Expoint - all jobs in one place

Finding the best job has never been easier

Limitless High-tech career opportunities - Expoint

Fireblocks Application Security Engineer 
Israel, Tel Aviv District, Tel Aviv-Yafo 
667736040

17.05.2024

What You'll Do

  • Support product teams as they develop new features by conducting design reviews, threat modeling, security testing, and code reviews.
  • Contribute code to enhance security across our applications, whether by developing security- centric libraries, standardizing security practices, or rectifying security vulnerabilities in Fireblocks client and backend applications.
  • Lead automation efforts to proactively identify security weaknesses, and develop security controls to prevent future occurrences of similar vulnerabilities.
  • Assess potential security vulnerabilities within our applications, and work with development teams to ensure SLA-driven remediation processes.
  • Identify gaps in Fireblocks’ secure software development life cycle (SSDLC), and lead the efforts to address them including implementation end-to-end.
  • Determine the root cause and severity of vulnerabilities reported through our bug bounty platform and work with developers to devise and implement robust solutions.
  • Participate and contribute to team meetings, roadmap planning, and discussions.
  • Validate that security patches address reported vulnerabilities and test for any potential by passes.
  • Document identified vulnerabilities in a way that allows our engineering team to take quick action, providing them with the fixed code.
  • Proactively prevent future occurrences of a vulnerability through developing automation, security controls, and educating developers.

What You'll Bring

  • 5+ years of work experience in the application security domain.
    ● Experience performing security design reviews, threat modeling, or security testing.
    ● Enthusiasm for writing code, and helping others do the same.
    ● Solid written and verbal communication skills.
    ● Experience in programming with JavaScript & Typescript, C/C++, Python.
    ● Proactiveness and self-driven to be successful working in a remote environment.
    ● Relevant knowledge of modern web and mobile app security landscape, real-world attacks,
    and mitigations.


● Familiarity with blockchain and Decentralized Applications.
● Past experience educating or mentoring. ● Experience working on a development team.