דרושים » אבטחת מידע וסייבר » Product Security Analyst

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 6 שעות
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a hands-on Product Security Analyst to join our security team and play a key role in improving the security posture of our products.

This role combines deep technical work with security analysis and close collaboration with R&D teams to identify, assess, and remediate security issues throughout the product lifecycle.
Requirements:
2-4 years of experience in Information Security, Software Development, DevOps, or a similar technical role.

Strong practical understanding of modern software architectures, including Cloud environments, Containers, Microservices, and APIs.

Hands-on experience with security tools such as SAST, DAST, SCA, and Container Scanning - a strong advantage.

Ability to analyze technical findings and understand their real impact on the product.

Critical thinking skills with the ability to distinguish between noise and real risk.

Strong communication skills and the ability to work closely with development teams.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8546170
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
27/01/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a Senior Product Manager to join our Falcon Cloud Security team. In this role, you will own the strategy, roadmap, and execution for our Application Security Posture Management (ASPM) capabilities within Falcon Cloud Security, driving our vision of comprehensive code-to-cloud protection. You will work at the intersection of application security and cloud security to help customers prioritize and remediate the risks that matter most. This position requires a strategic thinker who understands both the developer experience and enterprise security operations, and can bridge the gap between AppSec and CloudSec teams to deliver innovative solutions that stop breaches before they happen.

What Youll Do:

You will be responsible for translating the ASPM vision into a detailed product strategy, roadmap, and development backlog that drives code-to-cloud visibility and risk prioritization across the entire application lifecycle.

You will own and manage the end-to-end product development lifecycle for ASPM capabilities, leading product release cycles, identifying and proactively solving bottlenecks, and raising flags when needed to ensure successful delivery.

You will drive the convergence of ASPM and CNAPP by defining requirements and user stories that correlate application security with cloud runtime and proactive context (CSPM, CWPP, CIEM) to eliminate security silos and deliver a unified risk and security platform.

You will be accountable for gathering and synthesizing insights from AppSec engineers, CloudSec teams, DevOps practitioners, and CISOs through customer interviews, user research, and competitive analysis to identify high-impact product opportunities.

You will define and own key product metrics and success criteria including mean-time-to-remediation, vulnerability prioritization accuracy, developer adoption rates, and reduction in exploitable attack surface, using data to drive continuous product optimization.

You will lead cross-functional collaboration with engineering, design, marketing, sales, and customer success to deliver developer-centric features including pull-request scanning, policy-as-code enforcement, and automated remediation workflows.

You will serve as the subject matter expert and evangelist for ASPM, presenting to customers, industry analysts executives, and at conferences to position CrowdStrike as the leader in the converging ASPM/CNAPP market.
דרישות:
What Youll Need:

Bachelor's degree in Computer Science, Engineering, or related technical field.

5+ years of product management experience in application security, cloud security, DevSecOps tooling, or related B2B SaaS domains.

Deep understanding of application security testing tools (SAST, SCA, DAST, IAST, secrets scanning) and their role in the software development lifecycle.

Strong technical knowledge of cloud-native architectures, containers, Kubernetes, CI/CD pipelines, and infrastructure-as-code (Terraform, CloudFormation).

Proven ability to build products for technical personas including developers, AppSec engineers, and CloudSec/DevOps teams, with empathy for their distinct workflows and priorities.

Data-driven approach to product decisions with experience using analytics to measure security outcomes, risk reduction, and developer productivity.

Exceptional communication skills with ability to translate complex technical concepts for executive audiences and influence cross-functional stakeholders.

Bonus Points:

Direct experience with CNAPP platforms (CSPM, CWPP, CIEM) or ASPM solutions.

Background in software engineering, security research, or hands-on AppSec/DevSecOps roles that provide deep technical credibility.

Familiarity with SBOM standards, SLSA framework, supply chain security, and emerging application security regulations.

Track record of successfully launching security products that achieved analyst recognition (Gartner, Forrester, IDC) or significant market share in המשרה מיועדת לנשים ולגברים כאחד.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8520011
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
28/01/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
Your Career Cortex, one of the fastest-growing products in the history of cybersecurity, is now expanding to shape the future of cloud security. Being a part of the Cortex product team gives you an unrivaled chance to work with an amazing core team with the resources of the world's cybersecurity leader. At Cortex we challenge the status quo and create the platform and practices that redefine the cybersecurity industry as we know it. As a senior product manager, you will be responsible for shaping and enhancing our cloud workload protection offering as part of our platform. You will work closely with a team of industry experts within our leading cybersecurity company. Your primary focus will be on helping customers manage vulnerabilities, misconfigurations, compliance, and runtime issues associated with their cloud workloads. This role will be focused on developing and leading outpost solutions that extend our security capabilities into diverse customer environments. You will play a critical role in shaping how organizations secure their modern applications across hybrid and multi-cloud infrastructures: Outpost Solution Leadership: Lead the product definition and roadmap for our outpost solutions, enabling seamless integration of our security posture scanning for customers. Multi-Cloud Expertise: Leverage deep technical knowledge of the configurations and APIs of major cloud providers (AWS, Azure, GCP) to design robust, efficient and adaptable security solutions. Container and Orchestration Security: Develop capabilities for securing Kubernetes clusters, container registries, and other cloud-native technologies. Your Impact Market Research & Competitive Analysis: Conduct market research and competitive analysis to identify trends and opportunities for expanding cloud workload protection capabilities Customer Engagement: Collaborate with customers and field teams to gather feedback, understand pain points, and ensure our cloud workload protection solutions meet their needs Roadmap Development: Co-develop and maintain the roadmap for cloud workload protection, prioritizing features and making informed trade-offs to balance innovation with practicality Enterprise-Grade Features: Work with engineering, research, and UX/UI design teams to design and deliver enterprise-grade cloud workload protection features Cross-Functional Collaboration: Collaborate with other product managers and teams to break down silos and bring innovative, disruptive approaches to the platform Performance Tracking: Define and track KPIs for Cloud Workload Protection, continuously optimizing product performance against established goals Product Evangelism: Work closely with product enablement, marketing, and sales teams to evangelize cloud workload protection internally and externally, conducting demos and presentations
Requirements:
Your Experience 5+ years in product management, with a strong focus on cybersecurity, particularly in Cloud Workload Protection (CWP) including vulnerability assessment, compliance auditing and runtime protection Deep technical proficiency and hands-on experience with the security-relevant configurations and APIs of major cloud providers (AWS, Microsoft Azure, Google Cloud Platform) Demonstrated hands-on experience with application security principles and practices, coupled with strong familiarity and practical experience with Kubernetes, containerization technologies, and container registries Experience integrating security into CI/CD pipelines and a deep understanding of the Security SDLC (Secure Software Development Life Cycle) for modern applications Deep technical expertise in security, data, and cloud technologies, enabling effective collaboration with engineering, research, and UX/UI teams on complex and technical projects Proven track record of successfully bringing complex technical products to market.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8521921
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a customer-focused Security Analyst to join our managed services team. As a Customer-Facing Security Analyst, you will play a critical role in delivering top-notch exposure remediation services to our clients. You will work closely with customers to assess, analyze, and mitigate exposures in their IT and cloud infrastructure, while providing expert guidance and maintaining strong client relationships.

Responsibilities:

Own and manage the primary technical relationship for a portfolio of enterprise customers, establishing yourself as their trusted security advisor and focusing on strategic security outcomes.
Deliver continuous security posture assessments by leveraging the XM Cyber platform to translate complex technical findings into actionable, risk-based insights for customers.
Master the platform to drive maximum value for customers, guiding them on configuration, best practices, and new features to ensure successful adoption and ROI.
Drive remediation outcomes by acting as the liaison between customers and their internal teams (e.g., IT Operations, DevOps, Cloud Security), helping them prioritize efforts based on attack path analysis.
Proactively track and report on progress, delivering regular status updates and executive-level business reviews (QBRs) that demonstrate risk reduction and program success.
Act as a trusted advisor on exposure and attack path management, translating industry trends into proactive, tailored recommendations that enhance your customers' security posture.
Partner with the broader account team, including Customer Success Managers and Support Engineers, to ensure a seamless customer experience. Act as the lead technical escalation point to resolve complex challenges and champion customer needs with internal teams like Product and R&D.
Requirements:
5+ years in a customer-facing cybersecurity role (e.g., Customer Success Manager, TAM, Security Consultant), with proven experience managing and retaining a portfolio of large enterprise clients. Experience in a managed security service (MSSP) or cybersecurity SaaS company is a strong plus.
A strong technical foundation in security operations, specifically in vulnerability management, exposure remediation, and/or attack path management.
Hands-on experience with major cloud platforms (AWS, GCP, Azure) and their security principles.
Experience applying and advising clients on common security frameworks (NIST, CIS Controls, ISO 27001) and regulations (GDPR, HIPAA).
Exceptional communication and presentation skills, with the ability to articulate complex technical concepts to both technical practitioners and executive stakeholders.
Outstanding analytical abilities and an autonomous, self-driven learning style.
Native-level fluency in English.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8496598
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
25/01/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a Application Security Product Analyst to join our Product team and spread our power. In this pivotal role, you will be the primary operator of our cutting-edge AI-driven Dynamic Application Security Testing (DAST) agent. You will bridge the gap between automated AI testing and security policy, defining the "rules of engagement" for our agents and ensuring they effectively simulate sophisticated attacks while maintaining operational safety.
WHAT YOULL DO
Oversee the daily deployment, health, and operation of DAST and penetration testing capabilities to ensure optimal scanning across diverse customer environments.
Develop and maintain attack policies and rules by creating and fine-tuning the logic that defines how the system identifies, prioritizes, and exploits vulnerabilities.
Analyze and validate findings by reviewing complex attack paths to reduce false positives and improve the core logic's performance.
Research novel attack vectors and emerging web/API threats to translate new techniques into executable behaviors for the DAST engine.
Collaborate on product evolution with R&D and Product teams, using operational insights to drive feature requests and continuous improvement.
Requirements:
Over 2 years of DAST and penetration testing expertise, including hands-on experience in application security or operating enterprise tools like Burp Suite, OWASP ZAP, or Acunetix.
Proven ability in security rule and policy development, specifically in writing custom scripts or signatures to translate vulnerability classes into detection rules.
Technical proficiency in web protocols and API standards, with a strong command of HTTP/S, REST, GraphQL, and authentication mechanisms like OAuth and SAML.
Proficiency in scripting languages such as Python, Go, or JavaScript to automate tasks and interact with the codebase.
An analytical mindset with the ability to diagnose complex logs and scans to distinguish between tool failures, configuration issues, and valid security findings.
BONUS POINTS
Knowledge of AI/ML and how LLMs or reinforcement learning agents operate within a cybersecurity context.
SaaS and cloud experience with familiarity in AWS, Azure, or GCP environments and modern cloud-native architectures.
A red teaming background with experience in simulated adversarial attacks and bypassing standard WAF or security controls.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8515912
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
28/01/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are an AI-first tech company in the automotive space with hubs across the US and Israel. Our mission is to constantly disrupt the industry by creating new, groundbreaking technologies to help dealers build stronger, more resilient businesses. Our work happens in the fast lane as we work to bring AI and data -driven solutions to a quickly evolving industry. Our team at our company is made up of curious and creative individuals who are always looking to achieve the impossible. We are bold, collaborative, and goal driven, and, at our core, we believe every voice has value and can impact our bottom line. We are looking for an AppSec Engineer to join our team and make a real impact on our Secure Software Development Lifecycle! As an AppSec Engineer your mission will be to be the driving force behind our secure development lifecycle. You wont just find bugs; you will help build the systems that prevent them. You will have the opportunity to help navigate the "Agentic Era" by building autonomous security guardrails, securing LLM-based workflows, and empowering developers to move fast without breaking security. This is a mid-level role reporting to the AppSec Architect and can be based out of our Tel-Aviv or Jerusalem offices.
What you will be responsible for:
Build & automate: Develop and maintain internal security tooling, automated workflows, and AI security agents. Code integrity: Execute secure code reviews and provide actionable remediation guidance to engineering teams. Vulnerability management: Lead the tracking, triaging, and reporting of security flaws across all product lines. Best practice advocacy: Drive the adoption of secure coding standards, partnering with R&D and DevOps teams to embed security early and often. Extend our D&R capabilities: Build scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents. Document: Draft requirement documents for security products and innovative technologies.
The top candidate will also have:

* Endless curiosity and passion for emerging technology
* Ability to handle prioritize and execute multiple tasks simultaneously.
* Ability to work collaboratively across multiple departments.
* Fluent in Hebrew & English - ability to lead meetings and present.
* Strong communication and collaboration skills.
Why you should join us:

* Family-friendly environment and flexible working hours.
* Our global team is made up of awesome forward thinking, innovative go-getters.
* Learning and growth opportunities within a fast-paced tech startup environment.
* Clear career advancement path for strong performers.
* We are committed to setting each other up for success. As a member of our team, you will work within an environment that encourages growth, initiative taking and continuous mutual feedback in order to reach your full potential.
* And of course, Cibus and lots of yummy treats in the kitchen:-)
Requirements:
* 2-4 years experience as an Application Security Engineer or similar role from a Software Development Company
* In-depth knowledge in threat modeling, risk management, and security controls.
* Experience with AI Security and Security AI.
* Proficiency with OWASP Top 10: API, LLM, and Agentic applications.
* Hands-on competency integrating security tools such as SAST, DAST, SCA, and API security testing.
* Familiarity with CI/CD pipelines and Infrastructure as Code implementation.
* Practical background in software development and coding.
* Extensive knowledge of cloud technologies and cloud-native applications, AWS and GCP.
* Cybersecurity certifications such as OSCP, GPEN, CSSLP - big advantage!
* Fluent communication in Hebrew and English
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8521851
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
The ideal candidate will bridge high-level security governance with hands-on, automated security implementation across the Software Development Life Cycle (SDLC).
This individual will be a critical enabler, empowering teams to move swiftly and deliver exceptional value to our clients, all while upholding the required security standards. A proven track record in successfully balancing rapid innovation with robust security practices is essential for this role.
How youll make an impact:
As the DevSecOps Leader / Program Manager, you will be responsible for creating a secure-by-design culture and leading the operational implementation of our security strategy. You will:
Build the Secure SDLC (SSDLC) Strategy: Develop, own, and execute the companys comprehensive DevSecOps strategy, focusing on automation to manage security at scale from code check-in to production deployment.
Lead Key Security Engineering Initiatives: Lead and manage security engineering programs, including:
Maturing the security tools stack (e.g., implementing WAF, and automating SCA/SAST tools).
Owning the bug bounty and responsible disclosure programs triage and remediation tracking.
Enhancing the Identity and Access Management (IAM) framework through concepts like Just-In-Time (JIT) and Zero Trust principles.
Operationalize CVE Tracking and Remediation: Design and implement a scalable system for discovering, tracking, and prioritizing Common Vulnerabilities and Exposures (CVEs) in third-party and custom code. Drive the engineering teams to achieve security risk remediation goals by providing clear, actionable data and automated patching mechanisms.
Measure & Drive Improvement: Develop and maintain key DevSecOps metrics (e.g., Mean Time To Detect/Remediate - MTTD/MTTR, percentage of code coverage by SAST/SCA tools) to measure the effectiveness of automated controls and provide a data-driven picture of the application security posture.
Embed Security Engineering: Spearhead R&D DevSecOps initiatives, partnering directly with engineering teams to select, deploy, and maintain security tools, establishing security gates and best practices throughout the product development lifecycle.
Requirements:
Deep DevSecOps Expertise: 5+ years of experience in a senior DevSecOps or Application/Product Security role, with a strong, working knowledge of DevSecOps principles and the modern application threat landscape (e.g., OWASP Top 10).
DevSecOps Focus: Proven ability to shift left security by embedding automated security controls (SAST, DAST, SCA, IAST) into CI/CD pipelines.
Open Source Security & Supply Chain Mastery: Deep, hands-on experience managing and hardening open-source software dependencies.
Key Focus: Expertise in utilizing Software Composition Analysis (SCA) tools (e.g., Dependency-Check, Snyk, Black Duck) to maintain an accurate Software Bill of Materials (SBOM) for all products.
Vulnerability & Risk Management Pro: Proven ability to establish and own a continuous CVE tracking and remediation process.
Key Focus: Expertise in risk-rating vulnerabilities based on exploitability and business impact, and driving engineering teams to remediate security risks efficiently using automation and clear Service Level Objectives (SLOs).
Audit & Compliance Automation: Proven, hands-on experience managing security audits and certification programs (e.g., SOC 2, ISO 27001) by leveraging security as code principles and automating evidence collection to demonstrate compliance across the pipeline.
Leadership & Influence: Strong leadership skills with the ability to build consensus and partner with R&D, Platform Engineering, and IT teams to embed security practices without being a bottleneck.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8498379
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
28/01/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for an experienced Product Manager to join our Product team and lead major parts of Valences SaaS Security platform, with a growing focus on securing AI capabilities embedded in SaaS applications.In this role, you will design, define, and deliver core product features, working closely with engineering, sales, and marketing. You will help shape how organizations secure modern SaaS environments - including AI-powered features such as copilots, agents, and generative AI integrations - and translate emerging market needs into impactful product capabilities.If you thrive in fast-paced environments, enjoy owning complex products, and want to be at the forefront of SaaS Security in the AI era, wed love to talk.Responsibilities

Define and prioritize product features and capabilities, including security and governance for AI features within SaaS applications
Lead discovery for new product initiatives, focusing on risks and attack surfaces introduced by AI adoption in SaaS environments
Create clear product requirement documents (PRDs / FRDs) and manage the product backlog
Work closely with engineering teams to ensure delivery aligns with the product roadmap and customer needs
Conduct market research and customer conversations to understand how AI is being used in SaaS and the resulting security challenges
Collaborate with sales and marketing on product launches, messaging, and enablement.
Monitor competitors and market trends across SaaS Security, AI Security, and identity-related domains
Balance quarterly planning with the flexibility to rapidly adjust priorities in a fast-changing market
Requirements:
5+ years of experience as a Product Manager for B2B / Enterprise software, preferably in Cyber Security or SaaS Security
Technical background in software development or a related academic degree - a strong advantage
Proven experience launching and owning complex product features end-to-end
Strong understanding of SaaS environments, integrations, permissions, and security risks
Interest and practical understanding of AI technologies as part of SaaS products (e.g., copilots, agents, LLM-powered features) and their security implications
Experience working cross-functionally with engineering, sales, and marketing teams
Strong analytical, prioritization, and problem-solving skills
Excellent communication skills and high ownership mentality
Familiarity with Agile methodologies, Jira, and product management tools
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8522364
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
5 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a highly skilled and experienced Head of Application Security to join our dynamic team. This role is pivotal in driving the security of our software development lifecycle and ensuring the robustness of our applications against potential threats. The ideal candidate will have a strong background in secure software development practices, including SSDLC implementation, and a deep understanding of security risks & tools. This position reports directly to an R&D VP.
Key Responsibilities
Lead the application security team, providing strategic direction and mentorship.
Develop and implement a comprehensive Secure Software Development Lifecycle (SSDLC) framework.
Oversee the integration of security practices into all phases of the software development lifecycle, including CI/CD guardrails.
Conduct risk assessments and threat modeling to identify and mitigate potential security vulnerabilities.
Collaborate with development teams to ensure secure coding practices and adherence to security standards, while maintaining developer productivity.
Implement and manage security automation tools and processes to enhance the efficiency of security operations.
Stay up-to-date on the latest security trends, vulnerabilities, and technologies to continuously improve our security posture.
Provide expert guidance on security architecture and design for new and existing applications.
Lead incident response efforts related to application security breaches and vulnerabilities.
Foster a culture of security awareness and continuous improvement within the organization.
Requirements:
Bachelor's degree in Computer Science, Information Security, or a related field.
Minimum of 7 years of experience in application security, with at least 3 years in a leadership role.
Proven experience in implementing and managing SSDLC frameworks.
In-depth knowledge of security frameworks and methodologies.
Strong understanding of threat modeling methodologies, secure coding practices and common vulnerabilities (e.g., OWASP Top Ten).
Proficiency in programming languages such as Java, Python, C#, or similar.
Experience in implementing security tools and technologies such as ASPM, SAST, DAST in complex and high-scale environment.
Excellent communication and leadership skills, with the ability and passion to drive change across the organization.
Relevant certifications such as CISSP, CISM, or CSSLP are desirable.
Proven experience in a similar role at another leading software development company.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8540450
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
7 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
Our mission is to constantly disrupt the industry by creating new, groundbreaking technologies to help dealers build stronger, more resilient businesses. Our work happens in the fast lane as we work to bring AI and data-driven solutions to a quickly evolving industry.
Our team at our company is made up of curious and creative individuals who are always looking to achieve the impossible. We are bold, collaborative, and goal driven, and, at our core, we believe every voice has value and can impact our bottom line.
We are looking for an AppSec Engineer to join our team and make a real impact on our Secure Software Development Lifecycle! As an AppSec Engineer your mission will be to be the driving force behind our secure development lifecycle. You wont just find bugs; you will help build the systems that prevent them. You will have the opportunity to help navigate the "Agentic Era" by building autonomous security guardrails, securing LLM-based workflows, and empowering developers to move fast without breaking security.
This is a mid-level role reporting to the AppSec Architect and can be based out of our Tel-Aviv or Jerusalem offices.
What you will be responsible for
Build & automate: Develop and maintain internal security tooling, automated workflows, and AI security agents.
Code integrity: Execute secure code reviews and provide actionable remediation guidance to engineering teams.
Vulnerability management: Lead the tracking, triaging, and reporting of security flaws across all product lines.
Best practice advocacy: Drive the adoption of secure coding standards, partnering with R&D and DevOps teams to embed security early and often.
Extend our D&R capabilities: Build scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents.
Document: Draft requirement documents for security products and innovative technologies.
Requirements:
2-4 years experience as an Application Security Engineer or similar role from a Software Development Company
In-depth knowledge in threat modeling, risk management, and security controls.
Experience with AI Security and Security AI.
Proficiency with OWASP Top 10: API, LLM, and Agentic applications.
Hands-on competency integrating security tools such as SAST, DAST, SCA, and API security testing.
Familiarity with CI/CD pipelines and Infrastructure as Code implementation.
Practical background in software development and coding.
Extensive knowledge of cloud technologies and cloud-native applications, AWS and GCP.
Cybersecurity certifications such as OSCP, GPEN, CSSLP - big advantage!
Fluent communication in Hebrew and English
The top candidate will also have
Endless curiosity and passion for emerging technology
Ability to handle prioritize and execute multiple tasks simultaneously.
Ability to work collaboratively across multiple departments.
Fluent in Hebrew & English - ability to lead meetings and present.
Strong communication and collaboration skills.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8535472
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time and English Speakers
XM Cyber is a leading hybrid cloud security company that’s changing the way organizations approach cyber risk. XM Cyber transforms exposure management by demonstrating how attackers leverage and combine misconfigurations, vulnerabilities, identity exposures, and more, across cloud and on-prem environments to compromise critical assets. With XM Cyber, you can see all the ways attackers might go, and all the best ways to stop them, pinpointing where to remediate exposures with a fraction of the effort. We are seeking a customer-focused Security Analyst to join our managed services team. As a Customer-Facing Security Analyst, you will play a critical role in delivering top-notch exposure remediation services to our clients. You will work closely with customers to assess, analyze, and mitigate exposures in their IT and cloud infrastructure, while providing expert guidance and maintaining strong client relationships. Responsibilities:
* Own and manage the primary technical relationship for a portfolio of enterprise customers, establishing yourself as their trusted security advisor and focusing on strategic security outcomes.
* Deliver continuous security posture assessments by leveraging the XM Cyber platform to translate complex technical findings into actionable, risk-based insights for customers.
* Master the XM Cyber platform to drive maximum value for customers, guiding them on configuration, best practices, and new features to ensure successful adoption and ROI.
* Drive remediation outcomes by acting as the liaison between customers and their internal teams (e.g., IT Operations, DevOps, Cloud Security), helping them prioritize efforts based on attack path analysis.
* Proactively track and report on progress, delivering regular status updates and executive-level business reviews (QBRs) that demonstrate risk reduction and program success.
* Act as a trusted advisor on exposure and attack path management, translating industry trends into proactive, tailored recommendations that enhance your customers' security posture.
* Partner with the broader account team, including Customer Success Managers and Support Engineers, to ensure a seamless customer experience. Act as the lead technical escalation point to resolve complex challenges and champion customer needs with internal teams like Product and R&D.
Requirements:
* 5+ years in a customer-facing cybersecurity role (e.g., Customer Success Manager, TAM, Security Consultant), with proven experience managing and retaining a portfolio of large enterprise clients. Experience in a managed security service (MSSP) or cybersecurity SaaS company is a strong plus.
* A strong technical foundation in security operations, specifically in vulnerability management, exposure remediation, and/or attack path management.
* Hands-on experience with major cloud platforms (AWS, GCP, Azure) and their security principles.
* Experience applying and advising clients on common security frameworks (NIST, CIS Controls, ISO 27001) and regulations (GDPR, HIPAA).
* Exceptional communication and presentation skills, with the ability to articulate complex technical concepts to both technical practitioners and executive stakeholders.
* Outstanding analytical abilities and an autonomous, self-driven learning style.
* Native-level fluency in English.

This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8358959
סגור
שירות זה פתוח ללקוחות VIP בלבד