Application Security Engineer
Jfrog
Application Security Engineer at Jfrog is a full time role based in Tel Aviv, Netanya, Israel. It was published on 3 September 2026 and was open at last check.
| Role | Application Security Engineer |
|---|---|
| Company | Jfrog |
| Location | Tel Aviv, Netanya, Israel |
| Employment type | Full Time |
| Published | 3 September 2026 |
| Status | Open at last check |
At JFrog, we’re reinventing DevSecOps to help the world’s greatest companies innovate. Our team of industry-leading software security experts is a true pioneer, constantly pushing the boundaries with original research and technological innovation. JFrog is a special place with a unique combination of brilliance, spirit, and just all-around great people. Thousands of customers, including the majority of the Fortune 100, trust JFrog to manage, accelerate, and secure their software delivery from code to production – a concept we call “liquid software”. Wouldn't it be amazing if you could join us on our journey?
The JFrog CSO Office is seeking an Application Security Engineer. In this role, you will contribute to driving security across the SDLC at scale, empowering developers, and enabling secure development through automation, process, and tooling. You’ll work as part of a team of security engineers focused on SSDLC automation, vulnerability management, and proactive engagement with R&D. This is a hands-on technical role that combines architecture, coding, and collaboration, working closely with Product, Engineering, DevOps, and Security stakeholders.
As an Application Security Engineer at JFrog you will...
- Assist in the development of internal security tools and AI agents
- Support the design and implementation of SSDLC practices and automated security controls across the CI/CD pipeline
- Contribute to building and operating scalable vulnerability management frameworks across cloud-native services and SaaS products
- Integrate security into Agile and DevOps processes, including threat modeling, SAST, DAST, and SCA
- Develop Internal application security Tools and Automations
- Partner with development and DevOps teams to embed security early and often
- Contribute to secure code reviews and assist with remediation strategies
- Track, triage, and report vulnerabilities across product lines
- Support the adoption of secure development best practices
To be an Application Security Engineer at JFrog, you need…
- 6-7 years of experience in AppSec And Product Security
- Deep knowledge in application security and vulnerabilities.
- Strong coding/scripting background (e.g., Python, Go, Java, JavaScript)
- Hands-on experience with CI/CD pipelines, security tools, and DevSecOps practices
- Familiarity with modern architectures (e.g., Cloud, microservices, containers, Kubernetes)
- Understanding of software development processes and secure coding principles.
- Strong communication and collaboration skills
- Penetration testing knowledge is a plus
- Familiarity with machine learning and AI concepts applied to security (e.g., anomaly detection, predictive analytics) is a strong advantage
Create your free OnJob profile to apply — we'll take you to Jfrog's application after sign-up. · Posted 3 Sept 2026.
Application Security Engineer at Jfrog — questions answered
What does the Application Security Engineer role at Jfrog pay?
Jfrog does not publish a salary on this Application Security Engineer listing, so OnJob shows no figure for it rather than an estimate. For what this role pays across the market, the OnJob salary guides aggregate the live listings that do disclose pay.
Where is the Application Security Engineer role at Jfrog based?
Jfrog lists this Application Security Engineer role in Tel Aviv, Netanya, Israel, advertised as full time work at that location. Larger employers sometimes cover several sites under one city name, so confirm the exact office with Jfrog before you apply.
Is the Application Security Engineer role at Jfrog still open?
The Application Security Engineer posting at Jfrog was open at OnJob's last check of the employer's careers page, having been published on 3 September 2026. OnJob re-checks source listings on each build and marks a role closed once it disappears, but listings can close without notice, so the employer's own page is the final word.
How do you apply for the Application Security Engineer role at Jfrog?
Apply to the Application Security Engineer at Jfrog role through OnJob with a free profile: OnJob scores your fit against the listing, shows the skills lowering that score, and submits an ATS-ready profile to Jfrog's own application page. Creating a profile is free and needs no card.
Explore more on OnJob
Hiring for a role like this?
Post a job on OnJob and reach AI-matched candidates.