We are
At Cross River, we're building the financial infrastructure that powers global innovation. With our cutting-edge suite of embedded payments, cards, and lending solutions, we enable millions of businesses and consumers to transact seamlessly and securely.
With 900+ employees worldwide and an R&D center of over 160 employees in Jerusalem - we’re reshaping how financial technology is developed and delivered.
We’re seeking a Senior Application Security Engineer who is first and foremost a teacher, advisor, and enabler for our development teams.
Rather than owning security alone, you’ll embed secure-by-design thinking across engineering by mentoring developers, guiding architecture decisions, and making secure development intuitive and frictionless.
You’ll serve as the go-to partner for developers and engineering leaders, offering clear direction, practical solutions, and hands-on mentorship that strengthens our secure SDLC.
What You Bring to the Table
- Native level fluency in English and Hebrew (written and verbal) - Must
- 7+ years in software security engineering, including 4-5 years in AppSec of secure development enablement roles
- Strong coding ability in one or more modern languages (JavaScript/TypeScript, Python, Go, Java, C#)
- Proven experience teaching, mentoring, or enabling developers through training, code reviews, threat modeling, internal talks, or champion programs
- Deep understanding of secure coding principles, common vulnerability classes, API security, and secure design techniques
- Hands-on Experience with AppSec tooling (SAST, SCA, IaC scanners, secret scanning) and integrating them into the developer workflows
- Experience with cloud native architectures and security in AWS or Azure
- Familiarity with compliance and security frameworks (PCI DSS, SOC 2, FEIEC, NIST, OWASP, ASVS)
- Excellent communication and storytelling skills - able to break down complex issues into simple, practical guidance
- A collaborative mindset and passion for building a positive, empowering security culture