Job Search and Career Advice Platform

Enable job alerts via email!

Information Security Engineer (SOC)

Tabby

Riyadh

On-site

SAR 200,000 - 300,000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading fintech company in Riyadh is seeking a Cybersecurity Engineer to manage security solutions, conduct penetration tests, and enhance security awareness. The ideal candidate has a degree in IT or computer science, with 2-3 years of relevant experience, strong cloud knowledge, and security certifications preferred. You will work collaboratively across teams to implement security measures and respond to threats, contributing to the company's mission of reshaping financial freedom through innovative payment solutions.

Qualifications

  • Two to three years of experience delivering security solutions.
  • Knowledge of IT security issues in a fintech environment.
  • Security certifications such as CEH, CompTIA Security+ preferred.
  • Experience developing and delivering security training programs.

Responsibilities

  • Manage and implement enterprise-level Anti-Virus solutions.
  • Conduct infrastructure vulnerability assessments and penetration tests.
  • Automate incident response procedures to improve efficiency.
  • Work across teams to prioritize security features and bugs.

Skills

Cloud services knowledge (GCP, Terraform)
Dynamic Application Security Testing (DAST)
Static Application Security Testing (SAST)
Penetration Testing
End-Point Protection
Project Management
Security Awareness training
Security Monitoring
Strong communication
Programming and scripting (Bash, Python)

Education

Degree in Information Technology, Computer Science, Software Engineering
Job description

We're looking for a Cybersecurity Engineer!

Job Information
  • Department: Cyber Security Monitoring
  • Employment Type: Full Time
  • Location: KSA
  • Workplace type: Onsite
  • Reporting To: Weam Munshi
Key Responsibilities

You will be working in a dynamic, rapidly evolving environment with the following responsibilities:

Cloud Security
  • Strong understanding of cloud services such as Google Cloud Platform (GCP), Terraform, CI/CD Security, Kubernetes Security, GitLab, and product security features and fixes.
Penetration Testing
  • Perform Dynamic Application Security Testing (DAST) and Static Application Security Testing (SAST) for web, mobile, and API applications.
  • Plan and conduct infrastructure vulnerability assessments and penetration testing of systems, switches, servers, and other critical components.
End-Point Protection
  • Plan, implement, and manage enterprise-level Anti-Virus (AV) solutions to safeguard against malware, viruses, and other threats.
Infrastructure Security
  • Review corporate IT infrastructure security, including network security controls, anti-malware implementation, Cloud Security Posture Management (CPM), Data Loss Prevention (DLP), firewall rule sets, backup and disaster recovery, and vulnerability management processes.
Project Management
  • Work across various product and engineering teams to prioritize security features and bugs, ensuring implementation and mitigation.
  • Collaborate with DevOps and other teams to implement and improve security controls and processes.
Security Awareness
  • Conduct phishing simulations and other awareness exercises to assess employee susceptibility to social engineering attacks.
  • Provide targeted training to enhance resilience against cybersecurity threats.
Security Monitoring
  • Automate and improve incident response procedures, including playbook creation to reduce manual response efforts.
  • Monitor threats and vulnerabilities, conduct regular threat intelligence research, and develop detection rules using various tools.
Skills, Knowledge and Expertise
  • Degree in Information Technology, Computer Science, Software Engineering, or a related field.
  • Knowledge of IT security issues and best practices, particularly in a fast‑paced fintech environment.
  • Security certifications such as CEH, CompTIA Security+ (preferred but not required).
  • Strong communication, influencing, and stakeholder management skills.
  • Two to three years of experience working across teams to deliver security solutions and drive adoption.
  • Experience in developing and delivering security training programs.
  • Experience working in a culturally diverse environment.
  • Understanding of online technologies, payment methods, content delivery networks, REST APIs, microservices, and application development.
  • Programming and scripting knowledge (e.g., Bash, Python).
  • Strong cloud experience, with knowledge of AWS, GCP, and OCI.
About Tabby

Tabby creates financial freedom in the way people shop, earn and save, by reshaping their relationship with money.

The company’s flagship offering allows shoppers to split their payments online and in-store with no interest or fees. Over 32,000 global brands and small businesses, including Amazon, Noon, IKEA and Shein use Tabby to accelerate growth and gain loyal customers by offering easy and flexible payments online and in stores.

Tabby has generated over $7 billion in transaction volume for its partner brands and has the highest rated, most reviewed, largest and fastest growing app of any fintech in the GCC region.

Tabby launched operations in 2020 and has raised +$1 billion in equity and debt funding from global and regional investors.

Our Hiring Process
  1. Applied
  2. Review
  3. HR call @Tabby
  4. Technical interview @Tabby
  5. Assessment
  6. Final interview @Tabby
  7. Hired

Not quite right? Register your interest to be notified of any roles that come along that meet your criteria.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.