30 days ago
Tel Aviv-Yafo, IsraelSenior / Staff+
H1B Sponsor
Responsibilities
- Shape security architecture by partnering with engineers early in the design phase.
- Work hands-on with engineering teams to secure real systems and review designs.
- Lead threat modeling and deep design reviews to identify trust boundaries and attack paths.
- Own security design for authentication, authorization, and APIs.
- Take ownership of complex security challenges across cloud-native and AI-driven systems.
- Drive secure-by-design practices at scale by building guardrails and reusable patterns.
- Secure AI/ML features in production by addressing various risks.
- Strengthen software supply chain and CI/CD security.
- Embed security into developer workflows with effective integration of security tools.
- Partner on high-severity vulnerabilities and incidents for root cause analysis.
- Raise the security bar across engineering by mentoring developers.
Requirements
- 8+ years of experience in Product Security, Application Security, or Security Architecture.
- Strong software engineering foundation with the ability to read code in languages like Java, Python, or JavaScript.
- Deep understanding of application security principles, including OWASP Top 10.
- Experience securing cloud-native SaaS environments, including containers and Kubernetes.
- Strong knowledge of authentication and authorization systems, including OAuth2 and secure API design.
- Hands-on experience integrating security into CI/CD pipelines and developer workflows.
- Experience with threat modeling and risk assessment methodologies.
- Ability to analyze vulnerabilities from code to architecture to production impact.
- Strong communication skills to influence engineering decisions.
