Security Engineer
Client of 6 Pence
Posted on 23 Feb
Send me Jobs like this
Nationality
Any Nationality
Gender
Not Mentioned
Vacancy
1 Vacancy
Job Description
Roles & Responsibilities
Role Overview:
- We are looking for a skilled and proactive Security Engineer to design, implement, and maintain security systems and controls across our infrastructure, applications, and cloud environments.
- You will work cross-functionally with engineering, DevOps, and compliance teams to embed security into every layer of the organization.
Duties & Responsibilities:
Application Security:
- Perform secure code reviews and static/dynamic application security testing (SAST/DAST)
- Integrate security testing into CI/CD pipelines (shift-left security)
- Identify and remediate OWASP Top 10 vulnerabilities
- Conduct threat modeling for new features and architectures
- Work with developers to establish secure coding standards and guidelines
Cloud & Infrastructure Security:
- Design and enforce security controls across AWS environments
- Implement and monitor Cloud Security Posture Management (CSPM) using tools like Prowler, Wiz, or Prisma Cloud
- Manage IAM policies, least privilege access, and role-based access control (RBAC)
- Harden OS, container, and Kubernetes configurations
- Perform vulnerability scanning of cloud workloads and container images (Trivy, Qualys etc.)
Detection & Response:
- Build and tune detection rules in SIEM platforms (Splunk, Elastic, LogRhythm)
- Investigate security alerts, triage incidents, and lead incident response activities
- Conduct forensic analysis on endpoints, logs, and cloud resources
- Develop and maintain incident response playbooks.
Network Security:
- Design and maintain firewall rules, VPC security groups, and network segmentation
- Monitor network traffic for anomalies and potential threats
- Implement and manage VPN, zero trust network access (ZTNA), and WAF solutions
Vulnerability Management:
- Run regular vulnerability assessments across infrastructure and applications
- Prioritize and track remediation of findings in collaboration with engineering teams
- Manage and report on the organization's attack surface
- Coordinate penetration testing with internal red teams or external vendors
Security Automation & Tooling:
- Build security automation scripts and tooling (Python, Bash, Go)
- Integrate security tools into DevSecOps workflows
- Manage security tool stack including EDR, SIEM, SOAR, secrets management (HashiCorp Vault, AWS Secrets Manager)
- Develop dashboards and metrics for security visibility
Governance, Risk & Compliance (GRC) Support:
- Support compliance audits (SOC 2, ISO 27001, PCI-DSS,)
- Assist in developing and maintaining security policies and procedures
- Contribute to risk assessments and security awareness programs
Desired Candidate Profile
Qualifications, Experience & Skills
- Bachelor's degree in Computer Science, Information Security, or related field
- Minimum 2-3 years Experience
Technical Skills:
- Strong understanding of networking fundamentals (TCP/IP, DNS, HTTP/S, TLS, firewalls)
- Proficiency in at least one cloud platform AWS
- Experience with container security Docker, Kubernetes, image scanning
- Hands-on experience with SIEM platforms and log analysis
- Scripting/automation skills Python, Bash, or similar
- Familiarity with IaC security Terraform, CloudFormation, Helm
- Knowledge of identity and access management (IAM, OAuth, SAML, OIDC)
- Understanding of cryptography fundamentals and PKI
Security Tools Experience:
- Vulnerability scanners Trivy, Qualys, Nessus, or Tenable
- CSPM tools Prowler, Wiz, Prisma Cloud, or Security Hub
- SIEM Splunk, Elastic Security, or Chronicle
- EDR CrowdStrike, SentinelOne, or Carbon Black
- Secrets management HashiCorp Vault, AWS Secrets Manager
- Penetration testing tools Burp Suite, Metasploit, Nmap
Soft Skills:
- Strong analytical and problem-solving mindset
- Clear communication able to explain technical risks to non-technical stakeholders
- Ability to work independently and collaboratively in a fast-paced environment
- Detail-oriented with strong documentation habits
Company Industry
- Banking
- Financial Services
- Broking
Department / Functional Area
- IT Software
Keywords
- Security Engineer
Disclaimer: Naukrigulf.com is only a platform to bring jobseekers & employers together. Applicants are advised to research the bonafides of the prospective employer independently. We do NOT endorse any requests for money payments and strictly advice against sharing personal or bank related information. We also recommend you visit Security Advice for more information. If you suspect any fraud or malpractice, email us at abuse@naukrigulf.com
Similar Jobs
Information Security Engineer
SUNDUS MANAGEMENT CONSULTANCY & STUDIES BUREAUL.L.C
- 3 - 6 Years
- Dubai - United Arab Emirates (UAE)
SOC L1 or SOC L2
CYBER GATE DEFENSE L.L.C.
- 2 - 7 Years
- Abu Dhabi - United Arab Emirates (UAE)
VAPT Analyst / SOC Analyst (Cyber Security)
Multi Technology Solutions Co.
- 3 - 8 Years
- Al Kuwait - Kuwait
Security Specialist
Al Futtaim Private Company (LLC)
- 3 - 5 Years
- Dubai - United Arab Emirates (UAE)
Infrastructure & Cybersecurity Lead
Nazih Trading Company LLC
- 4 - 6 Years
- Sharjah - United Arab Emirates (UAE)