We are monday.com, a global software company transforming how businesses run. Our product suite can adapt to the needs of diverse industries and use cases within one powerful platform, empowering ~245,000 customers worldwide to reimagine how work gets done, drive greater efficiency, and scale like never before.
With over 2,500 employees across the globe, we grow by prioritizing transparency and knowledge sharing. We care about the impact you make, not the hours you clock, so we encourage initiative, ownership, and fresh thinking. We back our people with flexible work, wellness and mental health support, and a work environment built on collaboration.
monday.com is looking for an application security expert to provide application security services including secure coding techniques and reviews, education & awareness, processes and tools, security testing support and guidance for internal software development projects. You’ll join our Application Security Team based in our headquarters, Tel Aviv, Israel.
About The Role
- Provide guidance on security best practices and compliance and undertake security testing
- Identify Application security risks and requirements for new projects and system developments
- Sign-off on application security prior to live implementation
- Collaborate with the architecture and development teams to review the design and code for security vulnerabilities
- Embed/improve security threat modeling and secure coding in the development lifecycle
- Provide technical specialist advice to ensure that security standards are understood and can be complied with
- Develop security testing plans and integrate into the software development lifecycle
- Perform and oversee security testing and manage remediation of identified vulnerabilities
- End-to-end work on reported vulnerabilities as part of the bug bounty program
- Take part in the security incident response team
- Monitor and proactively report on current threats and vulnerabilities to application security
- Prepare and monitor application security metrics and KPIs
- Initiate and automate processes for detecting and monitoring the platform security and integrate security tools into the S-SDLC
Requirements
- At least 3 years of experience in software engineering.
- At least 2 years of experience in application security.
- In-depth knowledge of application security vulnerabilities, testing techniques, and the OWASP framework.
- Team player able to build relationships across the organization.
- In-depth understanding of secure web application development.
- Experience in web application and Agile development methodologies.
- Comprehensive knowledge of IT and information security subject matter.
- Exposure to methods of promoting security awareness.
- Strong communication (verbal/written) and influencing skills, with an ability to manage internal and external relationships up to senior levels of management.
- Anticipates problems and identifies long-term implications of decisions and actions.
- Ability to work and learn alone.
- Able to prioritize workload and drive work to set deadlines.
- Experience working with the hacker/pen-testing community.
Social Title
None
Social Description
None
Our Team
None
Position Type
None
Internal requirements
None
Top Skills
Similar Jobs at monday.com
What you need to know about the Los Angeles Tech Scene
Key Facts About Los Angeles Tech
- Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
- Key Industries: Artificial intelligence, adtech, media, software, game development
- Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
- Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering