Application Security Specialist

1 week ago


Cape Town, Western Cape, South Africa Mukuru Full time R1 200 000 - R3 600 000 per year
About Mukuru

Mukuru is one of Africa's leading FinTech companies, transforming the way millions of people access financial services. With over 40 million cross-border transactions processed, we empower communities through technology that's safe, affordable, and reliable.

Our products - from money transfers and insurance to digital wallets and payment solutions - make financial inclusion possible for individuals and businesses across emerging markets.

At Mukuru, we're building technology that matters - and keeping it secure is mission-critical. That's where you come in.
The Opportunity

We're looking for an Application Security Specialist to join our forward-thinking Information Security Team based in Cape Town or Johannesburg, South Africa. This is your chance to play a leading role in securing Mukuru's rapidly evolving fintech ecosystem and ensuring that our customers' trust stays rock solid.

You'll work closely with our Engineering, DevOps, and Product teams to safeguard our applications from design to deployment. From penetration testing and vulnerability management to building a culture of secure development, you'll be the expert who ensures security is baked into everything we build.

If you're passionate about protecting systems, love a technical challenge, and thrive in a fast-paced, collaborative environment - this role was made for you.
What You'll Do
1. Application Security Testing
  • Conduct web and mobile application penetration testing and API security assessments.
  • Perform threat modelling, secure code reviews, and attack surface analysis.
  • Manage and monitor the production cloud infrastructure (AWS/Azure) for vulnerabilities and misconfigurations.
  • Lead SAST (Static Application Security Testing) and DAST (Dynamic Application Security Testing) initiatives.
2. Security Assessment Programme
  • Design and execute Mukuru's annual penetration testing programme.
  • Coordinate both internal and external security assessments, ensuring proper scoping and timely delivery.
  • Manage relationships with external security partners and report on remediation progress.
  • Drive collaboration across engineering, IT, and compliance to close security gaps quickly and effectively.
3. Secure Development Lifecycle (SDLC) Enablement
  • Champion secure coding practices and embed them in the SDLC.
  • Partner with developers, testers, and business analysts to provide proactive security guidance during sprints and releases.
  • Create and maintain security frameworks, checklists, and guidelines (aligned with OWASP, OSAMM, BSIMM, MITRE).
  • Deliver training and awareness sessions to uplift security capability across teams.
4. Continuous Improvement & Innovation
  • Stay on top of cybersecurity trends, tools, and attack vectors to anticipate risks.
  • Research and implement innovative security solutions that strengthen Mukuru's posture.
  • Identify process improvements that make security assessments faster, smarter, and more automated.
5. Professional Development
  • Participate in KPI meetings and 1:1 sessions with the Head of Information Security.
  • Maintain certifications and industry knowledge to remain a trusted subject matter expert.
What You'll Bring

Essential:
  • 5+ years of experience in IT systems security or application security.
  • Proven experience in offensive security testing and vulnerability management.
  • Strong technical knowledge of web application and network security.
  • Familiarity with security assessment tools such as Burp Suite, Kali, Nmap, Nikto, Hydra, and
  • Understanding of SAST/DAST tools (e.g., Veracode, Whitesource, Blackduck).
  • Experience with AWS or Azure cloud environments.
  • Solid grasp of secure software development and programming languages (e.g., PHP, .NET).
  • Strong reporting, documentation, and project management skills.
Preferred:
  • Degree in Computer Science, Information Security, or a related field.
  • Industry certifications (e.g., CISSP, CISM, OSCP, ISO 27001, ISSAP).
  • Prior experience in a development or DevSecOps environment.
You'll Thrive Here If You Are:
  • Passionate about security, automation, and innovation.
  • A sharp problem-solver with strong analytical and critical thinking skills.
  • A clear communicator who enjoys collaborating across technical and business teams.
  • A self-starter who can manage multiple priorities with precision and accountability.
  • Curious, always learning, and proactive in identifying new ways to secure systems.
I am sure you are reading this job description and meet majority of the criteria BUT you may also still not be 100% comfortable in applying. We believe that there is a place for everyone under the Mukuru sun and we want YOU to contribute to our diverse tapestry of talent. So come on, take a leap of faith, and send your application if you meet majority of our requirements. Remember to include a snippet of how you will bring value and help us build a future of success that will help us determine where and how you may best be suited" Maybe you are just the future Mukurian we need

Should you be appointed in a remote/work from home role at Mukuru, it is your responsibility to ensure that you have uninterrupted internet connectivity and a 'work-like' environment at your home location, in order to deliver your best in terms of performance, productivity and service to our customers.

If you do not receive any response after two weeks, please consider your application unsuccessful.

NB: ALL STAFF APPOINTMENTS WILL BE MADE WITH DUE CONSIDERATION OF THE COMPANY'S DIVERSITY AND INCLUSION PLANS

  • Cape Town, Western Cape, South Africa Mukuru Full time R600 000 - R1 200 000 per year

    About MukuruMukuru is one of Africa's leading FinTech companies, transforming the way millions of people access financial services. With over40 million cross-border transactionsprocessed, we empower communities through technology that'ssafe, affordable, and reliable.Our products — frommoney transfersandinsurancetodigital walletsandpayment solutions— make...


  • Cape Town, Western Cape, South Africa Mukuru Full time R120 000 - R180 000 per year

    About MukuruMukuru is one of Africa's leading FinTech companies, transforming the way millions of people access financial services. With over 40 million cross-border transactions processed, we empower communities through technology that's safe, affordable, and reliable.Our products — from money transfers and insurance to digital wallets and payment...


  • Cape Town, Western Cape, South Africa Careers at DLK Group Full time R500 000 - R1 200 000 per year

    DLK Group | ContractApplication/Platform Security Engineer (Specialist)Cape Town, South Africa | Posted on 09/10/2025check(event) ; career-website-detail => ,meta)" mousedown="lyte-button => check(event)" final- final-class="lyte-button lyteBackgroundColorBtn lyteSuccess" lyte-rendered=""> check(event)" mousedown="lyte-button => check(event)" final-...


  • Cape Town, Western Cape, South Africa iLaunch Full time R450 000 - R900 000 per year

    Design and implement secure architecture for applications and platforms.Conduct vulnerability assessments, code reviews, and penetration testing.Collaborate with development and DevOps teams to embed security into CI/CD pipelines.Monitor and respond to security incidents, ensuring timely resolution and documentation.Maintain threat models and risk...


  • Cape Town, Western Cape, South Africa DLK Group Full time R1 000 000 - R3 000 000 per year

    Job DescriptionThe role of the Specialist Application/Platform Security Engineer is to design and implement security measures for applications and platforms and encompasses many activities including (but not limited to): Conducting security assessments and vulnerability testingMonitoring and responding to security incidents and threatsEnsuring compliance...


  • Cape Town, Western Cape, South Africa Global One Full time R900 000 - R1 200 000 per year

    Job briefA Cyber Security Specialists responsibilities include using their skills to detect insecure features and malicious activities within our networks and infrastructure. They will implement customized application security assessments for client-based asset risk, corporate policy compliance as well as conduct vulnerability assessment. They should have an...


  • Cape Town, Western Cape, South Africa Boardroom Appointments Full time R1 000 000 - R3 000 000 per year

    Key purpose:As an ICT Security Specialist, you will be responsible for implementing and maintaining the security of company assets in accordance with industry standards. You will also ensure that all internal processes are in line with regulations and best practice guidelines. Your responsibilities include reviewing vulnerabilities to identify potential...


  • Cape Town, Western Cape, South Africa Boardroom Appointments Full time

    Key purpose:As a Security Sales Specialist, you'll be responsible for developing new business opportunities and managing existing accounts. You will use your sales skills to build long-term relationships with customers by providing them with the best possible service and advice on their security needs. You must have a passion for selling Cyber Security...


  • Cape Town, Western Cape, South Africa Boardroom Appointments Full time R900 000 - R1 200 000 per year

    Key purpose:The Application Security Engineer is responsible for managing tickets of high complexity, conducts advanced and complicated tasks, and provides resolution to a diverse range of complex problems. This position uses considerable judgement and independent analysis within defined policies and practices. Applies analytical thinking and deep technical...


  • Cape Town, Western Cape, South Africa 247 Security Services Full time R200 000 - R250 000 per year

    CAPE TOWN VACANCIES: GRADE B SUPERVISORS AND GRADE C OFFICERS24/7 Security has several vacancies in the Goodwood (Cape Town) area.GRADE B SUPERVISORSMinimum requirements and experience:Grade B PSIRA certificateTwo years' Supervisory experience in the security industryIndustrial/Warehouse experienceMatricContactable referencesClear criminal recordLevel 1...