Jobiglo

No results.

This job is no longer available

This job expired on 16/09/2026. It no longer accepts applications.

Application Security Consultant

eSense · Amman

Senior 🇬🇧 English
OWASP Top 10 SAST DAST Burp Suite Fortify Snyk Azure Azure DevOps Secure SDLC DevSecOps NCA Essential Cybersecurity Controls SAMA Cybersecurity Framework PDPL NDMO

Job description

About the role

The Application Security Consultant will evaluate the security of applications and digital environments within government entities, providing recommendations to enhance security posture and ensure compliance with Saudi cybersecurity regulations.

Key responsibilities

  • Assess security of web, mobile, and enterprise applications, identifying vulnerabilities, misconfigurations, and architectural risks.
  • Review application architecture, APIs, integrations, and data flows, evaluating authentication, authorization, and data protection mechanisms.
  • Perform security testing using SAST, DAST, and basic penetration testing techniques.
  • Conduct risk assessments, classify vulnerabilities, and validate remediation actions.
  • Map findings to NCA Essential Cybersecurity Controls, SAMA Cybersecurity Framework, PDPL and NDMO requirements, supporting audit readiness.
  • Promote Secure SDLC (SSDLC) practices and integrate security into CI/CD pipelines (DevSecOps), especially within Azure DevOps environments.
  • Prepare and present security assessment reports, remediation recommendations, and improvement roadmaps to technical teams and stakeholders.

Required profile

  • Bachelor’s degree in Cybersecurity, Computer Science or a related field.
  • 8+ years of experience in application security or cybersecurity consulting.
  • Experience in government or regulated environments is preferred.
  • Relevant certifications such as CISSP, CEH, OSCP, CSSLP, ISO 27001 Lead Implementer/Auditor.

Required skills

  • Deep knowledge of OWASP Top 10 and application security principles.
  • Hands‑on experience with SAST and DAST tools (e.g., Burp Suite, Fortify, Snyk).
  • Proficiency in Secure SDLC (SSDLC) and DevSecOps practices.
  • Familiarity with Azure cloud services and Azure DevOps pipelines.
  • Understanding of Saudi cybersecurity regulations (NCA Essential Cybersecurity Controls, SAMA Cybersecurity Framework, PDPL, NDMO).

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec eSense.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Explore further

Salaries, guides and searches in Jordan.

💬 Chat with us on Telegram Chat on WhatsApp

Published 2 months ago

69 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

eSense

Amman