Senior Application Security Engineer (Application Security)
EPAM is seeking an experienced Senior Application Security Engineer to join our dynamic security team in Qatar. In this role, you will focus on threat modeling and security code review, working closely with offensive security engineers. Our team employs a dual approach : offensive engineers conduct blackbox testing, while application security engineers perform source code examination and threat modeling. Collaboration between teams is essential to enrich findings and deliver comprehensive remediation plans.
Responsibilities
- Conduct threat modeling and security code reviews for web and enterprise applications
- Collaborate with offensive security engineers to correlate blackbox and whitebox testing results
- Analyze application architectures, data flow diagrams and source code to identify security vulnerabilities
- Develop and document comprehensive remediation plans based on combined testing results
- Act as a Security Champion within development teams, promoting secure coding practices and awareness
- Participate in the design and implementation of secure development processes
- Communicate findings and recommendations to both technical and non-technical stakeholders
Requirements
7+ years of experience in application security, with a focus on threat modeling and security code reviewBachelor’s degree in computer science, information security, or a related fieldStrong understanding of secure development practices and common application vulnerabilitiesExperience working with development teams and offensive security engineersFamiliarity with data flow diagrams and application architecture analysisExperience with modern web frameworks (e.g., Angular) is a plusExcellent communication and documentation skillsNice to have
Experience as a Security Champion within development teamsHands‑on experience with security development lifecycle (S‑SDLC) processesKnowledge of both blackbox and whitebox testing methodologiesExperience in developing or reviewing applications built with Angular or similar frameworksWe offer
Private healthcare and life insuranceEnd of service gratuityAnnual air travel tickets for expatriatesCorporate Programs including Employee Referral Program with rewardsLearning and development opportunities including in‑house training and coaching, professional certifications, over 22,000 courses on LinkedIn Learning Solutions and much moreAll benefits and perks are subject to certain eligibility requirementsSeniority level
Mid‑Senior level
Employment type
Full‑time
Job function
Business Development, Information Technology, and Engineering
Industries
Software Development and IT Services and IT Consulting
#J-18808-Ljbffr