{bc}
linkedin

Application Security Expert

Starlink Qatar
Baladiyat ad Dawhah, QAT
Full-time
Mid-Senior
Onsite
Discovered 5 days ago
Application securityCybersecurityWeb, mobile, and API penetration testingSAST, DAST, and SCASecure code reviewThreat modeling using STRIDE and DREAD
Free

Job Fit Check

Base Career helps you apply smarter for this job.

?%
Ready to Scan

Key skills for this role

Application securityCybersecurityWeb, mobile, and API penetration testing
Smart Apply

Full Job Posting

Role Overview

Assess and strengthen the security of telecom products, applications, and platforms.

Focus on threat modeling, penetration testing, DAST, SAST, secure code review, vulnerability assessment, and DevSecOps across enterprise, telecom, and customer-facing applications.

Responsibilities

  • Conduct web, mobile, and API penetration testing, vulnerability assessments, and security validation using automated and manual techniques.
  • Perform SAST, DAST, SCA, and secure code reviews, including false-positive and false-negative analysis and remediation validation.
  • Conduct threat modeling and application security risk assessments using STRIDE and DREAD.
  • Secure BSS/OSS, CRM, billing, charging, provisioning, order management, subscriber management, self-care, mobile applications, and APIs.
  • Assess security across 4G/5G, EPC/5GC, IMS, API gateways, microservices, and network-facing applications.
  • Integrate application security controls and security gates into GitLab and Jenkins CI/CD pipelines.
  • Secure cloud, container, Kubernetes, and Infrastructure-as-Code architectures.
  • Support application security incident investigations and recommend remediation.
  • Assess AI/ML-enabled applications, APIs, and data-flow security risks.
  • Work with development, architecture, DevOps, cloud, and cybersecurity teams across the SDLC.

Required Skills and Experience

  • 10+ years of application security or cybersecurity experience with strong hands-on application security expertise.
  • Proven experience in DAST, SAST, penetration testing, and secure code review.
  • Strong telecom or telco application security experience.
  • Strong knowledge of OWASP Top 10, API Security, NIST, PCI DSS, and NIA.
  • Hands-on experience with Burp Suite, Metasploit, Kali Linux, SonarQube, Checkmarx, or Fortify.
  • Experience with Tenable, Qualys, or Rapid7.
  • Strong DevSecOps experience with GitLab, Jenkins, Docker, Kubernetes, and Terraform.
  • Experience securing AWS, Azure, or GCP environments.
  • Programming knowledge in Java, Python, JavaScript, .NET, or Ruby.
  • Strong knowledge of SCA, CVE management, and third-party or open-source dependency security.

Preferred Certifications

  • CISSP, OSCP, CEH, CCSP, or equivalent security certifications are preferred.

Apply for this job in 1 click

Skip the repetitive application forms

Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.

Sarah M.James T.Maya R.

Trusted by over 500,000 job seekers on Base Career

Start Free Today

More from this employer

More jobs at Starlink Qatar