Marketplace Security Lead
1 week ago
We are seeking a Marketplace Security Engineer to ensure the security posture, compliance, and assessment process of all apps within 's marketplace. This role will be pivotal in safeguarding our customers, empowering developers, and aligning our marketplace with industry-leading security standards.
About The RoleMarketplace Security Framework
- Own and maintain a robust program that ensures the security framework of all apps in the marketplace.
- Work with Marketplace teams (Product and R&D) for incorporating security checks as part of app submission and ongoing lifecycle (ideally - develop new capabilities and scans that would be embedded from the product side)
- Define, implement, and continuously enhance security requirements for marketplace apps badges and security levels for apps
- Assure the app security posture checks corresponds with relevant controls from known security frameworks (ISO27001, HIPAA, NIST 800-53, etc) to provide customer
Security Championship & Operations
- Collaborate and work closely with 's Application Security team to Establish and maintain alignment between app security processes and 's security standards and best practices.
- Define, implement, and continuously enhance security and compliance requirements for marketplace apps, including prerequisites for badges such as "Hosted on monday" and "Shield badge"
- Oversee external validation mechanisms such as vulnerability scans, penetration tests, and security audits of marketplace apps.
- Validate developer-submitted security and compliance questionnaires, ensuring proper evidence and truthfulness.
- Maintain up-to-date security and compliance records for all apps in the marketplace.
- Continuously monitor marketplace apps and lead incident response for marketplace apps in the event of security breaches or vulnerabilities.
Developer Community Security Enablement
- Define clear guidelines on security gates and requirements for secure app development
- Create and deliver training for the developer community (for the developer community (i.e. non-employee app developers) on such guidelines, including webinars and developer-facing documentation.
- Engage with developer community in case of feedback, disputes and overall inquiries.
- React to emerging threats and vulnerabilities, providing guidance to developers on mitigation strategies..
Collaboration and Stakeholder Engagement
- Partner with marketplace product managers to gather customer feedback and perform competitive analysis, ensuring marketplace security framework meets industry and customer standards.
- Act as a focal point for security within the marketplace, representing in external forums or discussions on app security.
- Engage with industry marketplace security teams to collaborate and exchange ideas
- Has 3-4 years of experience as a security engineer or security development (as part of the product)
- Strong knowledge of security frameworks and secure development practices.
- Knowing the web application stack - JavaScript, APIs (REST/GraphQL), OAuth, HTML5 and main web app vectors of attacks - XSS, SQL/prompt injections, etc.
- Hands-on experience with vulnerability scanning tools, security testing, and incident response processes
- Familiarity with GRC principles, including risk assessments, compliance reviews, and policy management.
- Familiarity with bug bounty programs and other community-driven security initiatives.
- Advantage: experience in security research, including setting up labs for forensics and malware analysis
- Advantage: background in providing PoCs as a base for product features
- Strong interpersonal skills with focus on education and collaboration
- Excellent communication skills
- Ability to train developers
- collaborate with cross-functional teams..
- A proactive and detail-oriented approach to problem-solving and risk management.
- Self starter and ability to move things from 0 to 1
Advantage: Familia
Social TitleNone
Social Description
None
Our Team
None
Position Type
None
-
Marketplace Security Lead
1 week ago
Tel Aviv, Tel Aviv, Israel monday Full time ₪80,000 - ₪120,000 per yearDescriptionWe are seeking aMarketplace Security Engineerto ensure the security posture, compliance, and assessment process of all apps within 's marketplace. This role will be pivotal in safeguarding our customers, empowering developers, and aligning our marketplace with industry-leading security standards.About The RoleMarketplace Security FrameworkOwn and...
-
Marketplace Security Lead
15 hours ago
Tel Aviv, Tel Aviv, Israel myGwork - LGBTQ+ Business Community Full time ₪80,000 - ₪120,000 per yearThis job is with , an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly.We are seeking aMarketplace Security Engineerto ensure the security posture, compliance, and assessment process of all apps within 's marketplace. This role will be pivotal in...
-
Senior Product Manager – Marketplace
6 days ago
Tel Aviv, Tel Aviv, Israel Gett Full time ₪60,000 - ₪120,000 per yearAt Gett, we empower confident movement for everyone – whether you're a private customer, a business client, a driver, or a partner. We are committed to providing the best possible service where it matters most, and we're looking for passionate individuals to make our team stronger than everAs a Senior Product Manager, you will join Gett's Marketplace...
-
Business Development – Marketplace
15 hours ago
Tel Aviv, Tel Aviv, Israel Atera Full timeAtera is inventing a new way of managing IT end-to-end for IT professionals and teams worldwide. By creating an AI-powered IT platform, Atera's all-in-one Remote Monitoring and Management (RMM) Helpdesk, Ticketing, and Reporting solution helps more than 23,000 IT pros achieve 10X operational efficiency, cut down time-to-resolution, and deliver better...
-
Business Development – Marketplace
15 hours ago
Tel Aviv, Tel Aviv, Israel Atera Full timeAtera is inventing a new way of managing IT end-to-end for IT professionals and teams worldwide. By creating an AI-powered IT platform, Atera's all-in-one Remote Monitoring and Management (RMM) Helpdesk, Ticketing, and Reporting solution helps more than 23,000 IT pros achieve 10X operational efficiency, cut down time-to-resolution, and deliver better...
-
Security Researcher
2 weeks ago
Tel Aviv, Tel Aviv, Israel Upwind Security Full time $150,000 - $200,000 per yearDescriptionUpwind is a next-generation Cloud Security Platform that leverages runtime context to identify and prioritize critical risks, providing precise insights and efficient cloud security management. Unlike traditional tools, Upwind uses runtime data proactively for risk prioritization and posture insights, ensuring teams focus on what truly matters....
-
Security Analyst
15 hours ago
Tel Aviv, Tel Aviv, Israel Upwind Security Full time ₪90,000 - ₪120,000 per yearDescriptionUpwind is a next-generation Cloud Security Platform that leverages runtime context to identify and prioritize critical risks, providing precise insights and efficient cloud security management. Unlike traditional tools, Upwind uses runtime data proactively for risk prioritization and posture insights, ensuring teams focus on what truly matters....
-
Security Researcher
2 weeks ago
Tel Aviv, Tel Aviv, Israel Oligo Security Full time ₪90,000 - ₪120,000 per yearAbout UsOligo is a rapidly growing startup headquartered in Tel Aviv, leading the way in reshaping Application Security. With a strong investment from top-tier VCs including Greenfield Partners, Red Dot Capital Partners, Lightspeed, Ballistic Ventures, and TLV Partners, we are developing a unique solution to address application security challenges, mainly...
-
MDR Security Engineer
15 hours ago
Tel Aviv, Tel Aviv, Israel Upwind Security Full time ₪90,000 - ₪120,000 per yearDescriptionUpwind is a next-generation Cloud Security Platform that leverages runtime context to identify and prioritize critical risks, providing precise insights and efficient cloud security management. Unlike traditional tools, Upwind uses runtime data proactively for risk prioritization and posture insights, ensuring teams focus on what truly matters....
-
MDR Security Engineer
15 hours ago
Tel Aviv, Tel Aviv, Israel Upwind Security Full time ₪90,000 - ₪120,000 per yearUpwind is a next-generation Cloud Security Platform that leverages runtime context to identify and prioritize critical risks, providing precise insights and efficient cloud security management. Unlike traditional tools, Upwind uses runtime data proactively for risk prioritization and posture insights, ensuring teams focus on what truly matters. With...