We are looking for a Senior Product Security Architect.
What your day will look like:
As a Senior Product Security Architect (Application Security), you will play a critical role in supporting our companys Secure Software Development Lifecycle (SSDLC).
Youll join an expanding group where your contributions can make a strong impact .
Youll have the chance to be part of the team that is in charge of security of the whole Platform, from design to implementation and deployment.
Responsibilities:
Collaborate with key stakeholders to identify and prioritize essential security requirements; inspire new security initiatives; advocate and ensure the allocation of resources for security during R&D planning sessions.
Partner with technical R&D experts to implement robust security requirements and develop effective mitigation strategies for identified risks on all stages of development, from design to implementation and deployment.
Develop and maintain deep expertise in the security aspects of technologies utilized by Axonius and share your knowledge across teams through documentation, presentations, and other learning initiatives, elevating our collective security awareness.
Requirements: Have 5+ years of experience in software development, with at least 3 years in dedicated security-related roles.
Know the field of Application Security and Web Application Security, including hands-on experience with threat modeling and performing security reviews of software architectures.
Know web application and cloud design patterns.
Strong in technical writing and able to produce clear, concise, and comprehensive security architecture documents, design specifications, and guidelines.
Have grasp of core technical knowledge: operating systems, networking, cloud computing (preferably AWS), and cryptography.
Strong written and verbal communication skills in English and Hebrew. Including experience collaborating with distributed teams and across multiple business functions.
Know in general relevant data protection regulations (e.g. GDPR).
Ready to work independently, take ownership of tasks, and drive them to completion.
Advantages:
Hands-on software development / DevOps / DevSecOps experience
Solid knowledge of EU and USA data protection regulations.
Professional certifications like Certified Information Systems Security Professional (CISSP), Offensive Security Certified Professional (OSCP), Cloud Architect or Cloud Security Professional.
Understanding of contemporary AI and GPT-like technologies applications for software development and their influence on product security.
Security Research and Leadership: Demonstrated security research activities (e.g., participation in bug bounties or credit for reporting CVEs), publications (e.g. blog posts or conference talks).
Bachelors or Masters degree in Computer Science, Engineering, or a related field.
This position is open to all candidates.