עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
About the Role
We are looking for an experienced Security Architect to lead the design and implementation of secure development practices across our product architecture and engineering workflows. This is a hybrid role combining deep technical security expertise with product-style ownership of internal security initiatives.
As a core member of our Platform and Security group You will also play a key role in ensuring our product is robust and resilient against modern security threats. You will help define security policies, integrate tools such as SCA, SAST, and other security platforms, lead POCs, and work closely with R&D teams to translate security strategy into concrete workflows and automations.
Key Responsibilities
Security Architecture: Define and enforce security policies across the development lifecycle; guide secure integration of security tooling and practices.
Internal Product Ownership: Act as the product manager for internal security automation define architecture, requirements, and priorities for workflows spanning vulnerability ingestion, risk analysis, validation, and patch integration. Collaborate closely with R&D and platform engineers to drive delivery.
Third-Party Dependency Analysis: Map and assess third-party software usage across product components; identify critical dependencies and their security posture.
Toolchain Strategy & POCs: Lead proof-of-concept evaluations for new security technologies; define onboarding criteria, evaluation metrics, and rollout plans.
DevSecOps Enablement: Partner with CI/CD and platform teams to embed security controls into build/test/release flows (Jenkins, GitHub), including validation gates and audit logging.
5+ years in security architecture, DevSecOps, or application/product security roles
Hands-on experience with SAST/SCA tools (e.g., Polaris, JFrog Xray, SonarQube)
Proficiency in Python or scripting (Bash, Groovy) for automation and integration
Strong familiarity with CI/CD pipelines (e.g., Jenkins), SCM (e.g., GitHub), and ticketing systems (e.g., Jira)
Solid understanding of CVSS, SBOMs, and third-party risk management
Experience designing internal tools or workflows for engineering teams
Excellent communication and documentation skills; capable of translating security goals into technical requirements
Nice to Have
Experience with no-code/low-code automation tools (e.g., n8n, Airflow)
Familiarity with Cursor or AI-assisted code analysis tools
Background in networking, cloud infrastructure, or telecom environments.
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.