Application Security Engineer

Apply Now β†—
πŸ“ Beirut, LebanonFull time
IT Services

About this role

Our Opportunity

The Application Security Engineer will assess and strengthen the security of applications developed and maintained by our team. The role will conduct penetration tests and vulnerability assessments, provide practical remediation guidance, and verify fixes in close collaboration with Development, QA, and DevOps teams.

You Will
  • Plan and conduct manual and automated penetration testing of web applications, APIs, and mobile applications where applicable.
  • Evaluate authentication, authorization, session management, input validation, business logic, and sensitive data protection.
  • Investigate vulnerability scanner results, eliminate false positives, and document clear, reproducible evidence.
  • Prioritize findings based on severity, exploitability, and business impact, and promptly escalate critical vulnerabilities.
  • Work with developers to address root causes, recommend practical fixes, and retest vulnerabilities before closure.
  • Conduct targeted security code reviews, contribute to secure design reviews, and support security checks within development pipelines.
  • Maintain a vulnerability register and prepare detailed technical reports and concise management updates.
  • Guide developers on secure coding practices and help prevent recurring vulnerabilities.
Expected Deliverables
  • Assessment plans outlining scope, approach, and schedule.
  • Security reports with prioritized findings, evidence, reproduction steps, and remediation recommendations.
  • Vulnerability register tracking ownership, deadlines, and resolution status.
  • Retesting results confirming fixes and documenting outstanding risks.
  • Periodic management summaries and practical secure coding guidance.

Requirements

To Be Successful You Need
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field, or equivalent practical experience.
  • 3+ years of hands-on experience in application security or penetration testing, including web applications and APIs.
  • Strong understanding of common application vulnerabilities and OWASP testing practices.
  • Demonstrated ability to perform manual security testing beyond automated vulnerability scanning.
  • Practical experience with tools such as Burp Suite, OWASP ZAP, API testing tools, and vulnerability scanners.
  • Good understanding of HTTP/HTTPS, REST APIs, authentication, access controls, SQL, and application configurations.
  • Ability to review code in at least one relevant programming language and write basic testing or automation scripts.
  • Experience guiding developers through remediation and verifying implemented fixes.
  • Ability to manage assessments independently and communicate findings clearly to technical and nontechnical stakeholders.
  • Relevant practical certifications, such as OSCP, OSWE, or equivalent.
  • Experience with mobile security testing, threat modeling, and secure design reviews.
  • Familiarity with CI/CD security tools, dependency scanning, and secret detection.
  • Experience working in on-premises or restricted environments and handling sensitive information.
  • Certifications are an advantage; demonstrated practical competence remains the primary selection criterion.
Siren is an equal opportunity employer. At Siren we value ethics, dedication, sustainability, safeguarding, respect, and inclusion.

Are you interested to work with our dedicated team on impactful projects? We welcome applications from all qualified candidates, regardless of background. Do apply!


Frequently Asked Questions

Is the salary disclosed for the Application Security Engineer position at sirenassociates?
The salary for this Application Security Engineer role at sirenassociates is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Application Security Engineer position at sirenassociates located?
This Application Security Engineer role at sirenassociates is based in Beirut, Lebanon. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Application Security Engineer role at sirenassociates full-time or part-time?
This is listed as a Full time position. It is posted as a Application Security Engineer role at sirenassociates.
How do I apply for the Application Security Engineer position at sirenassociates?
Click the "Apply Now" button on this page. You will be redirected to sirenassociates's official application portal hosted on zohorecruit where you can submit your application directly.
When was the Application Security Engineer job at sirenassociates posted?
This Application Security Engineer position at sirenassociates was posted on Sep 15, 2026. Apply as soon as possible β€” early applications are often reviewed first.
Application Security Engineer
sirenassociates
Apply for this role β†—

You'll be redirected to sirenassociates's official application page on zohorecruit.