As an Application Security Researcher, you will conduct various types of penetration testing on monday.com’s platform, oversee the bug bounty program, and guide developers on security best practices. You will also monitor and report on security threats and automate security detection processes.
monday.com is looking for an application security researcher to research our platform for vulnerabilities, manage our bug bounty program, and work with R&D to enhance the security of our platform. The Application Security Team is based in our headquarters, Tel Aviv, Israel - you’ll be the first to join the team from London.
monday.com works hybrid with 3 days in the London office.
About The Role:
- Perform black, gray, and white box penetration testing on monday.com’s platform - both frontend and backend.
- Manage the bug bounty program, including hacker engagement and communication with the hacker community.
- End-to-end work on reported vulnerabilities as part of the bug bounty program.
- Provide guidance on security best practices to developers.
- Embed/improve security threat modeling and secure coding in the development lifecycle.
- Develop security abuse cases for testing as part of the software development lifecycle.
- Perform and oversee security testing and manage remediation of identified vulnerabilities.
- Monitor and proactively report on current threats and vulnerabilities to application security.
- Initiate and automate processes for detecting and monitoring the platform security.
Social Title:
Application Security Researcher
Requirements
- Scripting capabilities and automation mindset.
- At least 2 years of experience in web penetration-testing.
- In-depth knowledge of application security vulnerabilities, testing techniques, and the OWASP framework.
- Experience working with the hacker/pen-testing community.
- Team player able to and build relationships across the organization, also remotely.
- Understanding of secure web application development.
- Comprehensive knowledge of IT and information security subject matter.
- Exposure to methods of promoting security awareness.
- Strong communication (verbal/written) and influencing skills, with an ability to manage internal and external relationships.
- Anticipates problems and identifies long-term implications of decisions and actions.
- Ability to work and learn alone.
- Able to prioritize workload and drive work to set deadlines.
Top Skills
Scripting
monday.com London, England Office
20 Rathbone Place, London, United Kingdom, W1T 1HY
Similar Jobs at monday.com
Productivity • Software
The Implementation Consultant will manage client onboarding and implementation of monday.com, ensuring clients' needs are met. Responsibilities include acting as a project manager, maintaining strong client relationships, developing end-user training plans, and uncovering additional opportunities for product use within client organizations.
Top Skills:
CSSGraphQLHTMLJavaScriptRest Api
Productivity • Software
As a Technical Support Engineer at monday.com, you will troubleshoot and resolve complex client inquiries, investigate root causes of issues, and work closely with engineering teams, all while ensuring an exceptional customer experience. You will help build systems and processes for managing tasks effectively and produce reports to monitor platform quality.
Top Skills:
GraphQLRestTechnical Support
Productivity • Software
As an Account Executive for the CRM product at monday.com, you will scale CRM sales, conduct demos, analyze accounts, develop strategies in an agile environment, and identify sales opportunities within existing customers. You'll collaborate with various teams and stay updated on industry trends to position the product effectively.
Top Skills:
CRM
What you need to know about the London Tech Scene
London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.