Overview
We have an immediate requirement for the below JD in UAE.
Budget - MAX 15k AED
Role Overview
We are seeking an experienced Security Engineer to own and enhance the organization’s cybersecurity posture end-to-end. This is a technical, hands-on role requiring expertise in managing security technologies and responding to incidents, combined with a solid understanding of governance, risk, and compliance (GRC) at a high level. The Security Engineer will assess current security maturity, remediate gaps, develop policies and procedures, and manage enterprise security technologies. The role will cover EDR, cloud security across Azure, AWS, and GCP, Imperva Cloud Security, DLP solutions, Proxy-based controls, and other security platforms.
Responsibilities
- Gap Assessment & Roadmap: Perform cybersecurity posture assessments across both cloud and on-premises environments. Identify, document, and prioritize risks, vulnerabilities, and process gaps across people, technology, and governance. Develop remediation roadmaps aligned with business priorities and regulatory requirements.
- Remediation, Policy & GRC Alignment: Design and implement remediation activities addressing technical, process, and documentation gaps. Draft, review, and maintain cybersecurity policies, standards, and procedures aligned with ISO 27001, NIST CSF, and regional regulations. Ensure technical security practices support broader GRC objectives including compliance, audit readiness, and risk management.
- Security Operations & Platform Management: Manage, optimize, and support Endpoint Detection and Response (EDR) solutions for advanced endpoint protection and monitoring. Oversee cloud security across Azure, AWS, and GCP, ensuring consistent policy enforcement and monitoring. Manage and tune enterprise tools such as Imperva Cloud Security, DLP platforms, and Proxy-based security solutions.
- Security Engineering & Projects: Conduct proof-of-concepts (POCs) for new technologies and evaluate their fit for business needs. Collaborate with vendors, procurement, and IT teams for deployment and lifecycle management of security tools.
- Incident Response: Act as first responder for cybersecurity incidents across endpoints, cloud, and on-premises environments. Investigate, contain, and coordinate recovery actions. Maintain and test incident response runbooks, escalation processes, and lessons-learned documentation. Partner with IT, risk, and business stakeholders to ensure security is embedded across operations. Conduct awareness sessions and provide technical guidance to staff on security practices.
Qualifications & Experience
- Bachelor’s degree in Computer Science, Cybersecurity, or related field (or equivalent experience).
- 4–7 years of experience in cybersecurity engineering, security operations, or IT security governance.
- Strong knowledge of cloud security (Azure, AWS, GCP) and enterprise security solutions (Imperva Cloud Security, EDR platforms, DLP, Proxy solutions, SIEM, IAM / PAM, endpoint security).
- Demonstrated experience in conducting gap assessments, developing policies, and handling incidents.
- Familiarity with GRC frameworks and practices, with the ability to align technical security controls to risk and compliance requirements.
- Familiarity with security frameworks (ISO 27001, NIST CSF, CIS Controls, etc.).
- Relevant certifications (CISSP, CISM, CEH, CompTIA Security+, or cloud security certifications like AZ-500, AWS Security Specialty) preferred.