Cyber Security Engineer Jobs in UAE
10477 Jobs Found
<p dir="RTL"><span ><span lang="AR-SA"><strong> المؤهلات المطلوبة:</strong></span></span></p><ul type="disc"><li class="MsoNormal" dir="RTL"><p ><span ><span lang="AR-SA">أن يكون المتقدم من مواطني دولة الإمارات العربية المتحدة.</span></span></p></li><li class="MsoNormal" dir="RTL"><p ><span ><span lang="AR-SA">حاصل على درجة البكالوريوس في أمن المعلومات، أو الأمن السيبراني، أو أي تخصص ذي صلة.</span></span></p></li><li class="MsoNormal" dir="RTL"><p ><span ><span lang="AR-SA">الخريجين الجدد أو من لديهم الخبرة في المجال .</span></span></p></li></ul><p > </p><p dir="RTL"><span ><span lang="AR-SA"><strong>ابدأ مسيرتك المهنية مع هيئة الطرق والمواصلات ، وساهم في بناء مستقبل رقمي آمن ومستدام.</strong></span></span></p>
<p class="MsoNormal" dir="RTL"><span ><span lang="AR-YE"><strong>المؤهلات</strong></span></span></p><p class="MsoNormal" dir="RTL"><span ><span lang="AR-SA">البكالوريوس في هندسة تقنية للمعلومات، علوم الحاسب أو أي تخصص ذي صلة من جامعة معترف بها.</span></span></p><p class="MsoNormal" dir="RTL"><span ><span lang="AR-SA">55 </span><span dir="LTR">Azure Solutions Architect</span><span lang="AR-SA">، </span><span dir="LTR">VMware VCP/VCAP</span><span lang="AR-SA">، </span><span dir="LTR">Cisco CCNP CCIE</span><span lang="AR-SA"> : </span><span lang="AR-SA"> </span><span lang="AR-SA">شهادات مهنية مثل سنوات في تحليل أنظمة تقنية المعلومات</span></span></p>
<p><span ><strong>Job Qualifications & Requirements</strong></span></p><p><span ><strong>Education</strong></span></p><ul><li><span >Bachelor's degree/ master’s degree/Ph.D. in Information Technology/Computer Engineering</span></li></ul><p><span ><strong>Experience</strong></span></p><ul><li><span >5 Years in case of Ph.D (9 Years in case of master’s degree, 11 years in case of bachelor’s degree)</span></li></ul><p><span ><strong>Qualification</strong></span></p><ul><li><span >Certifications such as Certified Internal Auditor (CIA); ITIL; Certified Information Systems Auditor (CISA)</span></li></ul><p><span ><strong>Technical Competencies</strong></span></p><ul><li><span >Audit Methodologies</span></li><li><span >Quality and Excellence</span></li><li><span >Reporting</span></li><li><span >Risk Management</span></li><li><span >Internal Control</span></li><li><span >Global Internal Audit Standards</span></li><li><span >Information Technology</span></li><li><span >Cyber Security and Privacy</span></li></ul>
<p class="MsoNormal" dir="RTL"><span ><span lang="AR-AE">شهادة البكالوريوس في علوم الحاسب، تقنية المعلومات، نظم معلومات أو أي تخصص مناسب مع خبره عملية 3 سنوات.</span></span></p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p><b>Overview of the role</b></p><p>As an Engineer in the Cloud Security Platforms team, you will be supporting the design, implementation, and maintenance of security tools across cloud and hybrid environments. This role focuses on operational support for key security controls while contributing to ongoing security improvement initiatives. You will work closely with experienced engineers and cross-functional teams to integrate security into operations and development workflows. You will build advanced skills and deep experience managing security platforms in a hybrid environment, managing firewalls, Web Application Firewalls (WAFs) and cloud-native security tools.</p><p><br></p><p><b>What you will do</b></p><ul><li>Provide day-to-day operational support for security controls, including network firewalls, web application firewalls, cloud security groups and native cloud security services.</li><li>Participate in monitoring and documenting security incidents, provide incident response and manage escalations appropriately.</li><li>Support vulnerability management processes by maintaining systems and tools to their latest stable releases, participating in remediation efforts and coordinating with governance teams.</li><li>Participate in implanting new controls, automate routine tasks, contribute to security projects, support internal reviews and audits.</li><li>Collaborate with InfraOps, governance, DevOps and business teams to integrate security best practices in IT and business operations.</li></ul><p><br></p> </div><h2 class="h5">Skills</h2>
<div data-jb-field="skills"><p><b>Required Skills to be successful</b></p><ul><li>Strong analytical and problem-solving skills with attention to detail.</li><li>Effective communication and collaboration with technical and non-technical teams.</li><li>Commitment to continuous learning, ability to work independently and in a team setting.</li></ul><p><br></p><p><b>What equips you for the role</b></p><ul><li>Bachelor’s degree in computer science, Information Technology, Cybersecurity or a related field.</li><li>1-3 years of work experience in IT Security, network administration, cloud ops or a similar role.</li><li>Good understanding of cybersecurity principles and cloud platforms (Azure, OCI, AWS) and basic understanding of cloud-native security features such as Defender for Cloud, IAM, Security Groups, Guard Duty, Sentinel.</li><li>Hands-on Exposure to security tools such as firewalls (e.g. Cisco, Palo Alto, Checkpoint, Fortinet), WAF (Cloudflare, f5, Imperva), cloud security controls.</li><li>Basic knowledge of networking concepts, security principles (e.g. Zero Trust, Lease Privilege) and common threats (e.g. DDoS, SQL injection).</li><li>Experience with scripting languages (Python, PowerShell) and automation tools (Terraform) is a plus.</li></ul><p><br></p></div>
<p>About the Role</p><p>We are looking for a motivated <strong>Junior Network Security Engineer</strong> to join our infrastructure and security team. This role is ideal for someone with foundational experience in networking and firewall administration who is eager to grow into a full-fledged network security engineer. You will work closely with senior engineers to support, configure, and troubleshoot enterprise network and security infrastructure across on-premises and cloud environments.</p><p>Key Responsibilities</p><ul><li><p>Assist in configuring and maintaining Cisco routers, switches, and firewalls (ASA/Fortinet) under senior engineer guidance.</p></li><li><p>Support day-to-day monitoring of network and firewall health, escalating complex issues as needed.</p></li><li><p>Help implement and troubleshoot VPNs, basic firewall policies, NAT rules, and access control lists.</p></li><li><p>Participate in the deployment and support of Fortinet FortiGate firewalls, including basic policy and UTM profile configuration.</p></li><li><p>Assist with load balancer (F5/Citrix ADC) configuration tasks such as creating virtual servers, pools, and health monitors under supervision.</p></li><li><p>Support Azure cloud networking tasks — creating VMs, VNets, subnets, NSGs, and basic resource group management.</p></li><li><p>Contribute to documentation: configuration guides, network diagrams, and basic runbooks.</p></li><li><p>Assist with User Acceptance Testing (UAT) and operational readiness checks for new deployments.</p></li><li><p>Respond to and resolve tickets related to connectivity, VPN access, and basic network issues within SLA.</p></li><li><p>Manage Microsoft 365 / Azure Active Directory tasks such as user/device management and basic security settings.</p></li><li><p>Collaborate with senior engineers and cross-functional teams (infrastructure, vendors, stakeholders) on project delivery.</p></li><li><p>Continuously build technical knowledge through certifications and on-the-job mentorship.</p></li></ul><p>Required Qualifications</p><ul><li><p><strong>1–3 years</strong> of hands-on experience in network administration, IT support, or a junior network/security engineering role.</p></li><li><p>Working knowledge of networking fundamentals (TCP/IP, VLANs, routing/switching basics, DNS/DHCP).</p></li><li><p>Exposure to firewall technologies (Cisco ASA, Fortinet FortiGate, or similar).</p></li><li><p>Basic understanding of VPNs and remote connectivity concepts.</p></li><li><p>Familiarity with Microsoft 365 and Azure Active Directory administration.</p></li><li><p>Strong troubleshooting mindset and willingness to learn under pressure.</p></li><li><p>Good communication skills, both written and verbal (English required).</p></li><li><p>Bachelor's degree in Computer Science, IT, or a related field (or equivalent practical experience).</p></li></ul><p>Preferred / Nice-to-Have</p><ul><li><p>Entry-level certifications such as <strong>CCNA</strong>, <strong>Fortinet NSE1–3</strong>, or <strong>Microsoft Azure Fundamentals (AZ-900)</strong>.</p></li><li><p>Exposure to load balancers (F5, Citrix ADC) or SD-WAN concepts.</p></li><li><p>Basic scripting/automation exposure (PowerShell, Python, or Ansible).</p></li><li><p>Prior experience in a Service Desk, NOC, or technical support environment.</p></li><li><p>Familiarity with ITIL-based service management practices.</p></li></ul><br><p><strong>Desired Candidate Profile</strong></p><p>Key Skills</p><ul><li><p>Eagerness to learn and grow technically</p></li><li><p>Team player with a positive, proactive attitude</p></li><li><p>Strong attention to detail</p></li><li><p>Ability to follow documented procedures accurately</p></li><li><p>Good time management under SLA-driven environments</p></li></ul>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
A reputable hospitality organization in Abu Dhabi is seeking an experienced <b>Infrastructure & Cyber Security Manager</b> to lead its IT Infrastructure and Cyber Security operations. This is a senior management role reporting directly to the Head of IT and offers an excellent opportunity to lead technology initiatives within a dynamic and growing organization.Key ResponsibilitiesLead and manage the organization's IT Infrastructure and Cyber Security functions.Oversee a team of approximately 30-50 IT professionals, providing leadership, mentoring, and performance management.Develop, implement, and maintain IT infrastructure strategies to ensure high availability, reliability, scalability, and business continuity.Establish and enforce IT governance frameworks, policies, standards, and best practices.Ensure compliance with international standards, including the latest ISO information security and IT service management frameworks.Monitor and enhance the organization's network, servers, storage, cloud platforms, and data center infrastructure.Drive infrastructure modernization initiatives and digital transformation projects.Collaborate with business stakeholders to align IT services with operational requirements.Lead infrastructure risk assessments and implement appropriate mitigation strategies.Oversee cyber security controls, vulnerability management, endpoint protection, access management, and incident response.Work closely with internal and external auditors to ensure regulatory and compliance requirements are met.Manage IT budgets, vendor relationships, contracts, and technology procurement.Ensure disaster recovery, backup solutions, and business continuity plans are regularly tested and maintained.Prepare reports and provide regular updates to senior leadership on infrastructure performance, cyber security posture, and operational risks.RequirementsBachelor's degree in Information Technology, Computer Science, or a related discipline.Minimum of 5 years of experience managing and leading IT Infrastructure teams in a managerial or senior leadership capacity.Strong hands-on experience in IT Infrastructure, including enterprise networks, servers, virtualization, storage, cloud technologies, and Microsoft environments.Practical exposure to Cyber Security, including security operations, vulnerability management, identity and access management, and security governance.Experience implementing and maintaining IT governance and compliance frameworks.Strong understanding of ISO standards.Experience in infrastructure planning, implementation, migration, and optimization.Excellent knowledge of enterprise networking technologies, Cisco environments, firewalls, and security appliances.Strong analytical, problem-solving, and decision-making skills.Excellent communication and stakeholder management abilities.Willing to relocate to Abu Dhabi. Preferred CertificationsCandidates holding one or more of the following certifications are highly preferred:CCNACCNPCisco Security CertificationsMicrosoft CertificationsITILCISSP, CISM, or equivalent Cyber Security certifications (preferred)To view other vacancies we have, please check our website (www.blackpearlconsult.com) and follow us on our social media accounts - LinkedIn / InstagramFollow the Black Pearl channel on WhatsApp.Disclaimer: Black Pearl will never ask for money or any form of charge our candidates just to process or consider their application for any of our available vacancies. If you happen to receive such a request from any members of our staff or other individuals claiming to be part of Black Pearl, please do call our office at +9712 622 55 03 or drop us a message on our website - www.blackpearlconsult.com.<br>
</div><h2 class="h5">Skills</h2>
<div data-jb-field="skills"><br>
· Bachelor's degree in Hospitality Management (Master's degree preferred). <br>
<br>
· 10-15 years of progressive hospitality industry experience. <br>
<br>
· Strong knowledge of financial tools, HR systems, booking platforms, and digital marketing strategies. <br>
<br>
· Proven success in leadership roles, P&L management, budgeting, and revenue growth. <br>
<br>
· Experience in new property openings, branding, and market positioning is an advantage. <br>
<br>
· Strategic thinker with a passion for hospitality, culture, and innovation. <br>
<br>
· Collaborative, result-oriented leader with strong problem-solving skills. <br>
<br>
· Deep knowledge of the Qatari market and global hospitality trends. <br>
<br>
· Culturally sensitive with the ability to thrive in international environments. <br>
<br>
<br>
<br>
Reporting Line <br>
<br>
· Reports To: Chief Executive Officer <br>
<br>
· Department: Hospitality <br>
<br>
<br>
<br>
Work Location: <br>
<br>
Qatar <br>
<br>
<br>
<br>
To view other vacancies we have, please check our website (www.blackpearlconsult.com) and follow us on our social media accounts - LinkedIn / Instagram <br>
<br>
<br>
<br>
Follow the Black Pearl channel on WhatsApp. <br>
<br>
<br>
<br>
Disclaimer: Black Pearl will never ask for money or any form of charge our candidates just to process or consider their application for any of our available vacancies. If you happen to receive such a request from any members of our staff or other individuals claiming to be part of Black Pearl, please do call our office at +9712 622 55 03 or drop us a message on our website - www.blackpearlconsult.com. <br>
<br>
<br>
<br>
<br>
</div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>We are looking for a Senior Network Security Engineer with a strong specialization in Secure Web Gateway (SWG) and proxy technologies, particularly Blue Coat ProxySG (now part of Broadcom/Symantec).<br> This role sits within our broader network security function and is responsible for administering, securing, and optimizing web/internet access infrastructure across the organization.<br> Candidates should bring at least 2–3 years of hands-on Blue Coat ProxySG / SGOS administration experience as part of a broader network security career (typically 5+ years overall).<br> Experience in banking and financial services is a strong plus, but not mandatory.<br> Key Responsibilities Proxy & Secure Web Gateway Administration Administer, configure, and support Blue Coat ProxySG (SGOS) and related secure web gateway/web security solutions.<br> Design, implement, and maintain web filtering categories, acceptable use policies, and secure internet access controls.<br> Configure and manage SSL/TLS interception (SSL Visibility), authentication integration (AD/LDAP, Kerberos, SAML), and ICAP integration with DLP, antivirus, and sandboxing solutions.<br> Monitor proxy performance, availability, and capacity; conduct tuning and optimization to ensure minimal latency and maximum uptime.<br> Troubleshooting & Incident Response Troubleshoot proxy-related incidents, connectivity issues, and policy conflicts, working across network layers (TCP/IP, DNS, HTTP/HTTPS, routing).<br> Participate in security incident response related to web-based threats, malicious traffic, and policy violations.<br> Collaborate with SOC, network, and broader cybersecurity teams to correlate proxy logs with SIEM and threat intelligence platforms.<br> Project, Migration & Lifecycle Support Support upgrades, patching, and lifecycle management of Blue Coat ProxySG appliances and related SWG components.<br> Assist with migration or integration projects between on-premise proxy solutions and cloud-delivered SWG/SASE platforms.<br> Contribute to automation and scripting initiatives to streamline policy deployment, reporting, and routine administration tasks.<br> Governance, Documentation & Compliance Prepare and maintain technical documentation, configuration standards, and operational runbooks.<br> Support internal and external audits by providing evidence of secure configuration, change control, and policy enforcement.<br> Ensure alignment with information security policies and relevant regulatory frameworks (e.<br>g., SAMA, NCA ECC, ISO/IEC 27001, PCI DSS) where applicable.<br> Bachelor's degree in Computer Science, Information Technology, Network Engineering, or a related field (or equivalent practical experience).<br> 5+ years of overall network/cybersecurity engineering experience, including a minimum of 2–3 years of hands-on Blue Coat ProxySG / SGOS administration.<br> Alternatively, 5+ years of overall network/cybersecurity experience with strong hands-on exposure to other leading secure web gateway or proxy platforms (e.<br>g., Symantec Web Security Service, Forcepoint, McAfee/Skyhigh Web Gateway, Cisco WSA/Umbrella, Zscaler, Fortinet FortiProxy), with demonstrated ability and willingness to specialize in Blue Coat ProxySG.<br> Strong understanding of core networking concepts: TCP/IP, DNS, HTTP/HTTPS, routing, and network segmentation.<br> Hands-on experience with web filtering, URL categorization, SSL/TLS interception, and content inspection policies.<br> Experience integrating proxy/SWG platforms with DLP, sandboxing, threat intelligence, or SIEM solutions is highly valued.<br> Excellent troubleshooting, analytical, and communication skills, with the ability to work cross-functionally with network, security, and infrastructure teams.<br> Experience in banking, financial services, or other regulated sectors is preferred but not required.<br></span> </div>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><ul><li>Design, implement, and maintain robust server infrastructure (physical and virtual) ensuring high availability and optimal performance.</li><li>Manage and troubleshoot network devices including routers, switches, firewalls, and wireless access points to guarantee seamless connectivity.</li><li>Administer and secure cloud environments (AWS, Azure, GCP) focusing on cost optimization and adherence to best practices.</li><li>Develop and execute comprehensive backup and disaster recovery strategies to safeguard critical business data.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li><p>Bachelor's degree in Information Technology, Computer Science, Engineering, or a related discipline.</p></li><li><p>5+ years of experience in IT Infrastructure, Systems Administration, or End-User Support.</p></li><li><p>Strong hands-on experience with:</p></li><li><p>Microsoft 365 Administration</p></li><li><p>Azure Cloud Services</p></li><li><p>Windows Server & Desktop Administration</p></li><li><p>Network Infrastructure (Switches, Firewalls, Wireless Networks)</p></li><li><p>Endpoint Management and Security</p></li><li><p>Backup and Recovery Solutions</p></li><li><p>IT Asset Management</p></li><li><p>Service Desk and ITSM Tools</p></li><li><p>Good understanding of cybersecurity principles, ISO 27001, and IT governance frameworks.</p></li><li><p>Experience with troubleshooting enterprise infrastructure and performing root cause analysis.</p></li><li><p>Strong documentation, communication, and stakeholder management skills.</p></li><li><p>Relevant certifications such as Microsoft, Azure, ITIL, Cisco, CompTIA Security+, or ISO 27001 will be an advantage.</p></li></ul><p><strong>Preferred Experience</strong></p><ul><li><p>Exposure to Zero Trust Architecture concepts.</p></li><li><p>Experience supporting cloud transformation and cybersecurity initiatives.</p></li><li><p>Experience working with audits, compliance programs, and regulatory frameworks.</p></li><li><p>Ability to work independently, manage priorities, and support multiple stakeholders.</p></li></ul><p></p></section>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>As an Engineer in the Cloud Security Platforms team, you will be supporting the design, implementation, and maintenance of security tools across cloud and hybrid environments. This role focuses on operational support for key security controls while contributing to ongoing security improvement initiatives. You will work closely with experienced engineers and cross-functional teams to integrate security into operations and development workflows. You will build advanced skills and deep experience managing security platforms in a hybrid environment, managing firewalls, Web Application Firewalls (WAFs) and cloud-native security tools.</p><br><p><strong>What you will do</strong></p><ul><li><p>Provide day-to-day operational support for security controls, including network firewalls, web application firewalls, cloud security groups and native cloud security services.</p></li><li><p>Participate in monitoring and documenting security incidents, provide incident response and manage escalations appropriately.</p></li><li><p>Support vulnerability management processes by maintaining systems and tools to their latest stable releases, participating in remediation efforts and coordinating with governance teams.</p></li><li><p>Participate in implanting new controls, automate routine tasks, contribute to security projects, support internal reviews and audits.</p></li><li><p>Collaborate with InfraOps, governance, DevOps and business teams to integrate security best practices in IT and business operations.</p></li></ul><br></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li><p>Strong analytical and problem-solving skills with attention to detail.</p></li><li><p>Effective communication and collaboration with technical and non-technical teams.</p></li><li><p>Commitment to continuous learning, ability to work independently and in a team setting.</p></li></ul><br><p><strong>What equips you for the role</strong></p><ul><li><p>Bachelor’s degree in computer science, Information Technology, Cybersecurity or a related field.</p></li><li><p>1-3 years of work experience in IT Security, network administration, cloud ops or a similar role.</p></li><li><p>Good understanding of cybersecurity principles and cloud platforms (Azure, OCI, AWS) and basic understanding of cloud-native security features such as Defender for Cloud, IAM, Security Groups, Guard Duty, Sentinel.</p></li><li><p>Hands-on Exposure to security tools such as firewalls (e.g. Cisco, Palo Alto, Checkpoint, Fortinet), WAF (Cloudflare, f5, Imperva), cloud security controls.</p></li><li><p>Basic knowledge of networking concepts, security principles (e.g. Zero Trust, Lease Privilege) and common threats (e.g. DDoS, SQL injection).</p></li><li><p>Experience with scripting languages (Python, PowerShell) and automation tools (Terraform) is a plus.</p></li></ul><br><p></p></section>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><ul><li><p>Manage network, intrusion detection and prevention systems.</p></li><li><p>Conduct periodic compromise assessments across selected networks and propose recommendations based on assessment results.</p></li><li><p>Conduct physical security assessment of the organization’s systems, including servers and networks, ensuring that any unauthorized external physical interference is not actually possible.</p></li><li><p>Conduct ongoing network hunt activities.</p></li><li><p>Conduct proactive vulnerability assessment across the network, subnetworks and service traffic to identify potential points of intrusion.</p></li><li><p>Research and develop methods of tracking and detecting malicious activity within a network.</p></li><li><p>Develop tools, signatures, and methods of detection for use in incident response activities.</p></li><li><p>Develop SIEM integrations, dashboards, and analytics to illuminate and visualize threat activity.</p></li><li><p>Analyze network traffic to provide timely detection, identification, and alerting of possible attacks/intrusions, anomalous activities, and misuse activities and distinguish these incidents and events from benign activities.</p></li><li><p>Uses data collected from a variety of cyber defense tools (e.g., anti-virus, IDS alerts, firewalls, network traffic logs) to analyze events that occur within their environments, perform cyber defense trend analysis and reporting, and perform event correlation to mitigate threats and gain situational awareness and determine the effectiveness of an observed attack.</p></li><li><p>Carries out triage to ensure that a genuine security incident is occurring.</p></li><li><p>Coordinate with entity-wide cyber defense staff to validate network alerts.</p></li><li><p>Notify designated managers, cyber incident responders, and cybersecurity service provider team members of suspected cyber incidents and articulate the event’s history, status, and potential impact for further action in accordance with the organization’s cyber incident response plan.</p></li><li><p>Document and escalate incidents (including event’s history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment.</p></li><li><p>Provide daily summary reports of network events and activity relevant to cyber defense practices.</p></li><li><p>Analyze identified malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information.</p></li><li><p>Validate intrusion detection system (IDS) alerts against network traffic using packet analysis tools.</p></li><li><p>Isolate and remove malware.</p></li><li><p>Develop content for cyber defense tools use them for continual monitoring and analysis of network activity to identify malicious activity.</p></li><li><p>Assist in the construction of signatures which can be implemented on cyber defense tools in response to new or observed threats within the network environment.</p></li><li><p>Analyze and report organizational security posture trends.</p></li><li><p>Monitor external data sources (e.g., cyber defense vendor sites, Computer Emergency Response Teams, Security Focus, Threat Intelligence Providers) to maintain updated of cyber defense threat condition and determine which security issues may have an impact on the enterprise.</p></li><li><p>Provides cybersecurity recommendations based on significant threats and vulnerabilities.</p></li><li><p>Provide advice and input for Disaster Recovery, Contingency, and Continuity of Operational Plans.</p></li><li><p>Collect and analyze intrusion artifacts (e.g., source code, malware, and system configuration) and use discovered data to enable mitigation of potential cyber incidents within the enterprise.</p></li><li><p>Use specialized equipment and techniques to catalog, document, extract, collect, package, and preserve digital evidence.</p></li></ul><p>Utilize deployable forensics toolkit to support operations as necessary</p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li><p><strong>Knowledge</strong></p><ul><li><p>Security concepts such as cyber-attacks and techniques, threat vectors, risk and threat management, incident management etc.</p></li><li><p>Networking concepts and protocols, and network security attacks, vulnerabilities, processes, methodologies, access control mechanisms, traffic analysis methods.</p></li><li><p>Cyber threats and vulnerabilities and information dissemination sources (e.g., alerts and advisories).</p></li><li><p>Cyber defense and vulnerability assessment tools and their capabilities.</p></li><li><p>System and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Procedural Language/Structured Query Language [PL/SQL] and injections, race conditions, covert channel, replay, return-oriented attacks, malicious code).</p></li><li><p>Scripting languages (e.g., Python, Perl, Bash) used in an incident response environment</p></li><li><p>Incident response and handling methodologies.</p></li><li><p>Intrusion Detection System (IDS)/Intrusion Prevention System (IPS) tools, applications, methodologies and techniques for detecting host and network-based intrusions.</p></li><li><p>Threat investigations, reporting and investigative tools.</p></li><li><p>Cyber defense and information security policies, procedures, and regulations.</p></li><li><p>Common attack vectors, the different classes of attacks (e.g., passive, active, insider, close-in, distribution attacks) and attack stages (e.g., reconnaissance, scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks).</p></li><li><p>Cyber attackers (e.g., script kiddies, insider threat, non-nation state sponsored, and nation sponsored), and attackers’ methodologies.</p></li><li><p>Signature implementation impact for viruses, malware, and attacks.</p></li><li><p>Windows/Unix ports and services.</p></li><li><p>Relevant laws, legal authorities, restrictions, and regulations pertaining to cyber defense activities.</p></li><li><p>Packet-level analysis using appropriate tools (e.g., Wireshark, tcpdump).</p></li><li><p>Use of sub-netting tools.</p></li><li><p>Penetration testing principles, tools, and techniques.</p></li><li><p>Investigation, auditing and forensics methods, processes, procedures and standards.</p></li><li><p>Different types of hardware, storage, imaging and file system analysis.</p></li><li><p>Data backup and recovery.</p></li></ul></li></ul><p><strong>Skills</strong></p><ul><li><p>Using SIEM/SOAR and Vulnerability Management tools and services.</p></li><li><p>Sysadmin skills (Linux/Mac/Windows).</p></li><li><p>Programming skills (Python, Ruby, PHP, C, C#, Java, Perl, and more).</p></li><li><p>Identifying, analyzing and interpreting trends or patterns in complex data sets.</p></li><li><p>Developing and deploying signatures.</p></li><li><p>Detecting host and network-based intrusions via intrusion detection technologies (e.g., Snort).</p></li><li><p>Using incident handling methodologies.</p></li><li><p>Collecting data from a variety of cyber defense resources.</p></li><li><p>Recognizing and categorizing types of vulnerabilities and associated attacks.</p></li><li><p>Performing packet-level analysis.</p></li><li><p>Conducting trend analysis.</p></li><li><p>Using cyber defense reporting structure and processes.</p></li><li><p>Utilizing a combination of automated and manual testing methods.</p></li><li><p>Developing automated vulnerability testing scripts and using off the shelf vulnerability testing tools.</p></li><li><p>Conducting vulnerability scans and recognizing vulnerabilities in networks, systems and applications.</p></li><li><p>Using of penetration testing tools and techniques.</p></li><li><p>Applying analytical and problem-solving skills.</p></li></ul><br><p><strong>Ability</strong></p><ul><li><p>Collaborate with other sections across the department to enhance detection capabilities.</p></li><li><p>Perform Malware analysis.</p></li><li><p>Work closely with management to respond appropriately to the results of assessments and mitigation oversight of found vulnerabilities.</p></li><li><p>Perform data analysis, correlation, and analytics leveraging Security Information and Event Management (SIEM) tools.</p></li><li><p>Conduct vulnerability scans and recognize vulnerabilities in security systems & devices.</p></li><li><p>Accurately and completely source all data used in intelligence, assessment and/or planning products.</p></li><li><p>Apply techniques for detecting host and network-based intrusions using intrusion detection technologies.</p></li><li><p>Interpret the information collected by network tools (e.g. Nslookup, Ping, and Traceroute).</p></li><li><p>Prepare and create regular reports to document any security breaches/ incidents.</p></li><li><p>Provide forensic support to Cyber Security Operations during the investigation of any detected threat or contained incident / event to determine root cause and propose response recommendations as required.</p></li></ul><br><p><strong>Education and Certification</strong></p><ul><li><p>Bachelor’s degree in an information technology, computer science, cyber security or equivalent work experience.</p></li><li><p>CompTIA Security+</p></li><li><p>CISSP: Certified Information Systems Security Professional</p></li><li><p>GCFA: GIAC Certified Forensic Analyst</p></li><li><p>GCIH: GIAC Certified Incident Handler</p></li><li><p>GCIA: GIAC Certified Intrusion Analyst</p></li><li><p>OSCP: Offensive Security Certified Professional</p></li><li><p>CEH: Certified Ethical Hacker</p></li><li><p>CPT: Certified Penetration Tester</p></li></ul><p><strong>Experience</strong></p><ul><li><p>3 years of experience in cyber security operations with expertise in managing the Security Operations Center</p></li><li><br></li></ul><p><br></p><p></p></section>
<p><br>We are seeking a skilled and proactive Network & Systems Administrator to join our IT team. The ideal candidate will be responsible for designing, implementing, managing, and supporting the organization’s network and server infrastructure. This role also includes maintaining security systems, telephony, and ensuring seamless operations across all IT platforms.</p><p><br></p><p><strong>Key Responsibilities</strong></p><ul><li><p>Design, implement, manage, and support the organization’s network infrastructure.</p></li><li><p>Administer and maintain firewalls, switches, routers, and VPNs.</p></li><li><p>Monitor network performance and perform necessary optimizations or upgrades.</p></li><li><p>Manage and secure Windows Server environments (Active Directory, DNS, DHCP, etc.).</p></li><li><p>Support and maintain CCTV surveillance systems and ensure proper network integration.</p></li><li><p>Administer and troubleshoot IP-based PABX (telephony) systems.</p></li><li><p>Maintain accurate documentation for network configurations, system updates, and incident reports.</p></li><li><p>Collaborate with internal teams to support projects and resolve technical issues.</p></li></ul><p><strong>Desired Candidate Profile</strong></p><br><p><strong>Required Qualifications & Skills</strong></p><ul><li><p>Bachelor’s degree in information technology, Computer Science, or a related field.</p></li><li><p>1–6 years of hands-on experience in network and systems administration.</p></li><li><p>Strong expertise in configuring and troubleshooting firewalls (SonicWall, Fortinet, Cisco ASA, or similar), switches, and VPNs.</p></li><li><p>Proficiency in Windows Server administration (2016/2019/2022).</p></li><li><p>Experience with CCTV systems setup, configuration, and integration.</p></li><li><p>Working knowledge of IP-based PABX systems.</p></li><li><p>Relevant certifications such as CCNA, CCNP, MCSA, or Fortinet NSE are a plus.</p></li></ul><p><br></p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
Our client is currently hiring for the position of IT Manager.<br><br>
Responsibilities:<br> . Cybersecurity Leadership: Lead organization-wide cybersecurity strategies, ensuring robust protection against external and internal threats. <br><br>
. Network Management: - Oversee, optimize, and maintain high-performance connectivity and reliability across all locations. <br><br>
. SAP Business One Administration: Manage and secure SAP B1 across multiple sites, ensuring stability, integration, and performance optimization. <br><br>
. Policy Development: - Create and enforce IT security and network management policies, procedures, and best practices. <br><br>
. Cross-Functional Collaboration: -Work closely with operational and departmental teams to align IT systems with business objectives. <br><br>
. Threat Response: - Proactively identify vulnerabilities and implement measures to prevent security breaches.<br><br>
<br><br>
Technical Skills: <br><br>
. Strong knowledge of backup solutions and disaster recovery planning. <br><br>
. Expertise in firewall management and network troubleshooting (Fortinet, Cisco, or equivalent). <br><br>
. Experience with virtualization technologies (e.g., VMware, Hyper-V). <br><br>
. Proficiency in both Windows and Linux server environments.<br>
<br><br>
</div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
Job Description<br><p>We are currently looking for Information Security Architect for our UAE operations with the following terms & conditions.</p><br><p>Required Skills & Experience</p><br><p>• 10+ years of Information Security experience.</p><br><p>• 5+ years as an Information Security Architect or Enterprise Security Architect.</p><br><p>• Mandatory banking or financial services experience.</p><br><p>Strong knowledge of:</p><br><p>• Enterprise Security Architecture</p><br><p>• Zero Trust Architecture</p><br><p>• Cloud Security (Azure/AWS)</p><br><p>• Identity & Access Management (IAM)</p><br><p>• Network Security</p><br><p>• Application Security</p><br><p>• Data Security</p><br><p>• SIEM, SOC, DLP, EDR/XDR</p><br><p>Experience with security frameworks:</p><br><p>• ISO 27001</p><br><p>• NIST Cybersecurity Framework</p><br><p>• PCI DSS</p><br><p>• CIS Controls</p><br><p>• TOGAF (preferred)</p><br><p>• Mandatory Certification</p><br><p>• CISSP (Certified Information Systems Security Professional)</p><br><p>Preferred Certifications</p><br><p>• CCSP</p><br><p>• CISM</p><br><p>• CEH</p><br><p>• SABSA</p><br><p>• TOGAF</p><br><p>• Azure Security Engineer / AWS Security Specialty</p><br><p>Preferred Candidate Profile</p><br><p>• Excellent stakeholder management and communication skills.</p><br><p>• Experience working in large enterprise banking environments.</p><br><p>• Strong documentation and presentation skills.</p><br><p>• Ability to work with cross-functional technology teams.</p><br><p>Terms and conditions</p><br><p>Joining time frame: Immediate</p><br><br><br> </div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
Job description
<p>This is a great opportunity to join a well-established, rapidly growing office in the region and drive the cybersecurity strategy for the entire group of companies globally. <br><b>Discover the Company</b></p><br><p>A Globally recognized French Luxury house that seamlessly blends cultural heritage, artistry, and modern sophistication.</p><br><p><br><b>Discover the role:</b></p><br><p>We are seeking a Cyber Security Manager to own and drive the end-to-end cybersecurity function across a multi-entity group spanning the UAE, France, and beyond. This is a unique greenfield opportunity giving you the autonomy to build, formalize, and scale a global security framework from scratch.<br></p><br><p>Reporting directly to the IT Director, you will combine high-level strategy and stakeholder management with hands-on transformation delivery.</p><br><p></p><br><p><b>Discover the Requirements</b></p><br><ul><li><p>Minimum 5+ years of dedicated cybersecurity experience in a management or lead role within the UAE region.</p><br></li><li><p>Proven track record delivering cybersecurity programs in complex, multi-entity international environments. Experience or background working with European markets is highly advantageous.</p><br></li><li><p>Deep, hands-on experience within Azure-heavy cloud environments, enterprise identity management (IAM), network security, and SIEM/XDR platforms.</p><br></li><li><p>A forward-thinking approach to security, with the capability to map out defenses against next-generation, AI-driven threats.</p><br></li><li><p>A background in fast-scaling digital platforms, retail, or manufacturing ecosystems is a strong plus.</p><br></li><li><p>CISSP, CISM, or equivalent professional certifications are required.<br></p><br></li></ul><p><b>We are only considering candidates who are already based in the UAE and have regional experience.</b></p><br><br>
</div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Job Title <br></span><p><span><span>Cyber Security Governance Manager</span></span></p><br>
<br><br>Business <br><br>Job Purpose <br><p>Manage and co-coordinate cyber security activities regarding governance of ENOC information and cyber security efforts towards protecting the organization information assets and critical infrastructure. Manage and maintain the development of cyber security policies, monitor compliance directly or in coordination with the cyber security assurance team. Manage cyber risk management activities and compliance and assist in cyber security planning requirements as directed by Cyber Governance Senior Manager.</p><br>
<br><br>Principal Accountabilities <br><p>Strategy/Governance <br>
coordinate with ENOC technology functions and other departments in order to ensure that cyber-security elements are embedded and taken into account in their strategic and operational plans.<br>
Operational <br>
Develop and enforce cyber-policies, procedures and standards that are in line with best practices and industry trends.<br>
Manage the communication of cyber security policies and guidelines and ensure compliance.<br>
Manage and implement cyber security metrics and reporting framework that measures the efficiency and effectiveness of the cyber security program.<br>
Develop and facilitate a metrics and reporting framework to measure the efficiency and effectiveness of cyber security program<br>
Develop and maintain cyber security architecture.<br>
Act as the cyber security risk management liaison with IT/OT and other departments.<br>
Report to ENOC's management with regard to risks, vulnerabilities and other security exposures, including misuse of information assets and noncompliance.<br>
Work directly with business units and other internal departments and organizations to facilitate cybersecurity risk analysis and management processes, identify acceptable levels of residual risk.<br>
Benchmark cyber security risk management practices of other organizations — particularly those in related industries or with similar business models <br>
Monitor risk mitigation and coordination of policy and controls to ensure that risk owners are taking effective remediation steps.<br>
Contribute and assist in the cyber security risk treatment plan.<br>
Review external cyber security risk assessments, analyse the accuracy of the findings and report on them with actionable recommendations to Line manager and other relevant stakeholders.<br>
Provide support and guidance for cyber security legal and regulatory compliance efforts, including audit support<br>
Participate in the investigation of any potential unlawful or fraudulent action related to cyber security compliance, such as the intentional release of sensitive information or a related security breach<br>
</p><br>
<br><br>Additional Principal Accountabilities <br><p>Manages relationship with the audit group. Receives audit findings, and manages the collection of responses and remediation plans with owners.<br>
manage cyber security compliance control monitoring to ensure cyber compliance risks are managed to the appropriate level of acceptable residual risk.<br>
Maintain an up-to-date understanding of industry best practices, and monitor the regulatory environment for developments that could require changes to ENOC established cyber security policies and practices<br>
Manage the establishment and maintenance of a robust security awareness program<br>
Act as cyber security awareness consultants for ENOC business units<br>
Stakeholder Management <br>
Build strong relationships and working collaboratively with internal/external stakeholders and customers to achieve objectives.<br>
</p><br>
<br><br>Experience <br><p>Education<br>
Degree: Bachelor’s degree in Computer Science, Engineering or Business field or equivalent, Diploma with additional relevant experience.<br>
MBA or Master’s degree in computer science, engineering, information security is preferable.<br>
Required professional certifications: Professional certificate such as CISSP, CISM, C-CISO, GSEC.<br>
Experience <br>
8+ years of Information Technology experience.<br>
4+ years of relevant working experience. <br>
Working experience in multiple industries (e.g. Oil & Gas, Energy, Utilities, Retail, Government…) is preferable.<br>
Working experience in managing cyber risk programs and assessments.<br>
Working experience in managing information and cyber security awareness programs.<br>
Working experience in working with cyber security policies, standards and guidelines.</p><br>
<br><br><br>
</div>
<p>Guildhall is representing a leading construction and contracting company delivering large-scale building and infrastructure projects across the region. We are seeking an experienced Head of IT & Digital Transformation to lead the company's technology strategy, oversee enterprise IT operations, strengthen cybersecurity, and drive digital transformation initiatives across both corporate functions and project sites.
The successful candidate will oversee IT infrastructure, enterprise applications, cybersecurity, construction technology, AI adoption, governance, and digital transformation programmes that improve collaboration, productivity, and decision-making across the organisation.
Key Responsibilities:
Technology Strategy & Digital Transformation
- Develop and implement the company's IT strategy aligned with business objectives.
- Lead digital transformation initiatives across corporate departments and construction projects.
- Establish technology roadmaps that support operational excellence and business growth.
- Manage annual IT budgets, technology investments, and strategic planning.
IT Infrastructure & Operations
- Oversee corporate networks, cloud environments, servers, telecommunications, and end-user computing.
- Standardise IT infrastructure across offices, project sites, and regional operations.
- Ensure high availability, performance, and reliability of all critical business systems.
- Manage disaster recovery, backup strategies, and business continuity planning.
Cybersecurity
- Develop and implement enterprise-wide cybersecurity policies and best practices.
- Oversee endpoint protection, firewalls, identity and access management, and network security.
- Lead vulnerability management, penetration testing, and cyber incident response.
- Promote cybersecurity awareness and compliance throughout the organisation.
Enterprise Applications
- Manage and optimise Microsoft 365, ERP systems, CRM platforms, document management systems, and business intelligence solutions.
- Ensure seamless integration and performance of enterprise applications that support business and project operations.
- Drive continuous improvement of digital workflows and system capabilities.
Construction Technology
- Lead the implementation and optimisation of construction technology platforms.
- Support BIM workflows, digital project controls, mobile field reporting, digital QA/QC systems, drone and reality capture technologies, IoT solutions, and smart construction initiatives.
- Collaborate with project teams to improve project delivery through technology innovation.
Artificial Intelligence & Automation
- Identify and implement AI-driven solutions to improve operational efficiency.
- Drive initiatives including document automation, proposal generation, contract analysis, knowledge management, predictive reporting, AI assistants, and workflow automation.
- Evaluate emerging technologies that enhance productivity and business intelligence.
Vendor & Technology Management
- Manage relationships with IT vendors, software providers, and managed service partners.
- Negotiate technology contracts, software licensing, and hardware procurement.
- Monitor vendor performance and ensure compliance with service level agreements.
Governance & Compliance
- Develop and maintain IT governance frameworks, policies, and technology standards.
- Ensure compliance with cybersecurity, privacy, software licensing, and data protection regulations.
- Support internal and external audits while maintaining best-practice IT governance.
Leadership & Team Development
- Lead and develop the internal IT function.
- Manage external consultants and specialist technology providers.
- Build a high-performing technology team focused on innovation, service excellence, and continuous improvement.</p><p>- Bachelor's Degree in Computer Science, Information Technology, Information Systems, Engineering, or a related discipline.
- Professional certifications such as Microsoft Azure, Cisco, ITIL, PMP, CISSP, or equivalent are highly desirable.
- 8–15 years of progressive IT experience. Minimum 5 years in a leadership or management role.
- Proven experience within the construction or contracting industry.
- Demonstrated success leading enterprise-wide digital transformation initiatives.
- Strong knowledge of Microsoft Azure cloud technologies.
- Extensive Microsoft 365 administration experience.
- Advanced networking, infrastructure, cloud, and virtualisation expertise.
- Strong understanding of cybersecurity frameworks and enterprise security.
- Experience implementing and managing ERP systems.
- Proficiency with Power BI, Microsoft Power Platform, SharePoint Online, and enterprise collaboration platforms.
Preferred Experience
- Building Information Modelling (BIM) technologies.
- Construction platforms such as Procore, Autodesk Construction Cloud, Oracle Primavera P6, or similar.
- Artificial Intelligence implementation within enterprise environments
- ISO 27001 standards and information security governance.
- VMware or Hyper-V virtualisation platforms.</p>
<p>Guildhall is representing a leading construction and contracting company delivering large-scale building and infrastructure projects across the region. We are seeking an experienced Head of IT & Digital Transformation to lead the company's technology strategy, oversee enterprise IT operations, strengthen cybersecurity, and drive digital transformation initiatives across both corporate functions and project sites.
The successful candidate will oversee IT infrastructure, enterprise applications, cybersecurity, construction technology, AI adoption, governance, and digital transformation programmes that improve collaboration, productivity, and decision-making across the organisation.
Key Responsibilities:
Technology Strategy & Digital Transformation
- Develop and implement the company's IT strategy aligned with business objectives.
- Lead digital transformation initiatives across corporate departments and construction projects.
- Establish technology roadmaps that support operational excellence and business growth.
- Manage annual IT budgets, technology investments, and strategic planning.
IT Infrastructure & Operations
- Oversee corporate networks, cloud environments, servers, telecommunications, and end-user computing.
- Standardise IT infrastructure across offices, project sites, and regional operations.
- Ensure high availability, performance, and reliability of all critical business systems.
- Manage disaster recovery, backup strategies, and business continuity planning.
Cybersecurity
- Develop and implement enterprise-wide cybersecurity policies and best practices.
- Oversee endpoint protection, firewalls, identity and access management, and network security.
- Lead vulnerability management, penetration testing, and cyber incident response.
- Promote cybersecurity awareness and compliance throughout the organisation.
Enterprise Applications
- Manage and optimise Microsoft 365, ERP systems, CRM platforms, document management systems, and business intelligence solutions.
- Ensure seamless integration and performance of enterprise applications that support business and project operations.
- Drive continuous improvement of digital workflows and system capabilities.
Construction Technology
- Lead the implementation and optimisation of construction technology platforms.
- Support BIM workflows, digital project controls, mobile field reporting, digital QA/QC systems, drone and reality capture technologies, IoT solutions, and smart construction initiatives.
- Collaborate with project teams to improve project delivery through technology innovation.
Artificial Intelligence & Automation
- Identify and implement AI-driven solutions to improve operational efficiency.
- Drive initiatives including document automation, proposal generation, contract analysis, knowledge management, predictive reporting, AI assistants, and workflow automation.
- Evaluate emerging technologies that enhance productivity and business intelligence.
Vendor & Technology Management
- Manage relationships with IT vendors, software providers, and managed service partners.
- Negotiate technology contracts, software licensing, and hardware procurement.
- Monitor vendor performance and ensure compliance with service level agreements.
Governance & Compliance
- Develop and maintain IT governance frameworks, policies, and technology standards.
- Ensure compliance with cybersecurity, privacy, software licensing, and data protection regulations.
- Support internal and external audits while maintaining best-practice IT governance.
Leadership & Team Development
- Lead and develop the internal IT function.
- Manage external consultants and specialist technology providers.
- Build a high-performing technology team focused on innovation, service excellence, and continuous improvement.</p><p>- Bachelor's Degree in Computer Science, Information Technology, Information Systems, Engineering, or a related discipline.
- Professional certifications such as Microsoft Azure, Cisco, ITIL, PMP, CISSP, or equivalent are highly desirable.
- 8–15 years of progressive IT experience. Minimum 5 years in a leadership or management role.
- Proven experience within the construction or contracting industry.
- Demonstrated success leading enterprise-wide digital transformation initiatives.
- Strong knowledge of Microsoft Azure cloud technologies.
- Extensive Microsoft 365 administration experience.
- Advanced networking, infrastructure, cloud, and virtualisation expertise.
- Strong understanding of cybersecurity frameworks and enterprise security.
- Experience implementing and managing ERP systems.
- Proficiency with Power BI, Microsoft Power Platform, SharePoint Online, and enterprise collaboration platforms.
Preferred Experience
- Building Information Modelling (BIM) technologies.
- Construction platforms such as Procore, Autodesk Construction Cloud, Oracle Primavera P6, or similar.
- Artificial Intelligence implementation within enterprise environments
- ISO 27001 standards and information security governance.
- VMware or Hyper-V virtualisation platforms.</p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p>Job Profile & Description: Mott MacDonald is a global engineering, management, and development consultancy committed to delivering impactful work that shapes the future. We are a team of over 20,000 experts working across the world in more than 50 countries. We are proud to be part of an ever-changing global industry, delivering transformative work that’s defining our future. It’s our people who power that performance. As an employee-owned business, we invest in creating a space for everyone to feel safe and valued and empowered with the right tools and support. Whether you want to pursue excellence in your specialism or broaden your experience with flexible roles across our business, you’ll be connected to a community of global experts championing you to be your best. Join us and shape your story with Mott MacDonald, where everyone has the opportunity to be brilliant . About the role: The Principal IT/OT & Cybersecurity Engineer will lead the design, implementation, and assurance of secure IT and Operational Technology (OT) systems. This role is critical to ensuring cybersecurity compliance, system integration, and uninterrupted operations. The position requires strong expertise in infrastructure security, industrial control systems (ICS), and coordination with multi-disciplinary construction and MEP teams. Key responsibilities and duties are listed, but not limited to, the below: Cybersecurity Strategy & Compliance Develop and implement IT/OT cybersecurity strategy aligned with RTA, UAE NESA, and international standards (e.g., ISO 27001, IEC 62443). Conduct risk assessments, threat modelling, and security audits for construction and operational environments. Ensure all systems meet compliance requirements for critical infrastructure and public transport systems. IT/OT Systems Design & Integration Oversee the design, installation, and integration of IT and OT systems, including: SCADA/BMS systems Access control & CCTV Network and communication systems Ensure secure integration between building systems (MEP, curtain wall systems, utilities) and metro operational systems. Work closely with contractors and vendors to ensure cybersecurity-by-design principles. Operational Environment Security Implement cybersecurity controls for a live metro station environment minimizing disruption to ongoing operations. Develop procedures for secure construction activities near critical infrastructure. Monitor network and OT systems for vulnerabilities, threats, and incidents. Risk Management & Incident Response Identify and mitigate risks related to IT/OT systems during demolition and construction phases. Lead incident response planning and execution in case of cybersecurity events. Conduct penetration testing, vulnerability assessments, and remediation activities. Stakeholder Coordination Liaise with RTA authorities, project consultants, contractors, and system integrators. Provide technical guidance to project teams on cybersecurity standards and best practices. Coordinate with MEP, civil, and infrastructure teams to ensure secure system installation. Documentation & Reporting Prepare cybersecurity plans, policies, and procedures. Maintain documentation for system designs, risk assessments, and compliance reporting. Provide regular updates to senior management on cybersecurity posture. Support continuous improvement and digital ways of working, sharing knowledge and lessons learned. Demonstrate safe, ethical and inclusive behaviours aligned to Mott MacDonald values. Your benefits and rewards: Our benefits vary by country and are subject to eligibility and local policy: Rewards and bonuses: we are owned by our people (no external investors) and through our employee ownership model success is shared through annual bonus opportunities and longer-term participation as your career grows (subject to local plan, eligibility and business performance) Medical insurance and life insurance as per local plan (standard and enhanced coverage may vary by country and policy). Annual leave in line with local policy (competitive within the market). Maternity leave above and beyond local provisions and paternity leave provisions where applicable Professional membership/ institution subscription support Learning and career development through project variety, technical networks and structured development opportunities. An inclusive culture: we’re committed to equality, diversity and inclusion, and creating a workplace where everyone feels valued and supported. </p><br> </div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Job Title <br></span><p>OT/ICS Cybersecurity & Automation Specialist</p><br>
<br><br>Business <br><p>CIS</p><br>
<br><br>Job Purpose <br><p>Execute the Cybersecurity and Automation technical day-to-day management and coordination of related projects and operations within the business segments to ensure alignment of all process and operational aspects with ENOC’s Automation and cyber security policies and work requirements.</p><br>
<p>This includes implementation of OT Automation and Cybersecurity needs of the organization and translating them into secure systems designs and principles, also adopt the recommended technologies and best practices within ICS/OT domain.</p><br>
<p>Support technical evaluation and site related cybersecurity and automation work in coordination with business team.</p><br>
<br><br>Principal Accountabilities <br><p>Enforce site installation compliance and adherence to ENOC’s cybersecurity controls, policies, and procedures.<br>
Develop, implement, operate, and maintain security solutions with ICS infrastructure such as firewalls, IPS, patching solution, secure remote access and endpoint security.<br>
Conduct asset inventory for the industrial automation control systems and the cybersecurity solutions and then delegate control, ownership, and authentication of OT/ICS assets to the associated asset owner.<br>
Liaise with the cyber security & Automation team to facilitate cyber security assessments, performance reporting and projects planning and implementation.<br>
Review and improve IT/OT network design and architecture with reference to PERA, ISA Reference Model across business units.<br>
Design and implement security measures in line with ENOC cyber security and industrial best practices and requirements.<br>
Review Engineering submittals (HLD, LLD, FDS, SDS, FAT, SAT, Operation manuals, etc.) from the Vendors for IACS and security systems integration.<br>
Review risk assessments and audit observations to implement mitigation actions to address identified gaps and coordinate the identified mitigation actions with all relevant stakeholders.</p><br>
<br><br>Additional Principal Accountabilities <br><p>Coordinate & support site works with vendors (OEM, system integrators, Service providers) and Company’s concerned departments for the RFI, RFQ, POC, SOW, SOS, Purchase requisite, etc.<br>
Participate in ICS projects and changes within the business unit to ensure proper implementation of cyber security requirements.<br>
Support implementation and testing of the industrial automation control systems along with the related security technologies and controls.<br>
Support to generate site specific Cybersecurity & Automation policies and procedures.<br>
Partner with the department team member (Network, System, Automation) to populate the HLD, LLD, and identify improvement opportunities and the current challenges in addition to raised alerts and incidents with the OT/ICS environment.<br>
Work with OT/ICS Automation & Cybersecurity Manager and CIC & SOC teams and department team member for the new CVE and Zero-Day vulnerability identified within the OT/ICS environment. <br>
Participate in ICS security incident response through all phases and act as a member of Security Incident Response Team (SIRT).<br>
Raise and highlight pain points in aligning Automation and Cybersecurity controls within the business.</p><br>
<br><br>Experience <br><p>Bachelor’s degree in a technical field, e.g., (Engineering degree, Computer Science or Information Systems, Industrial Cybersecurity, or another related technical field with appropriate experience).<br>
Demonstrated years of experience working with Automation and Security Programs phases from Assessment, design, implementation to maintain and daily operation with multinational organization or with OEM and Vendors for OT/IACS digital industries and automation systems (SCADA, DCS, SIS, PLC, PAC).<br>
Preferred professional certifications: ISA/IEC 62442, CISSP, SANS ICS certifications<br>
Minimum 7+ years of experience in industrial control systems and cybersecurity preferably in the Oil & Gas, Energy, Lubricant, Aviation and Critical Infrastructure<br>
Demonstrated years of experience working with Automation and Security solutions.<br>
Advanced Knowledge of Automation process and safety instrumented system industries standards such as IEC61131, SIL and FS standards IEC61508/IEC61511, ATEX Directive and ISA standards.<br>
Extensive knowledge of industrial communication protocols and ports used such as: (Serial Protocols, HART, TCP/IP, UDP, DNP3, Modbus, IEC 61850, S7, OPC, OPC UA, EtherNet/IP, BACnet, Profibus and PROFINET)<br>
Experience with security engineering principles, various cybersecurity assessment methodologies, security control implementation, and validation, and system life-cycle practices.<br>
Experience with any OT security tools such as Darktrace, Dragos, Nozomi Networks, Claroty etc. is a must, and having training certificate is preferable.<br>
Strong analytical and critical thinking skills, along with strong written and oral communication skillsersecurity controls within the business.</p><br>
<br><br><br>
</div>