logo

How monday.com Built a Continuous Security Program That Engineering Actually Embraces

ID: 703476b4-d262-5f4f-bcea-6b247f55f098

STIX ID: report--703476b4-d262-5f4f-bcea-6b247f55f098

Feed Name: HackerOne Blog

Date Published: 2026-06-03

Date Updated: 2026-06-12

...
...

This article profiles Amit Levy, highlighting how he engineered monday.com's bug bounty program—focusing on researcher engagement metrics, embedding adversarial testing into the SDLC, and automating remediation workflows (including AI-assisted validation and PR creation)—and explains how those practices led to engineering buy-in and operational scale; it is an operational case study rather than a report of a security incident.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.