Application Security Engineer

VYB Unverified

Multiple Cities, Pakistan

Posted May 23, 2026 53 views

PKR. 175,000 - 175,000/Month

VYB is seeking a skilled Application Security Engineer with a strong background in web application security testing to join our team. The ideal candidate will have at least three years of hands-on experience in identifying, analyzing, and mitigating security vulnerabilities in web applications. This role involves working closely with development teams to design and implement security measures that protect sensitive data and maintain the integrity of our fintech and SaaS offerings. The Application Security Engineer will utilize tools like Burp Suite Pro to conduct thorough security assessments and perform threat modeling, ensuring that security is integrated into the software development lifecycle. In this role, the engineer will also focus on compliance with regulatory standards and contribute to the development of security architecture that addresses current and emerging threats. While this position does not involve managing a team, it requires strong collaboration and communication skills to effectively write reports and provide recommendations that enhance the company's security posture. Experience with cloud security, particularly AWS and Azure environments, and knowledge of DevSecOps practices will be highly valuable in achieving VYB's security objectives.
Responsibilities

  • Conduct comprehensive application security testing, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Interactive Application Security Testing (IAST) to identify vulnerabilities.
  • Perform threat modeling and attack tree analysis to proactively evaluate potential security risks and design effective mitigation strategies.
  • Collaborate with software development teams to embed security best practices and controls throughout the application development lifecycle.
  • Assess and validate security controls in cloud environments such as AWS and Azure, ensuring compliance with established policies and frameworks.
  • Utilize Burp Suite Pro and other security tools to conduct vulnerability assessments and penetration testing on web applications.
  • Develop and maintain security architecture designs that align with organizational goals and regulatory requirements such as ISO/IEC 27001.
  • Respond promptly to security incidents, performing root cause analysis and implementing corrective actions to prevent recurrence.
  • Stay current with the OWASP Top Ten vulnerabilities and emerging application security threats to advocate for proactive security measures.
  • Engage in security risk assessments and support compliance efforts with relevant regulatory standards impacting fintech and SaaS sectors.
  • Work closely with DevOps teams to integrate DevSecOps practices, automating security testing and continuous monitoring.
  • Analyze security logs using SIEM tools to detect and respond to potential malicious activity, including malware analysis where necessary.
  • Provide clear and concise written reports detailing findings, risk implications, and remediation recommendations to technical and non-technical stakeholders.
  • Support security control assessments and audits to ensure that application environments meet organizational and industry security standards.

Job Details

Total Positions:
1 Post
Job Shift:
Remote
Job Type:
Job Location:
Gender:
No Preference
Minimum Experience:
3 Years
Apply Before:
Jun 23, 2026
Posting Date:
May 23, 2026

VYB

· 1-10 employees -

What is your Competitive Advantage?

Get quick competitive analysis and professional insights about yourself
Talk to our expert team of counsellors to improve your CV!
Try Rozee Premium

Similar Job Titles

Senior QA Engineer

Naseeb Enterprise Inc, Karachi, Pakistan
Posted Sep 11, 2026

QA Testing Engineer

Naseeb Enterprise Inc, Karachi, Pakistan
Posted Sep 12, 2026
I found a job on Rozee!