Application Security Lead
Cyera
שכר לא צויןTel Aviv, Tel Aviv-Yafo, Israel, מהמשרדלידמשרה מלאה
משרה חיצונית, ההגשה באתר החברהאושר שהמשרה פתוחה לפני 11 שעות
Own product security across R&D through hands-on testing, architecture reviews, and risk management. Build the security function and help keep Cyera’s platform and customer data secure as the company ships new products.
מה תעשו
- Lead adversarial testing of code, infrastructure, and architecture, including red team exercises and an internal bug bounty.
- Review threat models and security architecture for services, integrations, cloud connectors, and multi-tenant components.
- Maintain an attack-surface map and oversee controls for tenant isolation, authorization, secrets, and customer data boundaries.
- Define security standards, severity models, security gates, and exception processes for development and production.
- Build secure development patterns, tooling, automation, and a security champions network across R&D.
- Prepare engineering teams for incidents and represent product security in customer reviews and security discussions.
דרישות
- 8+ years in application security or product security, including hands-on ownership of a security program.
- Deep expertise in authentication and authorization, multi-tenant isolation, API and web security, cryptography, and secrets management.
- Strong engineering background, including writing code in Python, Go, TypeScript, Java, or similar.
- Cloud-native security experience with AWS, GCP, or Azure, including IAM, Kubernetes, CI/CD, and infrastructure-as-code.
- Experience embedding security across the development lifecycle and leading security outcomes across engineering teams.
יתרון
- Experience at a cybersecurity startup or cloud-native SaaS company with a multi-tenant platform.
- Offensive security experience, such as penetration testing, vulnerability research, or exploit development.
- Experience building or running a bug bounty program.
- Security experience with AI/ML systems, LLM applications, or agentic architectures.
תנאי סף
- 8+ years of experience in application security or product security
Application SecurityThreat ModelingRed TeamingCloud SecurityMulti-Tenant SecuritySecure SDLCPythonKubernetes