Senior Cybersecurity Specialist

Tanqeeb

Dubai

On-site

AED 300,000 - 420,000

Full time

8 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Tanqeeb is seeking an experienced cybersecurity leader to drive defense operations in a dynamic Dubai-based environment. You will oversee Defender for Endpoint/Identity/Cloud/O365, manage Sentinel analytics and incident workflows, and deploy Wazuh for endpoint monitoring and threat detection.

You will develop MITRE-aligned detection, conduct threat hunts, and lead investigations while improving web and AD security, network controls, and ISO 27001 program support.

Qualifications

  • 10+ years of professional cybersecurity experience.
  • Hands-on with the Microsoft Defender security suite.
  • Strong experience with Microsoft Sentinel covering SIEM, SOAR, threat hunting, analytics, and incident response.
  • Hands-on experience with Wazuh deployment, configuration, tuning, monitoring, and reporting.
  • Strong practical understanding of MITRE ATT&CK and detection engineering.
  • Strong knowledge of web application security, OWASP Top 10, WAF, and vulnerability remediation.
  • Strong knowledge of Active Directory security, identity attacks, privilege escalation, lateral movement, hardening, and monitoring.
  • Strong knowledge of network security, including firewalls, segmentation, VPN, IDS/IPS, secure protocols, and traffic analysis.
  • Working knowledge of ISO 27001, ISMS, risk management, security controls, and audit requirements.
  • Experience supporting ISO 27001 audits, control implementation, gap assessments, evidence collection, and remediation.
  • Practical experience with security automation and scripting using PowerShell, Python, KQL, Logic Apps, n8n, APIs, or similar technologies.
  • Strong understanding of enterprise security architecture, security operations, incident investigation, and risk management.

Responsibilities

  • Lead cybersecurity operations, threat detection, incident response, threat hunting, and security posture improvement initiatives.
  • Manage and optimize Microsoft Defender for Endpoint, Defender for Identity, Defender for Cloud, Defender for Office 365, and related Microsoft security solutions.
  • Administer and enhance Microsoft Sentinel, including analytics rules, KQL queries, workbooks, playbooks, threat hunting, and incident workflows.
  • Deploy, manage, tune, and monitor Wazuh for endpoint monitoring, log analysis, compliance, and threat detection.
  • Develop detection logic and response processes aligned with the MITRE ATT&CK framework.
  • Conduct security investigations, root cause analysis, threat hunting, and post-incident reporting.
  • Assess and improve web application security, including OWASP Top 10, WAF configuration, secure configurations, and vulnerability remediation.
  • Strengthen Active Directory security, including identity protection, privilege management, hardening, monitoring, and attack-path reduction.
  • Review and improve network security controls, including firewalls, IDS/IPS, segmentation, VPN, secure remote access, and network monitoring.
  • Develop security automation using PowerShell, Python, KQL, APIs, Logic Apps, n8n, and other workflow/automation platforms.
  • Automate alert triage, enrichment, notification, ticketing, containment, and security reporting processes.
  • Support ISO 27001 / ISMS activities, including risk assessments, control reviews, internal audits, evidence collection, gap assessments, corrective actions, and continuous improvement.
  • Collaborate with IT, infrastructure, cloud, network, and application teams to embed security into enterprise systems and processes.
  • Support vulnerability management, security assessments, remediation tracking, documentation, runbooks, and security playbooks.

Skills

Microsoft Defender
Microsoft Sentinel
Wazuh
MITRE ATT&CK
OWASP Top 10
Active Directory
Network security
ISO 27001/ISMS
Scripting
Security automation

Job description

Key Responsibilities
  • Lead cybersecurity operations, threat detection, incident response, threat hunting, and security posture improvement initiatives.
  • Manage and optimize Microsoft Defender for Endpoint, Defender for Identity, Defender for Cloud, Defender for Office 365, and related Microsoft security solutions.
  • Administer and enhance Microsoft Sentinel, including analytics rules, KQL queries, workbooks, playbooks, threat hunting, and incident workflows.
  • Deploy, manage, tune, and monitor Wazuh for endpoint monitoring, log analysis, compliance, and threat detection.
  • Develop detection logic and response processes aligned with the MITRE ATT&CK framework.
  • Conduct security investigations, root cause analysis, threat hunting, and post-incident reporting.
  • Assess and improve web application security, including OWASP Top 10, WAF configuration, secure configurations, and vulnerability remediation.
  • Strengthen Active Directory security, including identity protection, privilege management, hardening, monitoring, and attack-path reduction.
  • Review and improve network security controls, including firewalls, IDS/IPS, segmentation, VPN, secure remote access, and network monitoring.
  • Develop security automation using PowerShell, Python, KQL, APIs, Logic Apps, n8n, and other workflow/automation platforms.
  • Automate alert triage, enrichment, notification, ticketing, containment, and security reporting processes.
  • Support ISO 27001 / ISMS activities, including risk assessments, control reviews, internal audits, evidence collection, gap assessments, corrective actions, and continuous improvement.
  • Collaborate with IT, infrastructure, cloud, network, and application teams to embed security into enterprise systems and processes.
  • Support vulnerability management, security assessments, remediation tracking, documentation, runbooks, and security playbooks.
Required Skills & Experience
  • 10+ years of professional cybersecurity experience.
  • Strong hands-on experience with the Microsoft Defender security suite.
  • Strong experience with Microsoft Sentinel covering SIEM, SOAR, threat hunting, analytics, and incident response.
  • Hands-on experience with Wazuh deployment, configuration, tuning, monitoring, and reporting.
  • Strong practical understanding of MITRE ATT&CK and detection engineering.
  • Strong knowledge of web application security, OWASP Top 10, WAF, and vulnerability remediation.
  • Strong knowledge of Active Directory security, identity attacks, privilege escalation, lateral movement, hardening, and monitoring.
  • Strong knowledge of network security, including firewalls, segmentation, VPN, IDS/IPS, secure protocols, and traffic analysis.
  • Working knowledge of ISO 27001, ISMS, risk management, security controls, and audit requirements.
  • Experience supporting ISO 27001 audits, control implementation, gap assessments, evidence collection, and remediation.
  • Practical experience with security automation and scripting using PowerShell, Python, KQL, Logic Apps, n8n, APIs, or similar technologies.
  • Strong understanding of enterprise security architecture, security operations, incident investigation, and risk management.
Preferred Skills
  • Experience with n8n and security workflow automation.
  • Experience with AI-assisted / AI-driven development approaches for security tools and automation.
  • Microsoft Azure security experience.
  • Advanced KQL development, detection rules, alert logic, dashboards, and workbooks.
  • Experience integrating SIEM/SOAR platforms with ticketing systems, messaging platforms, threat intelligence, and endpoint security solutions.
  • Knowledge of security frameworks, baselines, compliance requirements, and control maturity assessments.
  • Ability to map technical controls and evidence to ISO 27001 requirements.
  • Strong communication, documentation, analytical, and stakeholder management skills.
Preferred Certifications
  • - CISSP- CISM- ISO 27001 Lead Auditor / Lead Implementer- CEH- SANS GIAC certifications- Microsoft SC-200- Microsoft AZ-500- Microsoft SC-100
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cloud Security Specialist
Cloud Security Specialist

CPX • Abu Dhabi

On-site
AED 120,000 - 170,000
Cyber Security Specialist
Cyber Security Specialist

Hamdan Bin Mohammed Smart University • Dubai

On-site
AED 180,000 - 320,000
Cyber Security Specialist
Cyber Security Specialist

جامعة حمدان بن محمد الذكية • Dubai

On-site
AED 180,000 - 240,000
Specialist - NetSecOps - MDE Operations And Support
Specialist - NetSecOps - MDE Operations And Support

iConnect IT Business Solutions DMCC • Abu Dhabi

On-site
AED 180,000 - 300,000
Cloud Security Specialist
Cloud Security Specialist

ICONNECT IT BUSINESS SOLUTIONS DMCC • Abu Dhabi

On-site
AED 279,000 - 446,000
Security Specialist
Security Specialist

ICONNECT IT BUSINESS SOLUTIONS DMCC • Abu Dhabi

On-site
AED 180,000 - 280,000
Specialist – Endpoint Security
Specialist – Endpoint Security

CPX • Abu Dhabi

On-site
AED 240,000 - 360,000
Specialist Cybersecurity Analyst (Emirati Talent)
Specialist Cybersecurity Analyst (Emirati Talent)

EDGE • Abu Dhabi

On-site
AED 180,000 - 260,000
Security Engineer
Security Engineer

Paramount Assure • Dubai

On-site
AED 180,000 - 300,000
Senior Information security Analyst
Senior Information security Analyst

K20s Kinetic Technologies Private LImited - India • Dubai Emirate

On-site
AED 240,000 - 360,000