وظائف مشرف أمن في الإمارات
١٠٩١٣ وظائف شاغرة
The Senior Specialist – Information Security is responsible for supporting the development, implementation, and continuous improvement of the organization’s information security framework. The role ensures the protection of information assets, systems, and data against cybersecurity threats while maintaining compliance with applicable government regulations, security standards, and organizational policies.<br>Key Responsibilities:Develop, implement, and maintain information security policies, procedures, standards, and guidelines. Monitor the organization’s information security posture and identify potential vulnerabilities, threats, and security risks. Conduct information security risk assessments and recommend appropriate mitigation and control measures. Ensure compliance with applicable UAE government cybersecurity requirements, regulatory frameworks, and recognized international standards. Support the implementation and monitoring of security controls across systems, applications, networks, and information assets. Coordinate vulnerability assessments, penetration testing, security audits, and remediation activities. Monitor security incidents and alerts, support incident investigation, and coordinate appropriate response and recovery actions. Develop and maintain the Information Security Incident Response Plan and contribute to business continuity and disaster recovery activities. Conduct security reviews for new systems, technologies, applications, and third-party solutions before implementation. Assess information security risks associated with vendors and third-party service providers. Work closely with IT and relevant departments to ensure security requirements are incorporated into technology projects and operations. Support data protection, access control, identity and access management, and information classification initiatives. Develop information security awareness programs and conduct awareness sessions for employees. Prepare information security reports, dashboards, risk registers, and performance indicators for management. Monitor emerging cybersecurity threats, technologies, and regulatory developments and recommend improvements to the organization’s security practices. Support internal and external audits and ensure timely closure of information security findings.<br>Qualifications & Experience:Bachelor’s degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related field. Master’s degree in a relevant field is an advantage. Minimum 6 years of relevant experience in information security, cybersecurity, IT security, or a related field. Experience within government, education, academic, or other regulated sectors is preferred.
Responsibilities:Provide L3 engineering and deep troubleshooting support for complex security infrastructure issues, incidents, and escalations. Design, configure, harden, review, and optimize enterprise security solutions and security policies. Support security architecture reviews, solution design, technology upgrades, migrations, and implementation activities. Perform root-cause analysis and resolution of complex security and connectivity issues across multiple security platforms. Provide technical support for Disaster Recovery (DR) exercises, resilience testing, failover, and recovery activities. Review existing security configurations and policies and recommend improvements based on security best practices and operational requirements. Work closely with infrastructure, network, application, SOC, and other technical teams to resolve security-related issues. Manage incidents, service requests, problems, and changes in accordance with established ITSM processes.<br>Key Technology Areas:Strong hands-on experience across several of the following technologies is required:Firewalls: Checkpoint and/or Palo Alto Secure Web Gateway / Proxy: Proxy solutions and Zscaler Web Application Firewall: F5 WAFNetwork Security: IPS/IDS and DDoS protection Security Network Design and Architecture Endpoint Security: Trellix / McAfee, EDR and DLPIdentity & Access Security: MFA, VPN and token-based authentication solutions ITSM / Incident, Problem and Change Management
An experienced security professional responsible for assessing, testing, and strengthening the security posture of complex web applications, APIs, authentication systems, and digital services. The role focuses on identifying vulnerabilities, validating security controls, and driving remediation efforts to protect critical business workflows and sensitive data from emerging threats.<br>Key Responsibilities Web Application & API Security Testing Perform comprehensive manual and automated penetration testing of web applications, APIs, microservices, and internet-facing services. Identify vulnerabilities related to authentication, authorization, session management, input validation, and API security. Assess applications against recognized security frameworks and industry best practices. File & Document Security Assessment Evaluate security controls governing file uploads, downloads, storage, and processing workflows. Identify risks associated with malicious file handling, content validation, storage isolation, and data exposure. Access Control & Authorization Review Validate role-based and attribute-based access controls across multiple user types and permission levels. Identify authorization weaknesses, including Insecure Direct Object References (IDOR), privilege escalation, and unauthorized data access. Assess segregation and isolation controls within shared application environments. Identity & Authentication Security Review authentication and authorization mechanisms, including OAuth 2.0, Open ID Connect (OIDC), SAML, and JWT implementations. Test token validation, session handling, replay protection, and identity federation controls. Identify weaknesses in identity lifecycle management and access governance. Business Logic Security Analysis Assess critical user journeys and application workflows for logic flaws and abuse cases. Identify race conditions, workflow bypasses, automation weaknesses, and inadequate rate-limiting controls. Evaluate protections against fraud, abuse, and unauthorized transaction manipulation. Security Advisory & Remediation Support Produce clear, risk-based security assessment reports with prioritized remediation recommendations. Collaborate with stakeholders to validate fixes and perform security re-testing. Support secure development practices throughout the software delivery lifecycle.<br>Required Skills & Experience Security Assessment Expertise Minimum 5 years of hands-on experience conducting web application and API penetration testing. Strong understanding of modern attack techniques and security testing methodologies. Security Frameworks & Methodologies Expert knowledge of:OWASP Top 10OWASP API Security Top 10OWASP Web Security Testing Guide (WSTG) Threat modeling and risk-based assessment approaches Security Tools Advanced proficiency with:Burp Suite Professional Postman Web application and API testing tools Identity & Access Management Security Proven experience identifying and exploiting weaknesses in:OAuth 2.0Open ID Connect (OIDC) JWTSAML 2.0Secure File Handling Strong understanding of secure file processing, archive parsing, storage isolation, and content validation. Experience assessing file management controls and secure object storage implementations.<br>Preferred Qualifications Experience assessing file-scanning, malware-detection, or Content Disarm and Reconstruction (CDR) solutions. Familiarity with security automation and vulnerability assessment tools such as:Nuclei Semgrep OWASP ZAPKnowledge of cloud security controls across AWS, Microsoft Azure, and Google Cloud Platform (GCP). Understanding of secure architecture principles for internet-facing applications and distributed environments.<br>Preferred Certifications Offensive Security OSCP (Offensive Security Certified Professional) OSWE (Offensive Security Web Expert) Port Swigger BSCP (Burp Suite Certified Practitioner) Other relevant application security, penetration testing, or cloud security certifications are advantageous. Senior Web App Security Engineer in Abu Dhabi, United Arab Emirates
An experienced security professional responsible for assessing, testing, and strengthening the security posture of complex web applications, APIs, authentication systems, and digital services. The role focuses on identifying vulnerabilities, validating security controls, and driving remediation efforts to protect critical business workflows and sensitive data from emerging threats.<br>Key Responsibilities Web Application & API Security Testing Perform comprehensive manual and automated penetration testing of web applications, APIs, microservices, and internet-facing services. Identify vulnerabilities related to authentication, authorization, session management, input validation, and API security. Assess applications against recognized security frameworks and industry best practices. File & Document Security Assessment Evaluate security controls governing file uploads, downloads, storage, and processing workflows. Identify risks associated with malicious file handling, content validation, storage isolation, and data exposure. Access Control & Authorization Review Validate role-based and attribute-based access controls across multiple user types and permission levels. Identify authorization weaknesses, including Insecure Direct Object References (IDOR), privilege escalation, and unauthorized data access. Assess segregation and isolation controls within shared application environments. Identity & Authentication Security Review authentication and authorization mechanisms, including OAuth 2.0, Open ID Connect (OIDC), SAML, and JWT implementations. Test token validation, session handling, replay protection, and identity federation controls. Identify weaknesses in identity lifecycle management and access governance. Business Logic Security Analysis Assess critical user journeys and application workflows for logic flaws and abuse cases. Identify race conditions, workflow bypasses, automation weaknesses, and inadequate rate-limiting controls. Evaluate protections against fraud, abuse, and unauthorized transaction manipulation. Security Advisory & Remediation Support Produce clear, risk-based security assessment reports with prioritized remediation recommendations. Collaborate with stakeholders to validate fixes and perform security re-testing. Support secure development practices throughout the software delivery lifecycle.<br>Required Skills & Experience Security Assessment Expertise Minimum 5 years of hands-on experience conducting web application and API penetration testing. Strong understanding of modern attack techniques and security testing methodologies. Security Frameworks & Methodologies Expert knowledge of:OWASP Top 10OWASP API Security Top 10OWASP Web Security Testing Guide (WSTG) Threat modeling and risk-based assessment approaches Security Tools Advanced proficiency with:Burp Suite Professional Postman Web application and API testing tools Identity & Access Management Security Proven experience identifying and exploiting weaknesses in:OAuth 2.0Open ID Connect (OIDC) JWTSAML 2.0Secure File Handling Strong understanding of secure file processing, archive parsing, storage isolation, and content validation. Experience assessing file management controls and secure object storage implementations.<br>Preferred Qualifications Experience assessing file-scanning, malware-detection, or Content Disarm and Reconstruction (CDR) solutions. Familiarity with security automation and vulnerability assessment tools such as:Nuclei Semgrep OWASP ZAPKnowledge of cloud security controls across AWS, Microsoft Azure, and Google Cloud Platform (GCP). Understanding of secure architecture principles for internet-facing applications and distributed environments.<br>Preferred Certifications Offensive Security OSCP (Offensive Security Certified Professional) OSWE (Offensive Security Web Expert) Port Swigger BSCP (Burp Suite Certified Practitioner) Other relevant application security, penetration testing, or cloud security certifications are advantageous. Senior Web App Security Engineer in Abu Dhabi, United Arab Emirates
About The Role<br><br>Engage in the client Software Development Lifecycle to collaboratively ensure new products, platforms, and technologies meet or exceed security engineering requirements;<br><br>Create formal threat models to enumerate and mitigate potential security risks in proposed architecture and designs;<br><br>Partner with Information Security GRC counterparts to author security requirements and standards;<br><br>Brief executive leaders on potential emergent threats and ongoing efforts to proactively address potential cyber security risks;<br><br>Work with platform and security engineering leadership to interactively improve<br><br>Enhance and mature the security engineering training curriculum in partnership with Security Awareness and Training owners;<br><br>Act as domain specialist across Peloton’s security solutions and technology stack;<br><br>Identify strategic investments and initiatives that lower the transactional cost of designing and implementing secure platform solutions and reduce the likelihood of potential cyber security attacks;<br><br>Influence the security strategy by improving the collective strength of the security team and articulating the capabilities needed to optimally manage cyber-attack risk;<br><br>Requirements<br><br>10+ years of hands-on experience in working with engineering teams on design and implementation of security best practices in architecture and code.<br><br>10+ years of experience working with product security teams to drive engineering remediation to externally identified threats and vulnerabilities.<br><br>7+ years of experience with creating threat models and working with teams to identify and remediate potential security gaps related to authentication, authorization, network segmentation, encryption, container configuration, bastion host setup, etc.<br><br>Extensive experience and strong understanding of cloud security controls including but not limited to such as IAM, KMS, VPC, Security Groups, AWS Inspector, Guard Duty and SCPs.<br><br>Knowledge and Hands on Skills with Docker, ECS, Kubernetes, and Container Security.<br><br>Extensive understanding MITRE ATT&CK, NIST CSF, CVSS and CWE criteria, enumeration and scoring.<br><br>Broad security-related domain knowledge with authentication and authorization, identity and access management, data protection, OAuth/Open ID connect, Web security.<br><br>Extensive experience with embedded software development and architectures, security protocols, applied cryptography and security standards<br><br>Deep understanding of the TCP/IP protocol stack and major protocols.<br><br>Working knowledge of one or more general purpose programming/script languages including but not limited to: Java, C/C++, C#, Python, Java Script, Power Shell.<br><br>Excellent relationship building skills across diverse cross-functional teams.<br><br>Exceptional written/oral communication skills.<br><br>Good cryptography knowledge and implementation expertise with hands on experience in PKI – SSL, TLS certificate management<br><br>Exceptional bias for action and ownership.<br><br>Humble, hardworking, forward-thinking and embodies a “hands on” leadership mindset.<br><br>Job Category: Architect<br><br>Requirements<br><br>The Principal Security Architect will work with external technology providers and security vendors. They will evaluate and assess the applicability of various solutions to determine their capability to mitigate potential security risks. They will work closely with partner teams to integrate solutions that are determined necessary.<br><br>The role plays a critical function in constantly evolving clients security development lifecycle. It owns the development of security engineering requirements and secure design and architecture review consultation. In coordination with Security Response Engineering, the Principal Platform Security Architect drives the root cause analysis to ensure critical security risks and design flaws discovered post release never manifest in future iterations of Peloton’s products and services.<br><br>The ideal candidate is a proven engineering leader that has both exemplary engineering and communication skills. They have extensive experience collaborating with internal engineering partners and briefing Executive Leadership. They are a proven security technology and methodology expert that scales through enabling other engineering partners to make the right security design decisions and trade-offs.<br><br>About The Company<br><br>At AMD, we are dedicated to safeguarding our client against cyber threats. We recognize the distinct requirements and vulnerabilities of each enterprise, which is why we offer tailor-made solutions to shield your data and assets effectively.<br><br>Our collaborative approach involves working closely with clients to devise a holistic cybersecurity strategy that harmonizes with their specific business objectives.
Job Summary The Testing & Commissioning Supervisor is responsible for planning, supervising, and executing the testing, programming, commissioning, troubleshooting, and handover of ABB KNX Lighting Control Systems. The role requires strong expertise in ETS6 software, ABB KNX products, system integration, field device commissioning, and coordination with project teams, consultants, and clients to ensure successful project delivery.<br>Key Responsibilities Testing & Commissioning Supervise and execute testing and commissioning activities for ABB KNX Lighting Control Systems. Configure, program, and commission KNX devices using ETS6 software. Verify system functionality against approved drawings, specifications, and sequence of operations. Conduct factory acceptance tests (FAT), site acceptance tests (SAT), and final commissioning activities. Perform point-to-point testing of sensors, switches, actuators, dimmers, gateways, and interfaces. Ensure all KNX devices are correctly addressed, programmed, and integrated within the network. Troubleshoot and resolve hardware, software, communication, and networking issues during commissioning. Verify lighting scenes, schedules, occupancy controls, daylight harvesting, and energy management functions. Fine-tune system performance based on client and consultant requirements. ABB KNX System Programming Develop, modify, and maintain ETS6 project databases. Configure ABB KNX products including: ABB KNX Actuators ABB KNX Sensors ABB DALI Gateways ABB Room Controllers ABB Touch Panels ABB Power Supplies ABB IP Routers and Interfaces Backup, document, and maintain all ETS6 project files. Coordinate software revisions and change management during project execution. Site Coordination Coordinate with project managers, engineers, subcontractors, and electrical contractors. Verify site readiness before commissioning activities. Ensure installation complies with ABB and KNX standards. Monitor commissioning schedules and report progress to project management. Attend site coordination meetings and technical discussions with clients and consultants. Documentation & Handover Prepare commissioning reports, test sheets, snag lists, and handover documentation. Update as-built drawings and commissioning records. Conduct client demonstrations and operator training. Support preparation of O&M manuals and project closeout documentation. Ensure all commissioning records are properly maintained and archived. Quality, Safety & Compliance Ensure compliance with project specifications, KNX standards, ABB guidelines, and company procedures. Maintain adherence to HSE requirements during commissioning activities. Identify risks and implement corrective actions to achieve smooth project delivery. Support quality inspections and consultant approvals. Technical Skills & Competencies Expert knowledge of ETS6 Programming Software. Strong understanding of KNX Protocol and Topology. Hands-on experience with ABB KNX Lighting Control Products. Ability to troubleshoot KNX communication and integration issues. Understanding of DALI, BACnet, Modbus, and IP-based integrations. Knowledge of lighting control sequences, occupancy control, dimming control, and energy-saving strategies. Ability to read electrical drawings, schematics, and network diagrams. Familiarity with BMS integration and third-party interfaces. Education & Experience Bachelor's Degree / Diploma in Electrical Engineering, Electronics Engineering, Automation, or related field. Minimum 5-8 years experience in Lighting Control System commissioning. Minimum 3 years hands-on experience with ABB KNX Systems and ETS6 Programming. KNX Partner Certification preferred. ABB Certified Training on KNX products preferred. UAE/GCC project experience is an advantage.
JOB PURPOSE The Renewal Supervisor is responsible for supervising and coordinating day-to-day renewal operations within a defined business segment or portfolio cluster, ensuring that Renewal Officers deliver timely, high-quality client engagement across the renewal lifecycle. The role bridges operational execution and strategic oversight, providing direct team management, quality assurance, and tactical problem-solving to drive client retention, renewals, and satisfaction while supporting the Renewal Manager in implementing broader process improvements and retention strategies.<br>CORE RESPONSIBILITIES1. Team Leadership & Performance Management Lead, coach, and develop the Renewal Officers team by setting performance expectations, monitoring KPIs, conducting regular performance discussions, and supporting goal setting, appraisals, and capability development. Foster a high-performance, client-centric, and accountability-driven culture focused on continuous improvement and service excellence.<br>2. Renewal Operations & Service Delivery Oversee the daily execution of renewal activities, ensuring adherence to renewal playbooks, SLAs, policies, and governance requirements. Monitor renewal pipelines, portfolio health, workload distribution, and operational performance to ensure service continuity and achievement of renewal targets.<br>3. Client Retention & Escalation Management Act as the primary escalation point for complex, high-value, or at-risk renewals, engaging directly with clients and internal stakeholders to resolve issues, protect revenue, and enhance client retention. Support the planning and execution of retention initiatives and targeted customer engagement activities.<br>4. Performance Analytics, Reporting & Data Management Monitor, analyze, and report on team performance, renewal conversion rates, churn, customer satisfaction, and operational metrics. Ensure accurate CRM record management, data integrity, reporting, and root cause analysis to support informed decision-making and continuous improvement.<br>5. Process Improvement, Quality Assurance & Compliance Drive continuous improvement by identifying operational inefficiencies, recommending enhancements, and supporting the implementation of process improvements. Ensure compliance with policies, procedures, quality standards, and regulatory requirements through regular quality reviews, coaching, and governance activities.<br>6. Training, Knowledge Management & Business Continuity Lead training and knowledge-sharing initiatives related to renewal processes, systems, tools, policies, and customer engagement practices. Maintain process documentation, SOPs, communication templates, and operational guides while supporting business continuity requirements and cross-functional backup coverage.<br>QUALIFICATIONS, EXPERIENCE, & SKILLS Bachelor's degree in business administration, Customer Service, or a related field. Team leadership or customer service certifications are an advantage. Minimum 5–7 years of relevant experience in customer lifecycle management, operations, or client services, with at least 2–3 years in a supervisory or team lead role. Proven experience managing and developing teams in a service-oriented or operations environment. Track record of driving team performance, managing complex client relationships, and delivering measurable business results. Strong analytical mindset with the ability to interpret performance metrics and drive data-informed decision-making. Excellent people management and communication skills, with demonstrated ability to coach and motivate diverse teams. Strong cross-functional collaboration and stakeholder management skills. Comfort with dynamic, fast-paced environments with shifting priorities and concurrent initiatives. High level of ownership, accountability, problem-solving orientation, and adaptability. Excellent communication and interpersonal skills in English (Arabic is a plus).
Location :- Abu Dhabi, UAE<br>Brief about company :- Petrochem Performance Chemicals (PPC) (Part of Mazrui International). PPC specializes in drilling fluids and associated equipment services. We increase customer asset value through the provision of cost effective, customized technical solutions in the drilling and completion fluids, solids control, filtration equipment, and waste management services. Our geographical territory covers the Middle East and Caspian with current operations in the UAE, Iraq, Kuwait, and Yemen. PPC is part of Mazrui International (Diversified holding group with businesses across different industries such as Oil & Gas, Oilfield Engineering Services, Manufacturing, Chemicals, Financial Investments, Real Estate, Construction, Trading, Distribution, Transportation, Logistics, Retail, Hospitality, Education etc.).<br>Websites :-https://ppc.ae/ (Petrochem Performance Chemicals)https://www.mazruiinternational.ae/ (Main Holding Group)<br>Designation :- Warehouse Supervisor<br>Job Objective :- Supervises and coordinates activities of workers engaged in receiving, transporting, stacking, order filling, shipping, and maintaining stock records in warehouse. Supervises materials delivery documents, labeling and casing or packing of materials or products<br>Key Responsibilities/Duties :- Under general direction, supervises shipment receipts, issuance, storage and protection of all material and equipment. Manages the Country’s warehouse facilities which involve planning and directing the shipment, receipt, storage and issuance of materials and equipment. Establishes and maintains warehousing and distribution standards and procedures for the warehouse facilities. Supervises and coordinates data entry of receipt. Ensures that all materials are stored in a safe and orderly manner and in compliance with QHSE standards. Develops and maintains performance measures, working schedules, duties, and evaluations for warehouse staff. Provides training to warehouse staff in the areas of warehousing, material handling equipment, safety and the handling and use of hazardous materials. Manages and coordinates the pick-up, storage and delivery service. Conducts periodic physical inventory of stocked items. May perform all duties of warehouse staff. Performs related duties and responsibilities as required. Maintain the quality, environmental and QHSE system. Ensure that PPC policies are understood, implemented and maintained. Accept the legal and moral obligations to ensure, as far as reasonably practicable, a safe and healthy working environment. <br>Functional Competency :- Flow up logistics requirements and purchasing planning concerning products and equipment’s. Exchange excess stock with other countries. Monitor regional stock for intercompany stock transfers. Warehouse Management Supervision and mentoring Safety & health leadership/compliance<br>Ability & Skills :- Concentrate on detailed work easily. Persistence to plug steadily at routine work. Ability to organize various types of people. Steady in following an established work pattern. Must work directly under supervision. Must be able to handle interruptions and changes. Ability innovates storage handling and housekeeping<br>Experience :- Min 4 years of experience in warehouse supervisor /manager position Develop, implement and maintain a computerized inventory control system. Additionally, the incumbent establishes warehousing and distribution standards and procedures, develops storage space utilization plans and conducts periodic inventories of the surplus materials and equipment. Supervise the Country’s warehouse facilities which involve planning and directing the shipment, receipt, storage and issuance of materials and equipment delivery planning according to Op’s planning.<br>Academic Qualifications :- High School or Diploma or Bachelor<br>If this sounds like you, please apply to this job with your updated CV.
An experienced security professional responsible for assessing, testing, and strengthening the security posture of complex web applications, APIs, authentication systems, and digital services. The role focuses on identifying vulnerabilities, validating security controls, and driving remediation efforts to protect critical business workflows and sensitive data from emerging threats.<br><br>Key Responsibilities<br><br>Web Application & API Security Testing<br><br>Perform comprehensive manual and automated penetration testing of web applications, APIs, microservices, and internet-facing services. Identify vulnerabilities related to authentication, authorization, session management, input validation, and API security. Assess applications against recognized security frameworks and industry best practices. <br><br>File & Document Security Assessment<br><br>Evaluate security controls governing file uploads, downloads, storage, and processing workflows. Identify risks associated with malicious file handling, content validation, storage isolation, and data exposure. <br><br>Access Control & Authorization Review<br><br>Validate role-based and attribute-based access controls across multiple user types and permission levels. Identify authorization weaknesses, including Insecure Direct Object References (IDOR), privilege escalation, and unauthorized data access. Assess segregation and isolation controls within shared application environments. <br><br>Identity & Authentication Security<br><br>Review authentication and authorization mechanisms, including OAuth 2.0, Open ID Connect (OIDC), SAML, and JWT implementations. Test token validation, session handling, replay protection, and identity federation controls. Identify weaknesses in identity lifecycle management and access governance. <br><br>Business Logic Security Analysis<br><br>Assess critical user journeys and application workflows for logic flaws and abuse cases. Identify race conditions, workflow bypasses, automation weaknesses, and inadequate rate-limiting controls. Evaluate protections against fraud, abuse, and unauthorized transaction manipulation. <br><br>Security Advisory & Remediation Support<br><br>Produce clear, risk-based security assessment reports with prioritized remediation recommendations. Collaborate with stakeholders to validate fixes and perform security re-testing. Support secure development practices throughout the software delivery lifecycle. <br><br>Required Skills & Experience<br><br>Security Assessment Expertise<br><br>Minimum 5 years of hands-on experience conducting web application and API penetration testing. Strong understanding of modern attack techniques and security testing methodologies. <br><br>Security Frameworks & Methodologies <br><br>Expert knowledge of:OWASP Top 10 OWASP API Security Top 10 OWASP Web Security Testing Guide (WSTG) Threat modeling and risk-based assessment approaches <br>Security Tools <br><br>Advanced proficiency with:Burp Suite Professional Postman Web application and API testing tools <br>Identity & Access Management Security <br><br>Proven experience identifying and exploiting weaknesses in:OAuth 2.0 Open ID Connect (OIDC) JWT SAML 2.0 <br>Secure File Handling<br><br>Strong understanding of secure file processing, archive parsing, storage isolation, and content validation. Experience assessing file management controls and secure object storage implementations. <br><br>Preferred Qualifications <br><br>Experience assessing file-scanning, malware-detection, or Content Disarm and Reconstruction (CDR) solutions. Familiarity with security automation and vulnerability assessment tools such as:Nuclei Semgrep OWASP ZAP Knowledge of cloud security controls across AWS, Microsoft Azure, and Google Cloud Platform (GCP). Understanding of secure architecture principles for internet-facing applications and distributed environments. <br><br>Preferred Certifications <br><br>Offensive Security OSCP (Offensive Security Certified Professional) OSWE (Offensive Security Web Expert) Port Swigger BSCP (Burp Suite Certified Practitioner) Other relevant application security, penetration testing, or cloud security certifications are advantageous. <br><br>Senior Web App Security Engineer in Abu Dhabi, United Arab Emirates
We are looking for an experienced Network Security Lead to design, implement, and govern enterprise network security solutions across hybrid environments. The role requires strong technical expertise in firewall architecture, VPN technologies, network segmentation, and security operations. The successful candidate will lead network security initiatives, ensure secure network connectivity, and provide technical guidance for enterprise security platforms.<br>Key Responsibilities Lead network security architecture, design, implementation, and operational governance activities. Manage and maintain enterprise firewall platforms including Fortinet, Palo Alto Networks, and Cisco ASA. Design and support secure VPN solutions including SSL VPN and IPSec VPN environments. Define and enforce firewall security standards, policies, and rule management processes. Perform firewall rule reviews, optimisation, segmentation improvements, and security configuration assessments. Support security incident investigation, troubleshooting, root cause analysis, and remediation activities. Manage firewall upgrades, migrations, lifecycle activities, and vendor coordination. Provide technical leadership and guidance to network and security operations teams. Ensure network security controls align with security policies, compliance requirements, and industry best practices.<br>Required Skills & Experience10–12 years of experience in enterprise network security. Strong hands-on experience with firewall technologies including Fortinet Forti Gate, Forti Manager, Forti Analyzer, Palo Alto Networks PAN-OS, Panorama, and Cisco ASA. Strong understanding of firewall policies, NAT, routing, VPN technologies, and network segmentation. Experience designing and managing SSL VPN and IPSec VPN solutions. Experience with high availability (HA), clustering, and disaster recovery configurations. Strong knowledge of IDS/IPS, URL filtering, malware protection, and network security monitoring. Experience handling complex security incidents and technical escalations. Relevant vendor certifications such as Fortinet certifications, PCNSA/PCNSE, or CCIE Security.<br>Preferred Skills Experience with cloud network security solutions across Azure, AWS, or GCP. Knowledge of automation tools such as Python or Ansible. Familiarity with security frameworks including ISO 27001, NIST, SOC 2, and PCI-DSS. Strong leadership, communication, and stakeholder management skills.
Minimum 10-15 years overall experience in IT starting with the hands-on engineering positions5 years’ experience doing practical design or architecture within the specialization (solutions, infrastructure, network, security, etc.) Act as a technical focal point for complex network and security design/solution Act as a technical SME during the product/solution evalution and implementation for network & security tools Must have experience around Enterprise Security Architecture Security, Security Strategy and Compliance Consulting Experience creating and audit of security best practices and implementation of security principles across the organization , to meet business goals along with customer and regulatory requirements,Understanding of compliance regulatory requirements like ISO,PCI DSS, NESA etc.,Must have experience around design of security controls and product best fit analysis to ensure end to end security covering different areas of security architecture : Layered Security Zoning Integration aspects API Security Endpoint Security Data Security Compliance and regulations Threat Intelligence Threat Exposure & Incident Management aspects Must Possess strong presentation , written and verbal communication skills Industry Security Certifications like CCIE,CISSP, CISA, CISM, CSRIC, TOGAF,SABSA etc., are preferred Good Understanding & Must have experience in implementing Cloud Security Controls Good Understanding of Cloud Platforms like Azure, Oracle, Google,AWS etc.,Good Understanding of Dockers, Containers and Kubernetes Good Understanding of SDN technologies like ACI. Good Understanding of REST, SOAP Protocols, Web services etc.,Good Understanding of Symmetric and Asymmetric Cryptography algorithms. Hands on Experience on Multi-vendor firewalls and other security technologies ( Firewalls, Web Proxy, Email Gate, Endpoint Security etc..) Knowledge and experience in requirements traceability throughout the design phase, including functional and non-functional requirements Ability and experience in translating functional and non-functional requirements into solution/feature/component design and service architecture Understands how the business structures and functions in FAB relate to the nature of the service Can create a high-level and low-level design (functional and non-functional) of a single or a small collection of components or a small end-to-end service Conducts / participates in code reviews, identifies bug root causes, and finds a workable solution Participates in Communities Proactively addresses issues discovered in the software components, infrastructure and scripts in the various environments
About The Role<br><br>What you will be doing:<br><br>Work directly with product teams in building a security by design and by default mindset by defining a structured approach to security in line with the Application Security Program mandates<br><br>Develop design patterns, and code guidelines that meet business security and system requirements in line with the risk assessments, policies, and procedures<br><br>Be a thought leader and help the wider organization drive security solutions implementation in-alignment with other stakeholders<br><br>Drive feature implementations in line with the architecture via designs, coding, reviews and tests. Perform Proof of Concept (POC) activities as necessary<br><br>Lead Dev Sec Ops implementation through technology, process and human upskilling including SAST, DAST, SCA, and penetration test results in collaboration with the developers.<br><br>Review current software security control measures and implement security enhancements for multiple cloud-based products<br><br>Participate in vulnerability investigations and become an extended arm to the Security Operation team<br><br>What You Have<br><br>Master’s degree in computer science or cyber security, a related field or equivalent demonstrated experience and knowledge<br><br>Minimum 7+ years of experience in engineering or software development or related fields.<br><br>Minimum 5 years hands-on product security role either as an architect, penetration tester or security engineer in cloud and application<br><br>Strong working knowledge of<br><br>software technologies such as C/C++, Java, . Net, python, etc.<br><br>Experience analyzing, using SAST, DAST, SCA and penetration tests.<br><br>Azure cloud<br><br>IOT and Operating system hardening using DISA STIGS and CIS benchmark<br><br>Experience ins secure software development or at least knowledge in secure coding practices and application security test report interpretation for various coding languages and multiple cloud services<br><br>Strong knowledge of secure software development lifecycle and practices including Agile methodologies for software development<br><br>Understanding of security by design principles and architecture level security concepts<br><br>Sound understanding and experience in implementing security public key Infrastructure (PKI)),<br><br>Experience implementing OWASP Top10 application security guidelines in cloud-based web applications<br><br>Experienced in generating, defining, and reviewing penetration test results through knowledge of standard methodologies and tools including environmental configuration definition, security analysis, threat modeling, and system security audits<br><br>Knowledge of current and emerging security threats and techniques for exploiting security vulnerabilities<br><br>Exposure to international privacy requirements & cross-industry trends<br><br>Requirements<br><br>We are looking for a Principal Product Security Engineer whom his primary responsibility will be to for design, build, test and implementing secure SDLC across the product development lifecycle.<br><br>This role requires deep knowledge of building product security program from scratch which includes writing SOP, SWI, designing training for developers and gaining the trust of the product teams through hands-on engagement. A deep understanding of web-based secure code principles, and IOT security is a pre-requisite. Candidates should have experience in FDA and EU MDR submission process.<br><br>About The Company<br><br>At AMD, we are dedicated to safeguarding our client against cyber threats. We recognize the distinct requirements and vulnerabilities of each enterprise, which is why we offer tailor-made solutions to shield your data and assets effectively.<br><br>Our collaborative approach involves working closely with clients to devise a holistic cybersecurity strategy that harmonizes with their specific business objectives.
About The Role<br><br>Development experience in C#, C++ or Java preferred but not required<br><br>Embedded system, firmware and IoT security preferred but not required<br><br>Offensive Security Certified Professional (OSCP), Offensive Security Certified Expert (OSCE) or Offensive Security Web Expert (OSWE) certification preferred but not required.<br><br>Cloud Security Experience Preferred<br><br>Travel up to 10% domestic and international<br><br>Requirements<br><br>The Product Security Engineer is responsible for creating and implementing cutting-edge security solutions and infrastructures that will ensure our client products are secure and resilient.<br><br>This role provides the opportunity to work cross-functionally with a variety of stakeholders including product development teams and contribute to product security deliverables and activities<br><br>Support developers of our business units in their SDLC and provide guidance regarding mitigations to emerging threats and remediation planning.<br><br>Participate in building security champions within product and R&D teams and to help mature their secure development lifecycle practices.<br><br>Collaborate effectively with cross functional teams including, R&D Quality, Manufacturing and Regulatory to achieve security risk reduction.<br><br>Develop security training and deliver to internal development teams and other stakeholders.<br><br>Evaluation of new security tools and technologies and build internal tools as needed.<br><br>Perform security tools integration such as Static Code Analysis (SAST), Software Composition Analysis (SCA) and Dynamic Application Security Testing (DAST) tools.<br><br>Other duties and responsibilities as required to support the changing security needs of the organization.<br><br>Have knowledge of industry standards and frameworks such as OWASP, NIST, SANS, MITRE ATT&CK, etc.<br><br>Strong interpersonal and communication skills<br><br>Strong technical writing and presentation skills<br><br>About The Company<br><br>At AMD, we are dedicated to safeguarding our client against cyber threats. We recognize the distinct requirements and vulnerabilities of each enterprise, which is why we offer tailor-made solutions to shield your data and assets effectively.<br><br>Our collaborative approach involves working closely with clients to devise a holistic cybersecurity strategy that harmonizes with their specific business objectives.
The Senior Manager of Governance is responsible for developing the information security and cybersecurity strategy and plan. This role aims to protect DET’s Information assets from risks, threats, and attacks by establishing robust security policies and aligning them with local and federal mandates, such as those from the Dubai Cyber Security Strategy and the Dubai Electronic Security Center.<br>The responsibilities include managing policy implementation, managing risk assessments, delivering training programs, and ensuring compliance across all technology platforms. Conducting investigations on information security policy breaches and recommending solutions. Coordinating with regulatory bodies and stakeholders to maintain and report on DET’s security posture, ensuring a secure operational environment.<br>Core Functional Responsibilities Develop the DET Group’s information security and cybersecurity strategy and plan in order to mitigate risks, attacks, and threats on the data assets of the DET Group. Design and manage new programs, projects, initiatives, and enhancement and implementation roadmap to strengthen the DET security. Manage the Information Security governance process including Policy and Standards across the DET. Ensure the alignment of the DET Group’s information security and cybersecurity strategy with local and federal strategies, such as the Dubai Cyber Security Strategy, and other requirements set by DESC. Additionally, maintain compliance with the ISO 27001:2022 standard to uphold international best practices in information security management alongside the ISR. Develop and implement of information security and cybersecurity policies, procedures, and standards for the DET Group, ensuring alignment with the ISR as well as leading practices and trends. Manage the provision of awareness and training sessions and program to all employees, leaders, strategic partners, etc. on information security and cyber security policies, to mitigate potential policy breaches. Conduct thorough and ongoing audits to ensure all employees, leaders, and strategic partners strictly adhere to DET's information security and cybersecurity policies. This includes verifying system access compliance, facilitating cybersecurity training, assessing risks, and maintaining detailed audit trails for continuous improvement and accountability. Provide support as needed, to manage any exceptions or deviations from information security and cybersecurity policies. Manage the implementation of information and cybersecurity risk assessments on DET Group, in order to gain intelligence on information security and cyber threats and risks DET is vulnerable to, based on its operations and its IT infrastructure components including applications, cloud, cryptography, and infrastructure, and accordingly recommend risk mitigation measures. Manage investigations on information security policy breaches conducted internally or through external parties, ensure policy breaches are being accurately reported, and accordingly identify solutions to policy breaches. Develop reports pertaining to information security and cybersecurity risk assessments results, as well as incidents related to information security. Ensure reports are being circulated to relevant stakeholders, and manage the delivery of presentations to the Director General as well as the Information Security Committee, as needed. Provide guidance and advice to end users, when needed, regarding potential threats and key considerations for the safe usage of systems and exchange of information. Provide guidance and subject matter expertise when it comes to the enhancement of information security controls, in coordination with the Technology team as well as IT vendors.
About UsAI71 is an applied research team dedicated to creating helpful and responsible AI agents for knowledge workers. Working closely with our industry partners, our cross-functional teams of AI experts build products grounded in the cutting edge research of our colleagues from the Technology Innovation Institute (TII). We are seeking a highly experienced and strategic Security Architect to define and lead the security architecture of our AI and data platform. In this role, you will be responsible for designing secure-by-design systems across AI workloads, data pipelines, and cloud-native infrastructure, ensuring the confidentiality, integrity, and availability of our platform at scale. You will collaborate closely with engineering, platform, and AI teams to embed security into every layer of system design, development, and deployment, while establishing standards and best practices aligned with enterprise and high-security environments.<br><br>Key Responsibilities Security Architecture and Design<br><br> Define and evolve the end-to-end security architecture for AI systems, data platforms, and cloud-native infrastructure. Establish and enforce Zero Trust principles, including identity-first security, m TLS, and fine-grained access control (RBAC/ABAC). Design secure patterns for distributed systems, event-driven architectures, and multi-tenant environments. Platform and Infrastructure Security Define security standards for Kubernetes-based platforms, including workload isolation, network policies, and runtime protection. Establish container and software supply chain security practices (e.g., image scanning, SBOM, signing, and provenance). Design secure deployment architectures for both cloud and restricted/air-gapped environments. AI and Data Security Define and implement security controls for LLM-based applications, RAG pipelines, and data platforms. Establish safeguards against AI-specific threats such as data poisoning, model extraction, and data leakage. Dev Sec Ops and Governance Embed security into Git Ops and CI/CD workflows, including policy-as-code and automated enforcement. Define and maintain secure SDLC practices aligned with ISO 27001 and internal governance frameworks. Lead threat modeling, architecture reviews, and security validations. Observability and Threat Detection Define requirements for security observability, including audit logging and anomaly detection. Ensure integration of security signals into observability platforms (e.g., Open Telemetry). Leadership and Collaboration Act as a security advisor to engineering and AI teams. Review system designs and enforce security standards. Mentor engineers and promote a strong culture of security awareness. Qualifications<br><br>Required Skills and Experience<br><br> Bachelor's or Master's degree in Computer Science, Cybersecurity, or a related field. 7+ years of experience in security engineering, architecture, or related roles. Experience designing security for distributed systems and cloud-native platforms. Strong understanding of Zero Trust, IAM, cryptography, and secure communication. Experience with Dev Sec Ops practices and secure CI/CD pipelines. Preferred Skills Experience securing AI/ML systems or data platforms. Familiarity with streaming technologies (e.g., Kafka, NATS). Experience in regulated or high-security environments. Certifications such as CISSP or CSSLP. Proficiency in Python or Bash for automation. Why Join Us? Work on cutting-edge AI technologies with a focus on security and ethics. Shape the security architecture of a next-generation AI platform. Collaborate with a diverse and talented team. Competitive salary, equity options, and benefits. Opportunities for growth and leadership.
Career Area:<br><br>Business Services<br><br>Job Description:<br><br>Your Work Shapes the World at Caterpillar Inc. <br><br>When you join Caterpillar, you're joining a global team who cares not just about the work we do – but also about each other. We are the makers, problem solvers, and future world builders who are creating stronger, more sustainable communities. We don't just talk about progress and innovation here – we make it happen, with our customers, where we work and live. Together, we are building a better world, so we can all enjoy living in it.<br><br>Lead Global Security. Protect Our People. Strengthen Business Resilience.<br><br>Solar Turbines is seeking an accomplished Global Security Manager to lead and advance our worldwide security strategy, protecting our people, facilities, assets, information, reputation, and operations across a complex global environment. This senior leadership role provides strategic direction for enterprise security, workplace violence prevention, crisis management, investigations, business resilience, and risk management while partnering closely with executive leadership, Legal, Human Resources, EHSS, and Caterpillar Global Security.<br><br>WHAT YOU WILL DO:<br><br>Global Security Leadership<br><br> Develop and execute a comprehensive global security strategy aligned with business objectives. Lead and support Regional Security Managers, Facility Security Managers, and technical specialists. Drive compliance with the Risk-Based Security Program and governance standards. Build strong partnerships with executive leadership, Legal, HR, EHSS, and Caterpillar Global Security.<br><br>Security Risk Management & Asset Protection<br><br> Conduct enterprise-wide security risk assessments and threat analyses. Identify significant security risks and implement mitigation strategies. Design and oversee multi-layered approaches to employee, facility, information, and asset protection. Monitor emerging global risks, industry trends, and security technologies.<br><br>Investigations & Compliance<br><br> Collaborate on and implement investigative strategies while maintaining attorney-client privilege and confidentiality. Collect and analyze facts within approved investigative scopes. Review allegations and establish investigative requirements. Lead complex internal investigations and forensic reviews. Partner with Legal, HR, and Compliance leaders on policy violations and security concerns.<br><br>Crisis Management & Business Resilience<br><br> Lead development and execution of global crisis management and emergency response programs. Establish and strengthen Regional Incident Management Teams. Coordinate crisis response and executive communications. Develop tabletop exercises and preparedness programs.<br><br>Employee & Workplace Security<br><br> Lead workplace violence prevention, threat assessment, and response programs. Promote security awareness and training initiatives. Ensure employee safety, travel security, and duty-of-care compliance.<br><br>Premises Security & Global Operations<br><br> Direct physical security programs for offices, manufacturing sites, and warehouses. Conduct physical security audits and assessments. Maintain relationships with law enforcement, government agencies, and emergency responders.<br><br>WHAT YOU WILL HAVE:<br><br> Degree or equivalent experience in Security, Risk, Crisis Management, Criminal Justice, or related field. 10+ years of leadership experience in corporate security, law enforcement, military, intelligence, or emergency services. Experience leading global security, crisis management, and risk programs. Fluent written and spoken English.<br><br>Preferred<br><br> Master's degree in Crisis Management, Security Management, or related discipline. CPP, PSP, SRMC, NEBOSH, or equivalent certification. Experience in manufacturing, industrial, energy, or oil and gas environments.<br><br>Reports To: VP, Global Process Excellence<br><br>Travel: Up to 50% Global Travel<br><br>Why Join Us<br><br>This is a unique opportunity to shape and lead the global security strategy of a world-class organization while protecting people, assets, operations, and reputation worldwide.<br><br>This position requires working onsite five days a week.<br><br>Relocation is available for this position.<br><br>Visa Sponsorship is not available for this position.<br><br>Posting Dates:<br><br>Caterpillar is an Equal Opportunity Employer. Qualified applicants of any age are encouraged to apply<br><br>Not ready to apply? Join our Talent Community.
We are looking for a Network Security Specialist to support the implementation, administration, and operation of enterprise network security solutions. The role focuses on firewall management, VPN operations, security policy implementation, troubleshooting, and maintaining secure network environments. The successful candidate will work closely with network and security teams to ensure reliable and secure connectivity across enterprise infrastructure.<br>Key Responsibilities Configure, manage, and support enterprise firewall platforms including Fortinet, Palo Alto Networks, and Cisco ASA. Perform firewall policy updates, rule reviews, NAT configuration, and security policy optimisation. Configure and support SSL VPN and IPSec VPN solutions. Monitor network security events and support incident investigation and response activities. Troubleshoot firewall, VPN, connectivity, and security-related issues. Assist with firewall upgrades, migrations, patches, and configuration improvements. Maintain network security documentation, operational procedures, and configuration records. Support security audits, compliance activities, and change management processes.<br>Required Skills & Experience5–6 years of experience in network security operations. Hands-on experience managing firewall technologies such as Fortinet Forti Gate, Palo Alto Networks firewalls, or Cisco ASA. Strong understanding of firewall concepts, security policies, NAT, routing, SSL VPN, and IPSec VPN. Experience performing firewall configuration changes, troubleshooting, and security rule management. Exposure to security management platforms such as Forti Manager, Forti Analyzer, or Panorama. Understanding of IDS/IPS technologies and network security monitoring. Relevant certifications such as Fortinet certifications, PCNSA/PCNSE, CCNA, or CCNP.<br>Preferred Skills Experience with cloud firewall technologies and hybrid network environments. Familiarity with ITSM tools, incident management, and change management processes. Strong documentation, communication, and troubleshooting skills.
We are looking for a Network Security Specialist to support the implementation, administration, and operation of enterprise network security solutions. The role focuses on firewall management, VPN operations, security policy implementation, troubleshooting, and maintaining secure network environments. The successful candidate will work closely with network and security teams to ensure reliable and secure connectivity across enterprise infrastructure.<br>Key Responsibilities Configure, manage, and support enterprise firewall platforms including Fortinet, Palo Alto Networks, and Cisco ASA. Perform firewall policy updates, rule reviews, NAT configuration, and security policy optimisation. Configure and support SSL VPN and IPSec VPN solutions. Monitor network security events and support incident investigation and response activities. Troubleshoot firewall, VPN, connectivity, and security-related issues. Assist with firewall upgrades, migrations, patches, and configuration improvements. Maintain network security documentation, operational procedures, and configuration records. Support security audits, compliance activities, and change management processes.<br>Required Skills & Experience5–6 years of experience in network security operations. Hands-on experience managing firewall technologies such as Fortinet Forti Gate, Palo Alto Networks firewalls, or Cisco ASA. Strong understanding of firewall concepts, security policies, NAT, routing, SSL VPN, and IPSec VPN. Experience performing firewall configuration changes, troubleshooting, and security rule management. Exposure to security management platforms such as Forti Manager, Forti Analyzer, or Panorama. Understanding of IDS/IPS technologies and network security monitoring. Relevant certifications such as Fortinet certifications, PCNSA/PCNSE, CCNA, or CCNP.<br>Preferred Skills Experience with cloud firewall technologies and hybrid network environments. Familiarity with ITSM tools, incident management, and change management processes. Strong documentation, communication, and troubleshooting skills.
Job Description<br><br>At WSP, our Security Risk Management team delivers comprehensive design and advisory services to protect people, assets, and operations. We specialize in Security Threat and Risk Assessments, Project Security Briefs, and Security Strategies tailored to the unique needs of each project.<br><br>We are seeking a Senior Security Consultant to join our growing team. This is an exciting opportunity to work on landmark developments and critical infrastructure projects across the region, influencing how security integrates into world-class built environments.<br><br>Responsibilities<br><br> Represent WSP’s Security Risk Management team with clients and stakeholders. Lead and deliver security risk assessments, strategic design work, and audits of existing facilities. Collaborate with multi-disciplinary teams to integrate security into complex built environment projects. Mentor junior team members and contribute to knowledge sharing. Support business development by identifying opportunities, attending client meetings, and converting leads into project wins. <br><br><br>Qualifications<br><br> Bachelor’s degree in Security Risk Management, Physical Security Engineering, or Business Administration (MBA preferred). 5+ years’ experience in physical security within the built environment and or management consulting. Professional certifications such as CPP, PSP, or CSC (highly desirable). Proven track record delivering high-profile projects across commercial, mixed-use, residential, and critical infrastructure sectors. Strong client engagement and business development skills. Proficiency in industry-standard tools (e.g., BIM).
Job Description<br><br>At WSP, our Security Risk Management team delivers comprehensive design and advisory services to protect people, assets, and operations. We specialize in Security Threat and Risk Assessments, Project Security Briefs, and Security Strategies tailored to the unique needs of each project.<br><br>We are seeking a Senior Security Consultant to join our growing team. This is an exciting opportunity to work on landmark developments and critical infrastructure projects across the region, influencing how security integrates into world-class built environments.<br><br>Responsibilities<br><br> Represent WSP’s Security Risk Management team with clients and stakeholders. Lead and deliver security risk assessments, strategic design work, and audits of existing facilities. Collaborate with multi-disciplinary teams to integrate security into complex built environment projects. Mentor junior team members and contribute to knowledge sharing. Support business development by identifying opportunities, attending client meetings, and converting leads into project wins. <br><br><br>Qualifications<br><br> Bachelor’s degree in Security Risk Management, Physical Security Engineering, or Business Administration (MBA preferred). 5+ years’ experience in physical security within the built environment and or management consulting. Professional certifications such as CPP, PSP, or CSC (highly desirable). Proven track record delivering high-profile projects across commercial, mixed-use, residential, and critical infrastructure sectors. Strong client engagement and business development skills. Proficiency in industry-standard tools (e.g., BIM).