_icon תל אביב - יפו
    Pentera

    Pentera

לכל המשרות של מהנדס אבטחת יישומים

ניתן לצפות במשרות שסימנת בכל שלב תחת התפריט הראשי בקטגוריית 'משרות שאהבתי'

המקום קרן עזריאלי טקסט בעברית עם סמל אינסוף
  • מי אנחנו
  • מעסיקים מובילים
  • צרו קשר
  • תנאי שימוש
  • מדיניות פרטיות
  • הצהרת נגישות

2026 Ⓒ ג'וביפיי - כל הזכויות שמורות

קרן עזריאלי טקסט בעברית עם סמל אינסוף social_security the_israeli_employment_service israel_innovation_authority work_office המקום
המערכת בונה את הפרופיל התעסוקתי שלך

עוד רגע...

המערכת זיהתה ששינית את הנתונים באזור האישי ומעדכנת את ההמלצות על תפקידים ומשרות בהתאם.

מצטערים, לא הצלחנו לנתח בהצלחה את הנתונים שהזנת.
אתם מוזמנים לנסות להזין שוב או להעלות קובץ קורות חיים במידה ויש לכם.
בהצלחה

הגעת להגבלה היומית של שלושה עדכונים בפרופיל האישי ביום

loader

הבקשה שלך נשלחה בהצלחה!

יש באפשרותך לשלוח בקשה לקבלת ייעוץ אישי ללא עלות מיועצת קריירה.

באפשרותך לשלוח בקשה לקבלת ייעוץ אישי ללא עלות

  • בעיה טכנית

  • סיוע בכתיבת קורות חיים או בהכנה לראיון עבודה

  • התאמה של משרות

  • אחר:

פנייתך נשלחה בהצלחה. נציג מטעם ארגון נכי צהל ייצור איתך קשר בהקדם