{bc}

Senior AppSec Consultant (Secure SDLC Delivery)

AkkodisDubai, UAE1 months agoEntry
Entryfulltime

Skills

management consultingstrategybusiness advisory

About This Role

Overview

We are hiring a hands-on Application Security expert who owns security delivery within fixed-price SDLC projects.

You will be accountable for what gets shipped, not just what gets documented.

This role is not governance, policy, or audit.

Activities

  • Perform security assessment of Android and/or iOS applications
  • Conduct APK/IPA reverse engineering and static analysis
  • Identify hardcoded secrets, insecure storage, and exposed components
  • Test runtime protections (SSL pinning, root/jailbreak detection)
  • Perform dynamic analysis using tools such as Frida, Objection, Burp
  • Validate compliance against OWASP MASVS
  • Assess secure implementation of OAuth, tokens, and local storage
  • Ensure proper certificate pinning and API protection in mobile apps
  • Work with developers to remediate platform-specific vulnerabilities

Own Security in Real Delivery

  • Take end-to-end accountability for application security in fixed-price projects
  • Ensure security is implemented, tested, and delivered, not just definedWork directly with developers to fix issues in code and pipelines

Hands-On Engineering

  • Perform manual and automated code reviews
  • Implement and tune: SAST / DAST / SCA, API and container security scanning
  • Build and enforce CI/CD security gates

Threat Modeling & Validation

  • Conduct practical threat modelling
  • Validate vulnerabilities through hands-on testing (e.g., Burp, ZAP)
  • Focus on real exploitability, not theoretical risks

Delivery Under Constraints

  • Operate in fixed-price environments with real constraints
  • Prioritize effectively to balance security, timeline, and budget
  • Take ownership of outcomes and resolve issues proactively
  • Required experience
  • Bachelor’s degree in Cybersecurity or related field
  • Certifications such as CISSP and/or CSSLP
  • Hands-On / Offensive or AppSec Certification (OSCP, GWAPT, eWPT/eWPTX)
  • Mobile app security (iOS / Android)
  • Experience coaching or upskilling development teams on secure coding
  • 7+ years in Cyber Security with strong Application Security focus
  • Proven experience in Secure SDLC within delivery projects
  • Experience in fixed-price or commitment-based environments
  • You’ve personally fixed vulnerabilities in code or pipelines
  • You can demonstrate exploitation paths, not just list findings
  • You are comfortable making security vs delivery trade-offs
  • What success looks like
  • You’ve personally fixed vulnerabilities in code or pipelines
  • You can demonstrate exploitation paths, not just list findings
  • You are comfortable making security vs delivery trade-offs
  • Developers see you as a technical peer, not an auditor
  • Security is embedded in SDLC and CI/CD pipelines
  • Vulnerabilities are fixed early, not escalated late
  • Projects are delivered securely on time, and within budget
  • You are recognized as accountable for security delivery
  • Developers see you as a technical peer, not an auditor
  • Nice to have
  • Cloud security (AWS / Azure / GCP)
  • Kubernetes / container security
  • Experience in regulated industries
  • Please note, only qualified candidates would be contacted

Your resume, rewritten for this exact role.

Sign up free — Base Career tailors your CV to this job description in 60 seconds.

01 / 05

Resume Tailored to This Job

Resume Tailored to This Job

Your keywords, structure, and story — rewritten to match this exact role and pass ATS filters.

Get My Free Resume

Free · No card · 60 seconds

02 / 05

Cover Letter for This Role, Done

Cover Letter for This Role, Done

Job-specific cover letters written in Gulf professional tone — ready in seconds, not hours.

Get My Cover Letter

Free · No card · 60 seconds

03 / 05

See How Well You Fit This Role

See How Well You Fit This Role

AI match score with clear reasons — know your fit before investing time in the application.

Check My Fit Score

Free · No card · 60 seconds

04 / 05

Apply in One Click

Apply in One Click

Autofill any application form on Workday, LinkedIn, Bayt, Greenhouse — with your tailored content.

Start Applying Faster

Free · No card · 60 seconds

05 / 05

Track It. Follow Up at the Right Time.

Track It. Follow Up at the Right Time.

Visual pipeline for every application with AI-timed follow-up reminders so nothing slips.

Track My Applications

Free · No card · 60 seconds

2.2K+

Cover Letters & Follow-ups

1.8K+

Resumes Tailored

190.5K+

Jobs Tracked

Trusted by professionals at

PwC//
Emaar//
KPMG//
Noon//
Amazon AWS//
Talabat//
Deloitte//
Emirates//
Careem//
Aramex//
McKinsey//
Property Finder//
Majid Al Futtaim//
Chalhoub Group//
PwC//
Emaar//
KPMG//
Noon//
Amazon AWS//
Talabat//
Deloitte//
Emirates//
Careem//
Aramex//
McKinsey//
Property Finder//
Majid Al Futtaim//
Chalhoub Group//
AI Job Platform

Stop applying blindly. Start getting hired.

Base Career automates the hardest parts of job searching — apply smarter, not harder.

AI Resume in 60s

Your resume rewritten for this exact role using the job description as the brief.

ATS-Optimized

Get past automated screening filters with the right keywords matched to each job.

Application Tracker

Track every job, follow-up, and interview in one visual kanban board.

Free plan · No credit card required