🔎 Job Title: Application Security Specialist (SAST / DAST) | Dicetek UAE | Dubai, UAE
🏢 Recruiting Company: Dicetek UAE
🌍 Job Location: Dubai, United Arab Emirates
đź’Ľ Job Type: Full-Time
đź“§ Application Method: Email CV to sharies@dicetekuae.com
📌 Additional Info: Arabic speakers only | Minimum 5+ years’ experience required
Position Summary
Dicetek UAE is hiring an experienced Security Specialist to strengthen application security capabilities for a client in Dubai. This role is critical in identifying, analyzing, and remediating application‑level vulnerabilities through structured SAST and DAST practices integrated into modern CI/CD pipelines.
Detailed Job Description
As an Application Security Specialist, you will take ownership of secure development assurance across web applications and APIs. You will conduct hands‑on static and dynamic security testing, analyze source code and runtime behavior, and work closely with development and DevOps teams to embed security controls early in the SDLC. The role requires strong expertise with industry‑leading tools such as Burp Suite, Semgrep, Fortify, and OWASP ZAP, along with a proactive mindset for threat analysis and vulnerability remediation. You will also contribute to improving security automation and keeping the organization aligned with evolving threat landscapes. This is an excellent opportunity for security professionals passionate about offensive and defensive application security.
Key Responsibilities
- Conduct DAST assessments using Burp Suite, OWASP ZAP, WebInspect, and Nuclei
- Perform SAST scans using tools such as Semgrep and Fortify
- Identify, analyze, and validate application security vulnerabilities
- Integrate SAST/DAST tools into CI/CD pipelines
- Work closely with development teams on vulnerability remediation and secure coding
- Analyze source code and runtime behavior for security weaknesses
- Document findings, risks, and remediation guidance clearly and accurately
- Track vulnerabilities through remediation and closure
- Stay updated on emerging threats, attack techniques, and security best practices
Required Qualifications & Skills
- 5+ years of experience in Application Security / Security Testing
- Strong hands‑on experience with Burp Suite for web app pentesting and proxy analysis
- Strong SAST experience (Semgrep, Fortify)
- Strong DAST experience (OWASP ZAP, WebInspect, Nuclei)
- Experience integrating security testing into CI/CD pipelines
- Solid understanding of OWASP Top 10 and common web vulnerabilities
- Ability to analyze both code‑level and runtime vulnerabilities
- Strong reporting, documentation, and remediation skills
- Fluent Arabic speaker (mandatory)
- Strong communication and collaboration skills
Nice‑to‑Have Skills
- Experience with secure SDLC frameworks
- Prior consulting or multi‑project exposure
- Knowledge of API security testing
- Exposure to cloud‑native application security
- Familiarity with DevSecOps practices and automation