Jobiglo

No results.

Senior Application Security Engineer

malomatia · Doha

New
Senior 🇬🇧 English
Burp Suite Snyk HCL AppScan Fority Postman CI/CD pipelines DevSecOps OWASP Top 10

Job description

About the role

We are seeking a skilled Application Security Senior Engineer to join our Cybersecurity Practice. You will work closely with application security, development, and QA teams to protect client applications throughout their lifecycle, performing security testing, penetration testing, and vulnerability assessments for web, mobile, and API solutions.

Key responsibilities

  • Conduct penetration tests on web, mobile, API, and thick‑client applications and deliver detailed reports with risk ratings and remediation guidance.
  • Implement, tune, and manage automated security scanning tools (SAST, DAST, SCA) to continuously identify code and configuration vulnerabilities.
  • Perform threat modelling early in the design phase and advise on mitigation strategies.
  • Review source code for security flaws across multiple platforms and languages, providing developer‑friendly remediation.
  • Integrate security testing and controls into CI/CD pipelines to enable continuous validation.
  • Develop and deliver secure‑coding training sessions and workshops for development teams.
  • Assess and recommend tools and technologies to enhance application security testing capabilities.
  • Create and maintain documentation for security assessments, vulnerability management, and application security standards.

Required profile

  • Bachelor’s degree in Computer Science, Information Security, or a related field.
  • Minimum 4 years of experience in application security, secure software development, or penetration testing.
  • Relevant certifications such as OSWA, OSWE, eWPT, SEC542, GWAPT, or similar are highly desirable.
  • Strong understanding of secure coding practices, common vulnerability classes, exploitation techniques, and remediation strategies.
  • Familiarity with security frameworks and guidelines (OWASP Top 10, ASVS, MASVS, WSTG, MSTG) and knowledge of Qatar National Information Assurance (NIA) is a plus.

Required skills

  • Burp Suite (required)
  • Snyk, HCL AppScan, Fority, Postman (preferred)
  • CI/CD pipeline integration and DevSecOps practices
  • Secure coding principles across at least one programming language
  • OWASP Top 10 and related security standards

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec malomatia.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

By continuing, you accept our terms of use.

Already have an account? Login

A question about this job?

Ask it here: you will get the full job summary by e-mail, right away.

💬 Chat with us on Telegram

Published 9 hours ago

Expires 1 month from now

7 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

malomatia

Doha