Track This Job
Add this job to your tracking list to:
- Monitor application status and updates
- Change status (Applied, Interview, Offer, etc.)
- Add personal notes and comments
- Set reminders for follow-ups
- Track your entire application journey
Save This Job
Add this job to your saved collection to:
- Access easily from your saved jobs dashboard
- Review job details later without searching again
- Compare with other saved opportunities
- Keep a collection of interesting positions
- Receive notifications about saved jobs before they expire
AI-Powered Job Summary
Get a concise overview of key job requirements, responsibilities, and qualifications in seconds.
Pro Tip: Use this feature to quickly decide if a job matches your skills before reading the full description.
Job Purpose:
The Digital Security Engineer embeds security controls throughout the software development and deployment lifecycle, ensuring banking systems remain secure, compliant, and resilient. He/She implements automated security scanning, builds and maintains DevSecOps pipelines, and performs application security testing across internal and third-party platforms. The Digital Security Engineer collaborates with development teams to remediate vulnerabilities, supports secure integration with external partners, and ensures compliance with CBO regulations and internal cybersecurity frameworks.
Key Accountabilities:
- Designs and implements CI/CD security pipelines in GitLab with automated security gates.
- Configures and maintains security scanning tools including SonarQube, Snyk, and Burp Suite.
- Performs application security testing on web and mobile applications (React Native, Flutter).
- Conducts API security assessments for internal systems and partner integrations.
- Reviews source code in JavaScript, TypeScript, Dart, and Node.js to identify vulnerabilities.
- Performs penetration testing on digital banking applications and services.
- Assesses mobile app security for iOS and Android, including reverse engineering and threat analysis.
- Implements and manage secrets and key management using OCI Vault.
- Configures Web Application Firewall (WAF) rules and policies in Oracle Cloud Infrastructure (OCI).
- Ensures compliance with CBO cybersecurity regulations, PCI-DSS standards, and internal ISMS policies.
- Conducts third-party security assessments for partner integrations and platforms.
- Manages software license compliance and audits usage of open-source and commercial components.
- Reviews and approves third-party libraries to ensure proper licensing and usage.
- Guides developers in selecting properly licensed components or suggests compliant alternatives.
- Manages the vulnerability disclosure lifecycle and coordinates remediation workflows.
- Trains developers on secure coding practices aligned with OWASP Top 10 and industry standards.
- Responds to application-layer security incidents and forensic investigations.
- Uses AI tools to analyze vulnerabilities and generate automated remediation guidance.
Qualifications and Experience:
- Bachelor's degree in Cybersecurity, Computer Science, or related field
- A professional certification in one of the cybersecurity or information security domains (e.g., CISSP, CEH, OSCP, GWAPT, GIAC, etc.)
- Minimum of 5 years in application security, DevSecOps, or security engineering.
- Proven track record of executing similar accountabilities in Banking, fintech, or a regulated industry.
- Vast experience in web and mobile application security testing.
- Familiarity with JavaScript/TypeScript OR Dart preferred.
- Strong understanding of secure coding practices and OWASP Top 10.
- Hands on experience in implementing security in CI/CD pipelines.
- Clear understanding of CBO cybersecurity regulatory requirements.
Key Skills & Competencies:
- Strong proficiency in React Native and Flutter security assessments
- Advanced capability in software license compliance and audit processes
- Good in open-source license management (MIT, Apache, GPL, etc.).
- Hands on PCI-DSS compliance implementation
- Excellent in securing Oracle Cloud Infrastructure (OCI) environments
- Good skills in IBM API Connect security configurations
- Good Temenos platform application security skills.
- Profeicent in RASP technologies
- Good skills in threat modeling using STRIDE and PASTA frameworks
- Hands-on skill in binary analysis and reverse engineering techniques
- Good in container security scanning and compliance skills.
- SIEM tools (Splunk, ELK)
- Excellent analytical and problem-solving skills
- Strong interpersonal communication skills preferably in Arabic and English
Applicants who are meeting the job requirements will be contacted.
** Applications will be accepted until 2-Nov-2025 at 2:00 P.M
Submissions received after this date and time will not be considered **
Key Skills
Ranked by relevanceReady to apply?
Join Oman Housing Bank | بنك الإسكان العُماني and take your career to the next level!
Application takes less than 5 minutes

