CareerPlanSign in

Application Security Lead

Tel Aviv, IsraelFull-time2026-10-05 → 2026-10-08

Core

Lead application security and DevSecOps strategy, embedding security into the SDLC for a global mobility platform serving Fortune 500 companies. (via careerplan.io/jobs/A0-002-46-A6A-application-security-lead-at-gett)

Role type

Senior Application Security Lead (DevSecOps)

Builds

Secure CI/CD pipelines, mobile and API security controls, and a mature DevSecOps culture.

Domain

Mobility / Transportation / Cloud Security

Required skills

Application Security, DevSecOps, Threat Modeling (STRIDE), API Security, Mobile Security (iOS/Android), SAST/DAST/SCA, Cloud Security (AWS/GCP), Vulnerability Management, Security Champions Program, Compliance (PCI-DSS, ISO27001, GDPR)

Preferred skills

None stated

Technologies

AWS, GCP, CI/CD pipelines, SAST, SCA, DAST, WAF, Bot management

Responsibilities

Embed security practices throughout the SDLC; Lead threat modeling and architectural reviews for high-risk features; Integrate automated security scanning into CI/CD pipelines; Enforce least-privilege models for API configurations; Orchestrate internal red teaming and external penetration tests; Act as technical escalation point for application security incidents; Manage cloud security posture (CSPM) and network security measures; Lead the strategic evolution of DevOps into a mature DevSecOps model; Build and mentor a Security Champions program.

Seniority

Senior, hands-on IC