
About Taboola
Discover engaging content with AI-driven ads
Key Highlights
- Founded in 2007, became a billion-dollar business by 2018
- Headquartered in Flatiron District, New York City
- Over 1000 employees and growing
- $160 million raised in Series E funding
Taboola, headquartered in the Flatiron District of New York City, is a leading AI-powered digital advertising agency that helps brands reach customers through engaging content recommendations. Founded in 2007, Taboola became a billion-dollar revenue-generating company by 2018, serving hundreds of bi...
🎁 Benefits
Employees enjoy a fully-stocked kitchen, gym partnerships, 401k matching, and health insurance. The company also offers flexible work-from-home opport...
🌟 Culture
Taboola's culture is driven by a commitment to innovation and data-driven decision-making, with a strong focus on R&D. The company values creativity a...
Skills & Technologies
Overview
Taboola is hiring a Senior Security DevOps Engineer to bridge security governance with hands-on implementation across the SDLC. You'll work with tools like SAST, DAST, and SCA to ensure robust security practices. This role requires 5+ years of experience in DevSecOps or Application/Product Security.
Job Description
Who you are
You have 5+ years of experience in a senior DevSecOps or Application/Product Security role, demonstrating deep expertise in DevSecOps principles and a strong understanding of the modern application threat landscape, including the OWASP Top 10. Your proven ability to 'shift left' security by embedding automated security controls such as SAST, DAST, SCA, and IAST into CI/CD pipelines is essential for this role. You possess hands-on experience managing and hardening open-source software dependencies, showcasing your mastery in open source security and supply chain management.
Your expertise in utilizing Software Composition Analysis (SCA) tools like Dependency-Check, Snyk, and Black Duck allows you to maintain an accurate Software Bill of Materials (SBOM) for all products. You are a vulnerability and risk management pro, capable of establishing and owning a continuous CVE tracking and remediation process. Your ability to risk-rate vulnerabilities based on exploitability and business impact drives engineering teams to efficiently remediate security risks using automation.
What you'll do
In this role, you will bridge high-level security governance with hands-on, automated security implementation across the Software Development Life Cycle (SDLC). You will empower teams to move swiftly while upholding the required security standards, ensuring that security practices are integrated into the development process. Your contributions will be critical in balancing rapid innovation with robust security practices, enabling the company to deliver exceptional value to clients.
You will collaborate closely with engineering teams to embed security controls into CI/CD pipelines, ensuring that security is a fundamental aspect of the development process. Your role will involve continuous monitoring and improvement of security practices, as well as educating teams on security best practices and the importance of maintaining a secure development environment.
What we offer
At Taboola, you will be part of a leading performance-driven advertising company that values innovation and security. We encourage you to apply even if your experience doesn't match every requirement. Join us in our mission to empower teams and deliver exceptional value to our clients while maintaining the highest security standards.
Interested in this role?
Apply now or save it for later. Get alerts for similar jobs at Taboola.
Similar Jobs You Might Like
Based on your interests and this role

Devops Engineer
Taboola is seeking a Senior DevOps Engineer to bridge security governance with automated security implementation across the SDLC. You'll work with DevSecOps principles and tools like SAST and DAST to enhance security practices. This role requires 5+ years of experience in a senior DevSecOps or Application/Product Security role.

Devops Engineer
Tonkean is hiring a Senior DevOps Engineer to join their team and support the development of a customizable process experience platform. You'll work in a collaborative environment focused on automating processes and enhancing employee experiences.

Devops Engineer
Singular is hiring a Senior DevOps Engineer to build innovative, scalable solutions for their marketing measurement platform. You'll work with AWS, Docker, and Kubernetes in Tel Aviv. This position requires significant experience in DevOps practices.

Security Engineer
Apple is hiring a Senior Security DevOps Engineer to ensure the security of systems and infrastructure. You'll work on critical security services and collaborate with engineers to enhance their security posture. This position requires 5+ years of experience in security engineering and operations.

Devops Engineer
Cloudinary is hiring a Senior DevSecOps Engineer to enhance security across their global production systems. You'll work closely with the DevOps team and utilize skills in AWS, Docker, and Kubernetes. This role requires significant experience in security practices.