AppSec Architect

Elementor
Israel
Workplace: OnsiteFull timeFunction: CybersecurityExperience: 2-4 yearsSkills: ["Ownership mindset","Communication","Independent work","Prioritization","Calm under pressure","Translating findings","Curiosity","Automation mindset"]

Partner with R&D to identify, triage, and remediate application security vulnerabilities through code and architecture reviews. Own and tune AppSec scanning across SAST/DAST/SCA in CI/CD, shift security left with threat modeling and secure coding practices, and support reviews for new products and integrations. Lead Elementor’s end-to-end vulnerability disclosure and Bug Bounty program, improve intake/triage SLAs, and build AI-driven automation to accelerate remediation.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Elementor
Elementor
1 week ago

AppSec Architect

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 12 hours agoStatus: Live

Job Summary

Partner with R&D to identify, triage, and remediate application security vulnerabilities through code and architecture reviews. Own and tune AppSec scanning across SAST/DAST/SCA in CI/CD, shift security left with threat modeling and secure coding practices, and support reviews for new products and integrations. Lead Elementor’s end-to-end vulnerability disclosure and Bug Bounty program, improve intake/triage SLAs, and build AI-driven automation to accelerate remediation.
Location: Israel
Workplace: Onsite
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Work directly with developers to identify, triage, and remediate application-level vulnerabilities.
  • •Review code and architecture for security weaknesses and provide actionable remediation guidance.
  • •Run and tune SAST, DAST, and SCA tools across the codebase and CI/CD pipelines.
  • •Drive secure coding practices, threat modeling, and security requirements into the development process.
  • •Lead Elementor’s Bug Bounty and vulnerability disclosure program end-to-end, including scoping, triage, severity assessment, payouts, and researcher communication.

Key Requirements

  • •2-4 years of experience in Application Security, Security Engineering, or Software Development with a security focus.
  • •Hands-on coding background in a modern language or stack; basic scripting/coding skills (Python, Bash, JavaScript, or similar).
  • •Solid understanding of web/application vulnerability classes (e.g., OWASP Top 10).
  • •Experience with AppSec testing tools and integrating security into CI/CD (SAST/DAST/SCA; e.g., burp suite and CI/CD security rule configuration).
  • •Ability to work closely with developers and cross-functional teams; strong communication and ownership mindset.
Experience:2-4 yearsApplication securitySecurity engineeringSecurity automationCI/CD
Skills:Ownership mindsetCommunicationIndependent workPrioritizationCalm under pressureTranslating findingsCuriosityAutomation mindset
Tech Stack:SASTDASTSCACI/CDBurp suitePythonBashJavaScriptOWASP Top 10PatchstackBugcrowdWordfenceWordPressN8nZapierClaude CodeCursorAI agents

Company Brief

Elementor
Provides a website building and design platform for WordPress users, enabling drag-and-drop creation of professional sites without coding. It also offers hosting, ecommerce, marketing, and workflow tools for web creators and businesses.
Industry: SaaS
Company Size: Large (251 to 1,000 employees)
Growth: Scaleup
Headquarters: Ramat Gan, Israel
Founded: 2016
WebsiteLinkedIn