Qualifications
Responsibilities:Collaborate with development and product teams to seamlessly integrate security best practices into the SDLC. Lead threat modeling and conduct architectural security reviews to proactively pinpoint and address risks. Perform comprehensive security assessments, including code reviews, vulnerability scans, penetration testing, and secure product design evaluations. Stay informed on emerging security threats, vulnerabilities, and industry trends to ensure AppsFlyer remains ahead of evolving risks. Engage in security incident response activities, including root cause analysis and implementing post-incident improvements. Automate security processes and incorporate security tools into CI/CD pipelines. Develop and deliver training sessions on secure coding practices for engineering teams. Requirements:4+ years of experience in Application Security, Penetration Testing, or Product Security within a SaaS environment. Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience). In-depth knowledge and hands-on experience in web application security, including familiarity with the OWASP Top 10, authentication, encryption, and secure coding principles. Proficiency in scripting or programming languages (such as Python, JavaScript, Go) for security automation. Experience with cloud security best practices (AWS, GCP, or Azure). Practical experience with DevSecOps and embedding security tools into CI/CD workflows. Excellent communication skills, capable of articulating security risks and recommendations to both technical and non-technical stakeholders, including executive management.
About the job
Join AppsFlyer’s dedicated Security team as a Senior Application Security Engineer, where you'll play a pivotal role in safeguarding our products and applications. In this influential position, you will spearhead our security design initiatives, champion secure coding practices, and rigorously validate our services against established security standards.
Collaborating closely with our Research and Development (R&D) and Product teams, you’ll proactively identify, mitigate, and prevent security risks throughout the software development lifecycle (SDLC). As a seasoned engineer, you will take charge of security initiatives, mentor developers in security best practices, and significantly contribute to enhancing the security posture of AppsFlyer’s offerings.
The perfect candidate will be highly motivated, eager to learn, and possess a strong “security by design” mindset. This role offers exciting career development opportunities, allowing you to expand your expertise in Application Security (AppSec), DevSecOps, and cloud security.
About AppsFlyer
AppsFlyer is a leading mobile attribution and marketing analytics platform, empowering marketers to optimize their campaigns and drive growth. With a commitment to innovation and security, we provide cutting-edge solutions that help businesses succeed in a competitive landscape.