Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Cross River

Senior Application Security Engineer

Cross River

Senior Application Security Engineer advising development teams on secure systems at Cross River. Collaborating with engineering leadership to ensure secure architecture from day one.

Posted 7/26/2026full-timeJerusalem • 🇮🇱 IsraelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in secure coding principles, AppSec tooling integration, and compliance frameworks while effectively mentoring and enabling developers to adopt secure practices. Proficient in facilitating threat modeling and design reviews to enhance security outcomes within engineering teams.

Highest-signal resume keywords
Software Security EngineeringAppSec Tooling IntegrationSecure Coding PrinciplesCompliance FrameworksMentoring and Training

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
JavaScriptTypeScriptPythonGoJavaC#Threat ModelingAPI SecuritySecure Design TechniquesCloud Native Security
Soft Skills
Excellent CommunicationCollaborative MindsetStorytelling Skills
Tools & Technologies
SASTSCAIaC ScannersSecret ScanningCI/CD Pipelines
Industry Keywords
PCI DSSSOC 2FFIECNISTOWASPASVS

Tech Stack

Tools & technologies
AWSAzureCloudGoJavaJavaScriptPythonSDLCTypeScript

About the role

Key responsibilities & impact
  • Mentor, coach, and educate developers on secure coding through workshops, training sessions, pair reviews, and ongoing guidance
  • Lead and scale a Security Champions program embedded within engineering teams
  • Facilitate threat modeling sessions and design reviews, partnering with teams early in the process to improve security outcomes
  • Collaborate with engineering leadership to ensure secure architecture patterns, API security practices, and design principles are built in from day one
  • Integrate and tune developer-friendly AppSec guardrails into CI/CD pipelines (SAST, SCA, IaC, secret scanning) while minimizing noise for developers
  • Translate vulnerabilities into clear, actionable remediation guidance that developers can easily implement
  • Support security awareness across engineering by building engaging internal content, best-practice playbooks, and reusable patterns
  • Partner with compliance teams to produce documentation and SDLC evidence supporting FFIEC, PCI DSS, and SOC 2 requirements
  • Stay current on emerging threats, developer tooling, and secure engineering patterns — sharing insights regularly with the team

Requirements

What you’ll need
  • Native level fluency in English and Hebrew (written and verbal) - Must
  • 7+ years in software security engineering, including 4-5 years in AppSec of secure development enablement roles
  • Strong coding ability in one or more modern languages (JavaScript/TypeScript, Python, Go, Java, C#)
  • Proven experience teaching, mentoring, or enabling developers through training, code reviews, threat modeling, internal talks, or champion programs
  • Deep understanding of secure coding principles, common vulnerability classes, API security, and secure design techniques
  • Hands-on Experience with AppSec tooling (SAST, SCA, IaC scanners, secret scanning) and integrating them into the developer workflows
  • Experience with cloud native architectures and security in AWS or Azure
  • Familiarity with compliance and security frameworks (PCI DSS, SOC 2, FEIEC, NIST, OWASP, ASVS)
  • Excellent communication and storytelling skills - able to break down complex issues into simple, practical guidance
  • A collaborative mindset and passion for building a positive, empowering security culture

Benefits

Comp & perks
  • Flexible hybrid model: 3 days a week in the office
  • ₪1,000 net monthly wellness benefit – from therapy to Pilates to your kid’s art class
  • Full Keren Hishtalmut, private health & dental insurance
  • Donation matching, volunteering days, team outings, and mentorship programs
  • A mission-driven culture that values ownership, trust, and meaningful impact