AdTechTalent
Engineering6 months agoOn-site

AppsFlyer

Senior Application Security Engineer

application securitysecurity automationpenetration testingcloud securityDevSecOpsCI/CDOWASPsecure codingthreat modelingsecurity assessments

Key details

Salary

Not specified

Employment type

Full-time

Seniority

Senior

Years experience

3-5

Location

Herzliya, Israel

Full job description

AppsFlyer is seeking a senior Application Security Engineer to lead product and application security efforts. Responsibilities include integrating security best practices into the SDLC, leading threat modeling and architecture security reviews, conducting security assessments such as code reviews and penetration testing, staying current with security threats and trends, supporting incident response, automating security processes, and delivering secure coding training. Requirements include 4+ years in Application Security or related fields in SaaS, a relevant bachelor's degree or equivalent experience, expertise in web application security (OWASP Top 10, authentication, encryption), proficiency in scripting/programming (Python, JavaScript, Go), experience with cloud security (AWS, GCP, Azure), DevSecOps and CI/CD integration, strong communication skills, and experience in large-scale R&D environments. Location: Herzliya, Israel.

What you'll do

  • Partner with development and product teams to integrate security best practices into the SDLC
  • Lead threat modeling and architecture security reviews to proactively identify and mitigate risks
  • Conduct security assessments, including code reviews, vulnerability scans, penetration testing, and secure product design reviews
  • Stay up to date with emerging security threats, vulnerabilities, and industry trends
  • Support and contribute to security incident response activities, including root cause analysis and post-incident improvements
  • Automate security processes and integrate security tools within CI/CD pipelines
  • Develop and deliver secure coding training to engineering teams

Requirements

  • 4+ years of experience in Application Security, Penetration Testing, or Product Security in a SaaS company
  • Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience)
  • Deep understanding and hands-on experience of web application security, including OWASP Top 10, authentication, encryption, and secure coding principles
  • Proficiency in scripting or programming languages (Python, JavaScript, Go, etc.) for security automation
  • Experience with cloud security best practices (AWS, GCP, or Azure)
  • Hands-on experience with DevSecOps and integrating security tools into CI/CD pipelines
  • Strong communication skills, with the ability to explain security risks and recommendations to technical and non-technical stakeholders, including executive management
  • Experience working with large-scale, complex R&D environments

Tech stack

PythonJavaScriptGoAWSGCPAzureCI/CDDevSecOpsOWASP Top 10

Apply now

Ready to take the next step in your career? Click the button below to continue to the application process.

Similar jobs

More roles worth a look

Related opportunities based on specialty and working model so candidates can keep momentum.