About the Role: As an Information Security Specialist based in Dubai, you will be responsible for safeguarding our organization s digital assets by implementing robust security measures. You will conduct vulnerability assessments, penetration tests, and threat hunting exercises, while managing identity and access solutions. Collaborating with cross-functional teams, you will drive continuous improvement in our security posture and ensure compliance with industry standards.
Responsibilities:
- Conduct regular vulnerability assessments and penetration tests across network, web, and application layers
- Deploy and manage Tenable vulnerability management solutions, analyze scan results, and prioritize remediation efforts
- Implement and maintain Identity and Access Management (IAM) and Privileged Access Management (PAM) technologies
- Perform threat hunting activities using endpoint and network telemetry to detect and respond to advanced threats
- Develop, update, and enforce information security policies, standards, and procedures
- Collaborate with IT, DevOps, and business teams to integrate security into the software development lifecycle
- Monitor security alerts and coordinate incident response activities
- Prepare security reports and metrics for senior management and stakeholders
Desired Candidate Profile
Required Qualifications:
- 3 5 years of hands-on experience in information security roles
- Proficient in vulnerability assessment and penetration testing methodologies
- Expertise with Tenable vulnerability management tools (Nessus, Tenable.io)
- Hands-on experience with IAM solutions (e.g., Okta, Azure AD) and PAM tools (e.g., CyberArk, BeyondTrust)
- Strong threat hunting skills and familiarity with threat intelligence frameworks
- Solid understanding of security frameworks and standards (ISO 27001, NIST, PCI DSS)
- Bachelor s degree in Computer Science, Information Security, or a related field
- Excellent analytical, problem-solving, and communication skills
Preferred Qualifications:
- Professional certifications such as OSCP, CISSP, CEH, or CISM
- Experience with cloud security in AWS, Azure, or Google Cloud Platform
- Familiarity with SIEM platforms (e.g., Splunk, QRadar) and security orchestration tools
- Scripting skills in Python, PowerShell, or Bash for automation
- Previous experience in incident response and digital forensics
- Knowledge of network security technologies (firewalls, IDS/IPS)