Security Consulting Engineer

IFZA Dubai

Dubai

On-site

AED 260,000 - 420,000

Full time

10 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

IFZA Dubai is seeking a Security Consulting Engineer to own the security posture of SaaS platforms (including Zoho), Azure cloud infrastructure, and software delivery pipelines.

This role sits at the intersection of cloud security architecture, application security, secure software delivery, and enterprise SaaS governance - making it a unique opportunity for engineers who thrive across multiple security domains.

Qualifications

  • 8+ years in cloud security, application security, or information security.
  • Experience securing production environments on multi-Cloud providers.
  • Hands-on app security assessments (manual + tools).
  • CI/CD security tooling integration experience.
  • Experience administering Zoho or equivalent enterprise SaaS platforms.
  • SIEM, log analysis and incident response exposure.

Responsibilities

  • Own Azure cloud security controls across environments and networks.
  • Perform secure design reviews and threat modeling for features.
  • Integrate security scanning into CI/CD pipelines (SAST/DAST/ SCA).
  • Manage container security and registry security for Azure Container Apps.
  • Lead security incident response and governance activities.
  • Oversee Zoho One security configurations, access controls, and audits.

Skills

Cloud security
Application security
DevSecOps
Security operations
Zoho security
SIEM & monitoring
Scripting & automation
Threat modeling

Tools

Azure Defender for Cloud
Azure Firewall
Azure Front Door
Azure Key Vault
Burp Suite
GitHub Actions
Jenkins
GitLab CI
SonarQube
Snyk
Trivy
Checkov
Docker
Terraform
Microsoft Sentinel
Zoho administration

Job description

Role:

We are looking for a driven Security Consulting Engineer to own the security posture of SaaS platforms (including Zoho), Azure cloud infrastructure, and software delivery pipelines. This role sits at the intersection of cloud security architecture, application security, secure software delivery, and enterprise SaaS governance - making it a unique opportunity for engineers who thrive across multiple security domains.

You will be responsible for embedding security into every layer of our technology stack: from Azure workloads and CI/CD pipelines to Zoho application configurations and third-party SaaS integrations. You will work closely with DevOps, IT, and Engineering teams to ensure security is shared, continuous practice rather than a checkpoint.

Key Responsibilities:
Cloud Security (Azure)
  • Maintain security controls across Azure environments - Virtual Networks, Network Security Groups (NSGs), Private Endpoints, and Azure Firewall
  • Own outbound/inbound network security posture, including Azure Firewall policy design, FQDN allow-listing, and egress control
  • Monitor cloud infrastructure for misconfigurations, threats, and compliance violations using Microsoft Defender for Cloud
  • Conduct cloud risk assessments and maintain cloud security architecture documentation
  • Implement DDoS protection and WAF policies (Azure Front Door / Application Gateway)
Application Security
  • Perform application security reviews across web applications and APIs - authentication/authorization flaws, business logic issues, injection, SSRF, and OWASP Top 10 categories
  • Conduct threat modeling and secure design review for new features and architecture changes
  • Define and enforce secure coding standards and developer security guidelines
  • Review API and microservice designs for authentication, input validation, and data exposure risks
Secure Software Delivery (DevSecOps)
  • Integrate security scanning into CI/CD pipelines (SAST, DAST, SCA, secrets detection)
  • Implement and manage container security controls for Azure Container Apps (image scanning, registry security, runtime configuration)
  • Automate security testing and compliance checks across deployment workflows
  • Manage vulnerability remediation workflows in collaboration with development teams
  • Conduct security risk assessments across software delivery pipelines, code repositories, and deployment environments to identify, prioritize, and remediate risks before they reach production
Zoho & SaaS Platform Security
  • Own security configuration and governance of Zoho One (CRM, Desk, People, Books, Cliq, One)
  • Manage Zoho user access controls, role-based permissions, and data sharing policies
  • Monitor Zoho audit logs and investigate suspicious activity or data access anomalies
  • Configure Zoho security policies including MFA enforcement, IP restrictions, and session controls
  • Assess third-party Zoho integrations, extensions, and webhook endpoints for security and data privacy risks
  • Maintain SaaS security inventory and conduct periodic access reviews across all platforms
  • Evaluate and onboard new SaaS tools through a security review process
Security Operations & Governance
  • Operate and tune SIEM platform for cloud and SaaS log ingestion, alerting, and incident response
  • Lead security incident response for cloud, pipeline, and SaaS-related events
  • Develop and maintain security policies, runbooks, and compliance documentation
  • Conduct regular vulnerability assessments and penetration testing coordination
Required Experience:
  • 8+ years of hands-on experience in cloud security, application security, or information security
  • Proven experience securing production environments on multi-Cloud providers.
  • Hands-on experience performing application security assessments (manual + tool-assisted)
  • Hands-on experience integrating security tools into CI/CD pipelines
  • Experience administering and securing Zoho or equivalent enterprise SaaS platforms
  • Demonstrated experience with SIEM platforms, log analysis, and incident response
Technical Skills
  • Cloud platform: Azure security services (Defender for Cloud, Azure Firewall, Front Door, Key Vault)
  • Application security: OWASP Top 10, Burp Suite, API security testing, secure code review
  • DevSecOps tooling: GitHub Actions, Jenkins, or GitLab CI; SonarQube, Snyk, Trivy, Checkov
  • Container security: Docker image scanning; experience securing serverless/managed container platforms (e.g., Azure Container Apps)
  • SIEM & monitoring: Microsoft Sentinel or equivalent
  • Scripting & automation: Python, Bash, PowerShell, or Terraform
  • Security frameworks: OWASP, NIST, CIS Benchmarks, Zero Trust
  • Zoho administration: security configuration across Zoho One suite
Desired qualifications:
  • Certifications: AZ-500, CCSP, or equivalent
  • Experience with Zoho Creator, Zoho Analytics, or custom Zoho integrations security
  • Familiarity with Kubernetes/AKS security (if organization later adopts it)
  • Exposure to compliance frameworks: ISO 27001, SOC 2 Type II, GDPR, HIPAA, PCI-DSS
  • Background in red team / penetration testing or bug bounty participation
  • Experience with infrastructure-as-code security scanning (Terraform)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Consultant: Azure, SaaS & DevSecOps
Senior Security Consultant: Azure, SaaS & DevSecOps

IFZA Dubai • Dubai

On-site
AED 260,000 - 420,000
Cloud Security Engineer
Cloud Security Engineer

Confidential • Dubai

Hybrid
AED 350,000 - 550,000
Cloud Security Engineer
Cloud Security Engineer

DAG • Dubai

On-site
AED 300,000 - 540,000
Cloud Security Engineer
Cloud Security Engineer

Theme Blog Studio • Dubai

On-site
AED 250,000 - 450,000
Cloud Security Specialist
Cloud Security Specialist

CPX • Abu Dhabi

On-site
AED 120,000 - 170,000
Security Consultant
Security Consultant

Epergne Solutions • Abu Dhabi

On-site
Cloud Security Engineer - Hybrid Platforms
Cloud Security Engineer - Hybrid Platforms

AlFuttaim • Dubai

Hybrid
Security Consultant
Security Consultant

Epergne Solutions • Dubai

On-site
Senior Security Engineer – Cloud Security
Senior Security Engineer – Cloud Security

Delivery Hero • Dubai

On-site
AED 360,000 - 540,000
Cloud Security Engineer (AWS & Azure)
Cloud Security Engineer (AWS & Azure)

Dicetek LLC • Dubai Emirate

On-site
AED 100,000 - 140,000