Application Security Specialist

Employment

Doha

On-site

QAR 240,000 - 360,000

Full time

10 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

None

Job summary

Employment seeks an Application Security Specialist to strengthen the security of applications across their full lifecycle. You will collaborate with development, DevOps, and QA teams to ensure secure design, development, and deployment of web, mobile, API, and thick-client applications.

Key duties include penetration testing, automated security scanning, threat modelling, secure code reviews, and CI/CD security integration as part of a DevSecOps approach.

Qualifications

  • 3+ years of experience in application security or penetration testing.
  • Strong knowledge of web, mobile, and API security testing.
  • Familiar with OWASP Top 10, ASVS, MASVS, WSTG, MSTG and vulnerability remediation.
  • Bachelor-level degree in a relevant field is required.

Responsibilities

  • Conduct penetration testing across web, mobile, API, and thick-client applications.
  • Perform automated security scanning (SAST, DAST, SCA) to identify vulnerabilities.
  • Carry out threat modelling during the design phase to identify risks and mitigations.
  • Perform secure code reviews and provide remediation guidance to developers.
  • Integrate security controls into CI/CD pipelines for DevSecOps workflows.
  • Develop and deliver secure coding training and awareness sessions for teams.
  • Evaluate and recommend application security tools and technologies.
  • Prepare and maintain documentation for security assessments and standards.

Skills

Application security
Penetration testing
Secure coding practices
DevSecOps
Security testing methodologies

Education

Bachelor's degree in Computer Science, Information Security, or related field

Tools

Burp Suite
Snyk
HCL AppScan
Fortify
Postman

Job description

Industry Information Technology and Services

About the Role

We are seeking a skilled Application Security Specialist to strengthen the security of applications across their full lifecycle. You will work closely with development, Dev Ops, and QA teams to ensure secure design, development, and deployment of web, mobile, API, and thick-client applications. The role focuses on identifying vulnerabilities, performing security testing, enabling secure coding practices, and integrating security into CI/CD pipelines as part of a Dev Sec Ops approach.

Key Responsibilities
  • Conduct penetration testing across web, mobile, API, and thick-client applications.
  • Perform automated security scanning (SAST, DAST, SCA) to identify vulnerabilities in code, configurations, and dependencies.
  • Carry out threat modelling during the design phase to identify risks and define mitigation strategies.
  • Perform secure code reviews and provide developer-friendly remediation guidance.
  • Integrate security controls into CI/CD pipelines to enable Dev Sec Ops practices.
  • Develop and deliver secure coding training and awareness sessions for development teams.
  • Evaluate and recommend application security tools and technologies.
  • Prepare and maintain documentation for security assessments, vulnerabilities, and application security standards.
Required Skills & Experience

3+ years of experience in application security, secure software development, or penetration testing. Strong hands-on experience with web, mobile, API, and application security testing. Proficiency with Burp Suite (required) and familiarity with tools such as Snyk, HCL App Scan, Fortify, and Postman. Strong understanding of secure coding practices and at least one programming language. Experience with Dev Sec Ops and CI/CD pipeline integration. Strong knowledge of OWASP Top 10, ASVS, MASVS, WSTG, and MSTG. Understanding of vulnerability classes, exploitation techniques, and remediation approaches. Strong analytical, reporting, and communication skills.

Qualifications

Bachelor's degree in Computer Science, Information Security, or related field.

Preferred Certifications

Off Sec (OSWA, OSWE)e Learn Security (e WPT, e WPTX) GIAC / SANS (SEC542, GWAPT) Other relevant application security certifications

Additional Advantage

Knowledge of Qatar National Information Assurance (NIA) framework.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security
Application Security

Employment • Doha

On-site
QAR 180,000 - 300,000
IT Application Security Specialist
IT Application Security Specialist

Employment • Doha

On-site
QAR 320,000 - 520,000
Application Security Specialist - Pen Testing & Secure SDLC
Application Security Specialist - Pen Testing & Secure SDLC

Employment • Doha

On-site
QAR 180,000 - 300,000
Application Security Engineer: Pen Testing & DevSecOps
Application Security Engineer: Pen Testing & DevSecOps

Employment • Doha

On-site
QAR 240,000 - 360,000
None
Security Analyst – VAPT & Penetration Testing
Security Analyst – VAPT & Penetration Testing

BAE Systems Strategic Aerospace Services WLL • Doha

On-site
QAR 180,000 - 300,000
Application Security Consultant: Pen Tests & Secure Coding
Application Security Consultant: Pen Tests & Secure Coding

Malomatia • Doha

On-site
QAR 150,000 - 240,000
Security Analyst – VAPT & Penetration Testing
Security Analyst – VAPT & Penetration Testing

BAE Systems • Doha

On-site
QAR 180,000 - 300,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Employment • Doha

On-site
QAR 360,000 - 600,000
IT Security Specialist - Qatar (Onsite)
IT Security Specialist - Qatar (Onsite)

Arab Solutions • Doha

On-site
QAR 180,000 - 280,000
Principal Information Security Assurance Engineer/Specialist
Principal Information Security Assurance Engineer/Specialist

beIN MEDIA GROUP • Doha

On-site
QAR 180,000 - 240,000