Senior AppSec Consultant (Secure SDLC Delivery)
Skills
About This Role
Overview
We are hiring a hands-on Application Security expert who owns security delivery within fixed-price SDLC projects.
You will be accountable for what gets shipped, not just what gets documented.
This role is not governance, policy, or audit.
Activities
- Perform security assessment of Android and/or iOS applications
- Conduct APK/IPA reverse engineering and static analysis
- Identify hardcoded secrets, insecure storage, and exposed components
- Test runtime protections (SSL pinning, root/jailbreak detection)
- Perform dynamic analysis using tools such as Frida, Objection, Burp
- Validate compliance against OWASP MASVS
- Assess secure implementation of OAuth, tokens, and local storage
- Ensure proper certificate pinning and API protection in mobile apps
- Work with developers to remediate platform-specific vulnerabilities
Own Security in Real Delivery
- Take end-to-end accountability for application security in fixed-price projects
- Ensure security is implemented, tested, and delivered, not just definedWork directly with developers to fix issues in code and pipelines
Hands-On Engineering
- Perform manual and automated code reviews
- Implement and tune: SAST / DAST / SCA, API and container security scanning
- Build and enforce CI/CD security gates
Threat Modeling & Validation
- Conduct practical threat modelling
- Validate vulnerabilities through hands-on testing (e.g., Burp, ZAP)
- Focus on real exploitability, not theoretical risks
Delivery Under Constraints
- Operate in fixed-price environments with real constraints
- Prioritize effectively to balance security, timeline, and budget
- Take ownership of outcomes and resolve issues proactively
- Required experience
- Bachelor’s degree in Cybersecurity or related field
- Certifications such as CISSP and/or CSSLP
- Hands-On / Offensive or AppSec Certification (OSCP, GWAPT, eWPT/eWPTX)
- Mobile app security (iOS / Android)
- Experience coaching or upskilling development teams on secure coding
- 7+ years in Cyber Security with strong Application Security focus
- Proven experience in Secure SDLC within delivery projects
- Experience in fixed-price or commitment-based environments
- You’ve personally fixed vulnerabilities in code or pipelines
- You can demonstrate exploitation paths, not just list findings
- You are comfortable making security vs delivery trade-offs
- What success looks like
- You’ve personally fixed vulnerabilities in code or pipelines
- You can demonstrate exploitation paths, not just list findings
- You are comfortable making security vs delivery trade-offs
- Developers see you as a technical peer, not an auditor
- Security is embedded in SDLC and CI/CD pipelines
- Vulnerabilities are fixed early, not escalated late
- Projects are delivered securely on time, and within budget
- You are recognized as accountable for security delivery
- Developers see you as a technical peer, not an auditor
- Nice to have
- Cloud security (AWS / Azure / GCP)
- Kubernetes / container security
- Experience in regulated industries
- Please note, only qualified candidates would be contacted
Your resume, rewritten
for this exact role.
Sign up free — Base Career tailors your CV to this job description in 60 seconds.
01 / 05
Resume Tailored to This Job

Your keywords, structure, and story — rewritten to match this exact role and pass ATS filters.
Free · No card · 60 seconds
02 / 05
Cover Letter for This Role, Done

Job-specific cover letters written in Gulf professional tone — ready in seconds, not hours.
Free · No card · 60 seconds
03 / 05
See How Well You Fit This Role

AI match score with clear reasons — know your fit before investing time in the application.
Free · No card · 60 seconds
04 / 05
Apply in One Click

Autofill any application form on Workday, LinkedIn, Bayt, Greenhouse — with your tailored content.
Free · No card · 60 seconds
05 / 05
Track It. Follow Up at the Right Time.

Visual pipeline for every application with AI-timed follow-up reminders so nothing slips.
Free · No card · 60 seconds
2.2K+
Cover Letters & Follow-ups
1.8K+
Resumes Tailored
190.5K+
Jobs Tracked
Trusted by professionals at
Stop applying blindly.
Start getting hired.
Base Career automates the hardest parts of job searching — apply smarter, not harder.
AI Resume in 60s
Your resume rewritten for this exact role using the job description as the brief.
ATS-Optimized
Get past automated screening filters with the right keywords matched to each job.
Application Tracker
Track every job, follow-up, and interview in one visual kanban board.
Free plan · No credit card required