דרושים » אבטחת מידע וסייבר » Application Security and Product Security

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 5 שעות
Location: Tel Aviv-Yafo
Job Type: Full Time and Hybrid work
In this Application Security Engineer role, you will work independently alongside the CISO, developers, and DevOps teams to help and design and implement a full SSDLC across a small-large enterprise. Utilizing good coding and technology skills, you will execute threat modeling, technical architecture reviews, and security assessments of APIs, gateways, and network protocols. You will be responsible for analyzing penetration testing (PT) reports, working directly with engineering to triage findings, estimate remediation efforts, and resolve vulnerabilities. Ultimately, you will drive the continuous improvement and automation of the organization's AppSec pipelines and processes.
Requirements:
- Code code understanding skill
- Security skills
- Threat modeling
- Cloud Security understanding
- Able to speak with R D teams
This position is open to all candidates.
 
Hide
הגשת מועמדות
עדכון קורות החיים לפני שליחה
8830874
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
25/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
our company builds the real-time 3D platform that powers games and interactive experiences, along with tools used across ads, automotive, aerospace, architecture, retail, energy, and government. Our Product Security team keeps that platform, and the software built on top of it, safe for millions of creators and their users.
We are seeking a Senior Application Security Engineer with profound expertise in application security. In this role, you will execute fundamental AppSec tasks, including threat modeling, secure design reviews, code evaluation, and vulnerability management, leveraging both manual methods and advanced AI tooling. You will also help secure the AI systems our company itself is building, including agentic tools and AI-assisted development workflows.
You will work directly with engineering teams across the US and EMEA.
What you will do
Lead threat modeling, secure design reviews, and penetration testing for our company products and services, from the engine and editor to cloud services, APIs, and internal platforms.
Perform deep code review and manual testing on high-risk systems, using AI-assisted review processes and covering areas automated tooling cannot fully reach.
Build and operate security automation. Use and extend AI-assisted tooling for continuous code review, finding triage, and automated penetration testing, and step in where human judgment is required.
Secure our company's AI and agentic systems. Assess AI-native products, LLM integrations, and agent workflows for the risks specific to them.
Partner with engineering teams to drive remediation, turning recurring findings into guardrails, secure defaults, and paved paths.
Investigate and respond to application security incidents, including root cause analysis and durable corrective action.
Contribute to our company's secure development lifecycle and to compliance work.
Requirements:
5+ years in application security, with a track record on complex, large-scale systems.
Strong command of secure coding and common vulnerability classes (OWASP Top 10 and beyond)
Hands-on secure development experience across several languages.
Practical penetration testing, security assessment, and vulnerability management experience with standard tooling (SAST, DAST, SCA, and manual techniques).
Experience with Cloud security (GCP, AWS, or Azure).
Working knowledge of authentication, authorization, cryptography, and secure architecture patterns.
Clear technical communication for both engineers and non-technical partners across regions.
Preferred Qualifications
Experience in the technology, gaming industry or Ad tech.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8796309
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
10/09/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking an experienced Security Engineering Lead to join the Cyber Security organization, reporting to the Corporate Security Engineering Manager under the CISO.

This is a senior technical lead role focusing on engineering and execution without direct people management responsibilities. This role combines hands-on security engineering to deliver end-to-end protection across corporate, cloud, and SaaS environments. You will not only define strategy and standards - you will build, configure, tune, and operate the technical controls that enforce them.

You will be responsible for implementing, managing, integrating and maintaining security systems across the organizations IT landscape. The role requires deep technical proficiency in multiple platforms and tools, combined with the ability to collaborate with Security, IT, Engineering, Product, GRC and other business units to reduce risks and embed strong security practices.

Your responsibilities will include:

Engineer, deploy, and continuously tune systems such as Identity & Access, Threat Detection & Response, Cloud & Network Security.
Define, enforce and maintain security policies & configurations across endpoints, email, SaaS, network, and cloud platforms.
Design and implement solutions to gain continuous visibility into systems and processes, sensitive data, data flows, misconfigurations, and exposure risks across cloud and multi-cloud environments.
Monitor, triage, and investigate security alerts and risks, collaborating with Security, IT, Network teams on escalation and remediation.
Conduct risk assessments and identify gaps in security controls across systems, pipelines, and business processes.
Support compliance and regulatory requirements (e.g., GDPR, ISO 27001, SOC 2) related to security and privacy.
Collaborate with Engineering, IT, Product, and GRC teams to embed security controls into systems, and workflows.
Maintain documentation, runbooks, and guidelines for operations, security posture management, and security practices.
Requirements:
6+ years of experience in IT security, with a strong focus on System, Network, Information, Cyber. With at least 3 years in a Security Engineering role.
Proven hands-on engineering experience with enterprise security platforms - including policy authoring, tuning, incident workflow configuration, and platform administration.
Experience securing data across cloud environments and SaaS platforms, including shadow IT and unmanaged data stores.
Strong understanding of identity and access management and data access governance principles.
Experience working cross-functionally with Security, IT, Engineering, Product, and GRC teams.
Strong analytical mindset with the ability to communicate security risks clearly to technical and non-technical stakeholders.
Excellent written and verbal communication skills in English.
Proactive, detail-oriented, and ownership-driven.
Hand-on experience with multiple technologies such as: XDR (Extended Detection & Response), SWG (Secure Web Gateway), DLP (Data Leakage Prevention), Email Security, Network security (Firewalls, NAC, NDR), IGA (Identity Governance & Administration), CASB (Cloud Access Security Broker), PAM (Privileged Access Management), EPM (Endpoint Privilege Management), BAS (Breach & Attack Simulation), Vulnerability Scanners, SIEM (Security Information & Event Management), SOAR (Security Orchestration, Automation & Response), CTI (Cyber Threat Intelligence), Patch Management, TPRM (Third-Party Risk Management), EASM (External Attack Surface Management).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8817717
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 2 שעות
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for an Application Security Engineer to join our Security Engineering team.

You will take ownership of strengthening security across our products, services, and development lifecycle. This includes identifying and addressing security gaps in application architecture and code, APIs and service-to-service communication, authentication and authorization flows, open source dependencies and third-party libraries, CI/CD pipelines and build systems, secrets handling, and AI-powered product features.

As a Security Engineer, you will dig into how our systems actually work, understand where the real risk is, and decide what needs to be built to close it. Some problems are solved by changing an architecture or a design pattern, others by implementing a new control, embedding a security gate into the pipeline, integrating and tailoring a security platform, or writing something from scratch. You will own that decision and the implementation that follows.

The Security Engineering team works as a group of all-rounders. Alongside your core focus, you will contribute to cloud and infrastructure security, corporate IT security, detection engineering, incident response, and our growing AI security work, both securing AI workloads and using AI to make our own security capabilities better.

What You Will Work On
Identify security gaps across our applications, services, and development lifecycle, then translate them into practical technical solutions.
Design and implement scalable security controls that address root causes and fit our architecture and engineering practices.
Review architectures and designs, run threat modeling, and guide R&D teams toward secure patterns before code is written.
Secure APIs, authentication and authorization flows, service-to-service trust, data handling, and multi-tenant boundaries.
Own the secure development lifecycle end to end, including security gates in GitHub Actions, SAST, SCA, secrets scanning, and dependency and supply chain risk.
Build reusable security capabilities, libraries, paved-road patterns, and developer-facing tooling that make the secure path the default path.
Build custom AI agents and AI-powered capabilities that improve our security tools, workflows, visibility, and control.
דרישות:
Requirements
At least 5 years of hands-on experience in application security, product security, security engineering, DevSecOps, or a related field.
Strong experience securing production applications and services, including APIs, microservices, and cloud-native workloads on AWS and Kubernetes.
Proven ability to identify security gaps, design appropriate controls, and take solutions through implementation.
Hands-on experience with secure code review, threat modeling, API security, and common vulnerability classes in modern application stacks.
Practical experience embedding security into CI/CD and GitOps workflows, including GitHub Actions, SAST, DAST, SCA, and secrets scanning.
Strong understanding of authentication and authorization, session management, secrets management, cryptography in practice, TLS, SSO, SAML, and OIDC.
Ability to read and write code in at least one modern language, and enough engineering depth to work as a peer to developers.
A broad security mindset, strong engineering judgment, and the ability to collaborate effectively with technical teams.

Nice to Have
Experience building AI agents, LLM-based tools, or AI-powered security capabilities.
Experience assessing or securing AI workloads, including data exposure, prompt injection, agent permissions, and third-party integrations.
Experience with ASPM platforms, WAF, bot and abuse prevention, or runtime application protection.
Familiarity with cloud and infrastructure security, Terraform, policy as code, and container security.
Offensive security background, such as penetration testing, bug bounty, or exploit development.
Experience working in a regulated fintech or financial services environment.#EN המשרה מיועדת לנשים ולגברים כאחד.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8831047
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
17/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Security Lead to join our companys R&D organization, taking a central, cross-functional role in shaping the security posture of our products. This role combines deep hands-on expertise with cross-organizational leadership, working closely with senior leaders to shape and implement security strategy across all product lines. You will lead end-to-end security initiatives, influence engineering practices at scale, and play a critical role in ensuring our products meet the highest security standards.
Key Responsibilities
Lead security in the R&D organization by professionalism and cooperation across our company
Maintain and develop the Secure Development Life Cycle of all our companys Products Organization, work with R&D, QA, Sales, Support, external researchers, and customers to make the cyber landscape a safer place.
Conduct architectural security reviews and threat modeling for R&D
Full triage for our company's VDP and BBP reports, including analyzing reports, calculating severities and communications with reporters.
Define and develop security training to implement cross organization
Be a first responder in security incidents, including leading and defining actions to resolution
Manage and monitor our company's SCA, SAST, DAST tools.
Requirements:
Proven ability to lead and influence leaders across the organization.
In-depth knowledge of Secure Development Life Cycle (SDLC) processes, secure architecture, third-party tools, and security policies.
Threat modeling & secure design - Ability to review architectures, identify abuse cases, and guide developers on secure design decisions early in the lifecycle.
Expertise in identifying, analyzing, and mitigating security vulnerabilities, including familiarity with Common Vulnerabilities and Exposures (CVE) and the Common Vulnerability Scoring System (CVSS).
Hands-on experience with AppSec tooling - SAST, DAST, SCA (e.g., SonarQube, Snyk, JFrog Xray), including tuning, triaging results, and integrating into CI/CD pipelines.
Experience with vulnerability management and the ability to interpret and apply security standards, guidelines, and regulations.
Proficiency in secure coding practices and the ability to conduct code reviews for security vulnerabilities.
Familiarity with incident response processes, security monitoring, and threat intelligence.
Offensive mindset - Ability to think like an attacker (manual testing, basic exploitation techniques) to validate real impact and reduce false positives.
Advantage:
Prior experience in software development.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8785718
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
01/09/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a Senior Security Engineer.
As a Senior Product Security Engineer, you will help ensure that security is built into the products, platforms, AI systems, and clinical workflows that support healthcare providers and patients at scale. This is a hands-on technical role focused on securing real systems in production, influencing architecture, and partnering closely with engineering, AI, DevOps, product, quality and regulatory.
You will work across cloud-native services, medical imaging workflows, healthcare integrations, AI/ML pipelines, APIs, data flows, and regulated product development processes. Your work will directly support ability to deliver secure, reliable, and trusted clinical AI solutions to healthcare organizations worldwide.
What Makes This Role Unique :
Clinical AI with real-world patient impact - we operate in an environment where security is not only about protecting systems and data. Security decisions can affect clinical workflows, care-team coordination, customer trust, and patient safety.
Highly sensitive healthcare data - You will help protect medical imaging data, clinical metadata, PHI/PII, customer environments, and AI-driven workflows that require strong privacy, access control, data protection, and auditability.
Security for AI/ML and medical imaging systems - The role extends beyond traditional AppSec into AI/ML security, data pipeline protection, inference integrity, model-related risks, and misuse scenarios in clinical workflows.
Complex healthcare integrations - we integrates with hospital systems and healthcare workflows that may include PACS, EHR, VNA, RIS/worklists, scheduling systems, and communication platforms. You will help secure the data flows, authentication models, APIs, and deployment patterns behind these integrations.
Engineering-driven security in a regulated environment - This is not a checkbox compliance role. However, because operates in healthcare and clinical AI, security must be practical, evidence-based, and aligned with regulatory, customer, and quality expectations.
Cloud-native scale and production ownership - You will work with modern cloud infrastructure, Kubernetes, containers, CI/CD pipelines, identity and access management, observability, vulnerability management, and software supply-chain controls.
דרישות:
5+ years of experience in Product Security, Application Security, Cloud Security, or a similar hands-on security engineering role.
Strong hands-on experience securing production systems, not only performing assessments or reviews.
Strong understanding of secure design, threat modeling, and architecture risk analysis.
Deep knowledge of application security, including OWASP Top 10, API security, authentication, authorization, access control, secure session handling, input validation, and modern attack vectors.
Experience securing distributed systems, APIs, web applications, backend services, and cloud-native architectures.
Strong experience with cloud environments, especially AWS and/or Azure, including IAM, network security, encryption, logging, monitoring, and workload security.
Experience with Kubernetes, containers, infrastructure-as-code, CI/CD pipelines, and modern DevOps workflows.
Practical experience with security tooling such as SAST, SCA, IaC scanning, container scanning, secrets detection, SBOM tools, vulnerability scanners, and cloud security tools.
Experience with vulnerability management, risk prioritization, remediation planning, and working with engineering teams to fix issues at scale.
Strong understanding of software supply-chain security, including dependency risk, build/release integrity, artifact security, and third-party component governance.
Experience working with modern development stacks such as Python, Java, JavaScript/TypeScript, React, microservices, APIs, and cloud-native services.
Ability to influence engineers through technical credibility, practical guidance, and strong collaboration.
Strong commu המשרה מיועדת לנשים ולגברים כאחד.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8805560
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
Lead secure application design and embed security across the SDLC - from threat modeling to CI/CD.
About the Role
Lead secure application design and support development teams throughout the SDLC. You'll integrate and optimize security controls such as SAST, DAST, SCA, and secrets scanning within CI/CD pipelines, review security findings, perform threat modeling, and work with engineering teams to prioritize and implement effective mitigations.
What You'll Do
Design and review secure application architectures across web, API, microservices, and AI-enabled environments.
Perform threat modeling and hands-on security reviews focused on the OWASP Top 10, API risks, business logic flaws, and data exposure.
Review application code, architecture, and security controls to identify practical risks and remediation paths.
Help engineering teams embed security into the SDLC, including SAST, DAST, SCA, and CI/CD security controls.
Translate technical vulnerabilities into clear business risks for product, engineering, and executive stakeholders.
Requirements:
4+ years in cybersecurity, with strong application security or secure software development experience.
Proven experience designing secure application architectures and reviewing complex application ecosystems.
Ability to audit code in at least one programming language.
Hands-on experience with threat modeling methodologies, such as STRIDE.
Experience with SAST, DAST, SCA, findings triage, and guiding engineers through remediation.
Strong understanding of modern application stacks, including APIs, microservices, cloud-native applications, and AI/LLM integrations.
Excellent communication skills with engineers, product teams, and leadership.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8796706
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
18/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Security Engineer with 1-2 years of experience to join our Internal Security team.
This role combines hands-on cloud and security operations with support for GRC and compliance activities.
You will be involved in securing our cloud, SaaS, and AI-driven systems, monitoring security events, and helping maintain our overall security posture. In parallel, you will support customer security questionnaires and compliance processes.

What You'll Do:
Monitor, triage, and investigate security alerts and incidents across cloud and security tools (EDR, CASB, ZTNA, SaaS security platforms, and identity providers), and support response and remediation activities
Assist in securing cloud environments (AWS/GCP/Azure), including IAM, access controls, network security, and CI/CD pipeline security
Work closely with DevOps and IT teams to implement and enforce security best practices across infrastructure, endpoints, and SaaS systems
Support vulnerability management processes, including scanning, prioritization, and remediation tracking
Support risk management processes by identifying, assessing, and tracking risks, including vulnerability management, remediation efforts, and control gaps
Support customer security questionnaires (RFPs/RFIs) with accurate technical responses
Assist in maintaining compliance with frameworks such as SOC 2 and ISO 27001, including preparing audit evidence and documentation
Requirements:
Who You Are?
1-2 years of experience in cybersecurity, cloud security, and security operations
Basic hands-on experience with cloud platforms (AWS, GCP, or Azure)
Understanding of core security concepts: IAM, networking, least privilege, and secure configurations
Experience or strong interest in collaborating with DevOps and IT teams, alongside a focus on AI security, data protection, and emerging technologies
Familiarity with security tools such as EDR, vulnerability scanners, or SaaS security solutions
Strong analytical and troubleshooting skills, with high attention to detail and the ability to manage multiple tasks
Good communication skills and ability to work cross-functionally
Willingness to learn and grow in both technical security and GRC domains
Nice to Have:
Experience with cloud security best practices and securing CI/CD pipelines and infrastructure-as-code (Terraform, etc.)
Familiarity with identity systems (Okta, Azure AD, etc.)
Familiarity with compliance frameworks such as SOC 2, ISO 27001, or NIST
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8787070
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
10/09/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
This role is responsible for leading the organizations security architecture across corporate networks and cloud environments, ensuring secure design and implementation of enterprise infrastructure at scale.

The ideal candidate combines deep expertise in network and cloud security with strong leadership capabilities. You will define and drive security architecture across hybrid environments, working closely with IT, Infrastructure, Network, DevOps, and Security teams to ensure robust, scalable, and resilient security controls.

Your responsibilities will include:

Lead and manage the security architecture domain, including security architects and/or senior engineers.
Define and maintain security architecture standards, guidelines, and reference designs across corporate and cloud environments.
Act as the primary authority on enterprise security architecture across networks, identity, endpoints, and cloud platforms.
Design and evolve secure enterprise network architectures, including segmentation, Zero Trust, and hybrid connectivity.
Define and enforce security controls for corporate networks, data centers, and remote access solutions (ZTNA, proxies, NAC).
Lead architecture and selection of network security technologies (e.g., firewalls, secure gateways, access control solutions).
Lead security architecture across cloud platforms and hybrid environments.
Define secure reference architectures for cloud networking, identity, and workload protection.
Ensure proper implementation of cloud security controls, including IAM, segmentation, encryption, and monitoring.
Define security architecture for endpoints and identity, including EDR/XDR, device hardening, SSO, MFA, and privileged access.
Ensure secure baseline configurations and access control mechanisms across corporate and cloud environments.
Identify architectural risks and security gaps and drive mitigation strategies across infrastructure and cloud environments.
Establish and enforce architecture review processes and governance for new systems and changes.
Collaborate with SOC, Vulnerability Management, IT, and Infrastructure teams to improve overall security posture.
Contribute to the cyber security strategy and roadmap, including adoption of modern models such as Zero Trust.
Requirements:
7+ years of experience in cyber security, with a strong focus on cloud security.
2+ years of experience leading or managing security architects or senior security engineers.
Deep expertise in enterprise network security (firewalls, segmentation, VPN, proxies, NAC, etc.).
Strong hands-on experience with cloud platforms (AWS, GCP, Azure) and cloud security best practices.
Strong understanding of identity and access management (IAM), Active Directory / Entra ID, and privileged access controls.
Experience securing hybrid environments (on-premise + cloud).
Hands-on experience with enterprise security technologies (e.g., Palo Alto, Check Point, Cisco, Zscaler, CrowdStrike, Microsoft Defender).
Strong understanding of Zero Trust architecture principles.
Experience working cross-functionally with IT, Infrastructure, Network, DevOps, and Security teams.
Excellent analytical, problem-solving, and communication skills in English.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8817757
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Platform Security Director to lead the engineering of our security infrastructure. Your mission is to build a Security Machine that is as sophisticated as our AI. You will move us beyond traditional "defense" into a "Secure-by-Default" reality, where our multi-cloud infrastructure (AWS and Azure) is hardened, automated, and resilient by design.
Youll Own:
The end-to-end security strategy across Application Security, Cloud (AWS/Azure), and Platform layers, ensuring a Secure-by-Default framework, as measured by deployment coverage, critical vulnerability reduction, and developer adoption metrics.
A unified Security Engineering organization covering AppSec, SecDevOps, and AI Security leadership, collaboration points with adjacent teams (Infrastructure, R&D, Product Engineering), and building and mentoring a high-performing team.
Lead our Platform Security domain - from Layer 7 protections to AWS architecture, security tooling, automated risk scoring, and AI-assisted automation workflows that improve detection and remediation times.
Security controls (WAF, Rate Limiting) embedded into the SDLC and CI/CD pipelines, including mandatory security gates, artifact scanning, and automated deployment checks.
Lead our AI strategy - enabling secure use in our platform products as well as for our internal engineering usage, and scaling AI security governance and controls.
The evolution of scalable infrastructure security, including Kubernetes, containers, IAM, and Zero Trust architectures, strengthening Kubernetes and cloud security posture.
Own and execute the comprehensive Vulnerability Management program, from discovery (SAST/DAST/OSS scanning) through remediation tracking, and manage the external Bug Bounty program, with a focus on improving remediation SLAs and automation coverage.
Mature secure-by-default engineering practices across the SDLC.
Increase developer adoption of automated security tooling.
Youll Solve:
Eliminating manual bottlenecks through code-driven guardrails and frictionless developer experiences.
Securing complex production systems and multi-tenant AI architectures in cloud-native production environments, with a focus on model integrity, training data provenance, data exfiltration prevention, and minimizing unique risks associated with Large Language Models (LLMs), by applying specific AI threat models.
Operationalizing Red/Purple Team exercises, penetration testing, and the Bug Bounty program to ensure a continuous feedback loop that drives proactive risk reduction.
Youll Impact:
Support a culture where security is embedded into the foundation of engineering
Turn security into a strategic product advantage and customer trust differentiator
Improve developer experience by making the secure path the easiest path
Increase engineering velocity while strengthening platform resilience
Shape the future intersection of Security, AI, and Platform Engineering
Create scalable systems, processes, and relationships that grow with the companys innovation pace.
Requirements:
An Experienced Leader: 10+ years in Security/Software Engineering with a track record of scaling departments in high-growth R&D environments.
A Technical Architect: Deep expertise in AWS/Kubernetes and modern platform security practices, Infrastructure-as-Code (Terraform/Crossplane), and secure coding (Java/Python/TypeScript).
A Systems Thinker: You have a proven track of building security machines from the ground up, with a people-first mindset, technology, and process.
Your work ensures that as our company defines the future of AI-driven revenue, we do so on the most secure and resilient platform in the industry, building customer trust and promoting responsible AI adoption.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8788377
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 8 שעות
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a Senior Product Security Architect.
As a Senior Product Security Architect, you will join a highly technical, fast-moving Product Security team to advance and secure Axonius's platform and its modern AI-driven capabilities. Operating in an environment with deep R&D collaboration and a hybrid schedule, you will own the development lifecycle's security strategy, ensuring modern cloud and distributed systems are engineered safely by design. This role directly supports core development teams across Israel and Portugal, ensuring robust posture alignment from initial planning through deployment.
Responsibilities
Collaborate with R&D teams to identify, prioritize, and drive security requirements and mitigation strategies throughout the development lifecycle.
Conduct architecture, design, and threat modeling security reviews for web, cloud (AWS), and distributed systems.
Produce explicit, actionable security architecture documents, design specifications, and technical guidelines for engineering.
Lead incident response efforts during active product cyber security events, driving cross-functional remediation across engineering teams.
Requirements:
5+ years of hands-on software development experience with at least 3 years dedicated to application security or product security roles.
Professional experience analyzing, reading, and evaluating codebase architecture within a product-centric tech stack.
Hands-on experience working directly in AWS cloud environments and building application threat models.
Active experience utilizing AI/LLM-based tools (e.g., Claude, Augment) to optimize development workflows, research, or productivity.
Professional fluency in both written and verbal communication in English.
Preferred Qualifications:
Hands-on security architecture experience integrating and securing AI/LLM technologies directly within modern commercial B2B products.
Professional experience designing security frameworks for both modern cloud/SaaS stacks and legacy medical device/hardware environments.
Industry-recognized security certifications such as CISSP, OSCP, or CCSP.
Proven track record of published security research, CVE submissions, bug bounty participation, or security conference presentations.
Bachelors or Masters degree in Computer Science, Engineering, or a related technical discipline.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8830178
סגור
שירות זה פתוח ללקוחות VIP בלבד