Application Security Architect

Tel-Aviv
A leading cybersecurity and cloud consulting company
Full Time

An opportunity to join a cybersecurity company providing hands-on security services and securing critical Cloud and On-Prem environments. The role includes leading secure application design and supporting development teams throughout the SDLC, integrating security controls such as SAST, DAST, SCA, and secrets scanning into CI/CD pipelines, performing threat modeling, and working closely with engineering teams to prioritize and implement effective security mitigations.

An opportunity to join a cybersecurity company providing hands-on security services and securing critical Cloud and On-Prem environments. The role includes leading secure application design and supporting development teams throughout the SDLC, integrating security controls such as SAST, DAST, SCA, and secrets scanning into CI/CD pipelines, performing threat modeling, and working closely with engineering teams to prioritize and implement effective security mitigations.

What you’ll do:

  • Design and review secure application architectures across web, API, microservices, and AI-enabled environments.
  • Perform threat modeling and hands-on security reviews focused on OWASP Top 10, API risks, business logic flaws, and data exposure.
  • Review application code, architecture, and security controls to identify practical risks and remediation paths.
  • Help engineering teams embed security into the SDLC, including SAST, DAST, SCA, and CI/CD security controls.
  • Translate technical vulnerabilities into clear business risks for product, engineering, and executive stakeholders.

Requirements:

  • 4+ years in cybersecurity, with strong application security or secure software development experience.
  • Proven experience designing secure application architectures and reviewing complex application ecosystems.
  • Ability to audit code in at least one programming language.
  • Hands-on experience with threat modeling, such as STRIDE.
  • Experience with SAST, DAST, SCA, findings triage, and guiding engineers through remediation.
  • Strong understanding of modern application stacks, including APIs, microservices, cloud-native applications, and AI/LLM integrations.

Apply Here

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.