Being one of the biggest fintechs in the UAE with a growing portfolio of products and services, we are looking for a skilled Cyber Security Specialist to enforce the security of our products' local and cloud infrastructure.
Responsibilities:
Support Global/regional Edenred security team on implementing the information Security Framework including IT resilience strategies and projects according to Edenred Global standards and maintain quality service by following them.
Safeguard information system assets by identifying and solving potential and actual security problems.
Protect systems by defining access privileges, control structures, and resources.
Recognize problems by identifying abnormalities and reporting violations.
Implement security improvements by assessing current situation, evaluating trends, and anticipating requirements.
Determine security violations and inefficiencies by conducting periodic audits and controls.
Ensure the proper closure of vulnerabilities with close follow-up with relevant stakeholders.
Upgrade systems by implementing and maintaining security controls.
Maintain technical knowledge by attending educational workshops and reviewing publications.
Contribute to local/regional team effort by accomplishing related results as needed.
Seek to build security during the development stages of software systems, networks, and data centres.
Look for vulnerabilities and risks in hardware and software.
Find the best way to secure the IT infrastructure of an organization.
Build firewalls into network infrastructures.
Constantly monitor for attacks and intrusions.
When the Cyber Security Specialist finds a potential threat or attempted breach, close off the security vulnerability.
Identify the perpetrator and liaise with the police if necessary.
Contribute to the preparation of security-related reports/committee presentations and collect the relevant KPI/metrics. Keep users informed by preparing performance reports and communicating system status.
Requirements:
5 years of experience with a proven record of successfully conceptualizing, designing, and delivering security mechanisms and pen tests.
Strong IT skills and knowledge including hardware, software, and networks.
Meticulous attention to detail.
Ability to use logic and reasoning to identify the strengths and weaknesses of IT systems.
A forensic approach to challenges.
A deep understanding of how hackers work and the ability to keep up with the fast pace of change in the criminal cyber underworld.
Implement secure code review practices and tools (Checkmarx, SonarQube, Qualys).
Ability to seek out vulnerabilities in IT infrastructures.
Good level of understanding of security tools and having at least administrator level knowledge in one of them (vulnerability scan tools, Privileged Access Management Systems, End Point Detection Tool, Data Loss Prevention System, Web application firewall, SIEM).