475 Information Security jobs in the United Arab Emirates
Senior Manager - Data Privacy
Posted today
Job Viewed
Job Description
About the Role
MENA Recruit is supporting a leading financial institution in the search for a Senior Manager – Data Privacy on a 12-month contract. This high-impact role sits within the Group Legal function, reporting directly to the Group Data Protection Officer (DPO). The successful candidate will be responsible for leading the organisation’s Data Privacy Office, implementing compliance frameworks, and managing regulatory risk across the Group.
Key Responsibilities
- Manage the Data Privacy team, including DPIA analysts and breach management analysts.
- Embed a culture of learning, improvement, and service excellence within the team.
- Champion the highest standards of data protection across the Group.
- Support the Group DPO in identifying, assessing, and mitigating privacy risks, including taking corrective actions where required.
- Oversee training delivery (directly or via external counsel) to build organisation-wide awareness of data privacy risks.
- Demonstrate strong leadership through communication, influence, efficiency, and professional excellence.
Requirements
- 8–10 years of proven experience in data privacy, compliance, or legal risk.
- Strong knowledge of global and regional data privacy regulations (e.g., GDPR).
- Professional certifications such as DPO, CIPP, or equivalent is desirable.
- Proven leadership and stakeholder management experience.
- Strong communication, reporting, and influencing skills.
#MENARecruitStrength #DataPrivacy #LegalJobs #ComplianceCareers #DubaiJobs #ContractRoles #BankingCompliance #RiskManagement #DataProtection #GDPR
#J-18808-LjbffrSenior Android Security Engineer
Posted today
Job Viewed
Job Description
Seeking a Senior Android Developer to enhance app security, optimize performance, and work with cybersecurity experts. 5+ years experience in Android, Java, Kotlin, C/C++, with a focus on security and optimization.
DescriptionWe are seeking a highly skilled Senior Android Developer with deep expertise in building and maintaining secure mobile applications. Your primary role will be to enhance the security, performance, and reliability of our mobile application shield, ensuring it is robust enough to prevent potential vulnerabilities such as memory corruption, race conditions, and other critical issues. As a key contributor to our security team, you will be involved in refining codebases in Java, Kotlin, and C/C++ , with a strong focus on Android internals, native code integration, and performance optimization. You will also have the opportunity to work closely with our cybersecurity experts to develop advanced defense mechanisms, ensuring that our shield is resilient to modern mobile attacks.
Key Responsibilities:- Analyze and optimize existing Android codebases to prevent memory corruption, race conditions, and security vulnerabilities.
- Build and maintain robust shields for mobile applications, with a focus on low-level Android development and native code (C/C++).
- Collaborate with the security team to implement cutting-edge security features and defense mechanisms against mobile threats.
- Debug and analyze complex crashes, particularly those involving memory issues, threading, and Android kernel interactions.
- Review and optimize native Android components (JNI, NDK) for performance, security, and stability.
- Ensure that the Android shield is resistant to reverse engineering, hooking, and injection attacks.
- Develop and maintain Android SDKs, ensuring seamless integration with hybrid runtimes and third-party apps.
- Stay updated with the latest in Android security research and contribute to improving the mobile application's resilience against emerging threats.
- 5+ years of experience in mobile application development with a strong focus on Android internals and security.
- In-depth knowledge of Android kernel, low-level Android development, and hybrid application runtimes.
- Proven experience in C and C++ development, especially in memory management and concurrent programming.
- Experience with Android NDK (Native Development Kit), JNI, and the ability to write and debug native code.
- Expertise in identifying and resolving memory corruption, race conditions, and other performance bottlenecks in Android apps.
- Hands-on experience with security vulnerabilities (such as buffer overflows, code injection) and defense techniques (anti-debugging, encryption).
- Experience building, maintaining, and distributing SDKs for Android platforms.
- Deep understanding of mobile application attacks (e.g., Frida, hooking, root detection) and the ability to implement effective countermeasures.
Competitive salary and benefits package.
Fully remote work option with flexible work hours.
Possibility of relocation to Dubai.
Opportunity to work on a massive scale, protecting millions of users worldwide and facing unique, large-scale security challenges.
Cutting-edge security technology in a dynamic and innovative environment.
Access to groundbreaking security research as part of a research-driven company, where your work contributes to solving some of the most critical security issues in mobile technology.
Room for professional growth and career development in a company that values continuous learning and innovation.
Supportive work environment focused on collaboration, innovation, and pushing the boundaries of mobile security.
Senior Android Security Engineer
Posted today
Job Viewed
Job Description
Seeking a Senior Android Developer to enhance app security, optimize performance, and work with cybersecurity experts. 5+ years experience in Android, Java, Kotlin, C/C++, with a focus on security and optimization.
DescriptionWe are seeking a highly skilled Senior Android Developer with deep expertise in building and maintaining secure mobile applications. Your primary role will be to enhance the security, performance, and reliability of our mobile application shield, ensuring it is robust enough to prevent potential vulnerabilities such as memory corruption, race conditions, and other critical issues. As a key contributor to our security team, you will be involved in refining codebases in Java, Kotlin, and C/C++ , with a strong focus on Android internals, native code integration, and performance optimization. You will also have the opportunity to work closely with our cybersecurity experts to develop advanced defense mechanisms, ensuring that our shield is resilient to modern mobile attacks.
Key Responsibilities:- Analyze and optimize existing Android codebases to prevent memory corruption, race conditions, and security vulnerabilities.
- Build and maintain robust shields for mobile applications, with a focus on low-level Android development and native code (C/C++).
- Collaborate with the security team to implement cutting-edge security features and defense mechanisms against mobile threats.
- Debug and analyze complex crashes, particularly those involving memory issues, threading, and Android kernel interactions.
- Review and optimize native Android components (JNI, NDK) for performance, security, and stability.
- Ensure that the Android shield is resistant to reverse engineering, hooking, and injection attacks.
- Develop and maintain Android SDKs, ensuring seamless integration with hybrid runtimes and third-party apps.
- Stay updated with the latest in Android security research and contribute to improving the mobile application's resilience against emerging threats.
- 5+ years of experience in mobile application development with a strong focus on Android internals and security.
- In-depth knowledge of Android kernel, low-level Android development, and hybrid application runtimes.
- Proven experience in C and C++ development, especially in memory management and concurrent programming.
- Experience with Android NDK (Native Development Kit), JNI, and the ability to write and debug native code.
- Expertise in identifying and resolving memory corruption, race conditions, and other performance bottlenecks in Android apps.
- Hands-on experience with security vulnerabilities (such as buffer overflows, code injection) and defense techniques (anti-debugging, encryption).
- Experience building, maintaining, and distributing SDKs for Android platforms.
- Deep understanding of mobile application attacks (e.g., Frida, hooking, root detection) and the ability to implement effective countermeasures.
Competitive salary and benefits package.
Fully remote work option with flexible work hours.
Possibility of relocation to Dubai.
Opportunity to work on a massive scale, protecting millions of users worldwide and facing unique, large-scale security challenges.
Cutting-edge security technology in a dynamic and innovative environment.
Access to groundbreaking security research as part of a research-driven company, where your work contributes to solving some of the most critical security issues in mobile technology.
Room for professional growth and career development in a company that values continuous learning and innovation.
Supportive work environment focused on collaboration, innovation, and pushing the boundaries of mobile security.
Mid-Level Network & Security Engineer
Posted today
Job Viewed
Job Description
Abu Dhabi, United Arab Emirates | Posted on 11/22/2024
We are seeking a highly skilled and motivated Network & Security Engineer to design, implement, and maintain the company’s network and security infrastructure. The ideal candidate will possess a deep understanding of network protocols, security policies, and firewall management, combined with the ability to troubleshoot complex network and security issues.
You will collaborate with cross-functional teams to ensure the security, efficiency, and performance of all IT systems, enabling secure communication, data transfer, and protection from cyber threats.
Network Infrastructure Design & Implementation:
- Design, deploy, and maintain local and wide area network (LAN/WAN) solutions.
- Configure and troubleshoot network devices including routers, switches, firewalls, and wireless access points.
- Manage and monitor network performance, ensuring optimal uptime and minimal disruptions.
- Implement and manage VPNs, SD-WAN, and other remote access technologies.
- Develop and enforce security policies and best practices for network infrastructure.
- Configure, monitor, and manage firewalls (e.g., Palo Alto, Cisco, Fortinet, Checkpoint).
- Implement Intrusion Detection Systems (IDS) and Intrusion Prevention Systems (IPS).
- Perform regular vulnerability assessments and penetration testing.
- Ensure compliance with internal and external security standards (e.g., ISO 27001, NIST, GDPR).
- Act as the first point of contact for network and security-related incidents.
- Investigate, analyze, and resolve network and security issues in a timely manner.
- Respond to security alerts and take appropriate action, such as mitigation or escalation.
- Perform root cause analysis and implement corrective actions to prevent recurrence.
- Continuously monitor network traffic for suspicious activities and potential security breaches.
- Maintain network security logs and generate reports for management.
- Assist with security audits and risk assessments, identifying potential vulnerabilities.
- Collaborate with IT teams, vendors, and other departments to implement network and security solutions.
- Provide technical expertise and support to other teams for troubleshooting and resolving network issues.
- Document network configurations, security measures, incident resolutions, and best practices.
Required Qualifications:
Education: Bachelor’s degree in Computer Science, Information Technology, or related field (or equivalent experience).
Certifications:
- Cisco Certified Network Associate (CCNA), JNCIA, or equivalent certifications.
- Additional certifications (e.g., Palo Alto, Checkpoint, Fortinet, AWS Certified Security Specialty) are a plus.
- Minimum 3-5 years of experience in network engineering or security roles.
- Proven experience with network devices (routers, switches, firewalls) and security technologies (IDS/IPS, VPN, NDR, WAF, Load Balancers).
- Experience with cloud networks and hybrid environments (AWS, Azure, Google Cloud) is a plus.
- Strong knowledge of TCP/IP, BGP, OSPF, DNS, DHCP, VLANs, and network troubleshooting.
- Proficiency in firewall and VPN technologies (Palo Alto, Fortinet, Cisco FTD).
- Experience with network switches & routers (Cisco, Juniper, Huawei)
- Experience with SDN (Cisco ACI)
- Experience with network monitoring tools (e.g., SolarWinds, Nagios, Wireshark).
- Experience with Load Balancers/WAF (F5, Array)
- Experience with NAC (Cisco ISE, Forescout)
- Familiarity with network security best practices, encryption technologies, and secure network design.
- Excellent troubleshooting and problem-solving skills.
- Strong written and verbal communication skills.
- Experience with automation tools (e.g., Ansible, Terraform, Python scripting).
- Experience with DNS Security (F5, Infoblox)
- Familiarity with security Email Security tools (e.g., Fortimail, Proofpoint).
- Knowledge of regulatory compliance standards and frameworks (e.g., GDPR, HIPAA, PCI DSS)
Senior Security Engineer (CyberArk PAM)
Posted today
Job Viewed
Job Description
Help AG is seeking for a highly skilled Senior Security Engineer (CyberArk PAM) who will be responsible for the design, implementation, administration, and support of Privileged Access Management (PAM) infrastructure using CyberArk. This role requires deep technical knowledge, hands-on experience, and the ability to work collaboratively across various IT and business teams to secure privileged accounts and identities in enterprise environments.
ResponsibilitiesDesign, deploy, configure, and maintain the CyberArk PAM suite including components such as PAS, PVWA, CPM, PTA, PSM, and Conjur.
Manage and rotate privileged credentials across servers, databases, network devices, applications, and cloud platforms.
Define and implement policies for privileged access usage, session recording, and user behavior monitoring.
Perform onboarding of privileged accounts and maintain vault policies and safe configurations.
Monitor PAM systems and respond to security events, incidents, or alerts related to privileged accounts.
Conduct regular health checks and performance tuning of CyberArk components.
Integrate CyberArk with SIEM, ticketing systems, identity governance tools, and other cybersecurity solutions.
Maintain detailed technical documentation, including configurations, procedures, and best practices.
Work closely with internal teams including Identity & Access Management (IAM), Compliance, and IT Operations.
Provide technical guidance and mentoring to junior engineers and participate in knowledge-sharing sessions.
Support audit and compliance activities by generating reports and participating in assessments.
Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field.
5+ years of experience in Information Security with at least 3 years focused on CyberArk PAM administration and engineering.
Strong expertise in the CyberArk suite (PAS, CPM, PVWA, PSM, PTA, AAM, etc.).
Experience with Windows, Linux, and cloud platforms (AWS/Azure) in relation to privileged access.
Knowledge of LDAP, Active Directory, RDP, SSH, and authentication/authorization protocols.
Familiarity with PowerShell, REST APIs, and automation scripting for CyberArk operations.
Solid understanding of security best practices, access control principles, and risk management frameworks.
Experience with integration into SIEMs (Splunk, QRadar), ITSM systems (ServiceNow), and identity management platforms.
Preferred Certifications:
CyberArk Certified Delivery Engineer (CDE)
CyberArk Defender or Sentry Certification
CISSP, CISA, or GIAC certifications
Experience in compliance frameworks (ISO 27001, NIST, PCI-DSS, etc.)
Strong analytical and troubleshooting skills.
Excellent verbal and written communication skills.
Ability to work independently and in a team environment.
Strong time management and organizational skills.
Customer-oriented with a proactive approach to problem-solving.
Health insurance with one of the leading global providers for medical insurance.
Career progression and growth through challenging projects and work.
Employee engagement and wellness campaigns activities throughout the year.
Excellent learning and development opportunities.
Annual flights tickets to home country.
Inclusive and diverse working environment.
Flexible/Hybrid working environment.
Open door policy.
Help AG is the cybersecurity arm of e& enterprise (formerly Etisalat Digital) and provides leading enterprise businesses and governments across the Middle East with strategic consultancy combined with tailored information security services and solutions that address their diverse requirements, enabling them to evolve securely with a competitive edge.
Present in the Middle East since 2004, Help AG was strategically acquired by e& (formerly Etisalat Group) in Feb 2020, hence creating a cybersecurity and digital transformation powerhouse in the region.
Help AG has firmly established itself as the region's trusted IT security advisor by remaining vendor-agnostic, trustworthy, independent, and cybersecurity focused. With best-of-breed technologies from industry-leading vendor partners, expertly qualified service delivery teams and a state-of-the-art consulting practice, Help AG delivers unmatched value to its customers by strengthening their cyber defences and safeguarding their business.
#J-18808-LjbffrEmbedded Security Research Engineer
Posted today
Job Viewed
Job Description
CENSUS is a leading global cybersecurity services provider, delivering cutting-edge security solutions to Fortune 500 companies and organizations worldwide. We serve diverse industries including financial services, critical infrastructure, automotive, and secure communications. Our strength lies in combining rigorous research, scientific analysis, and deep engineering expertise to deliver unparalleled security consulting and assessment services.
The RoleWe're seeking exceptional Security Research Engineers to join our Product Security Professional Services team. In this role, you'll work directly with our clients to design, assess, and implement robust security solutions for embedded systems and platforms.
Key Responsibilities- Conduct comprehensive security assessments of platform technologies, including hardware, firmware, system software, and protocols
- Design and review security architectures that align with product requirements
- Perform in-depth security analysis through source code auditing, functional testing, and fuzz testing
- Research and evaluate emerging technologies and frameworks for client security solutions
- Identify security vulnerabilities and architectural weaknesses across various technologies
- Document and communicate security risks to both technical and business stakeholders
- Collaborate with client development teams and partners on long-term security projects
- Verify implementation compliance with security requirements and threat models
- MSc or BSc in Electrical Engineering, Computer Science, Computer Engineering, or related field
- 4+ years experience in embedded systems or platform security
- 2+ years leading embedded systems security research projects
- Background in C, C++, Rust, or Assembly (ARM or x86)
- Expert knowledge of embedded systems, Linux, or RTOS security
- Proficiency in C, C++, Rust, or Assembly (ARM/x86) for system-level programming
- Hands-on experience with:
- ARM architectures and platforms
- Trusted execution environments (TEE, TPM, SE, SPU)
- Secure boot and hardware-backed attestation
- System hardening features (MPU, MMU/IOMMU, NX, DAC/MAC)
- Reverse engineering and debugging techniques
- Vulnerability assessment and reporting
- Understanding of cryptographic implementations in system security
- Experience with:
- Edge and cloud confidential computing
- Hardware/software side-channel attacks
- RISC-V architectures
- International team collaboration
- Knowledge of virtualization and hypervisor technologies
- Analytical thinking and scientific mindset
- Strong problem-solving capabilities
- Dedication to continuous learning and growth
- Ability to take ownership of complex projects
Join a team at the forefront of cybersecurity innovation, working with cutting-edge technologies and global clients. We offer opportunities to tackle challenging security problems while growing your expertise in a collaborative, research-driven environment.
#J-18808-LjbffrInformation Security - Specialist (Operations)
Posted today
Job Viewed
Job Description
Overview
The Information Security - Specialist will report directly to the Information Security Manager and will be responsible for implementing and managing security measures to protect the Bank's information assets. This role focuses on proactive threat detection, incident response, and vulnerability management across all technology domains, including endpoints and cloud environments. In collaboration with IS management, the Specialist will identify gaps in existing information security policies, standards, guidelines, and procedures, recommending updates to ensure alignment with regulatory requirements, industry best practices, and leading security standards.
JOB CONTEXT/ DIMENSIONS The IS Specialist will be responsible for overseeing security technologies like Cloud Security, DLP, Kubernetes, API security, SIEM and EDR, and ensuring compliance with standards and policies. Responsibilities include managing incident response, performing risk assessments, and optimizing security tools across cloud and network environments. The position requires collaboration with internal teams and external stakeholders to enhance security posture and mitigate threats.
Responsibilities- Assist in developing and implementing the information security strategy and roadmap across all security technology domains.
- Research and analyze security standards, systems, and authentication protocols, providing recommendations to IS management.
- Review architectural security designs, Data flow and offer recommendations for approval by IS management.
- Enforce security policies and control across cloud environments to ensure a secure infrastructure.
- Manage and optimize CSPM tools to continuously monitor and enforce security best practices within cloud environments like Azure.
- Lead cloud incident response efforts, investigating and addressing threats in real-time to mitigate potential security risk.
- Lead the ongoing management of DLP technologies to protect sensitive data from unauthorized access and leakage.
- Regularly review and update DLP policies to reflect changes in business needs, technologies, and regulatory requirements.
- Identify and assess security risks in APIs and Kubernetes by evaluating access control, misconfigurations, and vulnerabilities.
- Enforce security policies and controls for APIs and Kubernetes.
- Oversee the management, optimization, and tuning of the SIEM platform to ensure effective security incident monitoring.
- Conduct deep-dive investigations into security alerts and collaborate with teams to resolve incidents efficiently.
- Conduct regular security audits and reviews to ensure compliance with internal policies and industry standards.
- Manage the deployment and operational effectiveness of EDR solutions to monitor, detect, and respond to endpoint threats.
- Lead incident response for security breaches, including investigation, containment, eradication, and recovery.
- Provide post-incident analysis, identify lessons learned, and improve future response strategies.
- Monitor the bank’s networks for security breaches and investigate violations as they occur.
- Advise IS management on emerging security trends and best practices, assist in updating security policies and procedures, and support departments in investigating breaches and pursuing disciplinary or legal actions as needed.
- Contribute to team efforts by accomplishing related results as needed.
- Perform other duties as may be assigned by IS management.
• Work within framework of bank’s information security policies, standards, guidelines and procedures as applicable.
• Work accomplishments will be reviewed by the Information Security Manager.
Education and Qualifications- Bachelor’s degree in computer science, Network/ Cyber Security or related information technology field.
- Professional / Technical Qualifications / Diplomas: Platform specific (e.g., SIEM/ Networking/ Operating System) certifications.
- Security (e.g. SANS/ ISC2 / CEH/ CISSP) certifications
8 - 10 years’ experience in Information Security or related field.
Role Competencies• In-depth knowledge and understanding in information security and technology infrastructure, ensuring robust protection of systems and applications.
• Expertise in enforcing cloud security policies, IAM configurations, and data protection practices to ensure a secure infrastructure.
• Proficient in managing and optimizing CSPM tools to continuously monitor and enforce security best practices.
• Experienced in reviewing and enhancing security configurations and architectures to align with industry best practices and compliance requirements.
• Proficient in managing API and Kubernetes security policies, including implementing posture management, access controls, encryption, and continuous monitoring to ensure a secure environment.
• Skilled in conducting thorough vulnerability assessments and comprehensive risk analyses, prioritizing risks and implementing remediation strategies to secure systems.
• Proficiency in configuring and managing DLP tools, data classification, policy enforcement, risk assessment, compliance knowledge, and integrating with security systems to prevent unauthorized data loss.
• Skilled in configuring, optimizing, and managing Security Information and Event Management (SIEM), EDR, and DAM platforms for real-time threat detection and effective incident response.
• Committed to enhancing organizational security posture through ongoing monitoring, assessment, and optimization of security tools and processes.
• Demonstrates innovative thinking by exploring alternative approaches and developing conceptual frameworks to address complex security challenges.
• Possesses strong communication skills, capable of conveying complex security concepts to senior non-technical stakeholders in clear, jargon-free language.
• Adept at managing multiple concurrent projects, effectively prioritizing tasks to meet organizational demands and deadlines.
#J-18808-LjbffrBe The First To Know
About the latest Information security Jobs in United Arab Emirates !
IT Network & Security Solutions Architect (Pre-Sales)
Posted today
Job Viewed
Job Description
IT Network & Security Solutions Architect (Pre-Sales)
Abu Dhabi, United Arab Emirates | Posted on 02/03/2025
We are looking for an experienced IT Network & Security Solutions Architect (Pre-Sales) to join our team in Abu Dhabi. The ideal candidate will have a strong background in IT Network & Security Pre-Sales, a proven track record in designing solutions, and the ability to drive opportunities from initiation to closure.
Key Responsibilities- Lead technical discussions with clients, gather requirements, and generate leads.
- Design IT Network & Security solutions and assist the sales team in closing deals.
- Work on RFPs, conduct technical sessions, and collaborate closely with clients and the sales team.
- Develop strong relationships with clients and ensure high customer satisfaction.
- Stay updated on market trends and emerging technologies in network and security solutions.
- Experience: Minimum 3-5 years of Pre-Sales experience in IT Network & Security solutions within the Abu Dhabi market.
- Industry Background: Must have experience working with a System Integrator, preferably in Abu Dhabi.
- Technical Knowledge: Hands-on experience with network & security solutions from vendors like CISCO, HUAWEI, Fortinet, Aruba, Palo Alto, and Check Point.
- Security Solutions Expertise: Familiarity with PAM, NAC, WAF, DLP, SIEM , and other security solutions.
- Skills: Strong ability to work independently and within a team in a fast-paced environment.
- Additional Preference: Possessing a valid UAE driving license and own vehicle will be an added advantage.
- Salary: AED 15,000 – 18,000 per month
- Experience: Minimum 3-5 years in IT Network & Security Pre-Sales
- Availability: Immediate joiners preferred
Network Security Engineer
Posted today
Job Viewed
Job Description
Secure the Future! We're hiringa network security engineer in the UAE marketon behalf of our client!
About Our Client:
Our client, a leading IT company in the UAE, is recognized for its cutting-edge technology solutions and commitment to cybersecurity excellence. They are seeking an experienced Network Security Engineer to enhance and maintain the security of their IT infrastructure and networks.
The Role:
As a Network Security Engineer , you will be responsible for safeguarding the company's network and IT infrastructure, ensuring that it operates securely and efficiently. You will design, implement, and monitor security solutions, preventing unauthorized access and responding to potential threats.
What You'll Do:
- Design, implement, and manage network security solutions.
- Monitor and analyze network traffic to detect security breaches or vulnerabilities.
- Conduct security assessments, audits, and risk analysis.
- Implement firewall, VPN, anti-virus, and intrusion detection/prevention systems.
- Collaborate with IT teams to ensure seamless network operations.
- Develop and enforce security policies and protocols.
- Respond to and mitigate security incidents in a timely manner.
- Provide reports on security status and make recommendations for improvements.
What We're Looking For:
- A Bachelor's degree in Computer Science, Information Technology, or a related field.
- Minimum of 5 years of experience in network security engineering or a similar role.
- Expertise in firewalls, VPNs, IDS/IPS, and other security technologies.
- Strong understanding of network protocols, IP routing, and network traffic analysis.
- Excellent problem-solving skills with attention to detail.
- Certifications such as CISSP, CCNP Security, or similar are a plus.
What's in It for You:
- Competitive compensation package.
- Opportunity to work on advanced cybersecurity projects.
- Career growth and professional development opportunities.
- A supportive and dynamic work environment.
Principal Information Security Consultant
Posted today
Job Viewed
Job Description
Abu Dhabi, United Arab Emirates | Posted on 08/18/2025
CyberGate Defense, an IHC company, is a leading force in cybersecurity innovation, dedicated to enhancing the digital resilience of organizations across the region. Established with the mission to fortify the region’s cybersecurity landscape, CyberGate harnesses extensive expertise to tackle complex information security and operational challenges.
Our commitment to driving progress is reflected in our broad range of cybersecurity services and solutions. By leveraging cutting-edge, disruptive technologies, we deliver transformative, human-centric security solutions that safeguard organizations and empower them to navigate a secure and dynamic digital future.
With a wealth of in-house knowledge, CyberGate Defense is well-equipped to address the most intricate cybersecurity issues. We strive to make digital transformation secure, accessible, and beneficial, ensuring that organizations throughout the region thrive in an increasingly interconnected digital world.
Job DescriptionJob Description:
The Principal Information Security Consultant shall be the primary technical liaison between our clients and our internal security teams. In this critical role, the consultant will leverage their deep understanding of information security concepts and technical expertise to bridge the gap between client needs and the specialized teams, including Security Operations Center (SOC), Vulnerability Assessment and Penetration Testing (VAPT), Azure Security, and Governance, Risk, and Compliance (GRC). This is an individual contributor role with no direct reports or managerial responsibilities.
Key Responsibilities:
- Act as the primary point of contact for clients, translating their information security requirements and concerns into actionable tasks for CyberGate's internal teams.
- Provide expert guidance and consultation to clients on a wide range of information security topics, including threat landscapes, best practices, and emerging technologies.
- Collaborate closely with SOC teams to understand incident response activities, provide client-facing updates, and help clients interpret security alerts and reports.
- Work with VAPT teams to articulate client scope, interpret vulnerability reports, and advise clients on remediation strategies and prioritize findings.
- Liaise with Azure security specialists to understand cloud security posture, discuss architecture, and provide recommendations to clients for securing their Azure environments.
- Engage with GRC teams to ensure client compliance needs are met, assist in policy development, and help clients navigate regulatory frameworks.
- Conduct technical deep-dives and provide high-level architectural insights to both clients and internal teams to facilitate effective security solutions.
- Develop and deliver clear, concise, and technically accurate documentation, reports, and presentations for clients and internal stakeholders.
- Stay up-to-date with the latest information security trends, vulnerabilities, and technologies to provide proactive and informed advice.
Qualifications:
- Extensive experience in information security, with a strong foundational understanding across various domains (e.g., network security, application security, cloud security, incident response, compliance).
- Demonstrable technical proficiency to effectively communicate and collaborate with specialized security teams (SOC, VAPT, Azure, GRC).
- Proven ability to translate complex technical information into understandable terms for both technical and non-technical audiences.
- Exceptional client-facing communication and interpersonal skills, with a track record of building strong client relationships.
- Strong analytical and problem-solving abilities, with a keen eye for detail.
- Ability to work independently and manage multiple client engagements simultaneously in a fast-paced environment.
- Relevant industry certifications (such as CISSP, CISM, CISA, CCSP) are highly desirable.
Education:
Bachelor’s degree in computer science, Information Security, or a related technical field. A master’s degree is a plus.
#J-18808-Ljbffr