-
Akkodis

Senior AppSec Consultant (Secure SDLC Delivery)

Akkodis
United Arab Emirates · Full-time · Associate

We are hiring a hands-on Application Security expert who owns security delivery within fixed-price SDLC projects.

You will be accountable for what gets shipped, not just what gets documented.

This role is not governance, policy, or audit.

Activities:

  • Perform security assessment of Android and/or iOS applications
  • Conduct APK/IPA reverse engineering and static analysis
  • Identify hardcoded secrets, insecure storage, and exposed components
  • Test runtime protections (SSL pinning, root/jailbreak detection)
  • Perform dynamic analysis using tools such as Frida, Objection, Burp
  • Validate compliance against OWASP MASVS
  • Assess secure implementation of OAuth, tokens, and local storage
  • Ensure proper certificate pinning and API protection in mobile apps
  • Work with developers to remediate platform-specific vulnerabilities


Responsibilities:

Own Security in Real Delivery

  • Take end-to-end accountability for application security in fixed-price projects
  • Ensure security is implemented, tested, and delivered, not just definedWork directly with developers to fix issues in code and pipelines

Hands-On Engineering

  • Perform manual and automated code reviews
  • Implement and tune: SAST / DAST / SCA, API and container security scanning
  • Build and enforce CI/CD security gates

Threat Modeling & Validation

  • Conduct practical threat modelling
  • Validate vulnerabilities through hands-on testing (e.g., Burp, ZAP)
  • Focus on real exploitability, not theoretical risks

Delivery Under Constraints

  • Operate in fixed-price environments with real constraints
  • Prioritize effectively to balance security, timeline, and budget
  • Take ownership of outcomes and resolve issues proactively


Required experience

  • Bachelor’s degree in Cybersecurity or related field
  • Certifications such as CISSP and/or CSSLP
  • Hands-On / Offensive or AppSec Certification (OSCP, GWAPT, eWPT/eWPTX)
  • Mobile app security (iOS / Android)
  • Experience coaching or upskilling development teams on secure coding
  • 7+ years in Cyber Security with strong Application Security focus
  • Proven experience in Secure SDLC within delivery projects
  • Experience in fixed-price or commitment-based environments
  • You’ve personally fixed vulnerabilities in code or pipelines
  • You can demonstrate exploitation paths, not just list findings
  • You are comfortable making security vs delivery trade-offs


What success looks like

  • You’ve personally fixed vulnerabilities in code or pipelines
  • You can demonstrate exploitation paths, not just list findings
  • You are comfortable making security vs delivery trade-offs
  • Developers see you as a technical peer, not an auditor
  • Security is embedded in SDLC and CI/CD pipelines
  • Vulnerabilities are fixed early, not escalated late
  • Projects are delivered securely on time, and within budget
  • You are recognized as accountable for security delivery
  • Developers see you as a technical peer, not an auditor


Nice to have

  • Cloud security (AWS / Azure / GCP)
  • Kubernetes / container security
  • Experience in regulated industries


Please note, only qualified candidates would be contacted

Key Skills

Ranked by relevance

cicd ios reverse engineering cyber security cybersecurity embedded storage android cissp owasp oauth oscp aws ssl
Login to Apply
Posted
Apr 01, 2026
Type
Full-time
Level
Associate
Location
Dubai
Company
Akkodis

Industries

IT Services IT Consulting

Categories

Consulting Information Technology

Related Jobs

3 roles aligned with this opportunity

View all jobs
View Job Details
CI&T
Related

Site Reliability Engineer (SRE) Mid-Level / Senior, Portugal

2026-04-11

Full-time
Not Applicable
Portugal
IT Services
Engineering
View Job Details
BlackStone eIT
Related

Full Stack Engineer (Lead)

2026-04-10

Full-time
Mid-Senior
United Arab Emirates
IT Services
Information Technology
View Job Details
Expleo Group
Related

Mid Site Reliability Engineer

2026-04-08

Full-time
Not Applicable
Romania
IT Services
Information Technology