https://bayt.page.link/v1TUmrkCw1dqRip19
Back to the job results

Application Security Analyst

22 days ago 2025/08/14
Full time
10-49 Employees · Business Consultancy Services

Get the Bayt App

Download the Bayt App to manage your real time conversation with the recruiter
Download App
Create a job alert for similar positions

Job description

Job Objectives

The Information Security Application Consultants develops, operates, and manages the application security frameworks to continuously monitor and improve organization's security posture to build secure applications and reduce threat footprint. The role also provides subject matter expertise and operational direction on application security governance, application security control and risk analysis, security assessment automation, secure development practices and incident response.

 

Description

1. Establish and manage industry-leading application security processes and practices at each phase of the software development lifecycle and implement operational roadmap for assessment, penetration testing and source code reviews.

2. Ensure acquired and developed applications are consistent with secure software development lifecycle and security architecture guidelines.

3. Conduct regular manual and automated application security testing, assessments, review results, track issues and follow up to ensure remediation in line with secure software development lifecycle.

4. Coordinate and scope Third party penetration testing and application assessments activities including configuration reviews for compliance and additional assurance of secured implementation and operation of solutions.

5. Design, develop and implement the integration and automation of threat modelling, security assessments and testing tools with DevOps, application development and QA tools to improve detection and prevention capabilities.

6. Recommend improvements to the secure reference architecture through continuous review and assessment of the application security requirements, policies, and procedures.

7. Ensure secure coding practices and Software Development Life Cycle (SDLC) are followed by providing training and awareness to the internal stakeholders.

8. Ensure Data Protection, privacy concerns and regulations are in place and addressed in Policies and procedures.

9. Help support and enhance existing cloud security model, ensuring adherence to best practice in alignment with industry standards at technology, operational, legal measures.

10. Define the high-level requirements for preserving the confidentiality, integrity, and availability of information and assets, protecting assets from threats based on an assessment of risks to the organization, and supporting the fulfillment of relevant legal, regulatory, operational, and contractual requirements.

11. Provide regular updates to management on application security and vulnerability management posture by defining operational KPIs and metrics, build dashboard and reports.

12. Manage follow up, close and report upon all department’s information security regulatory requirements, audits, inconformity reports, compliance issues and observations that arise during conducted internal and external assurance engagements.

13. Conduct Risk Assessments on the required Applications to identify applicable risk scenarios and mitigating controls as per Qatargas Information security risk management practices.

14. Perform other related duties or assignments as directed.

 


Management Solutions International (MSI), established in 1987, is one of the leading Human Resources and Management Consultancies, with over 30 years of Multi-industry experience. Headquartered in Virginia, USA, MSI currently has 6 Branches, working with prominent Government / Semi-Government, Multi-National Companies as well as SMEs. MSI, traditionally an Executive Recruitment Firm is a part of CFR Global Executive Search which is a growing alliance of independent Executive Search Companies having 59 Offices in 30 Countries. This gives MSI an edge with a Global database and allows them to effectively conduct Recruitment searches worldwide. Management Solutions International Overview In the latest acquisition, MSI acquired Petrolinx in 2013. Petrolinx is an Oil & Gas specialized entity with an ever increasing database of talent from various sectors, including Exploration & Drilling, Refining, Production, Petrochemical, Distribution. Petrolinx caters to the Government Clients as well and PMC and EPC Companies. Our strength lies in our Consultants’ industry specialisation who provide recruitment consultancy services to the clients in their respective sector. This focus allows our consultants to provide a better understanding of the supply of talent available for the specific role being recruited for. Also, because our consultants have prior industry knowledge they understand our clients’ businesses and can often offer unique perspectives that help clarify their needs and ensure better quality hiring decisions.

You have reached your limit of 15 Job Alerts. To create a new Job Alert, delete one of your existing Job Alerts first.
Similar jobs alert created successfully. You can manage alerts in settings.
Similar jobs alert disabled successfully. You can manage alerts in settings.