Senior Cybersecurity Engineer
Nexus Analytica
Employer Active
Posted 18 hrs ago
Send me Jobs like this
Nationality
Any Nationality
Gender
Not Mentioned
Vacancy
1 Vacancy
Job Description
Roles & Responsibilities
We are seeking an experienced and proactive Senior Cybersecurity Engineer to lead the design, implementation, and enforcement of security practices across our software systems, infrastructure, and development lifecycle.
In this role, you will take ownership of end-to-end cybersecurity, from secure architecture and DevSecOps integration to cloud security, incident response, and compliance alignment. You will collaborate closely with development, DevOps, and management teams to ensure our platforms built on Python/Django, React.js, and Azure meet the highest standards of security, privacy, and resilience.
This is a critical role in a mission-driven company developing digital solutions for high-impact sectors. The ideal candidate is hands-on, threat-aware, and highly experienced in both cloud security (Azure) and application security.
Key Responsibilities ???? Security Architecture & Risk Management- Define and enforce security standards and architecture across cloud and software systems.
- Perform threat modeling and security risk assessments for applications, infrastructure, and new features.
- Establish secure development lifecycle practices (e.g., secure coding, code review, static analysis).
- Collaborate with the software architect and DevOps team to integrate security into design decisions.
- Secure Azure cloud environments including networking, storage, compute, and identity management.
- Implement and manage security controls using Azure Security Center, Azure Defender, and Microsoft Entra (AD).
- Monitor cloud security posture and respond to threats using Azure Sentinel or other SIEM tools.
- Conduct vulnerability assessments, static and dynamic code analysis (SAST/DAST), and penetration testing.
- Identify and remediate OWASP Top 10 vulnerabilities in backend (Django REST) and frontend (React.js) codebases.
- Review API authentication/authorization, session management, and data protection controls.
- Integrate security tools into CI/CD pipelines (e.g., Snyk, Checkmarx, SonarQube).
- Automate secrets management, scanning, and compliance checks.
- Work with DevOps to harden Docker images, Kubernetes (AKS), and CI/CD workflows.
- Collaborate with backend, frontend, DevOps, and Architecture teams to enforce up-to-date security protocols and measures.
- Define and maintain security incident response procedures and playbooks.
- Monitor for suspicious activity across systems, endpoints, and cloud infrastructure.
- Lead investigations and forensics for potential breaches or suspicious activity.
- Conduct regular security drills and post-incident reviews.
- Support compliance efforts (e.g., ISO 27001, SOC 2, GDPR, among others) by implementing and documenting controls.
- Maintain asset inventories, security policies, and audit logs.
- Conduct internal security training and awareness programs.
Desired Candidate Profile
Required Qualifications
- Experience
- 7+ years of professional experience in cybersecurity, with hands-on technical roles.
- Strong experience securing Azure cloud infrastructure.
- Proven ability to secure software development environments and web applications.
- Technical Skills
- Demonstrated proficiency in security tools (SIEMs, scanners, endpoint protection, etc.).
- Demonstrated solid scripting skills (Python, PowerShell, or Bash) for automation and remediation.
- Demonstrated deep understanding of web app vulnerabilities, secure coding, encryption, identity & access management.
- Familiarity with containers, Kubernetes, and securing cloud-native environments.
- Soft Skills
- Strong analytical, investigative, and documentation skills.
- Excellent communication skills with ability to train and advise cross-functional teams.
- Highly proactive and detail-oriented; able to work independently and take ownership of security posture.
- Certifications such as: CISSP, OSCP, CEH, CISM, Microsoft SC-100 / AZ-500 / SC-200
- Experience in regulated environments (e.g., energy, infrastructure, fintech).
- Familiarity with frameworks such as NIST CSF, MITRE ATT&CK, and OWASP SAMM.
- Experience working with security tools such as Nessus, Burp Suite, CrowdStrike, etc.
Company Industry
- Power Generation
- Power Distribution
- Energy
- Nuclear Energy
Department / Functional Area
- IT Software
Keywords
- Senior Cybersecurity Engineer
Disclaimer: Naukrigulf.com is only a platform to bring jobseekers & employers together. Applicants are advised to research the bonafides of the prospective employer independently. We do NOT endorse any requests for money payments and strictly advice against sharing personal or bank related information. We also recommend you visit Security Advice for more information. If you suspect any fraud or malpractice, email us at abuse@naukrigulf.com