סקירה כללית
About The Position We are looking for a hands-on Product Security Analyst to join our security team and play a key role in improving the security posture of our products. This role combines deep technical work with security analysis and close collaboration with R&D teams to identify, assess, and remediate security issues throughout the product lifecycle. Requirements * 2–4 years of experience in Information Security, Software Development, DevOps, or a similar technical role. * Strong practical understanding of modern software architectures, including Cloud environments, Containers, Microservices, and APIs. * Hands-on experience with security tools such as SAST, DAST, SCA, and Container Scanning – a strong advantage. * Ability to analyze technical findings and understand their real impact on the product. * Critical thinking skills with the ability to distinguish between noise and real risk. * Strong communication skills and the ability to work closely with development teams. Responsibilities * Perform hands-on analysis of security findings from multiple sources, including security scans, reports, alerts, and third-party dependencies. * Assess the relevance, impact, and real-world risk of security issues in the context of the actual product architecture. * Work directly with code, configurations, and runtime environments to understand security vulnerabilities in practice. * Collaborate closely with R&D teams to clarify findings, support prioritization, and drive effective remediation. * Validate fixes and ensure security gaps are properly closed (fix validation). * Contribute to the implementation and adoption of secure development best practices as part of day-to-day work. * Help improve security tools, automations, and workflows related to product security.
דרישות המשרה
* 2–4 years of experience in Information Security, Software Development, DevOps, or a similar technical role. * Strong practical understanding of modern software architectures, including Cloud environments, Containers, Microservices, and APIs. * Hands-on experience with security tools such as SAST, DAST, SCA, and Container Scanning – a strong advantage. * Ability to analyze technical findings and