وظائف مقاول
٤ وظائف شاغرة
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span></span><p><span>The <b>CSEA Contractor</b> is expected to provide hands-on support to the Cyber Security
Engineering and Architecture section by contributing to security architecture
activities, technical security reviews, control implementation, risk
assessments and advisory services across enterprise systems, infrastructure,
cloud environments and applications.</span><br></p><br><p><span>The
contractor is expected to have:</span><br></p><br><ul><li><span>Hands-on experience with Enterprise Security Architecture methodologies and modern security technologies, including IAM, SIEM, EDR/XDR, WAF, SASE, Zero Trust, cloud security, and security automation tools.</span><br></li><li><span>Strong knowledge of IT infrastructure security, including network security, cloud security, endpoint security, identity security, and secure architecture design principles.</span><br></li><li><span>Strong knowledge of application security, including secure SDLC, DevSecOps, API security, secure coding practices, and application threat modeling.</span><br></li><li><span>Experience implementing, validating, and reviewing security controls across IT infrastructure, cloud platforms such as AWS, Azure, and GCP, and enterprise applications.</span><br></li><li><span>Experience developing, maintaining, and enhancing security control libraries, security patterns, baselines, and architecture standards, while ensuring their integration into security architecture and engineering activities.</span><br></li><li><span>Strong understanding of cybersecurity standards, laws, and frameworks, including NIST, ISO/IEC 27001, CIS Controls, GDPR, PCI-DSS, and other relevant regulatory or compliance requirements.</span><br></li><li><span>Strong understanding of cybersecurity best practices, including secure network architecture, endpoint protection, identity and access management, cloud security, DevSecOps, and defense-in-depth design.</span><br></li><li><span>Experience conducting security design reviews, architecture assessments, threat modeling, technical risk assessments, and security gap assessments.</span><br></li><li><span>Ability to support business units, project teams, IT teams, and security stakeholders in selecting, designing, and implementing secure information systems and technology solutions.</span><br></li><li><span>Experience with security automation and scripting using tools and languages such as Python, PowerShell, Bash, Terraform, Ansible, or similar technologies.</span><br></li><li><span>Ability to support security investigations, incident response activities, forensic analysis, root cause analysis, and post-incident improvement recommendations when required.</span><br></li><li><span>Experience providing technical consultation and advisory support on CSEA-related projects, initiatives, and engagements as requested by the CSEA Section Head.</span><br></li><li><span>Excellent ability to translate technical cybersecurity concepts, risks, and recommendations into clear business language for both technical and non-technical stakeholders.</span><br></li><li><span>Experience participating in cybersecurity committees, technical working groups, architecture review boards, project meetings, and cross-functional security discussions.</span><br></li><li><span>Strong problem-solving, analytical, and decision-support skills, with the ability to assess complex technical environments and recommend practical security solutions.</span><br></li><li><span>Ability to work independently while also collaborating effectively with security architects, SOC analysts, IT teams, application teams, project managers, and business stakeholders.</span><br></li><li><span>Excellent verbal and written communication skills, with the ability to document security findings, architecture recommendations, risks, and remediation actions clearly and professionally.</span><br></li><li><span>Ability to mentor and support CSEA team members as needed by transferring knowledge, sharing technical expertise, and contributing to the development of internal cybersecurity engineering and architecture capabilities.</span><br></li></ul><p><span><b>Key
Deliverables:</b></span></p><br><p><span>The
contractor may be expected to support or deliver:</span><br></p><br><ul><li><span>Security architecture reviews</span><br></li><li><span>Security design review reports</span><br></li><li><span>Threat models and risk assessments</span><br></li><li><span>Security control mapping and recommendations</span><br></li><li><span>Architecture patterns, baselines, and standards</span><br></li><li><span>Technical security advisory reports</span><br></li><li><span>Secure design recommendations for infrastructure, cloud, and applications</span><br></li><li><span>Security improvement roadmaps</span><br></li><li><span>Support for incident response, investigations, and technical analysis</span><br></li><li><span>Knowledge transfer sessions for CSEA members</span><br></li></ul><br><span>Requirements</span><p><span><span><b>Education:</b></span></span></p><br><ul><li><span>Bachelor’s
degree in a technology-related field, such as Cybersecurity, Computer Science,
Computer Engineering, Information Security, Information Technology, or a
related discipline. A higher degree or relevant professional certifications are
preferred.</span><br></li></ul><span><span>Experience:</span></span><br><ul><li><span><span>Minimum <span>of 10 years relevant experience</span><span> in
cybersecurity, information security, security engineering, or IT infrastructure
security, with at least 3 years of hands-on experience in cybersecurity
architecture, security engineering, or enterprise security architecture.</span></span></span><br></li></ul><span><span>Preferred Certifications:</span></span><br><br><ul><li>CISSP, CISM, SABSA, or TOGAF certifications preferred.<br></li><li>Cloud security certifications such as CCSP, Azure Security Engineer, or AWS Security Specialty preferred.<br></li><li>Cybersecurity certifications such as GCIH, GCIA, GSEC, or Security+ preferred.<br></li><li>Other relevant cybersecurity, cloud security, or architecture certifications considered.<br></li></ul><b><i><span>Proficiency in English & Arabic is required.</span></i></b><br><br><br><br> </div>
The CSEA Contractor is expected to provide hands-on support to the Cyber Security<br><br>Engineering and Architecture section by contributing to security architecture<br><br>activities, technical security reviews, control implementation, risk<br><br>assessments and advisory services across enterprise systems, infrastructure,<br><br>cloud environments and applications.<br><br>The<br><br>Contractor Is Expected To Have<br><br>Hands-on experience with Enterprise Security Architecture methodologies and modern security technologies, including IAM, SIEM, EDR/XDR, WAF, SASE, Zero Trust, cloud security, and security automation tools. Strong knowledge of IT infrastructure security, including network security, cloud security, endpoint security, identity security, and secure architecture design principles. Strong knowledge of application security, including secure SDLC, Dev Sec Ops, API security, secure coding practices, and application threat modeling. Experience implementing, validating, and reviewing security controls across IT infrastructure, cloud platforms such as AWS, Azure, and GCP, and enterprise applications. Experience developing, maintaining, and enhancing security control libraries, security patterns, baselines, and architecture standards, while ensuring their integration into security architecture and engineering activities. Strong understanding of cybersecurity standards, laws, and frameworks, including NIST, ISO/IEC 27001, CIS Controls, GDPR, PCI-DSS, and other relevant regulatory or compliance requirements. Strong understanding of cybersecurity best practices, including secure network architecture, endpoint protection, identity and access management, cloud security, Dev Sec Ops, and defense-in-depth design. Experience conducting security design reviews, architecture assessments, threat modeling, technical risk assessments, and security gap assessments. Ability to support business units, project teams, IT teams, and security stakeholders in selecting, designing, and implementing secure information systems and technology solutions. Experience with security automation and scripting using tools and languages such as Python, Power Shell, Bash, Terraform, Ansible, or similar technologies. Ability to support security investigations, incident response activities, forensic analysis, root cause analysis, and post-incident improvement recommendations when required. Experience providing technical consultation and advisory support on CSEA-related projects, initiatives, and engagements as requested by the CSEA Section Head. Excellent ability to translate technical cybersecurity concepts, risks, and recommendations into clear business language for both technical and non-technical stakeholders. Experience participating in cybersecurity committees, technical working groups, architecture review boards, project meetings, and cross-functional security discussions. Strong problem-solving, analytical, and decision-support skills, with the ability to assess complex technical environments and recommend practical security solutions. Ability to work independently while also collaborating effectively with security architects, SOC analysts, IT teams, application teams, project managers, and business stakeholders. Excellent verbal and written communication skills, with the ability to document security findings, architecture recommendations, risks, and remediation actions clearly and professionally. Ability to mentor and support CSEA team members as needed by transferring knowledge, sharing technical expertise, and contributing to the development of internal cybersecurity engineering and architecture capabilities.<br><br>Key<br><br>Deliverables<br><br>The<br><br>Contractor May Be Expected To Support Or Deliver<br><br>Security architecture reviews Security design review reports Threat models and risk assessments Security control mapping and recommendations Architecture patterns, baselines, and standards Technical security advisory reports Secure design recommendations for infrastructure, cloud, and applications Security improvement roadmaps Support for incident response, investigations, and technical analysis Knowledge transfer sessions for CSEA members<br><br>Requirements<br><br>Education:<br><br>Bachelor’s degree in a technology-related field, such as Cybersecurity, Computer Science, Computer Engineering, Information Security, Information Technology, or a related discipline. A higher degree or relevant professional certifications are preferred.<br><br>Experience<br><br>Minimum of 10 years relevant experience in cybersecurity, information security, security engineering, or IT infrastructure security, with at least 3 years of hands-on experience in cybersecurity architecture, security engineering, or enterprise security architecture.<br><br>Preferred Certifications<br><br>CISSP, CISM, SABSA, or TOGAF certifications preferred. Cloud security certifications such as CCSP, Azure Security Engineer, or AWS Security Specialty preferred. Cybersecurity certifications such as GCIH, GCIA, GSEC, or Security+ preferred. Other relevant cybersecurity, cloud security, or architecture certifications considered.<br><br>Proficiency in English & Arabic is<br><br>required.
The CSEA Contractor is expected to provide hands-on support to the Cyber Security Engineering and Architecture section by contributing to security architecture activities, technical security reviews, control implementation, risk assessments and advisory services across enterprise systems, infrastructure, cloud environments and applications.<br><br>The Contractor Is Expected To Have<br><br>Hands-on experience with Enterprise Security Architecture methodologies and modern security technologies, including IAM, SIEM, EDR/XDR, WAF, SASE, Zero Trust, cloud security, and security automation tools. Strong knowledge of IT infrastructure security, including network security, cloud security, endpoint security, identity security, and secure architecture design principles. Strong knowledge of application security, including secure SDLC, Dev Sec Ops, API security, secure coding practices, and application threat modeling. Experience implementing, validating, and reviewing security controls across IT infrastructure, cloud platforms such as AWS, Azure, and GCP, and enterprise applications. Experience developing, maintaining, and enhancing security control libraries, security patterns, baselines, and architecture standards, while ensuring their integration into security architecture and engineering activities. Strong understanding of cybersecurity standards, laws, and frameworks, including NIST, ISO/IEC 27001, CIS Controls, GDPR, PCI-DSS, and other relevant regulatory or compliance requirements. Strong understanding of cybersecurity best practices, including secure network architecture, endpoint protection, identity and access management, cloud security, Dev Sec Ops, and defense-in-depth design. Experience conducting security design reviews, architecture assessments, threat modeling, technical risk assessments, and security gap assessments. Ability to support business units, project teams, IT teams, and security stakeholders in selecting, designing, and implementing secure information systems and technology solutions. Experience with security automation and scripting using tools and languages such as Python, Power Shell, Bash, Terraform, Ansible, or similar technologies. Ability to support security investigations, incident response activities, forensic analysis, root cause analysis, and post-incident improvement recommendations when required. Experience providing technical consultation and advisory support on CSEA-related projects, initiatives, and engagements as requested by the CSEA Section Head. Excellent ability to translate technical cybersecurity concepts, risks, and recommendations into clear business language for both technical and non-technical stakeholders. Experience participating in cybersecurity committees, technical working groups, architecture review boards, project meetings, and cross-functional security discussions. Strong problem-solving, analytical, and decision-support skills, with the ability to assess complex technical environments and recommend practical security solutions. Ability to work independently while also collaborating effectively with security architects, SOC analysts, IT teams, application teams, project managers, and business stakeholders. Excellent verbal and written communication skills, with the ability to document security findings, architecture recommendations, risks, and remediation actions clearly and professionally. Ability to mentor and support CSEA team members as needed by transferring knowledge, sharing technical expertise, and contributing to the development of internal cybersecurity engineering and architecture capabilities.<br><br>Key Deliverables<br><br>The contractor may be expected to support or deliver:<br><br>Security architecture reviews Security design review reports Threat models and risk assessments Security control mapping and recommendations Architecture patterns, baselines, and standards Technical security advisory reports Secure design recommendations for infrastructure, cloud, and applications Security improvement roadmaps Support for incident response, investigations, and technical analysis Knowledge transfer sessions for CSEA members<br><br>Requirements<br><br>Education:<br><br>Bachelor’s degree in a technology-related field, such as Cybersecurity, Computer Science, Computer Engineering, Information Security, Information Technology, or a related discipline. A higher degree or relevant professional certifications are preferred.<br><br>Experience<br><br>Minimum of 10 years relevant experience in cybersecurity, information security, security engineering, or IT infrastructure security, with at least 3 years of hands-on experience in cybersecurity architecture, security engineering, or enterprise security architecture.<br><br>Preferred Certifications<br><br>CISSP, CISM, SABSA, or TOGAF certifications preferred. Cloud security certifications such as CCSP, Azure Security Engineer, or AWS Security Specialty preferred. Cybersecurity certifications such as GCIH, GCIA, GSEC, or Security+ preferred. Other relevant cybersecurity, cloud security, or architecture certifications considered.
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>Performing quantities verification at site to ensure:</p><ul><li>All parties comply with project payments established procedures and their alignment to the latest PWA Projects Payment Procedures Manual.</li><li>Certified value of works and materials on/off site are in line with Contract provisions and latest PWA Projects Payment Procedures Manual.</li><li>The works/quantities or materials certified by the Engineer/PMC/ Consultant do not exceed the executed works on site.</li><li>To check the quantities executed and the materials delivered in the final accounts for all projects and compare them with the quantities in the As-Built drawings of the Projects (if required in accordance with the contract provisions)</li></ul><p>Technical auditing</p><ul><li>Recommend necessary corrective action(s) for inconsistencies, errors, and noncompliance with the Contract provisions and latest PWA Projects Payment Procedure Manual.</li><li>Preparing report, reviewing & managing reports provide by team members; related to Quantities Verification task.</li><li>Performing follow-up quantities verification at site to verify implementation of the proposed corrective action.</li><li>Preparing report of the follow-up quantity verification.</li><li>Checking and processing day to day all types of payments for PWA Projects.</li><li>Provide advice on the issues raised by the PWA Departments regarding the payment clauses in the contract documents.</li><li>Assist in contract closeout procedures.</li><li>Checking Final Accounts.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p>Should have a BSc degree in Quantity Surveying from recognized university with MRICS professional qualification.</p><p>Should have minimum 15 years demonstrable postgraduate experience in all facets of the Quantity Surveying profession; all of which shall have been applicable to capacity of a professional Quantity Surveyor working in a professional Consultancy practice or Employers’ organization.</p><p>Minimum of 05 years working experience (preferably in Qatar/GCC) shall be site-based experience in Infrastructure (highway/road) Projects.</p><p>Extensive knowledge and experience in procurement methods for consultancy and construction contracts as well as International contracting conditions and laws.</p><p>Extensive knowledge in Civil Engineering Standard Method of Measurement (CESMM)</p><p>Preferably, has minimum 05 years’ experience in the gulf region.</p><p></p></section>