FR Consultancy

Security Engineer

FR Consultancy

Dubai, United Arab Emirates · Full Time

Be the first to apply

Experience
6+ yrs
Salary
Openings
1
Posted
2 jam yang lalu
Work mode
In office
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

Position Overview

We are seeking an experienced Security Engineer for a full-time permanent role based in Dubai, United Arab Emirates. This position requires a broad expertise in application, infrastructure, and cloud security, including hands-on penetration testing across web, mobile, and API platforms.

Key Responsibilities and Expectations

  • Conduct penetration tests for web applications, mobile apps, and APIs to identify security vulnerabilities.
  • Utilize and manage security tools such as SAST (Static Application Security Testing), DAST (Dynamic Application Security Testing), SCA (Software Composition Analysis), Infrastructure as Code (IaC), and container security solutions.
  • Engage in DevSecOps practices, securing CI/CD pipelines, and automating security workflows.
  • Design and enforce secure architectures for cloud environments including AWS and Azure, with expertise in Kubernetes and Docker container platforms.
  • Perform threat modeling, conduct risk assessments, manage vulnerabilities, and respond to security incidents.
  • Develop and maintain scripts using Python and Bash to automate security processes and improve operational efficiency.
  • Effectively communicate identified security risks and mitigation strategies to both technical teams and business stakeholders.

Required Qualifications and Skills

  • Over 6 years of professional experience in cybersecurity with a focus on application and cloud security.
  • Hands-on experience in penetration testing of web, mobile, and API applications alongside infrastructure components.
  • Proficiency with SAST, DAST, SCA tools, and secure code review methodologies.
  • Strong knowledge of container security, Kubernetes, Docker, and Infrastructure as Code.
  • Solid grasp of DevSecOps frameworks and securing CI/CD environments.
  • Familiarity with cloud platforms AWS and Azure, and designing secure cloud architectures.
  • Expertise in threat modeling, risk evaluation, vulnerability management, and incident response protocols.
  • Competence in using scripting languages like Python and Bash for automating security tasks.
  • Excellent communication skills to articulate security findings and recommendations.

Tools & software

Python required
🤖
Online · instant AI help
Broxer