FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Senior Application Security Engineer
Cross RiverSenior Application Security Engineer advising development teams on secure systems at Cross River. Collaborating with engineering leadership to ensure secure architecture from day one.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in secure coding principles, AppSec tooling integration, and compliance frameworks while effectively mentoring and enabling developers to adopt secure practices. Proficient in facilitating threat modeling and design reviews to enhance security outcomes within engineering teams.
Highest-signal resume keywords
Software Security EngineeringAppSec Tooling IntegrationSecure Coding PrinciplesCompliance FrameworksMentoring and Training
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
JavaScriptTypeScriptPythonGoJavaC#Threat ModelingAPI SecuritySecure Design TechniquesCloud Native Security
Soft Skills
Excellent CommunicationCollaborative MindsetStorytelling Skills
Tools & Technologies
SASTSCAIaC ScannersSecret ScanningCI/CD Pipelines
Industry Keywords
PCI DSSSOC 2FFIECNISTOWASPASVS
Tech Stack
Tools & technologiesAWSAzureCloudGoJavaJavaScriptPythonSDLCTypeScript
About the role
Key responsibilities & impact- Mentor, coach, and educate developers on secure coding through workshops, training sessions, pair reviews, and ongoing guidance
- Lead and scale a Security Champions program embedded within engineering teams
- Facilitate threat modeling sessions and design reviews, partnering with teams early in the process to improve security outcomes
- Collaborate with engineering leadership to ensure secure architecture patterns, API security practices, and design principles are built in from day one
- Integrate and tune developer-friendly AppSec guardrails into CI/CD pipelines (SAST, SCA, IaC, secret scanning) while minimizing noise for developers
- Translate vulnerabilities into clear, actionable remediation guidance that developers can easily implement
- Support security awareness across engineering by building engaging internal content, best-practice playbooks, and reusable patterns
- Partner with compliance teams to produce documentation and SDLC evidence supporting FFIEC, PCI DSS, and SOC 2 requirements
- Stay current on emerging threats, developer tooling, and secure engineering patterns — sharing insights regularly with the team
Requirements
What you’ll need- Native level fluency in English and Hebrew (written and verbal) - Must
- 7+ years in software security engineering, including 4-5 years in AppSec of secure development enablement roles
- Strong coding ability in one or more modern languages (JavaScript/TypeScript, Python, Go, Java, C#)
- Proven experience teaching, mentoring, or enabling developers through training, code reviews, threat modeling, internal talks, or champion programs
- Deep understanding of secure coding principles, common vulnerability classes, API security, and secure design techniques
- Hands-on Experience with AppSec tooling (SAST, SCA, IaC scanners, secret scanning) and integrating them into the developer workflows
- Experience with cloud native architectures and security in AWS or Azure
- Familiarity with compliance and security frameworks (PCI DSS, SOC 2, FEIEC, NIST, OWASP, ASVS)
- Excellent communication and storytelling skills - able to break down complex issues into simple, practical guidance
- A collaborative mindset and passion for building a positive, empowering security culture
Benefits
Comp & perks- Flexible hybrid model: 3 days a week in the office
- ₪1,000 net monthly wellness benefit – from therapy to Pilates to your kid’s art class
- Full Keren Hishtalmut, private health & dental insurance
- Donation matching, volunteering days, team outings, and mentorship programs
- A mission-driven culture that values ownership, trust, and meaningful impact