Cyber Security Engineer Jobs in UAE
18379 Jobs Found
<br><ul><li><p>Responsible for leading Overall OT/IT cyber security for major Master Control Centre/ Water Network OT projects.</p></li><li><p>Responsible for reviewing Cyber Security Plan for the project for approval from Client.</p></li><li><p>Reviewing network architectures and determining if good practices are being followed (e.g., the "zones & conduits" concept, proper network segmentation, use of Industrial DMZ, etc.); and providing recommendations to comply with applicable cybersecurity framework.</p></li><li><p>Reviewing security products utilized (e.g., firewalls, IDS, IPS) and determining if they are configured properly.</p></li><li><p>Monitor deployment of network infrastructure devices (e.g., switches, routers, etc.), security appliances (e.g., firewalls, IDS, etc.), and virtualization solutions</p></li><li><p>Reviewing security policies, plans, and procedures; assessing network monitoring capabilities; analyzing system logs, security events, and packet captures to identify security threats; and providing recommendations to comply with applicable cybersecurity framework.</p></li><li><p>Lead design reviews/workshops, reviewing/ recommending EPC contractor’s deliverables, Lead interfaces with various Package Vendors, prepare gap analysis against the project requirements for various control systems supplied by package vendors.</p></li><li><p>Responsible for reviewing security products utilized (e.g., firewalls, IDS, IPS) and determining if the proposed configuration meets Project requirement and Industry standards.</p></li><li><p>Responsible to review security policies, plans, and procedures; assessing network monitoring capabilities; analyzing system logs, security events, and packet captures to identify security threats; and providing recommendations and work with SCADA/ Control system contractor to comply with applicable cybersecurity framework.</p></li><li><p>Review administrative, technical, and physical security controls proposed by SCADA/ Control system contractor and providing recommendations to mitigate the identified security risks.</p></li><li><p>Participate and contribute to Cyber security workshops, vulnerability, and risk assessments with SCADA/ Control system contractor to identify security risks and threats (e.g., unsecure remote access points, suspicious remote connections, unauthorized devices on the network, etc.) and providing recommendation to remediate the identified issues, Prepare Report/Update/Maintain and coordinate with all parties to close out action points.</p></li><li><p>Review/Comments contractor submitted detailed diagrams (e.g., network, cabling, server, rack, logical architecture, etc.), procedures, and plans (e.g., implementation, SAT, mitigation, etc.) as needed to support projects.</p></li><li><p>Responsible to handle Technical Queries/issues from all stake holders, document review/approval of Automation & Package vendors, certification requirements if any, participate in regular meetings with vendors & Client</p></li><li><p>Responsible to lead and participate in SCADA/ Control system contractor cyber security test at FAT locations, Responsible to accept the test and signoff reports.</p></li><li><p>Responsible for coordination with client, subcontractors, other discipline engineers and Project team.</p></li><li><p>Participating in cross-functional and inter-office meetings to provide design input to Engineering team.</p></li><li><p>Proactively identify and mitigate technical risks during project stage.</p></li><li><p>Travel to the client's site location as and when required.</p></li><li><p>Support the construction, commissioning, and start-up activities, to ensure no delay.</p></li></ul><p><strong>Desired Candidate Profile</strong></p><p>B.E./ Tech. in IT/OT Cybersecurity/ Electrical/ Electronics/ Instrumentation engineering with 10+ years experience in designing, testing, installing, testing & commissioning of OT cybersecurity systems in major water & waste water projects or Master Control Centre/ Data Centre projects. Experience within the UAE or GCC region will be preferred.
Location: Abu Dhabi, UAE
</p>
<ul><li><p>Implement and maintain robust OT cybersecurity defenses for telecommunication and SCADA systems, ensuring operational continuity and data integrity.</p></li><li><p>Support field activities including installation, commissioning, FAT, SAT, and site supervision.</p></li><li><p>Support OT cybersecurity activities across the project, including technical reviews, site activities, coordination, implementation support, testing, commissioning, and compliance with project cybersecurity requirements.</p></li><li><p>Oversee the secure integration of new OT technologies and systems, ensuring they meet stringent cybersecurity standards from inception.</p></li><li><p>Provide expertise in telecom infrastructure and secure connectivity, including MPLS, VLAN, firewall, VPN, and 4G/5G communications. Define telecom requirements, coordinate telecom scope, design secure communication links, and support network provisioning, IP planning, and VLAN/firewall/VPN configuration</p></li></ul><p><strong>Desired Candidate Profile</strong></p><ul><li>Bachelor's degree in Computer Science, Cybersecurity, Electrical Engineering, or a related field.</li><li>Minimum of 5-7 years of progressive experience in OT cybersecurity, with a focus on telecommunications and SCADA environments.</li><li>Proven expertise in securing industrial control systems (ICS) and supervisory control and data acquisition (SCADA) platforms.</li><li>Strong understanding of telecommunication protocols (e.g., TCP/IP, MPLS, cellular) and their security implications.</li></ul>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p><b>Overview of the role</b></p><p>As an Engineer in the Cloud Security Platforms team, you will be supporting the design, implementation, and maintenance of security tools across cloud and hybrid environments. This role focuses on operational support for key security controls while contributing to ongoing security improvement initiatives. You will work closely with experienced engineers and cross-functional teams to integrate security into operations and development workflows. You will build advanced skills and deep experience managing security platforms in a hybrid environment, managing firewalls, Web Application Firewalls (WAFs) and cloud-native security tools.</p><p> </p><p><b>What you will do</b></p><ul><li>Provide day-to-day operational support for security controls, including network firewalls, web application firewalls, cloud security groups and native cloud security services.</li><li>Participate in monitoring and documenting security incidents, provide incident response and manage escalations appropriately.</li><li>Support vulnerability management processes by maintaining systems and tools to their latest stable releases, participating in remediation efforts and coordinating with governance teams.</li><li>Participate in implanting new controls, automate routine tasks, contribute to security projects, support internal reviews and audits.</li><li>Collaborate with InfraOps, governance, DevOps and business teams to integrate security best practices in IT and business operations.</li></ul><p> </p> </div><h2 class="h5">Skills</h2>
<div data-jb-field="skills"><p><b>Required Skills to be successful</b></p><ul><li>Strong analytical and problem-solving skills with attention to detail.</li><li>Effective communication and collaboration with technical and non-technical teams.</li><li>Commitment to continuous learning, ability to work independently and in a team setting.</li></ul><p> </p><p><b>What equips you for the role</b></p><ul><li>Bachelor’s degree in computer science, Information Technology, Cybersecurity or a related field.</li><li>1-3 years of work experience in IT Security, network administration, cloud ops or a similar role.</li><li>Good understanding of cybersecurity principles and cloud platforms (Azure, OCI, AWS) and basic understanding of cloud-native security features such as Defender for Cloud, IAM, Security Groups, Guard Duty, Sentinel.</li><li>Hands-on Exposure to security tools such as firewalls (e.g. Cisco, Palo Alto, Checkpoint, Fortinet), WAF (Cloudflare, f5, Imperva), cloud security controls.</li><li>Basic knowledge of networking concepts, security principles (e.g. Zero Trust, Lease Privilege) and common threats (e.g. DDoS, SQL injection).</li><li>Experience with scripting languages (Python, PowerShell) and automation tools (Terraform) is a plus.</li></ul><p><br></p></div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>We are looking for an experienced Firewall Engineer with 10+ years of experience to design, implement, manage, and support enterprise firewall and network security solutions.<br> The ideal candidate will be responsible for maintaining secure network environments, implementing security policies, and ensuring the availability and performance of firewall infrastructure.<br> Key Responsibilities Configure, manage, and maintain enterprise firewall solutions.<br> Implement and enforce firewall security policies and access control rules.<br> Monitor firewall performance and troubleshoot security or connectivity issues.<br> Perform firewall upgrades, patches, and configuration changes.<br> Support network security operations and incident investigations.<br> Review and optimize firewall rules to ensure compliance and security best practices.<br> Collaborate with infrastructure and cybersecurity teams on security initiatives.<br> Maintain technical documentation and standard operating procedures.<br> Ensure firewall environments meet organizational security and compliance requirements.<br> Bachelor's degree in Computer Science, Information Technology, Cyber Security, or a related field.<br> 10+ years of experience in firewall and network security administration.<br> Strong understanding of enterprise firewall technologies.<br> Experience implementing and managing network security policies.<br> Good knowledge of network security principles and troubleshooting.<br> Strong analytical and problem-solving skills.<br> Good communication and teamwork skills.<br> Nice to Have Firewall vendor certifications.<br> Experience with enterprise network environments.<br> Knowledge of VPNs, NAT, and network segmentation.<br></span> </div>
<ul><li><p>· Administer and maintain all IT Network and Security aspects, configure and install various network devices and services (e.g. Routers, Switches, Firewalls).
· Perform maintenance and upgrades for managed network and network security devices including firmware upgrades, hotfixes, hardening, and security configuration changes.
· Design and operate Azure network connectivity using hub and spoke architecture to enforce segmentation, secure routing, and controlled east west traffic flows.
· Work within established configuration and change management policies to ensure awareness, approval and success of changes made to the network infrastructure.
· Select and implement security tools, policies, and procedures in conjunction with the company's security team.
· Integrate comprehensive metrics into the security posture of the organization.
· Identify areas of weakness and vulnerability and recommends changes to meet security standards.
· Facilitate security vulnerability assessments for internal and external penetration testing.
· Provide technical direction and guidance to other Security Engineers, Information Technology, and the business to align with regulatory, security requirements.
· Monitor Network performance and ensure system availability and reliability.
· Review the logs of all devices collected through Security Event Log Manager Device. Provide Level-2/3 support and troubleshooting to resolve issues.
· Liaise with vendors and customer IT personnel for problem resolution.
· Ensure all Network and system configuration are appropriately documented.
Cloud Management & Governance (Network & Security Scope)
· Design, implement, and maintain secure cloud network architectures including Virtual Networks, Subnets, NSGs, Route Tables, VPN Gateways, and ExpressRoute connectivity.
· Enforce cloud networking governance standards including IP addressing schemes, segmentation policies, and security zoning.
· Ensure compliance with cloud security best practices and regulatory requirements for network isolation and traffic control.
· Implement and maintain cloud firewall policies, network access controls, and secure connectivity between on-premises and cloud environments.
· Monitor cloud network usage and optimize routing and bandwidth utilization.
· Support cloud security posture management by enforcing least privilege access and secure connectivity models.
· Participate in cloud architecture reviews to ensure network resiliency, scalability, and high availability.
Managed Service Partner Coordination
· Act as technical focal point for managed service providers handling network operations, SOC, NOC, and security monitoring services.
· Coordinate incident response activities with service partners during network outages or security events.
· Review managed service performance reports and ensure SLA and KPI compliance.
· Validate vendor configuration changes and security updates before production deployment.
· Participate in service review meetings and provide technical feedback on operational improvements.
· Support onboarding of new vendors and technologies including knowledge transfer sessions and technical documentation validation.
· Escalate critical operational risks and performance gaps to IT management.
Performance Optimization & Troubleshooting
· Continuously monitor network performance, latency, throughput, and packet loss across LAN, WAN, and cloud connectivity.
· Identify performance bottlenecks and implement optimization strategies including QoS tuning, routing optimization, and firewall rule cleanup.
· Perform root cause analysis (RCA) for major incidents and recurring network or security issues.
· Conduct proactive health checks on firewalls, switches, routers, and VPN gateways.
· Optimize security device performance by reviewing logging levels, policy efficiency, and inspection rules.
· Support capacity planning and forecast network growth requirements.
· Participate in disaster recovery testing and network resilience validation.
Collaboration & Documentation
· Work closely with Infrastructure, Cloud, Application, and Information Security teams to ensure end-to-end network and security alignment.
· Maintain up-to-date network topology diagrams, firewall rule documentation, IP address management records, and cloud architecture diagrams.
· Document standard operating procedures (SOPs) for network operations, incident handling, and security changes.
· Support audit activities by providing network configuration evidence and security compliance documentation.
· Participate in change advisory board (CAB) meetings and contribute technical risk assessments.
· Share technical knowledge with junior engineers and operations teams through internal documentation and training sessions.</p></li></ul><p><strong>Desired Candidate Profile</strong></p><ul><li><p>Essential: Bachelor’s degree in computer science, Information Technology, Network Engineering, Cybersecurity, or related discipline.
Desirable:
· Cisco Certified Network Associate (CCNA) – Mandatory or Strongly Preferred.
· Cisco Certified Network Professional (CCNP) – Advantage
· Fortinet NSE (NSE 4 / NSE 5 / NSE 7) or equivalent firewall certification
· Strong experience in enterprise networking including TCP/IP, VLANs, routing, switching, VPN, firewall technologies, and LAN/WAN infrastructure management.
· Strong experience in implementing and managing firewalls, IPS/IDS, VPNs, WAF, Zero Trust security models, vulnerability management tools, and SIEM-based SOC/NOC security monitoring.
· Hands-on experience with Azure networking services, hybrid cloud connectivity, and implementation of cloud security controls and governance best practices.
· Strong analytical and troubleshooting skills with the ability to work under pressure, maintain accurate documentation, communicate effectively with stakeholders and vendors, and participate in on-call and shift-based operations.
Skills
CCNA
Azure
Networking</p></li></ul><br><p>Experience: 7–10 years of experience in enterprise network and security environments, preferably within Banking, Financial Services, or regulated industries</p>
General Description<br>Join a leading global professional services and consulting organization delivering a major cybersecurity and technology transformation program for one of the UAE’s largest energy and utilities organizations.<br>We are looking for an experienced OT Security / SCADA Engineer to support a long-term engagement focused on securing, strengthening, and enhancing Operational Technology (OT), Industrial Control Systems (ICS), SCADA, and critical infrastructure environments across the energy and utilities landscape.<br>This is a specialist OT/ICS Cybersecurity position rather than a general IT Cybersecurity, SOC, Network Security, or Information Security role. We are specifically looking for professionals with hands-on experience securing SCADA/ICS environments, industrial networks, control systems, and critical infrastructure, ideally within Energy, Utilities, Power, Water, Oil & Gas, or similar industrial environments.<br>The successful candidate will bring strong experience across OT Cybersecurity, SCADA/ICS Security, industrial network security, network segmentation, OT security architecture, firewalls, vulnerability and risk assessment, IEC 62443, Purdue Model, OT monitoring technologies, and industrial communication protocols.<br>This is a 3-year contract / freelance engagement based in the UAE.<br>Key Responsibilities Support the cybersecurity and resilience of OT, ICS, SCADA, and industrial control environments Design, review, and implement secure OT network architectures, segmentation, security zones, conduits, and OT DMZsSecure industrial assets including SCADA servers, PLCs, DCS, HMI, RTUs, engineering workstations, industrial switches, and communication devices Perform OT cybersecurity risk assessments, vulnerability assessments, gap assessments, and security reviews Implement and maintain industrial firewalls, IDS/IPS, secure remote access, network monitoring, and endpoint security controls Support OT monitoring and asset visibility using technologies such as Nozomi, Claroty, Dragos, Tenable OT, or equivalent Implement security controls aligned with IEC/ISA 62443, NIST SP 800-82, Purdue Model, and relevant OT cybersecurity frameworks Assess and secure industrial communication protocols including IEC 61850, IEC 60870-5-104, Modbus, DNP3, OPC/OPC-UA, PROFINET, and related protocols Support OT asset discovery, inventory management, vulnerability management, system hardening, patch management, and threat monitoring Support OT cybersecurity incident detection, investigation, response, and remediation Review and secure integration between IT and OT environments Participate in FAT, SAT, testing, commissioning, troubleshooting, and security validation Work closely with cybersecurity, engineering, operations, automation, network, OEM, vendor, and project teams.<br>Required Skills & Experience Strong hands-on experience in OT Cybersecurity, ICS Security, SCADA Security, or Industrial Cybersecurity Practical experience working within SCADA/ICS and industrial control environments Experience with PLC, DCS, HMI, RTU, SCADA servers, and industrial automation systems Strong knowledge of OT network security, segmentation, firewalls, VLANs, DMZ architecture, secure remote access, and IT/OT integration Experience with IEC/ISA 62443 and OT cybersecurity risk assessment methodologies Strong understanding of the Purdue Model Experience with Nozomi, Claroty, Dragos, Tenable OT, or similar OT security platforms Knowledge of industrial protocols including IEC 61850, IEC 104, Modbus, DNP3, OPC/OPC-UA, PROFINET, or similar Experience across OT vulnerability management, security hardening, patch management, threat monitoring, and incident response Strong industrial networking and network security knowledge Previous experience within Energy, Utilities, Power Generation/Transmission/Distribution, Water, Oil & Gas, or other critical infrastructure environments is highly desirable UAE/GCC OT or critical infrastructure experience would be advantageous.<br>Engagement Details Engagement Type: Contract / Freelance Project Duration: 3 Years Location: UAEProject Environment: Energy & Utilities / Critical Infrastructure Work Setup: Onsite
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span><strong>Requisition Number:</strong> 24555BR<br><strong>Description:</strong><br>Stantec is looking to hire a OT Cyber Security Engineer for 6 months for various projects in Abu Dhabi.<br>- Responsible for leading Overall OT/IT cyber security for major Master Control Centre/ Water Network OT projects.<br>- Responsible for reviewing Cyber Security Plan for the project for approval from Client.<br>- Reviewing network architectures and determining if good practices are being followed (e.g., the "zones & conduits" concept, proper network segmentation, use of Industrial DMZ, etc.); and providing recommendations to comply with applicable cybersecurity framework.<br>- Reviewing security products utilized (e.g., firewalls, IDS, IPS) and determining if they are configured properly.<br>- Monitor deployment of network infrastructure devices (e.g., switches, routers, etc.), security appliances (e.g., firewalls, IDS, etc.), and virtualization solutions<br>- Reviewing security policies, plans, and procedures; assessing network monitoring capabilities; analyzing system logs, security events, and packet captures to identify security threats; and providing recommendations to comply with applicable cybersecurity framework.<br>- Lead design reviews/workshops, reviewing/ recommending EPC contractor’s deliverables, Lead interfaces with various Package Vendors, prepare gap analysis against the project requirements for various control systems supplied by package vendors.<br>- Responsible for reviewing security products utilized (e.g., firewalls, IDS, IPS) and determining if the proposed configuration meets Project requirement and Industry standards.<br>- Responsible to review security policies, plans, and procedures; assessing network monitoring capabilities; analyzing system logs, security events, and packet captures to identify security threats; and providing recommendations and work with SCADA/ Control system contractor to comply with applicable cybersecurity framework.<br>- Review administrative, technical, and physical security controls proposed by SCADA/ Control system contractor and providing recommendations to mitigate the identified security risks.<br>- Participate and contribute to Cyber security workshops, vulnerability, and risk assessments with SCADA/ Control system contractor to identify security risks and threats (e.g., unsecure remote access points, suspicious remote connections, unauthorized devices on the network, etc.) and providing recommendation to remediate the identified issues, Prepare Report/Update/Maintain and coordinate with all parties to close out action points.<br>- Review/Comments contractor submitted detailed diagrams (e.g., network, cabling, server, rack, logical architecture, etc.), procedures, and plans (e.g., implementation, SAT, mitigation, etc.) as needed to support projects.<br>- Responsible to handle Technical Queries/issues from all stake holders, document review/approval of Automation & Package vendors, certification requirements if any, participate in regular meetings with vendors & Client<br>- Responsible to lead and participate in SCADA/ Control system contractor cyber security test at FAT locations, Responsible to accept the test and signoff reports.<br>- Responsible for coordination with client, subcontractors, other discipline engineers and Project team.<br>- Participating in cross-functional and inter-office meetings to provide design input to Engineering team.<br>- Proactively identify and mitigate technical risks during project stage.<br>- Travel to the client's site location as and when required.<br>- Support the construction, commissioning, and start-up activities, to ensure no delay.<br><strong>Qualifications:</strong><br>B.E./ Tech. in IT/OT Cybersecurity/ Electrical/ Electronics/ Instrumentation engineering with 10+ years' experience in designing, testing, installing, testing & commissioning of OT cybersecurity systems in major water & wastewater projects or Master Control Centre/ Data Centre projects.<br>Experience within the UAE or GCC region will be preferred.<br>Location: Abu Dhabi, UAE<br><strong>About Stantec:</strong><br>We’re active members of the communities we serve. That’s why at Stantec we always design with community in mind. We believe growing a great design company happens from the inside out. We look for people who are drawn to use every talent they possess, plus creativity, determination and a drive to do the extraordinary.<br>The Stantec community unites approximately 22,000 employees working in over 400 locations across six continents. We collaborate across disciplines and industries to bring projects to life. Our work as architects, engineers, and consultants from initial project concept and planning through design, construction and commissioning is built on a solid history of success. So, when we take on a project, we see the opportunity to make a lasting connection with the people and places where we live and work. Redefine your personal best. Join us!<br><strong>Work Location(s):United Arab Emirates-Abu Dhabi</strong><br><strong>Employment Type:</strong> <strong>Full-Time</strong><br><strong>Job Type:</strong> <strong>Regular</strong><br><strong>Job Category:</strong> <strong>Internet/WWW</strong></span> </div>
Role Description This is a part-time remote role for a Cybersecurity Analyst at مجتمع الكتابة. The Cybersecurity Analyst will monitor systems and networks for security events, analyze alerts, and investigate potential incidents. The role includes assessing vulnerabilities, supporting application and network security controls, and assisting in the development and maintenance of security policies and procedures. The individual will collaborate with technical and non-technical teams to recommend risk mitigation measures and support security awareness efforts. The Cybersecurity Analyst will document findings, prepare reports, and help ensure compliance with relevant security standards.<br>Qualifications<br> Candidates should possess strong Cybersecurity and Information Security skills, including understanding of security principles, risk management, and incident response. Candidates should possess Network Security skills, including knowledge of firewalls, IDS/IPS, VPNs, and secure network architectures. Candidates should possess Application Security skills, including familiarity with secure coding practices, common vulnerabilities, and basic code or configuration review. Candidates should possess Cyber threat analysis skills, including recognizing attack patterns, malware behavior, and emerging threats. Relevant certifications such as Comp TIA Security+, CySA+, CEH, or equivalent are beneficial. Experience with security tools (SIEM, vulnerability scanners, endpoint protection) and ticketing systems is preferred. Strong analytical, problem-solving, and written communication skills, with the ability to work independently in a remote environment. Degree or coursework in Computer Science, Information Security, or a related field, or equivalent practical experience.
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><ul><li><p>Manage network, intrusion detection and prevention systems.</p></li><li><p>Conduct periodic compromise assessments across selected networks and propose recommendations based on assessment results.</p></li><li><p>Conduct physical security assessment of the organization’s systems, including servers and networks, ensuring that any unauthorized external physical interference is not actually possible.</p></li><li><p>Conduct ongoing network hunt activities.</p></li><li><p>Conduct proactive vulnerability assessment across the network, subnetworks and service traffic to identify potential points of intrusion.</p></li><li><p>Research and develop methods of tracking and detecting malicious activity within a network.</p></li><li><p>Develop tools, signatures, and methods of detection for use in incident response activities.</p></li><li><p>Develop SIEM integrations, dashboards, and analytics to illuminate and visualize threat activity.</p></li><li><p>Analyze network traffic to provide timely detection, identification, and alerting of possible attacks/intrusions, anomalous activities, and misuse activities and distinguish these incidents and events from benign activities.</p></li><li><p>Uses data collected from a variety of cyber defense tools (e.g., anti-virus, IDS alerts, firewalls, network traffic logs) to analyze events that occur within their environments, perform cyber defense trend analysis and reporting, and perform event correlation to mitigate threats and gain situational awareness and determine the effectiveness of an observed attack.</p></li><li><p>Carries out triage to ensure that a genuine security incident is occurring.</p></li><li><p>Coordinate with entity-wide cyber defense staff to validate network alerts.</p></li><li><p>Notify designated managers, cyber incident responders, and cybersecurity service provider team members of suspected cyber incidents and articulate the event’s history, status, and potential impact for further action in accordance with the organization’s cyber incident response plan.</p></li><li><p>Document and escalate incidents (including event’s history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment.</p></li><li><p>Provide daily summary reports of network events and activity relevant to cyber defense practices.</p></li><li><p>Analyze identified malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information.</p></li><li><p>Validate intrusion detection system (IDS) alerts against network traffic using packet analysis tools.</p></li><li><p>Isolate and remove malware.</p></li><li><p>Develop content for cyber defense tools use them for continual monitoring and analysis of network activity to identify malicious activity.</p></li><li><p>Assist in the construction of signatures which can be implemented on cyber defense tools in response to new or observed threats within the network environment.</p></li><li><p>Analyze and report organizational security posture trends.</p></li><li><p>Monitor external data sources (e.g., cyber defense vendor sites, Computer Emergency Response Teams, Security Focus, Threat Intelligence Providers) to maintain updated of cyber defense threat condition and determine which security issues may have an impact on the enterprise.</p></li><li><p>Provides cybersecurity recommendations based on significant threats and vulnerabilities.</p></li><li><p>Provide advice and input for Disaster Recovery, Contingency, and Continuity of Operational Plans.</p></li><li><p>Collect and analyze intrusion artifacts (e.g., source code, malware, and system configuration) and use discovered data to enable mitigation of potential cyber incidents within the enterprise.</p></li><li><p>Use specialized equipment and techniques to catalog, document, extract, collect, package, and preserve digital evidence.</p></li></ul><p>Utilize deployable forensics toolkit to support operations as necessary</p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li><p><strong>Knowledge</strong></p><ul><li><p>Security concepts such as cyber-attacks and techniques, threat vectors, risk and threat management, incident management etc.</p></li><li><p>Networking concepts and protocols, and network security attacks, vulnerabilities, processes, methodologies, access control mechanisms, traffic analysis methods.</p></li><li><p>Cyber threats and vulnerabilities and information dissemination sources (e.g., alerts and advisories).</p></li><li><p>Cyber defense and vulnerability assessment tools and their capabilities.</p></li><li><p>System and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Procedural Language/Structured Query Language [PL/SQL] and injections, race conditions, covert channel, replay, return-oriented attacks, malicious code).</p></li><li><p>Scripting languages (e.g., Python, Perl, Bash) used in an incident response environment</p></li><li><p>Incident response and handling methodologies.</p></li><li><p>Intrusion Detection System (IDS)/Intrusion Prevention System (IPS) tools, applications, methodologies and techniques for detecting host and network-based intrusions.</p></li><li><p>Threat investigations, reporting and investigative tools.</p></li><li><p>Cyber defense and information security policies, procedures, and regulations.</p></li><li><p>Common attack vectors, the different classes of attacks (e.g., passive, active, insider, close-in, distribution attacks) and attack stages (e.g., reconnaissance, scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks).</p></li><li><p>Cyber attackers (e.g., script kiddies, insider threat, non-nation state sponsored, and nation sponsored), and attackers’ methodologies.</p></li><li><p>Signature implementation impact for viruses, malware, and attacks.</p></li><li><p>Windows/Unix ports and services.</p></li><li><p>Relevant laws, legal authorities, restrictions, and regulations pertaining to cyber defense activities.</p></li><li><p>Packet-level analysis using appropriate tools (e.g., Wireshark, tcpdump).</p></li><li><p>Use of sub-netting tools.</p></li><li><p>Penetration testing principles, tools, and techniques.</p></li><li><p>Investigation, auditing and forensics methods, processes, procedures and standards.</p></li><li><p>Different types of hardware, storage, imaging and file system analysis.</p></li><li><p>Data backup and recovery.</p></li></ul></li></ul><p><strong>Skills</strong></p><ul><li><p>Using SIEM/SOAR and Vulnerability Management tools and services.</p></li><li><p>Sysadmin skills (Linux/Mac/Windows).</p></li><li><p>Programming skills (Python, Ruby, PHP, C, C#, Java, Perl, and more).</p></li><li><p>Identifying, analyzing and interpreting trends or patterns in complex data sets.</p></li><li><p>Developing and deploying signatures.</p></li><li><p>Detecting host and network-based intrusions via intrusion detection technologies (e.g., Snort).</p></li><li><p>Using incident handling methodologies.</p></li><li><p>Collecting data from a variety of cyber defense resources.</p></li><li><p>Recognizing and categorizing types of vulnerabilities and associated attacks.</p></li><li><p>Performing packet-level analysis.</p></li><li><p>Conducting trend analysis.</p></li><li><p>Using cyber defense reporting structure and processes.</p></li><li><p>Utilizing a combination of automated and manual testing methods.</p></li><li><p>Developing automated vulnerability testing scripts and using off the shelf vulnerability testing tools.</p></li><li><p>Conducting vulnerability scans and recognizing vulnerabilities in networks, systems and applications.</p></li><li><p>Using of penetration testing tools and techniques.</p></li><li><p>Applying analytical and problem-solving skills.</p></li></ul><br><p><strong>Ability</strong></p><ul><li><p>Collaborate with other sections across the department to enhance detection capabilities.</p></li><li><p>Perform Malware analysis.</p></li><li><p>Work closely with management to respond appropriately to the results of assessments and mitigation oversight of found vulnerabilities.</p></li><li><p>Perform data analysis, correlation, and analytics leveraging Security Information and Event Management (SIEM) tools.</p></li><li><p>Conduct vulnerability scans and recognize vulnerabilities in security systems & devices.</p></li><li><p>Accurately and completely source all data used in intelligence, assessment and/or planning products.</p></li><li><p>Apply techniques for detecting host and network-based intrusions using intrusion detection technologies.</p></li><li><p>Interpret the information collected by network tools (e.g. Nslookup, Ping, and Traceroute).</p></li><li><p>Prepare and create regular reports to document any security breaches/ incidents.</p></li><li><p>Provide forensic support to Cyber Security Operations during the investigation of any detected threat or contained incident / event to determine root cause and propose response recommendations as required.</p></li></ul><br><p><strong>Education and Certification</strong></p><ul><li><p>Bachelor’s degree in an information technology, computer science, cyber security or equivalent work experience.</p></li><li><p>CompTIA Security+</p></li><li><p>CISSP: Certified Information Systems Security Professional</p></li><li><p>GCFA: GIAC Certified Forensic Analyst</p></li><li><p>GCIH: GIAC Certified Incident Handler</p></li><li><p>GCIA: GIAC Certified Intrusion Analyst</p></li><li><p>OSCP: Offensive Security Certified Professional</p></li><li><p>CEH: Certified Ethical Hacker</p></li><li><p>CPT: Certified Penetration Tester</p></li></ul><p><strong>Experience</strong></p><ul><li><p>3 years of experience in cyber security operations with expertise in managing the Security Operations Center</p></li><li><br></li></ul><p><br></p><p></p></section>
<p><br>We are seeking a skilled and proactive Network & Systems Administrator to join our IT team. The ideal candidate will be responsible for designing, implementing, managing, and supporting the organization’s network and server infrastructure. This role also includes maintaining security systems, telephony, and ensuring seamless operations across all IT platforms.</p><p><br></p><p><strong>Key Responsibilities</strong></p><ul><li><p>Design, implement, manage, and support the organization’s network infrastructure.</p></li><li><p>Administer and maintain firewalls, switches, routers, and VPNs.</p></li><li><p>Monitor network performance and perform necessary optimizations or upgrades.</p></li><li><p>Manage and secure Windows Server environments (Active Directory, DNS, DHCP, etc.).</p></li><li><p>Support and maintain CCTV surveillance systems and ensure proper network integration.</p></li><li><p>Administer and troubleshoot IP-based PABX (telephony) systems.</p></li><li><p>Maintain accurate documentation for network configurations, system updates, and incident reports.</p></li><li><p>Collaborate with internal teams to support projects and resolve technical issues.</p></li></ul><p><strong>Desired Candidate Profile</strong></p><br><p><strong>Required Qualifications & Skills</strong></p><ul><li><p>Bachelor’s degree in information technology, Computer Science, or a related field.</p></li><li><p>1–6 years of hands-on experience in network and systems administration.</p></li><li><p>Strong expertise in configuring and troubleshooting firewalls (SonicWall, Fortinet, Cisco ASA, or similar), switches, and VPNs.</p></li><li><p>Proficiency in Windows Server administration (2016/2019/2022).</p></li><li><p>Experience with CCTV systems setup, configuration, and integration.</p></li><li><p>Working knowledge of IP-based PABX systems.</p></li><li><p>Relevant certifications such as CCNA, CCNP, MCSA, or Fortinet NSE are a plus.</p></li></ul><p><br></p>
Job Title: Senior Network & Firewall Engineer (L3) Location: Dubai<br>Experience<br>10+ years of hands-on experience in enterprise networking, security, deployment, migration, and troubleshooting.<br>Job Summary<br>We are seeking an experienced L3 Network & Firewall Engineer responsible for designing, deploying, migrating, optimizing, and supporting enterprise network and security infrastructures. The ideal candidate should possess deep expertise in Cisco, Fortinet, Palo Alto, Huawei, and multi-vendor networking environments. The role requires leading complex implementation and migration projects while providing Level-3 technical support for mission-critical environments.<br>Key Responsibilities<br>• Design, implement, and maintain enterprise LAN, WAN, Data Center, and Campus network infrastructures.• Deploy, configure, and troubleshoot Cisco, Huawei, Fortinet, and Palo Alto network and security solutions.• Lead network transformation, refresh, migration, and greenfield deployment projects.• Perform firewall policy creation, NAT configuration, VPN implementation, routing, and security hardening.• Plan and execute network migration activities with minimal downtime.• Configure and troubleshoot dynamic routing protocols including OSPF, BGP, EIGRP, and static routing.• Implement high-availability solutions for firewalls and core network infrastructure.• Manage Layer 2 and Layer 3 switching technologies including VLANs, STP, Ether Channel/LACP, VRRP/HSRP, and MLAG where applicable.• Support SD-WAN, IPSec VPN, SSL VPN, Remote Access VPN, and site-to-site connectivity.• Perform network performance analysis, capacity planning, and root cause analysis for complex incidents.• Lead technical discussions with customers, vendors, and internal project teams.• Create High-Level Design (HLD), Low-Level Design (LLD), Method of Procedure (MOP), rollback plans, and as-built documentation.• Provide L3 operational support and mentor junior network engineers.• Ensure network security compliance and adherence to organizational standards and best practices.<br>Required Technical Skills<br>Networking<br>• Cisco Routing & Switching• Huawei Enterprise Switching• Cisco Catalyst & Nexus platforms• VLANs, STP, RSTP, MSTP• OSPF, BGP, EIGRP• VRRP, HSRP• MPLS• QoS• Multicast• DHCP, DNS• IPv4 & IPv6• Network monitoring and troubleshooting<br>Firewalls & Security<br>• Cisco Firepower• Fortinet Forti Gate• Palo Alto Networks Firewalls• Security Policies• NAT• IPS/IDS• Application Control• URL Filtering• SSL Inspection• IPSec VPN• SSL VPN• High Availability (HA)• Security hardening and best practices<br>Deployment & Migration<br>• Enterprise network migration• Firewall migration (Cisco, Fortinet, Palo Alto)• Data Center migration• Branch rollout• Network refresh projects• Change management• Cutover planning• Rollback planning• Zero/Minimal downtime migrations<br>Preferred Certifications<br>• Cisco CCIE Enterprise must• Fortinet NSE 4/5/7 or Fortinet Certified Professional/Expert• Palo Alto PCNSE• Huawei HCIP/HCIE• ITIL Foundation (preferred)<br>Soft Skills<br>• Excellent troubleshooting and analytical skills• Strong customer-facing communication• Ability to work under pressure during critical migrations• Technical leadership and mentoring capabilities• Strong documentation and presentation skills• Ability to manage multiple projects simultaneously<br>Preferred Experience<br>• Enterprise Data Centers• Banking• Government• Healthcare• Telecom• Large Campus Networks• Managed Services• Cloud connectivity (AWS, Azure, OCI)• Hybrid network environments<br>Employment Level<br>Senior Engineer (L3)<br>Reporting To: Network & Security Practice Manager / Infrastructure Manager
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
Our client is currently hiring for the position of IT Manager.<br><br>
Responsibilities:<br> . Cybersecurity Leadership: Lead organization-wide cybersecurity strategies, ensuring robust protection against external and internal threats. <br><br>
. Network Management: - Oversee, optimize, and maintain high-performance connectivity and reliability across all locations. <br><br>
. SAP Business One Administration: Manage and secure SAP B1 across multiple sites, ensuring stability, integration, and performance optimization. <br><br>
. Policy Development: - Create and enforce IT security and network management policies, procedures, and best practices. <br><br>
. Cross-Functional Collaboration: -Work closely with operational and departmental teams to align IT systems with business objectives. <br><br>
. Threat Response: - Proactively identify vulnerabilities and implement measures to prevent security breaches.<br><br>
<br><br>
Technical Skills: <br><br>
. Strong knowledge of backup solutions and disaster recovery planning. <br><br>
. Expertise in firewall management and network troubleshooting (Fortinet, Cisco, or equivalent). <br><br>
. Experience with virtualization technologies (e.g., VMware, Hyper-V). <br><br>
. Proficiency in both Windows and Linux server environments.<br>
<br><br>
</div>
<ul><li><p>Monitor network performance and security events</p></li><li><p>Assist in managing firewalls, VPNs, and network devices</p></li><li><p>Support implementation of security controls and policies</p></li><li><p>Respond to security incidents and alerts</p></li><li><p>Conduct basic vulnerability assessments and patch tracking</p></li><li><p>Support endpoint security and antivirus systems</p></li><li><p>Assist in compliance activities (ISO 27001, internal policies)</p></li></ul><p><strong>Desired Candidate Profile</strong></p><ul><li>Bachelor's degree in Computer Science, Information Security, or a related field.</li><li>Possession of industry-recognized certifications such as CISSP, Security+, or CEH.</li><li>Minimum of 3-5 years of hands-on experience in network security operations and incident response.</li><li>Proven expertise in network protocols, firewalls, IDS/IPS, VPNs, and endpoint security solutions.</li></ul>
<p>Help AG is looking for a highly skilled and experienced Senior Security Engineer who will be responsible for the creation of procedures, implementation of process development, and maintenance of security systems across internal and client environments. The Security Engineer will work closely with Management, Senior Engineers, Threat Analysts, Solution Architects, other Security Engineers, and clients to complete high profile, critical services to existing Managed Security Service clients. Expertise in the below technologies:</p><ul><li><p>Arbor Peakflow</p></li><li><p>Arbor APS/AED</p></li><li><p>Fortinet Firewalls</p></li><li><p>Palo Alto firewalls & Panorama</p></li><li><p>Cisco ASA and Firepower Firewalls</p></li><li><p>Juniper Firewalls</p></li><li><p>F5 (LTM)</p></li></ul><p><strong>Responsibilities</strong></p><ul><li><p>Act as SME of DDOS & Firewall technologies for Help AG customers.</p></li><li><p>Able to design, deploy, operate, monitor, maintain and troubleshoot Complex IP Networks and interconnected Network Security technologies.</p></li><li><p>Provide timely response to all incidents, outages and performance alerts.</p></li><li><p>Takes responsibility for handling escalated incidents.</p></li><li><p>Consult with other technology support groups as part of problem resolution efforts.</p></li></ul><p><strong>Desired Candidate Profile</strong></p><ul><li><p>Should have at least 10+ years demonstrable industry experience.</p></li><li><p>Should have Network Operations / Security Operations experience.</p></li><li><p>Should have expert and in-depth knowledge of Complex IP Networks.</p></li><li><p>Should have solid understanding of Network Security technologies, data center traffic flow and advanced troubleshooting techniques.</p></li><li><p>Should have demonstrable experience of working in extreme pressure and customer facing environments.</p></li><li><p>Should have fair understanding of ITIL change management, problem management and incident management.</p></li><li><p>Should have experience to work under pressure and with strict SLA’s.</p></li><li><p>Sound understanding of common services (web, mail, FTP, DNS, etc.), network vulnerabilities and network attack patterns.</p></li><li><p>Experience with many/all of the following security controls:</p><ul><li><p>Firewalls</p></li><li><p>Intrusion Prevention Systems.</p></li><li><p>Antimalware</p></li><li><p>Two factor Authentication</p></li><li><p>Sandboxing</p></li><li><p>Virtual Private Networks</p></li><li><p>Firewall Rules Auditing</p></li></ul></li><li><p>Self-motivated and a professional attitude.</p></li><li><p>Excellent Customer facing skills.</p></li><li><p>Excellent communication and listening skills.</p></li><li><p>Excellent teambuilding, customer service, and interpersonal skills.</p></li><li><p>Must possess good decision-making skills, be very organized and detail oriented.</p></li><li><p>Skills in handling technical conflicts, organizational challenges, planning and implementation challenges.</p></li><li><p>Judgment, decision making, cooperation, sensitivity to others, technical problem-solving, system troubleshooting, and business writing.</p></li></ul>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
Job Description<br><p>We are currently looking for Information Security Architect for our UAE operations with the following terms & conditions.</p><br><p>Required Skills & Experience</p><br><p>• 10+ years of Information Security experience.</p><br><p>• 5+ years as an Information Security Architect or Enterprise Security Architect.</p><br><p>• Mandatory banking or financial services experience.</p><br><p>Strong knowledge of:</p><br><p>• Enterprise Security Architecture</p><br><p>• Zero Trust Architecture</p><br><p>• Cloud Security (Azure/AWS)</p><br><p>• Identity & Access Management (IAM)</p><br><p>• Network Security</p><br><p>• Application Security</p><br><p>• Data Security</p><br><p>• SIEM, SOC, DLP, EDR/XDR</p><br><p>Experience with security frameworks:</p><br><p>• ISO 27001</p><br><p>• NIST Cybersecurity Framework</p><br><p>• PCI DSS</p><br><p>• CIS Controls</p><br><p>• TOGAF (preferred)</p><br><p>• Mandatory Certification</p><br><p>• CISSP (Certified Information Systems Security Professional)</p><br><p>Preferred Certifications</p><br><p>• CCSP</p><br><p>• CISM</p><br><p>• CEH</p><br><p>• SABSA</p><br><p>• TOGAF</p><br><p>• Azure Security Engineer / AWS Security Specialty</p><br><p>Preferred Candidate Profile</p><br><p>• Excellent stakeholder management and communication skills.</p><br><p>• Experience working in large enterprise banking environments.</p><br><p>• Strong documentation and presentation skills.</p><br><p>• Ability to work with cross-functional technology teams.</p><br><p>Terms and conditions</p><br><p>Joining time frame: Immediate</p><br><br><br> </div>
<p>Guildhall is representing a leading construction and contracting company delivering large-scale building and infrastructure projects across the region. We are seeking an experienced Head of IT & Digital Transformation to lead the company's technology strategy, oversee enterprise IT operations, strengthen cybersecurity, and drive digital transformation initiatives across both corporate functions and project sites.
The successful candidate will oversee IT infrastructure, enterprise applications, cybersecurity, construction technology, AI adoption, governance, and digital transformation programmes that improve collaboration, productivity, and decision-making across the organisation.
Key Responsibilities:
Technology Strategy & Digital Transformation
- Develop and implement the company's IT strategy aligned with business objectives.
- Lead digital transformation initiatives across corporate departments and construction projects.
- Establish technology roadmaps that support operational excellence and business growth.
- Manage annual IT budgets, technology investments, and strategic planning.
IT Infrastructure & Operations
- Oversee corporate networks, cloud environments, servers, telecommunications, and end-user computing.
- Standardise IT infrastructure across offices, project sites, and regional operations.
- Ensure high availability, performance, and reliability of all critical business systems.
- Manage disaster recovery, backup strategies, and business continuity planning.
Cybersecurity
- Develop and implement enterprise-wide cybersecurity policies and best practices.
- Oversee endpoint protection, firewalls, identity and access management, and network security.
- Lead vulnerability management, penetration testing, and cyber incident response.
- Promote cybersecurity awareness and compliance throughout the organisation.
Enterprise Applications
- Manage and optimise Microsoft 365, ERP systems, CRM platforms, document management systems, and business intelligence solutions.
- Ensure seamless integration and performance of enterprise applications that support business and project operations.
- Drive continuous improvement of digital workflows and system capabilities.
Construction Technology
- Lead the implementation and optimisation of construction technology platforms.
- Support BIM workflows, digital project controls, mobile field reporting, digital QA/QC systems, drone and reality capture technologies, IoT solutions, and smart construction initiatives.
- Collaborate with project teams to improve project delivery through technology innovation.
Artificial Intelligence & Automation
- Identify and implement AI-driven solutions to improve operational efficiency.
- Drive initiatives including document automation, proposal generation, contract analysis, knowledge management, predictive reporting, AI assistants, and workflow automation.
- Evaluate emerging technologies that enhance productivity and business intelligence.
Vendor & Technology Management
- Manage relationships with IT vendors, software providers, and managed service partners.
- Negotiate technology contracts, software licensing, and hardware procurement.
- Monitor vendor performance and ensure compliance with service level agreements.
Governance & Compliance
- Develop and maintain IT governance frameworks, policies, and technology standards.
- Ensure compliance with cybersecurity, privacy, software licensing, and data protection regulations.
- Support internal and external audits while maintaining best-practice IT governance.
Leadership & Team Development
- Lead and develop the internal IT function.
- Manage external consultants and specialist technology providers.
- Build a high-performing technology team focused on innovation, service excellence, and continuous improvement.</p><p>- Bachelor's Degree in Computer Science, Information Technology, Information Systems, Engineering, or a related discipline.
- Professional certifications such as Microsoft Azure, Cisco, ITIL, PMP, CISSP, or equivalent are highly desirable.
- 8–15 years of progressive IT experience. Minimum 5 years in a leadership or management role.
- Proven experience within the construction or contracting industry.
- Demonstrated success leading enterprise-wide digital transformation initiatives.
- Strong knowledge of Microsoft Azure cloud technologies.
- Extensive Microsoft 365 administration experience.
- Advanced networking, infrastructure, cloud, and virtualisation expertise.
- Strong understanding of cybersecurity frameworks and enterprise security.
- Experience implementing and managing ERP systems.
- Proficiency with Power BI, Microsoft Power Platform, SharePoint Online, and enterprise collaboration platforms.
Preferred Experience
- Building Information Modelling (BIM) technologies.
- Construction platforms such as Procore, Autodesk Construction Cloud, Oracle Primavera P6, or similar.
- Artificial Intelligence implementation within enterprise environments
- ISO 27001 standards and information security governance.
- VMware or Hyper-V virtualisation platforms.</p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
Job description
<p>This is a great opportunity to join a well-established, rapidly growing office in the region and drive the cybersecurity strategy for the entire group of companies globally. <br><b>Discover the Company</b></p><br><p>A Globally recognized French Luxury house that seamlessly blends cultural heritage, artistry, and modern sophistication.</p><br><p><br><b>Discover the role:</b></p><br><p>We are seeking a Cyber Security Manager to own and drive the end-to-end cybersecurity function across a multi-entity group spanning the UAE, France, and beyond. This is a unique greenfield opportunity giving you the autonomy to build, formalize, and scale a global security framework from scratch.<br></p><br><p>Reporting directly to the IT Director, you will combine high-level strategy and stakeholder management with hands-on transformation delivery.</p><br><p></p><br><p><b>Discover the Requirements</b></p><br><ul><li><p>Minimum 5+ years of dedicated cybersecurity experience in a management or lead role within the UAE region.</p><br></li><li><p>Proven track record delivering cybersecurity programs in complex, multi-entity international environments. Experience or background working with European markets is highly advantageous.</p><br></li><li><p>Deep, hands-on experience within Azure-heavy cloud environments, enterprise identity management (IAM), network security, and SIEM/XDR platforms.</p><br></li><li><p>A forward-thinking approach to security, with the capability to map out defenses against next-generation, AI-driven threats.</p><br></li><li><p>A background in fast-scaling digital platforms, retail, or manufacturing ecosystems is a strong plus.</p><br></li><li><p>CISSP, CISM, or equivalent professional certifications are required.<br></p><br></li></ul><p><b>We are only considering candidates who are already based in the UAE and have regional experience.</b></p><br><br>
</div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p>Job Profile & Description: Mott MacDonald is a global engineering, management, and development consultancy committed to delivering impactful work that shapes the future. We are a team of over 20,000 experts working across the world in more than 50 countries. We are proud to be part of an ever-changing global industry, delivering transformative work that’s defining our future. It’s our people who power that performance. As an employee-owned business, we invest in creating a space for everyone to feel safe and valued and empowered with the right tools and support. Whether you want to pursue excellence in your specialism or broaden your experience with flexible roles across our business, you’ll be connected to a community of global experts championing you to be your best. Join us and shape your story with Mott MacDonald, where everyone has the opportunity to be brilliant . About the role: The Principal IT/OT & Cybersecurity Engineer will lead the design, implementation, and assurance of secure IT and Operational Technology (OT) systems. This role is critical to ensuring cybersecurity compliance, system integration, and uninterrupted operations. The position requires strong expertise in infrastructure security, industrial control systems (ICS), and coordination with multi-disciplinary construction and MEP teams. Key responsibilities and duties are listed, but not limited to, the below: Cybersecurity Strategy & Compliance Develop and implement IT/OT cybersecurity strategy aligned with RTA, UAE NESA, and international standards (e.g., ISO 27001, IEC 62443). Conduct risk assessments, threat modelling, and security audits for construction and operational environments. Ensure all systems meet compliance requirements for critical infrastructure and public transport systems. IT/OT Systems Design & Integration Oversee the design, installation, and integration of IT and OT systems, including: SCADA/BMS systems Access control & CCTV Network and communication systems Ensure secure integration between building systems (MEP, curtain wall systems, utilities) and metro operational systems. Work closely with contractors and vendors to ensure cybersecurity-by-design principles. Operational Environment Security Implement cybersecurity controls for a live metro station environment minimizing disruption to ongoing operations. Develop procedures for secure construction activities near critical infrastructure. Monitor network and OT systems for vulnerabilities, threats, and incidents. Risk Management & Incident Response Identify and mitigate risks related to IT/OT systems during demolition and construction phases. Lead incident response planning and execution in case of cybersecurity events. Conduct penetration testing, vulnerability assessments, and remediation activities. Stakeholder Coordination Liaise with RTA authorities, project consultants, contractors, and system integrators. Provide technical guidance to project teams on cybersecurity standards and best practices. Coordinate with MEP, civil, and infrastructure teams to ensure secure system installation. Documentation & Reporting Prepare cybersecurity plans, policies, and procedures. Maintain documentation for system designs, risk assessments, and compliance reporting. Provide regular updates to senior management on cybersecurity posture. Support continuous improvement and digital ways of working, sharing knowledge and lessons learned. Demonstrate safe, ethical and inclusive behaviours aligned to Mott MacDonald values. Your benefits and rewards: Our benefits vary by country and are subject to eligibility and local policy: Rewards and bonuses: we are owned by our people (no external investors) and through our employee ownership model success is shared through annual bonus opportunities and longer-term participation as your career grows (subject to local plan, eligibility and business performance) Medical insurance and life insurance as per local plan (standard and enhanced coverage may vary by country and policy). Annual leave in line with local policy (competitive within the market). Maternity leave above and beyond local provisions and paternity leave provisions where applicable Professional membership/ institution subscription support Learning and career development through project variety, technical networks and structured development opportunities. An inclusive culture: we’re committed to equality, diversity and inclusion, and creating a workplace where everyone feels valued and supported. </p><br> </div>
<p>Guildhall is representing a leading construction and contracting company delivering large-scale building and infrastructure projects across the region. We are seeking an experienced Head of IT & Digital Transformation to lead the company's technology strategy, oversee enterprise IT operations, strengthen cybersecurity, and drive digital transformation initiatives across both corporate functions and project sites.
The successful candidate will oversee IT infrastructure, enterprise applications, cybersecurity, construction technology, AI adoption, governance, and digital transformation programmes that improve collaboration, productivity, and decision-making across the organisation.
Key Responsibilities:
Technology Strategy & Digital Transformation
- Develop and implement the company's IT strategy aligned with business objectives.
- Lead digital transformation initiatives across corporate departments and construction projects.
- Establish technology roadmaps that support operational excellence and business growth.
- Manage annual IT budgets, technology investments, and strategic planning.
IT Infrastructure & Operations
- Oversee corporate networks, cloud environments, servers, telecommunications, and end-user computing.
- Standardise IT infrastructure across offices, project sites, and regional operations.
- Ensure high availability, performance, and reliability of all critical business systems.
- Manage disaster recovery, backup strategies, and business continuity planning.
Cybersecurity
- Develop and implement enterprise-wide cybersecurity policies and best practices.
- Oversee endpoint protection, firewalls, identity and access management, and network security.
- Lead vulnerability management, penetration testing, and cyber incident response.
- Promote cybersecurity awareness and compliance throughout the organisation.
Enterprise Applications
- Manage and optimise Microsoft 365, ERP systems, CRM platforms, document management systems, and business intelligence solutions.
- Ensure seamless integration and performance of enterprise applications that support business and project operations.
- Drive continuous improvement of digital workflows and system capabilities.
Construction Technology
- Lead the implementation and optimisation of construction technology platforms.
- Support BIM workflows, digital project controls, mobile field reporting, digital QA/QC systems, drone and reality capture technologies, IoT solutions, and smart construction initiatives.
- Collaborate with project teams to improve project delivery through technology innovation.
Artificial Intelligence & Automation
- Identify and implement AI-driven solutions to improve operational efficiency.
- Drive initiatives including document automation, proposal generation, contract analysis, knowledge management, predictive reporting, AI assistants, and workflow automation.
- Evaluate emerging technologies that enhance productivity and business intelligence.
Vendor & Technology Management
- Manage relationships with IT vendors, software providers, and managed service partners.
- Negotiate technology contracts, software licensing, and hardware procurement.
- Monitor vendor performance and ensure compliance with service level agreements.
Governance & Compliance
- Develop and maintain IT governance frameworks, policies, and technology standards.
- Ensure compliance with cybersecurity, privacy, software licensing, and data protection regulations.
- Support internal and external audits while maintaining best-practice IT governance.
Leadership & Team Development
- Lead and develop the internal IT function.
- Manage external consultants and specialist technology providers.
- Build a high-performing technology team focused on innovation, service excellence, and continuous improvement.</p><p>- Bachelor's Degree in Computer Science, Information Technology, Information Systems, Engineering, or a related discipline.
- Professional certifications such as Microsoft Azure, Cisco, ITIL, PMP, CISSP, or equivalent are highly desirable.
- 8–15 years of progressive IT experience. Minimum 5 years in a leadership or management role.
- Proven experience within the construction or contracting industry.
- Demonstrated success leading enterprise-wide digital transformation initiatives.
- Strong knowledge of Microsoft Azure cloud technologies.
- Extensive Microsoft 365 administration experience.
- Advanced networking, infrastructure, cloud, and virtualisation expertise.
- Strong understanding of cybersecurity frameworks and enterprise security.
- Experience implementing and managing ERP systems.
- Proficiency with Power BI, Microsoft Power Platform, SharePoint Online, and enterprise collaboration platforms.
Preferred Experience
- Building Information Modelling (BIM) technologies.
- Construction platforms such as Procore, Autodesk Construction Cloud, Oracle Primavera P6, or similar.
- Artificial Intelligence implementation within enterprise environments
- ISO 27001 standards and information security governance.
- VMware or Hyper-V virtualisation platforms.</p>
About Emirates Investment Bank:Emirates Investment Bank PJSC (EIBank) is an independent onshore private bank based in Dubai, United Arab Emirates, offering a wide range of banking and investment services to a select group of clients, supporting them through every stage of their wealth journey.<br>Established in 1976 by prominent UAE business families, EIBank offers bespoke solutions across the full range of wealth management services, from asset management and access to global markets to advisory services. <br>EIBank is a relationship driven bank, focused on building long-term partnerships. Our flexible and consultative approach enables us to offer customized products and solutions through innovative advice and services.<br>Job Purpose:Lead the operation, security, and continuous improvement of enterprise network and hybrid-cloud connectivity. The role covers Cisco routing, switching and firewall infrastructure, network access control and AAA, LAN/WAN, network security platforms, Microsoft Azure networking, application and API protection, Zero Trust remote access, high availability, disaster recovery, monitoring, incident response, vendor governance, and regulatory compliance within a banking environment.<br>Key Responsibilities Enterprise Network & Security Operations Administer, maintain, and secure enterprise LAN/WAN infrastructure including routers, switches, firewalls, VPN services, and related network platforms. Operate network and security platforms including next-generation firewalls (NGFW), web application firewalls (WAF), security analytics, centralized logging, monitoring, and management solutions. Perform firmware and software upgrades, hotfixes, hardening, high-availability maintenance, policy changes, and lifecycle activities for managed network and security devices. Manage firewall policies, routing, NAT, VPN, network segmentation, and access control changes using least-privilege principles and regular rule reviews. Monitor availability, capacity, performance, and resilience of network and security services, identifying and implementing improvements to prevent service disruption. Network Access Control & Device Administration Administer enterprise routing and switching environments, including Layer 2/Layer 3 switching, VLANs, trunking, routing, ACLs, redundancy, and secure device administration. Administer Network Access Control (NAC) and Authentication, Authorization, and Accounting (AAA) platforms, including 802.1X authentication and RADIUS-based access enforcement. Manage centralized administrative authentication, authorization, and accounting services for routers, switches, firewalls, and network devices using role-based access controls. Troubleshoot endpoint authentication, authorization policies, identity integration, NAC, RADIUS, and device administration issues across network infrastructure.<br>Cloud Networking & Hybrid Connectivity Design and operate cloud network architectures, including hub-and-spoke and landing-zone models using virtual networks, subnets, network segmentation, security controls, user-defined routing, and controlled traffic flows. Design, implement, and maintain hybrid connectivity between on-premises and cloud environments, including dedicated private connectivity and site-to-site VPN solutions, with appropriate redundancy and disaster recovery capabilities. Implement and troubleshoot cloud networking services, including private connectivity, load balancing, web application security, gateway services, and API connectivity. Design traffic steering through virtual network security appliances and troubleshoot stateful traffic-flow issues, including asymmetric routing, source/destination translation, return-path control, and private connectivity challenges. Participate in architecture and solution reviews to validate segmentation, resiliency, scalability, high availability, and secure connectivity before production deployment.<br>Network Security, WAF & Application Protection Implement and maintain firewall, IDS/IPS, web application firewall (WAF), reverse proxy, and application publishing controls for internet-facing and internal applications. Translate vulnerability assessment and penetration testing findings into network and application security controls such as rate limiting, URL filtering, access policies, TLS enhancements, and security header implementation. Configure and troubleshoot secure application and API traffic flows, path-based routing, digital certificates, certificate chains, and backend service connectivity across network and cloud security platforms. Review network exposure and security policies, remove unnecessary access, and validate changes with application and information security teams.<br>Zero Trust, Remote Access & Identity Integration Operate secure remote-access and Zero Trust Network Access (ZTNA) solutions, including access-policy management and endpoint connectivity services. Integrate remote-access platforms with enterprise identity providers using federated authentication, single sign-on (SSO), and multi-factor authentication (MFA). Support controlled third-party access through segmented network paths and privileged access management solutions. Plan and support remote-access client upgrades and technology migrations, including transitioning from legacy connectivity methods to modern secure access protocols.<br>Performance, Troubleshooting & Incident Response Provide Level 2/Level 3 support for complex network, security, cloud, and application connectivity incidents across on-premises and cloud environments. Perform packet captures, traffic-flow analysis, TCP/TLS troubleshooting, route validation, latency analysis, and security device investigations to isolate root causes. Troubleshoot connectivity across load balancers, private connectivity services, web application firewalls, gateways, and virtual network appliances. Conduct root cause analysis for major incidents and recurring faults, implementing corrective actions to improve service availability and performance. Coordinate technical incident response with internal teams, managed service providers, cloud service providers, and vendor support teams through to resolution.<br>Governance, Compliance & Change Management Work within formal change management and governance processes, assess technical risk, validate implementation and rollback plans, and ensure approved changes are executed and documented. Define and enforce network and cloud governance standards covering IP addressing, segmentation, security zoning, routing, firewall policies, and secure connectivity. Support audits and regulatory reviews by providing configuration evidence, network diagrams, security-control documentation, and remediation status reports. Coordinate internal and external vulnerability assessments and penetration testing activities and track remediation actions through closure. Maintain network architecture documentation, security policy records, IP address management records, standard operating procedures, and operational runbooks.<br>Technical Leadership & Vendor Management Act as a technical focal point for network, cloud, security, SOC/NOC, and managed service operations, validating proposed configurations before production deployment. Lead technical discussions for new solutions, migrations, architecture changes, and incident resolution with infrastructure, cloud, application, information security, and business stakeholders. Review service performance, SLA/KPI achievements, recurring incidents, and operational risks, escalating material gaps to management as required. Provide technical direction, mentoring, knowledge transfer, and troubleshooting support to engineering and operations teams, and review technical documentation from suppliers and service providers. Support onboarding of new technologies and service providers, including design validation, implementation planning, operational handover, and readiness assessments<br>Essential: Bachelor's degree in Computer Science, Information Technology, Network Engineering, Cybersecurity, or a related discipline. Desirable:Strong enterprise networking knowledge covering TCP/IP, VLANs, routing, switching, high availability, LAN/WAN, IPsec/SSL VPN, DNS, and network segmentation. Hands-on experience with Cisco enterprise routing and switching, Cisco firewall platforms, Cisco ISE, Network Access Control (NAC), 802.1X, RADIUS, TACACS+, and AAA. Hands-on experience with next-generation firewalls, WAF, IPS/IDS, SASE/ZTNA, remote access, and security monitoring platforms, preferably across Fortinet and Palo Alto Networks technologies. Hands-on experience with Microsoft Azure networking, hybrid cloud connectivity, network virtual appliances, Private Link/Private Endpoints, load balancing, WAF, and cloud network governance. Strong understanding of HTTP/HTTPS, TLS, certificates, NAT, stateful firewall behaviour, application publishing, and packet-level troubleshooting. Experience working in regulated environments with formal change management, audit evidence, vulnerability remediation, disaster recovery, and security compliance requirements. Relevant professional certifications such as Cisco CCNA/CCNP, Fortinet, Palo Alto Networks, or Microsoft Azure certifications are preferred. Strong written and verbal communication skills with the ability to explain technical risk, coordinate vendors, document solutions, and support critical incidents.