JFrog

Application Security Engineer

JFrog
Apply
1 day ago
Tel Aviv-Yafo, IsraelSenior

Responsibilities

  • Develop internal application security tools, automations, and AI agents.
  • Design and implement SSDLC practices and automated security controls across CI/CD pipelines.
  • Build and operate scalable vulnerability management frameworks for cloud-native services and SaaS products.
  • Integrate security into development and DevOps processes through threat modeling, SAST, DAST, and SCA.
  • Partner with Product, Engineering, DevOps, and Security teams to embed security throughout development.
  • Conduct or support secure code reviews and vulnerability remediation strategies.
  • Track, triage, and report vulnerabilities across product lines.
  • Support adoption of secure development best practices.

Requirements

  • 6–7 years of experience in Application Security and Product Security.
  • Deep knowledge of application security and vulnerabilities.
  • Strong coding or scripting experience with Python, Go, Java, or JavaScript.
  • Hands-on experience with CI/CD pipelines, security tools, and DevSecOps practices.
  • Familiarity with cloud-native architectures, containers, and Kubernetes.
  • Understanding of software development processes and secure coding principles.
  • Strong communication and collaboration skills.
  • Penetration testing knowledge is preferred.
  • Familiarity with machine learning and AI concepts applied to security, such as anomaly detection and predictive analytics, is advantageous.
JFrog

About JFrog

1,001-5,000 employees
Contact me