📍 المملكة العربية السعودية تحديث مستمر على مدار الساعة وظائف تناسب سيرتك الذاتيةمجاناً قناة تيليجرام

وظيفة مستشار أمن التطبيقات لدى VaporVM في الرياض

Application Security Consultant (Saudi National)
🏢 VaporVM
🕒 نُشرت: (منذ 9 أيام) 📍 الرياض وظائف الهندسة والتقنية

تفاصيل الوظيفة

تعلن شركة VaporVM عن وظيفة Application Security Consultant (سعودي الجنسية) في الرياض، السعودية، للانضمام إلى فريق أمن التطبيقات والمساهمة في تحديد ومعالجة الثغرات الأمنية في تطبيقات الويب والجوال خلال دورة حياة التطوير.

المهام والمسؤوليات

  • إجراء تقييمات أمنية واختبار اختراق لتطبيقات الويب والجوال.
  • إجراء نمذجة التهديدات (Threat Modeling) لتحديد مخاطر أمن التطبيقات ونواقل الهجوم.
  • إجراء مراجعة كود المصدر (Source Code Review) وتحديد الثغرات الأمنية.
  • تنفيذ وإدارة عمليات اختبار الأمان باستخدام أدوات SAST وDAST.
  • دعم ممارسات Secure SDLC وDevSecOps عبر فرق التطوير.
  • تحليل الثغرات وتقديم توصيات عملية لمعالجتها.
  • إعداد تقارير تقييم الأمان وإبلاغ النتائج لأصحاب المصلحة الفنيين.

الشروط والمتطلبات

  • خبرة لا تقل عن سنتين في مجال أمن التطبيقات (Application Security).
  • معرفة قوية باختبار اختراق تطبيقات الويب والجوال.
  • فهم متين لمنهجيات Secure SDLC وDevSecOps.
  • خبرة عمل أو معرفة قوية بنمذجة التهديدات وأدوات SAST وDAST.

المهارات المطلوبة

  • مهارات تحليلية قوية وتقييم الثغرات وإعداد التقارير.
  • الشهادات المهنية ذات الصلة (مثل OSCP، GWAPT، eWPT، أو CEH) تعتبر ميزة إضافية.
عرض النص الأصلي للإعلان

We are looking for an Application Security Consultant with hands-on experience in application security, penetration testing, and secure software development practices. The ideal candidate will help identify and mitigate security vulnerabilities across web and mobile applications throughout the development lifecycle.


Key Responsibilities

  • Conduct Web and Mobile Application Security Assessments and penetration testing.
  • Perform threat modeling to identify application security risks and attack vectors.
  • Conduct Source Code Reviews and identify security vulnerabilities.
  • Implement and manage SAST/DAST security testing processes.
  • Support Secure SDLC and DevSecOps practices across development teams.
  • Analyze vulnerabilities and provide practical remediation recommendations.
  • Prepare security assessment reports and communicate findings to technical stakeholders.


Requirements

  • 2+ years of experience in Application Security.
  • Strong knowledge of Web and Mobile Application Penetration Testing.
  • Solid understanding of Secure SDLC and DevSecOps methodologies.
  • Hands-on or strong working knowledge of Threat Modeling, SAST, and DAST.
  • Strong analytical, vulnerability assessment, and reporting skills.
  • Relevant certifications such as OSCP, GWAPT, eWPT, or CEH are a plus.
المصدر: LinkedIn - أُضيفت للموقع في 30 سبتمبر 2026
رقم الإعلان لدى المصدر: 4473723994