Back to all jobs

- Seniority
- Lead
About the role
<p>At JFrog, we’re running the software that runs the world – and we want you along for the ride. JFrog is a special place with a unique combination of brilliance, spirit, and great people. Here, if you’re willing to do more, your career can take off. And since software plays a central role in everyone’s lives, you’ll be part of a critical mission.Thousands of customers, including the majority of Fortune 100 companies, trust JFrog to manage, accelerate, and secure their software delivery from code to production – a concept we call “liquid software.” Wouldn't it be amazing if you could join us on our journey?</p>
<p>The JFrog CSO Office is seeking an Application Security Team Lead. In this role, you will manage an application security team that focuses on building and running tools to secure the JFrog application landscape at scale, as well as conducting vulnerability research. You will work closely with the R&D and DevOps teams and serve as the focal point for identifying and resolving complex security challenges. This is a hands-on Team Lead position, a development-focused role that ensures JFrog products adhere to the stringent security requirements of our thousands of customers.</p>
<h5>As an Application Security Team Lead at JFrog, you will…</h5>
<ul>
<li>Build, lead, and mentor a team of AppSec Engineers</li>
<li>Lead the development of Internal Security tools and AI agents</li>
<li>Design and implement SSDLC practices and automated security controls across the CI/CD pipeline</li>
<li>Build and operate scalable vulnerability management frameworks across cloud-native services and SaaS products</li>
<li>Integrate security into Agile and DevOps processes, including threat modeling, SAST, DAST, and SCA</li>
<li>Partner with development and DevOps teams to embed security early and often</li>
<li>Contribute to secure code reviews and assist with remediation strategies</li>
<li>Track, triage, and report vulnerabilities across product lines</li>
<li>Provide technical leadership and drive adoption of secure development best practices</li>
<li>Define and measure AppSec KPIs and drive continuous improvement</li>
</ul>
<h5>To be an Application Security Team Lead at JFrog, you need…</h5>
<ul>
<li>Proven experience leading AppSec or Product Security teams</li>
<li>Deep Knowledge in Application Security and Vulnerabilities</li>
<li>Strong coding/scripting background (e.g., Python, Go, Java, JavaScript)</li>
<li>Hands-on experience with CI/CD pipelines, security tools, and DevSecOps practices</li>
<li>Familiarity with modern architectures (e.g., Cloud, microservices, containers, Kubernetes)</li>
<li>Deep understanding of software development processes and secure coding principles</li>
<li>Penetration testing knowledge is a plus</li>
<li>Strong communication and collaboration skills</li>
</ul>
731,000+ hidden jobs like this
jfrog and thousands of companies post here first — often days before LinkedIn or Indeed. Your first 5 applications are free; go Pro to apply without limits.
Everything Pro unlocks:
- Unlimited applications — free stops at 5
- Track every application in one place
- Apply straight to the source, one click
- Save & organize roles you love
- Roles pulled from company boards before the big sites