Senior Application Security Engineer
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Application Security Engineer: Leading product and application security efforts, driving security design and ensuring secure coding practices for ’s services with an accent on threat modeling, vulnerability management, and integrating security into the SDLC. Focus on automating security processes, conducting code reviews, and mentoring developers on best practices.
Location: Herzliya
Company
is a global product company focused on mobile attribution and marketing analytics, operating from 25 offices across 19 countries.
What you will do
- Partner with development and product teams to integrate security best practices into the SDLC.
- Lead threat modeling and architecture security reviews to proactively identify and mitigate risks.
- Conduct security assessments, including code reviews, vulnerability scans, and penetration testing.
- Automate security processes and integrate security tools within CI/CD pipelines.
- Develop and deliver secure coding training to engineering teams.
Requirements
- 4+ years of experience in Application Security, Penetration Testing, or Product Security in a SaaS company.
- Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience).
- Deep understanding and hands-on experience of web application security, including OWASP Top 10, authentication, encryption, and secure coding principles.
- Proficiency in scripting or programming languages (Python, JavaScript, Go, etc.) for security automation.
- Experience with cloud security best practices (AWS, GCP, or Azure).
- Hands-on experience with DevSecOps and integrating security tools into CI/CD pipelines.
Nice to have
- Being introduced by an team member.
Culture & Benefits
- Work within a global company operating from 25 offices across 19 countries.
- Benefit from a diverse and multicultural world in which the company operates.
- Ensure equal opportunities for all employees and promote diverse talent.
- Curiosity, diversity, and innovation are valued and encouraged.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →