jobify_logo ×
  • מִשׁתַמֵשׁ
  • התחברות/הרשמה
  • עמוד הבית
  • מי אנחנו
  • מעסיקים מובילים
  • פרסום משרה חינם
  • צרו קשר
  • תנאי שימוש
  • מדיניות פרטיות
  • הצהרת נגישות
קרן עזריאלי טקסט בעברית עם סמל אינסוף social_security the_israeli_employment_service work_office המקום
jobify_logo
  • מי אנחנו
  • מעסיקים מובילים
  • פרסום משרה חינם
  • צרו קשר
דילוג לתוכן

עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!

במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.

מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.

Application Security Specialist

Cyesec

Cyesec

  • הרצליה
  • Indeed
Indeed

Application Security Specialist

Cyesec

Cyesec

  • הרצליה
  • bag_icon מלאה
  • coins_icon 18,000-25,000 ₪ (הערכה מבוססת AI)
    הערכה מבוססת AI ולא שכר של המעסיק
  • Indeed
Indeed

CYE is looking for a talented Application Security Specialist to join our team. In this role, you will take an active part in application penetration testing, threat modeling, Secure SDLC activities, and AppSec initiatives that help evaluate and improve security posture. The position includes hands-on security testing of web, mobile, API, thick client, AI/LLM integrations, and MCP-based application components, identifying and validating vulnerabilities, assessing real business impact, supporting customers with clear remediation guidance, and contributing to application security processes, tools, and best practices.
Responsibilities

Perform hands-on application penetration testing across web, mobile, API, thick client, AI/LLM integrations, and MCP-enabled application components.

Perform threat modeling and secure design reviews to identify risks early in the development lifecycle.

Support development teams with practical remediation guidance and secure implementation recommendations.

Perform Secure Software Development Lifecycle and secure coding training for developers.

Evaluate and improve customers’ application security development lifecycle, including secure coding practices, vulnerability management, remediation workflows, and security gates.

Participate in client-facing discussions, including assessment scoping, finding walkthroughs, remediation alignment, and retest updates.

Qualifications

2+ years of hands-on experience in application penetration testing.

Strong understanding of OWASP Top 10 and CWE Top 25, with proven experience identifying vulnerabilities and supporting practical remediation strategies.

Familiarity with high-level programming languages (Java, JS, Python, etc.).

Relevant App PT training and certifications such as EWPTX, OSWE, etc.

Strong English communication skills, with the ability to communicate technical topics clearly in client-facing discussions.

Advantage: Deep understanding of the LLM Top 10, AI security risks, MCP security risks, and AI/LLM hacking techniques.

Advantage: Proven experience in secure code review or high-level code auditing.

Advantage: Knowledge of Secure SDLC practices, and methodologies, including Microsoft SDL, OWASP SAMM, and OWASP ASVS.

About us
CYE’s exposure management platform, Hyver, transforms the way security teams protect their organizations. With CRQ at its core, Hyver reveals exposure in financial terms, visualizes attack routes to critical business assets, and creates tailored mitigation plans. Founded in 2012, CYE has served hundreds of organizations globally.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.


במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.

מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.

שאלות ותשובות עבור משרת Application Security Specialist

מומחה אבטחת יישומים ב-Cyesec יהיה אחראי על ביצוע בדיקות חדירה ליישומים (כולל ווב, מובייל, API, ורכיבי AI/LLM), מודלים של איומים, ופעילויות Secure SDLC. התפקיד כולל זיהוי ואימות פגיעויות, הערכת השפעה עסקית, מתן הנחיות לתיקון ותרומה לתהליכי אבטחת יישומים.

לתפקיד נדרשות שנתיים ומעלה של ניסיון מעשי בבדיקות חדירה ליישומים, הבנה חזקה של OWASP Top 10 ו-CWE Top 25, והיכרות עם שפות תכנות עיליות כמו Java, JS, ו-Python. יתרון יינתן למועמדים עם הבנה עמוקה ב-LLM Top 10, סיכוני אבטחת AI/MCP, וניסיון בביקורת קוד מאובטח.

מומחה אבטחת יישומים תורם לשיפור אבטחת הלקוחות על ידי ביצוע סקירות עיצוב מאובטחות, תמיכה בצוותי פיתוח עם הנחיות מעשיות לתיקון, ביצוע הדרכות לפיתוח תוכנה מאובטח, והערכה ושיפור מחזור חיי פיתוח היישומים של הלקוחות, כולל שיטות קידוד מאובטחות וניהול פגיעויות.

משרות נוספות מומלצות עבורך
  • רשימת משאלות

    מנחה ומבקר/ת אבטחת מידע אפליקטיבי

    • map_icon תל אביב - יפו
    פרוסיד

    פרוסיד

  • רשימת משאלות

    מנחה ומבקר.ת אבטחת מידע אפליקטיב

    • map_icon רעננה
    Mertens - Malam Team

    Mertens - Malam Team

  • רשימת משאלות

    Senior/Staff Application Security Engineer

    • map_icon תל אביב - יפו
    Nebius

    Nebius

  • רשימת משאלות

    מנחה ומבקר.ת אבטחת מידע אפליקטיב

    • map_icon תל אביב - יפו
    Mertens - Malam Team

    Mertens - Malam Team

  • רשימת משאלות

    מנחה ומבקר.ת אבטחת מידע אפליקטיבי

    • map_icon לוד
    Nishapro

    Nishapro

  • רשימת משאלות

    מנחה ומבקר.ת אבטחת מידע אפליקטיבי

    • map_icon מיקום לא צוין
    Connect Tech

    Connect Tech

לכל המשרות של מומחה אבטחת מידע אפליקטיבי

ניתן לצפות במשרות שסימנת בכל שלב תחת התפריט הראשי בקטגוריית 'משרות שאהבתי'

המקום קרן עזריאלי טקסט בעברית עם סמל אינסוף
  • מי אנחנו
  • מעסיקים מובילים
  • צרו קשר
  • תנאי שימוש
  • מדיניות פרטיות
  • הצהרת נגישות

2026 Ⓒ ג'וביפיי - כל הזכויות שמורות

קרן עזריאלי טקסט בעברית עם סמל אינסוף social_security the_israeli_employment_service israel_innovation_authority work_office המקום
המערכת בונה את הפרופיל התעסוקתי שלך

עוד רגע...

המערכת זיהתה ששינית את הנתונים באזור האישי ומעדכנת את ההמלצות על תפקידים ומשרות בהתאם.

מצטערים, לא הצלחנו לנתח בהצלחה את הנתונים שהזנת.
אתם מוזמנים לנסות להזין שוב או להעלות קובץ קורות חיים במידה ויש לכם.
בהצלחה

הגעת להגבלה היומית של שלושה עדכונים בפרופיל האישי ביום

loader

הבקשה שלך נשלחה בהצלחה!

יש באפשרותך לשלוח בקשה לקבלת ייעוץ אישי ללא עלות מיועצת קריירה.

באפשרותך לשלוח בקשה לקבלת ייעוץ אישי ללא עלות

  • בעיה טכנית

  • סיוע בכתיבת קורות חיים או בהכנה לראיון עבודה

  • התאמה של משרות

  • אחר:

פנייתך נשלחה בהצלחה. נציג מטעם ארגון נכי צהל ייצור איתך קשר בהקדם