Track This Job
Add this job to your tracking list to:
- Monitor application status and updates
- Change status (Applied, Interview, Offer, etc.)
- Add personal notes and comments
- Set reminders for follow-ups
- Track your entire application journey
Save This Job
Add this job to your saved collection to:
- Access easily from your saved jobs dashboard
- Review job details later without searching again
- Compare with other saved opportunities
- Keep a collection of interesting positions
- Receive notifications about saved jobs before they expire
AI-Powered Job Summary
Get a concise overview of key job requirements, responsibilities, and qualifications in seconds.
Pro Tip: Use this feature to quickly decide if a job matches your skills before reading the full description.
Job Description
Job Description – Security Assessor (Individual Contributor)
Position: Security Assessor – Individual Contributor
Experience: 5–8 Years
Location: Dubai
Employment Type: Full-time
Role Overview
We are seeking an experienced Security Assessor (Individual Contributor) with strong hands-on expertise in Web, Mobile, and API security, source code review, and intermediate-level cloud security capabilities and good knowledge of network security. The ideal candidate will also have a solid understanding of the banking domain, business risks, and risk assessment methodologies.
This role requires independently conducting security assessments, identifying vulnerabilities, working with business teams and providing remediation guidance with minimal supervision.
Key Responsibilities
Security Assessments
- Perform Web Application Security Testing based on OWASP Top 10, SANS, and industry standards.
- Conduct Mobile Application Security Testing (Android/iOS).
- Evaluate API Security for REST, SOAP, GraphQL, and microservices.
- Conduct manual and automated source code reviews across multiple languages and frameworks.
- Provide detailed remediation guidance to development teams.
- Perform intermediate cloud security reviews (AWS/Azure/GCP).
- Identify misconfigurations and assess cloud-native security risks.
- Conduct basic network security assessments and configuration reviews.
- Apply strong understanding of banking domain risks, regulatory expectations, and security controls.
- Map technical findings to business impact, ensuring accurate risk interpretation.
- Perform risk assessment and vulnerability risk rating using industry-standard frameworks (CVSS, OWASP risk rating, custom client risk models, etc.).
- Support secure design discussions and provide guidance during architecture reviews.
- Prepare clear and comprehensive reports with risk ratings and remediation steps.
- Collaborate with developers, DevOps, infrastructure, and architecture teams to close vulnerabilities.
- Support integration of security controls into SDLC/DevSecOps pipelines.
- Strong hands-on experience in Web, Mobile, and API Security Testing.
- Proficiency in manual and automated source code reviews.
- Intermediate-level understanding of cloud security (AWS, Azure, GCP).
- Basic understanding of network security.
- Strong knowledge of banking processes, application workflows, and business risks.
- Ability to translate technical vulnerabilities into business impact.
- Familiarity with risk assessment frameworks and vulnerability rating mechanisms.
- Proficiency with security tools such as Burp Suite, MobSF, Postman, Checkmarx, Fortify, SonarQube, OWASP ZAP, etc.
- Excellent analytical, documentation, and communication skills.
- Ability to operate independently as an Individual Contributor in a fast-paced environment.
- Certifications such as OSCP, OSWE, OSEP, CEH, eWPTX, eMAPT, CISA, CCSK, AWS/Azure Security, or relevant security credentials.
- Exposure to DevSecOps pipelines, CI/CD, container security.
Key Skills
Ranked by relevanceReady to apply?
Join Happiest Minds Technologies and take your career to the next level!
Application takes less than 5 minutes

