Application Security Engineer (SAST/DAST) – Abu Dhabi – 4 to 6 Years Experience
Job Overview
-
Date Posted7 December 2024
-
Location
-
Expiration date7 February 2025
-
Experience4 Year
-
GenderAny
Job Description
Cybergate Defense is looking for an experienced Application Security Engineer with expertise in Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) to join our team. The successful candidate will play a vital role in securing applications by identifying vulnerabilities and integrating security measures throughout the software development lifecycle.
Responsibilities:
- Conduct SAST and DAST using tools like SonarQube, Snyk, Checkmarx, and ZAP.
- Collaborate with development teams to integrate security practices in the SDLC.
- Perform detailed code reviews to identify and remediate security vulnerabilities.
- Develop and refine security testing methodologies and procedures.
- Provide guidance on secure coding standards and best practices.
- Assist in identifying and implementing advanced security tools and technologies.
Job Requirements
• Proven experience with SAST tools (SonarQube, Snyk, Checkmarx, ZAP).
• Proficiency in analyzing and reviewing code for security vulnerabilities.
• Strong understanding of SDLC and CI/CD pipelines.
• Familiarity with web application vulnerabilities and attack vectors.
• Hands-on scripting skills (JavaScript, Python).
• Experience with additional security methodologies like DAST and IAST.
• Excellent communication and collaboration skills.
Preferred Qualifications
• Industry certifications such as CEH, CISSP, or equivalent are highly desirable.
• Experience in implementing security tools in complex environments.
• If you meet the above qualifications and are ready to take on this exciting challenge, send your resume. Immediate joiners are preferred.
About the Company
Cybergate Defense is a trusted name in cybersecurity solutions, dedicated to providing innovative and reliable application security measures. Based in Abu Dhabi, we focus on safeguarding digital assets in today's ever-evolving cyber landscape.