Application Security Team Lead

Monday.com Monday.com · Enterprise · Tel-Aviv, Israel · Information Technology & Data

Lead a team of security engineers to embed security into the software development lifecycle for a SaaS platform, focusing on application security, threat modeling, vulnerability management, and compliance with international standards.

What you'd actually do

  1. Define the Vision: Craft and execute a comprehensive, scalable application security roadmap aligned with monday.com’s rapid growth and multi-product strategy.
  2. Cultivate a Security Mindset: Drive a culture of security ownership across R&D through training, champion programs, and collaborative threat modeling.
  3. Team Growth: Mentor, scale, and lead a high-performing team of AppSec engineers, fostering continuous learning and innovation.
  4. Secure SDLC: Integrate automated security testing (SAST,SCA, Secrets) seamlessly into our CI/CD pipelines without slowing down engineering velocity.
  5. Threat Modeling & Review: Lead threat modeling sessions and architectural reviews for major platform shifts, new features, and infrastructure changes.

Skills

Required

  • Application security
  • Team leadership
  • SaaS security
  • Cloud-native applications (AWS)
  • Web application vulnerabilities (OWASP Top 10, CWE)
  • Modern programming languages (Node.js, Ruby on Rails, React)
  • Containerized environments (Kubernetes, Docker)
  • DevOps pipelines (CI/CD)
  • SAST, SCA, Secrets scanning
  • Threat modeling
  • Vulnerability management
  • Bug bounty programs
  • Penetration testing
  • Communication skills

Nice to have

  • AWS

What the JD emphasized

  • secure-by-design
  • application security roadmap
  • secure SDLC
  • threat modeling
  • vulnerability management
  • SOC 2
  • ISO 27001
  • GDPR
  • HIPAA