עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
What You Will Do
As an Application Security Engineer, you will act as a bridge between offensive security and engineering teams. You will leverage your penetration-testing mindset to proactively improve the security of applications throughout their lifecycles. This includes partnering with developers to identify and remediate vulnerabilities, contributing to secure design decisions, participating in threat modeling, and conducting security reviews. You will help build scalable, repeatable security practices that reduce risk across the product.
Responsibilities:
Validating and prioritizing vulnerabilities from PTs, bug bounties, and tools
Collaborating with engineering teams on remediation
Participating in application security reviews
Supporting Secure Software Development Lifecycle (SSDLC)
Managing and using SAST, DAST, and SCA tools
Developing security standards and best practices.
2-3 years of experience in Application Security, with a strong background in secure application design, vulnerability analysis, and risk assessment.
Past experience as a Penetration Tester (Web and APIs), including extensive manual testing (not tool-only).
Strong ability to read, understand, and reason about code, especially in C# and JavaScript.
Deep understanding of OWASP Top 10 and OWASP Top 10 for LLM Applications.
Solid knowledge of OWASP ASVS (Application Security Verification Standard) and its practical application in security reviews.
Proven experience conducting application security reviews, including threat modeling and secure design validation (advantage).
Strong communication skills with developers, including the ability to explain security findings, risks, and remediation clearly and pragmatically.
Familiarity with cloud environments such as AWS, Azure, or GCP, including common security pitfalls.
Experience with bug bounty programs and/or Red Team activities (advantage).
High proficiency in English, both written and spoken.
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
משרות נוספות מומלצות עבורך
-
Senior Application Security Engineer
-
ירושלים
RYB Technologies
-
-
מנחה ומבקר/ת אבטחת מידע אפליקטיבי
-
תל אביב - יפו
פרוסיד
-
-
Application Security Architect
-
תל אביב - יפו
Moveo Source
-
-
Senior/Staff Application Security Engineer
-
תל אביב - יפו
Nebius
-
-
מנחה ומבקר.ת אבטחת מידע אפליקטיב
-
תל אביב - יפו
Mertens - Malam Team
-
-
AI Security Engineer
-
ירושלים
Cross River
-