Security inspector Jobs in Qatar
4090 Jobs Found
Primary Purpose Of The Job<br><br>Governance and execution of the Information Security Management System (ISMS) including developing policies,standards and procedures required for the corporate information security in both an Information technology (IT) and Operational Technology (OT) capacity. Define required information security policies, standards and procedures related to their areas of operation as well as raising awareness of those polices, standards and procedures. Ensure adequate an effective IT controls exist to meet applicable current and future security compliance requirements. --Conduct compliance and operational maturity assessments to ensure optimal operation of the information and operational technology environments under the guidelines of the ISMS. Develop reporting Metrics, dashboards and evidences of compliance activities. Coordinate with IT stakeholders, project managers, and business owners to facilitate vendor risk assessments, due diligence review and security requirements definition. Maintain third-party assessment documentation.<br><br>Stay updated on the latest security trends, emerging threats and best practices to continuously improve the overall security posture.<br><br>Collaborate with cross-functional teams, including AI and digital functions, to ensure alignment of security governance with emerging technologies and applied intelligence initiatives. Carry out other Security related activities as assigned by team Lead.<br><br>Required Experience And Skills<br><br> Bachelor degree in information security, computer science, or engineering. Professional certifications in information security management and standards compliance (e.g., CISSP, CISM, CRISC, GIAC, ISO27001, etc.) and experience with control frameworks (e.g., NIST Cybersecurity Control Framework)<br><br>Educational Qualifications<br><br> 10+ years of relevant professional experience. Experience with large ICS & ICT environments in the Energy sector, preferably in Oil & Gas. Experience with and understanding of customized information security management systems. Experience in defining Governance, Risk, and Compliance (GRC) processes and leveraging industry-standard GRC tools and products. Knowledge of information security capabilities and requirements analysis. Knowledge of relevant state laws, industry regulations, and security standards. Excellent written, verbal and presentation communication skills
Job Description<br><br>We are seeking an experienced Microsoft Security Consultant to join our Cybersecurity Practice. In this role, you will work closely with our cloud, infrastructure, and security teams to design, implement, and operate security controls across the Microsoft security stack to protect our clients' cloud and hybrid environments.<br><br>Your responsibilities will include deploying and configuring Microsoft Defender (including Defender for Endpoint, Defender for Cloud, Defender for Office 365, and Defender for Identity) and Microsoft Purview for data governance, data loss prevention, information protection, insider risk management, and compliance. You will assess existing Microsoft 365 and Azure environments, identify security gaps, harden configurations against established baselines, and continuously monitor these platforms to ensure the confidentiality, integrity, and availability of systems and data.<br><br>You will support the secure adoption of Microsoft cloud services across Microsoft 365, Azure, and hybrid environments, configuring policies and controls that align with organizational requirements, industry standards (such as the Microsoft Cloud Security Benchmark, CIS, and NIST), and Qatari regulatory requirements. This includes implementing conditional access, identity and access management through Microsoft Entra ID, threat detection and response workflows, and compliance and data protection controls through Purview.<br><br>Responsibilities<br><br> Microsoft Security Architecture and Assessment: Assess Microsoft 365, Azure, and hybrid environments to identify security risks and design appropriate controls using native Microsoft capabilities. Conduct security reviews of Azure subscriptions, workloads, and configurations across compute, storage, networking, identity, and platform services, using Microsoft Defender for Cloud secure score and recommendations as a baseline. Provide detailed assessment reports with clear, actionable remediation recommendations aligned with the Microsoft Cloud Security Benchmark, CIS, and NIST. Microsoft Security Governance: Define, implement, and maintain cloud security governance frameworks, including security policies, standards, baselines, and control frameworks built on Azure Policy, Microsoft Defender for Cloud regulatory compliance, and Purview governance capabilities. Establish clear roles and responsibilities through RACI models and support the development of operating procedures to ensure consistent, repeatable, and auditable security practices across Microsoft environments. Security Monitoring and Threat Detection: Implement and operate Microsoft Defender and Microsoft Sentinel to detect misconfigurations, vulnerabilities, and suspicious activities. Analyze alerts and incidents across the Defender XDR portal and Sentinel, build detection rules and analytics, investigate potential incidents, and support timely response and remediation to maintain the confidentiality, integrity, and availability of cloud environments. Identity and Access Management: Review and support the secure implementation of identity and access controls through Microsoft Entra ID, including role-based access control, least privilege, conditional access, multifactor authentication, and Privileged Identity Management across Microsoft cloud platforms and services. Cloud Security Configuration: Implement native Azure security controls including Microsoft Defender for Cloud, network security groups, encryption, key management (Azure Key Vault), and logging and monitoring to enforce a strong security posture. <br><br>Qualifications<br><br> Education: Bachelor’s / college degree in Computer Science, Information Technology, or a related field. Experience: At least 3 years of hands-on experience implementing and configuring Microsoft Azure and Microsoft 365 security solutions, or a closely related role, with demonstrable experience deploying Microsoft Defender and Microsoft Purview. Certifications: Relevant professional certifications are highly desirable. These may include, but are not limited to: Microsoft Certified: Security Operations Analyst Associate (SC-200) Microsoft Certified: Identity and Access Administrator Associate (SC-300) Microsoft Certified: Information Protection and Compliance Administrator Associate (SC-400) Microsoft Certified: Azure Security Engineer Associate (AZ-500) Microsoft Certified: Cybersecurity Architect Expert (SC-100) Microsoft Certified: Azure Administrator Associate (AZ-104) or Azure Solutions Architect Expert (AZ-305) Vendor-agnostic security certifications (CISSP, CCSP, CSA CCSK, GIAC, etc.) Technical Skills: Strong hands-on experience deploying and configuring the Microsoft security stack, including Microsoft Defender (Defender for Cloud, Endpoint, Office 365, and Identity), Microsoft Sentinel, Microsoft Purview, and Microsoft Entra ID. Experience with core Azure services across compute, storage, networking, and identity, along with native security tooling such as Key Vault, Network Security Groups, and Azure Policy. Knowledge: Solid understanding of cloud architecture principles and the Microsoft Cloud Adoption Framework and Azure Well-Architected Framework. Working knowledge of security concepts including Zero Trust, least privilege, network segmentation, and encryption, with practical understanding of how Microsoft technologies implement them (Conditional Access, Privileged Identity Management, Defender for Cloud secure score). Familiarity with the Microsoft Cloud Security Benchmark, CIS Benchmarks, NIST, and ISO 27001. Knowledge of Qatar National Information Assurance (NIA) is a plus.
About Accenture<br><br>Accenture helps the world’s leading enterprises reinvent by building their digital core and unleashing the power of AI to create value at speed for organizations across industries. Our strategy is to be the reinvention partner of choice for our clients and lead in the safe, widespread adoption of AI, and to be the most client-focused, AI-enabled, great place to work in the world. We bring together the talent of our approximately 786,000 people with proprietary assets and platforms, deep process and industry expertise, and leading ecosystem relationships to deliver end-to-end solutions and measurable outcomes at scale. Through our Reinvention Services, we offer broad expertise across Cybersecurity, Digital Core, Finance, Industry and Enterprise, Song, Supply Chain and Engineering, and Talent, with advanced capabilities in AI and Data, Industry and Process, and Technology. We serve approximately 9,000 clients and generated approximately $70 billion in FY25 revenue. Visit us at accenture.com.<br><br>About Accenture Security<br><br>Accenture Security helps organizations prepare for, prevent, detect, respond to, and recover from cyber threats. We bring together deep industry knowledge, advanced security capabilities, and cutting-edge technology to help our clients protect their most critical assets, comply with regulatory requirements, and build resilient security programs.<br><br>Role Overview<br><br>We are looking for a Cloud Security Specialist to strengthen the security posture of our cloud environments, with a strong focus on Google Cloud Platform (GCP) and exposure to AWS and Azure. You will work closely with engineering, Dev Ops, and security teams to design, implement, and operate secure cloud‑native solutions while ensuring compliance with industry and regulatory standards.<br><br>Key Functions<br><br><br>Design and implement security controls across multi‑cloud environments, with primary focus on GCP<br>Secure cloud‑native services including Google Kubernetes Engine (GKE), Compute Engine, and Cloud Storage<br>Implement and manage identity, access, and network security controls across cloud platforms<br>Embed security into CI/CD pipelines and Dev Ops workflows, enabling secure‑by‑design cloud solutions<br><br><br>Responsibilities<br><br><br>Design, deploy, and maintain cloud security architectures aligned with best practices and the shared responsibility model<br>Implement Identity and Access Management (IAM) and Identity‑Aware Proxy (IAP) to enforce least‑privilege access<br>Configure and enforce network security controls using VPCs, Cloud Armor, Cloud VPN, and firewall rules<br>Implement data protection mechanisms including encryption, key management, and data loss prevention using Cloud KMS and Secret Manager<br>Monitor, detect, and respond to cloud security events leveraging Security Command Center, Cloud Logging, and Cloud Monitoring<br>Perform cloud security assessments, vulnerability analysis, and misconfiguration reviews<br>Support cloud‑related incident response and forensic activities<br>Integrate security controls into Infrastructure as Code (Terraform or similar)<br>Ensure compliance with frameworks such as ISO 27001, NIST, and National Cybersecurity Authority (NCA / ECC)<br>Develop and maintain cloud security policies, standards, and hardening guidelines<br>Partner with engineering teams to remediate findings and continuously improve security posture<br><br><br>Qualifications<br><br><br>3–6 years of experience in cloud security, cybersecurity, or infrastructure security<br>Hands‑on experience securing at least one major cloud platform (GCP preferred)<br>Strong understanding of cloud architecture and the shared responsibility model<br>Solid knowledge of:<br>Identity and Access Management<br>Network security, segmentation, firewalls, and private connectivity<br>Data protection and encryption practices<br>Experience with cloud security services such as:<br>Security Command Center<br>Cloud KMS<br>Cloud Armor<br>Ability to identify, analyze, and remediate cloud misconfigurations and vulnerabilities<br>Familiarity with Infrastructure as Code (Terraform or similar)<br>Experience integrating security into CI/CD pipelines<br>Understanding of compliance frameworks (ISO 27001, NIST, NCA/ECC preferred)<br>Strong troubleshooting, documentation, and communication skills<br>Ability to work independently and proactively drive security initiatives<br><br>To learn more about life @AccentureMiddleEast, follow us on social media and keep up with our latest news . Accenture Middle East Africa : Linked In, Instagram, Facebook, Twitter, You Tube.
Black & Grey HR is recruiting for an established technology solutions and services provider in Doha, Qatar. Our client is seeking an experienced Security Operations Officer – Data Security Specialist responsible for executing and enhancing security operations, monitoring and responding to threats with a focus on mega sports events and non-event periods. Collaborate across teams to implement effective security measures for information systems.<br>Key Responsibilities Data Security Engineering Design and implement data protection controls across enterprise, cloud environments and Artificial Intelligence Solutions. Deploy and manage solutions such as Data Loss Prevention (DLP), data masking, and tokenization. Collaborate with application and infrastructure teams to embed security into data lifecycle management. Implement and manage data discovery and classification tools to identify, categorize, and label sensitive data across the organization. Continuously monitor data security posture and produce regular compliance and risk reports. Assist the incident response team in investigating and responding to data security incidents, including insider threats and breaches.<br>Cloud Data Security Implement and manage data protection controls in GCP and Azure. Secure databases and data lakes. Configure encryption at rest, in transit, and in use, with BYOK strategies. Deploy cloud-native data discovery and classification solutions. Manage secrets management and ensure secure access to data storage systems. Implement controls for AI data governance.<br>Cryptography Define and enforce cryptographic practices and key management standards. Manage enterprise encryption practices for data at rest, in transit, and in use. Ensure compliance with organizational and industry cryptographic standards.<br>Data Privacy Ensure compliance with privacy regulations (GDPR, HIPAA, PDPPL). Embed privacy-by-design principles and requirements into technical controls. Drive data classification and governance programs to safeguard personal and sensitive information.<br>Database Security Secure structured and unstructured data repositories, including relational and NoSQL databases. Implement database activity monitoring (DAM) and user access controls. Perform regular security reviews and hardening of database systems.<br>Collaboration & Governance Collaborate with other stakeholders on data protection strategies. Ensure compliance with Qatar’s NCSA framework and international standards. Conduct data security assessments for vendors and third-party integrations. Review and approve data sharing agreements. Define and track data security KPIs and metrics. Maintain data security dashboards for continuous monitoring. Stay current with emerging threats, technologies, and industry best practices.<br>Requirements8+ years of experience in information security with a focus on data protection, cryptography, and database security. Bilingual (Arabic Speaker) Preferred. Hands-on experience with cloud platforms, especially GCP and Azure. Strong understanding of encryption standards, cryptographic protocols, and key management processes. Practical experience with secrets management (Hashi Corp Vault, AWS Secrets Manager, Azure Key Vault, GCP Secret Manager). Proven expertise in cloud-native data protection across multi-cloud environments. Experience implementing data masking, tokenization, and anonymization techniques. Bachelor’s degree in computer science, Information Security, or related field. Professional certifications such as CISSP, CCSP, CDPSE, or CCSK. Cloud security certifications (GCP, Azure, or AWS Security Specialty) preferred.<br>Required Skillsets Hands-on experience with DLP solutions (Forcepoint, Microsoft Purview, Google Cloud DLP). Implementation of data anonymization, pseudonymization, and masking techniques. Configuration and monitoring of DAM solutions (Imperva, IBM Guardium). Experience with data discovery and classification tools (Forcepoint, Microsoft Purview). Strong knowledge of cryptographic and key management systems (KMS, GCP Cloud KMS, Azure Key Vault). Securing relational, NoSQL, and data lake environments. Performing database vulnerability assessments and security audits. Working knowledge of secret management solutions and integration with CI/CD pipelines.
Position Purpose Summary Principal Information Security Assurance Engineer/ Specialist lead and enforce enterprise-wide security assurance initiatives by evaluating and strengthening security mechanisms across systems, applications, and databases. Conduct comprehensive audits to detect and prevent unauthorized or malicious activities by users and administrators. Drive the adoption and continuous improvement of a secure SDLC framework across the be IN. Oversee and execute regular penetration testing and vulnerability assessments to safeguard the integrity, confidentiality, and availability of information assets. Provide strategic, administrative, and technical leadership to support the Director of Information Security in developing and implementing robust cybersecurity strategies.<br>Key Responsibilities and Accountabilities Review audit log of user applications, profile administration activities and privileged users, review objects/services access and usage. Audit operational change due to the change request. Audit privileged level access and changes to services, applications, databases. Ensure security mechanisms are considered within the SDLC. Conduct periodically internal penetration testing in assigned areas and contribute to the assessment of the security posture across all of infrastructure and oversee scheduled and event/service driven external penetration testing. Conduct vulnerability scanning and be able to interpret the results. Tracks and coordinate the security patching activities with relevant teams and provide the required support. Assess change request for the risk it poses to application and databases security and review the subsequent impact on operations. Approve the request after checking for approval from necessary authorities. Examine mechanisms and technologies in achieving and optimizing security controls and processes. To provide support and analysis during and after a security incidents, as necessary. Analyzes general information assurance-related technical problems and provide support in solving these problems. Research security enhancements and make recommendations to management. Coordinate the activities related to Information Security Projects.<br>Education Minimum Bachelor Degree in IT, Computer Science, Cyber Security, Business Administration or related field.<br>Experience Minimum 6 years of experience in IT domain, penetration testing, professional experience in corporate Applications Security, Analysis and Solutions Delivery or in any similar role.<br>Please refer to our privacy policy to know more about how we process your personal data
Position Purpose Summary Principle Information Security Assurance Engineer/ Specialist lead and enforce enterprise-wide security assurance initiatives by evaluating and strengthening security mechanisms across systems, applications, and databases. Conduct comprehensive audits to detect and prevent unauthorized or malicious activities by users and administrators. Drive the adoption and continuous improvement of a secure SDLC framework across the be IN. Oversee and execute regular penetration testing and vulnerability assessments to safeguard the integrity, confidentiality, and availability of information assets. Provide strategic, administrative, and technical leadership to support the Director of Information Security in developing and implementing robust cybersecurity strategies.<br>Key Responsibilities and Accountabilities Review audit log of user applications, profile administration activities and privileged users, review objects/services access and usage. Audit operational change due to the change request. Audit privileged level access and changes to services, applications, databases. Ensure security mechanisms are considered within the SDLC. Conduct periodically internal penetration testing in assigned areas and contribute to the assessment of the security posture across all of infrastructure and oversee scheduled and event/service driven external penetration testing. Conduct vulnerability scanning and be able to interpret the results. Tracks and coordinate the security patching activities with relevant teams and provide the required support. Assess change request for the risk it poses to application and databases security and review the subsequent impact on operations. Approve the request after checking for approval from necessary authorities. Examine mechanisms and technologies in achieving and optimizing security controls and processes. To provide support and analysis during and after a security incidents, as necessary. Analyzes general information assurance-related technical problems and provide support in solving these problems. Research security enhancements and make recommendations to management. Coordinate the activities related to Information Security Projects.<br>Education Minimum Bachelor Degree in IT, Computer Science, Cyber Security, Business Administration or related field.<br>Experience Minimum 6 years of experience in IT domain, penetration testing, professional experience in corporate Applications Security, Analysis and Solutions Delivery or in any similar role.<br><br>Please refer to our privacy policy to know more about how we process your personal data
Position Purpose Summary Principle Information Security Assurance Engineer/ Specialist lead and enforce enterprise-wide security assurance initiatives by evaluating and strengthening security mechanisms across systems, applications, and databases. Conduct comprehensive audits to detect and prevent unauthorized or malicious activities by users and administrators. Drive the adoption and continuous improvement of a secure SDLC framework across the be IN. Oversee and execute regular penetration testing and vulnerability assessments to safeguard the integrity, confidentiality, and availability of information assets. Provide strategic, administrative, and technical leadership to support the Director of Information Security in developing and implementing robust cybersecurity strategies.<br>Key Responsibilities and Accountabilities Review audit log of user applications, profile administration activities and privileged users, review objects/services access and usage. Audit operational change due to the change request. Audit privileged level access and changes to services, applications, databases. Ensure security mechanisms are considered within the SDLC. Conduct periodically internal penetration testing in assigned areas and contribute to the assessment of the security posture across all of infrastructure and oversee scheduled and event/service driven external penetration testing. Conduct vulnerability scanning and be able to interpret the results. Tracks and coordinate the security patching activities with relevant teams and provide the required support. Assess change request for the risk it poses to application and databases security and review the subsequent impact on operations. Approve the request after checking for approval from necessary authorities. Examine mechanisms and technologies in achieving and optimizing security controls and processes. To provide support and analysis during and after a security incidents, as necessary. Analyzes general information assurance-related technical problems and provide support in solving these problems. Research security enhancements and make recommendations to management. Coordinate the activities related to Information Security Projects.<br>Education Minimum Bachelor Degree in IT, Computer Science, Cyber Security, Business Administration or related field.<br>Experience Minimum 6 years of experience in IT domain, penetration testing, professional experience in corporate Applications Security, Analysis and Solutions Delivery or in any similar role.<br><br>Please refer to our privacy policy to know more about how we process your personal data
Position Purpose Summary Principle Information Security Assurance Engineer/ Specialist lead and enforce enterprise-wide security assurance initiatives by evaluating and strengthening security mechanisms across systems, applications, and databases. Conduct comprehensive audits to detect and prevent unauthorized or malicious activities by users and administrators. Drive the adoption and continuous improvement of a secure SDLC framework across the be IN. Oversee and execute regular penetration testing and vulnerability assessments to safeguard the integrity, confidentiality, and availability of information assets. Provide strategic, administrative, and technical leadership to support the Director of Information Security in developing and implementing robust cybersecurity strategies.<br>Key Responsibilities and Accountabilities Review audit log of user applications, profile administration activities and privileged users, review objects/services access and usage. Audit operational change due to the change request. Audit privileged level access and changes to services, applications, databases. Ensure security mechanisms are considered within the SDLC. Conduct periodically internal penetration testing in assigned areas and contribute to the assessment of the security posture across all of infrastructure and oversee scheduled and event/service driven external penetration testing. Conduct vulnerability scanning and be able to interpret the results. Tracks and coordinate the security patching activities with relevant teams and provide the required support. Assess change request for the risk it poses to application and databases security and review the subsequent impact on operations. Approve the request after checking for approval from necessary authorities. Examine mechanisms and technologies in achieving and optimizing security controls and processes. To provide support and analysis during and after a security incidents, as necessary. Analyzes general information assurance-related technical problems and provide support in solving these problems. Research security enhancements and make recommendations to management. Coordinate the activities related to Information Security Projects.<br>Education Minimum Bachelor Degree in IT, Computer Science, Cyber Security, Business Administration or related field.<br>Experience Minimum 6 years of experience in IT domain, penetration testing, professional experience in corporate Applications Security, Analysis and Solutions Delivery or in any similar role.<br><br>Please refer to our privacy policy to know more about how we process your personal data
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p><strong><u>Communication</u></strong></p><br><p><strong>Internal Communication</strong><br>- Manager - Security<br>- Operational Managers<br><strong>Purpose</strong><br>- To report on implementation effectiveness of Security strategy, Security performance outputs and related risk, compliance/non-conformance, incidents’ outcome and investigation findings<br>- To direct operational management response so as to ensure effective implementation of Security strategy, attain Security performance requirements, mitigate Security related risk, achieve regulatory and obligation compliance</p><br><p><br><strong>External Communication</strong><br>- Contracted security provider and their employees<br><strong>Purpose</strong><br>- To manage effective application of Security strategy with the operational environment, Milaha HSSEQ framework, HSSEQ related risk identification and control processes, Compliance mapping</p><br><p><strong><u>Occupational Health & Safety and Environment</u></strong></p><br><p><strong>Accountability</strong><br>Are accountable for their acts and omissions.</p><br><p><strong>Responsibility</strong><br>To follow agreed safe systems of work; to follow training and instructions; and to report accidents, incidents and near misses.</p><br><p><strong>Authority</strong><br>To stop work if they think the work is unsafe.</p><br><br>Responsibilities:<br><p><strong><u>Key Roles & Responsibilities</u></strong><br>• Coordinate and monitor execution of contracted security providers Service Level Agreements (SLAs), key performance indicators, capacity, workflow plans for multiple sites to ensure delivery of a professional service which minimises potential disruption to business continuity, security risks, and undesirable conditions<br>• Maintain a proactive and effectual security oversight of all Milaha venues not covered by Contracted security providers<br>• Maintain awareness of all current regulations, laws, guidelines, and provide feedback to the Manager - Security to ensure loss prevention policies and procedures are in compliance<br>• Draft and propose bespoke technical procedures, specialist manuals, checklists and forms in order to provide documented work procedures and processes, support business continuity, provide continual improvement and operate to international standards in line with client, contractual and regulatory compliance requirements<br>• Investigate incidents relating to reported stock losses, theft, claims, damages, suspicious activity and other operational incidents using the collected information to compile comprehensive report to Manager – Security<br>• Prepare all required reports, including internal and external security-related communications as directed by Manager – Security, review such reports in a timely manner with management team and take appropriate action as necessary to address any report discrepancies or operational issues<br>• Provide clear, concise inspection reports and relevant non-conformities to department and business unit managers where relevant to enable corrective actions to be undertaken<br>• Create, modify and ensure a smooth-running operation by enforcing post specific policies and procedures through proper communication and training. Ensuring that post instructions and schedules are maintained and are updated regularly<br>• Establish and oversee property emergency and applicable security programs in accordance with regulatory compliance<br>• Direct response to emergency situations including, but not limited to medical emergencies, and threats to life and/or property<br>• Create and conduct security training programs, ensure that all staff receive the appropriate training on loss prevention and security matters<br>• Identify opportunities and risks within Security and propose improvements to existing processes<br>• Liaise with all stakeholders (external and internal) maintaining effective communication links to proactively resolve any queries/issues that may arise<br>• Act as a primary focal point for local building code officials, government and law enforcement agencies as required<br>• Perform job related duties as assigned<br>Decision Making Authority:<br>• Autonomous authority to make operational decisions regarding the implementation of approved physical security policy and procedure at any Milaha site or vessel<br>• May undertake whatever corrective action they feel reasonable at a given point in time to mitigate risk to people, environment or property</p><br><br>Qualifications:<br><p><strong>Education & Professional Qualification </strong><br>- 3-year Full Time Degree (Associated Degree) from a recognised institution, or 2-year Full Time Graduate Diploma in Security<br>- Preferred qualifications of specific tradecraft such as Emergency Management, Access Control, Physical Hardening, Fire Safety etc.</p><br><p><strong>Professional Experience </strong><br>- 3 - 5 years of experience in Security profession in high risk environment<br>- At least 2 years of supervisory experience of operational functions within physical security provision</p><br><p><strong>Geographic Experience </strong><br>- Not required</p><br><p><strong>Computer Skills </strong><br>- Good knowledge of Office and web applications<br>- Advanced MS Excel and PowerPoint skills</p><br><p><strong>Language Skills </strong><br>- Fluent spoken and written Arabic & English</p><br><p><strong>Market/Industry/Functional Knowledge</strong><br>- Not required</p><br> </div>
Note: By applying to this position you will have an opportunity to share your preferred working location from the following: Dubai - United Arab Emirates; Doha, Qatar; Riyadh Saudi Arabia. Minimum qualifications:<br><br>Bachelor's degree in Cybersecurity, with a focus on offensive security or equivalent practical experience.3 years of experience in three of the following security areas: web application security assessment, mobile application security assessment, API security assessment, red team assessments, EDR evasion, exploit development, cloud, social engineering, scripting, tool development. Experience delivering reporting and presentations to both technical and executive audiences. Experience with operating system security across operating systems or Linux.<br><br>Preferred qualifications:<br><br>Certifications related to application security including BSCP, OSWE, e WPTX, e MAPT, 8ksec CMSE or relevant SANS courses. Experience in creating security tools and understanding of underlying programming languages (such as Python, C#, C/C++, Rust, Nim or similar). Experience conducting web application, API, and mobile (i OS and Android) security assessments following industry standards such as OWASP WSTG/ASVS, OWASP Top 10, OWASP API Top 10 and OWASP MASVS/MASTG. Experience in web application and API penetration testing tooling including Burp Suite Professional, Burp Suite extensions, Postman, nuclei, ffuf and sqlmap.<br><br>About The Job<br><br>As a Security Consultant, you will be responsible for helping clients effectively prepare for, proactively mitigate, and detect and respond to cyber security threats. Security Consultants have an understanding of computer science, operating system functionality and networking, cloud services, corporate network environments and how to apply this knowledge to cyber security threats.<br><br>As a Security Consultant, you could work on engagements including assisting clients in navigating technically complex and high-profile incidents, performing forensic analysis, threat hunting, and malware triage. You may also test client networks, applications and devices by emulating the latest techniques to help them defend against threats, and will be the technical advocate for information security requirements and provide an in-depth understanding of the information security domain. You will also articulate and present complex concepts to business stakeholders, executive leadership, and technical contributors and successfully lead complex engagements alongside cross functional teams.<br><br>We are seeking a highly skilled and experienced Application Security Consultant to join the team.<br><br>In this role, you will be responsible for providing cybersecurity consulting services and support to the clients, including assessing and advising clients on both technical and process-based controls for all manner of environments.<br><br>Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.<br><br>Responsibilities<br><br>Conduct comprehensive security assessments of Web applications, APIs, and Mobile applications by identifying, exploiting and validating vulnerabilities using industry-standard methodologies such as the OWASP Web Security Testing Guide (WSTG), OWASP API Security Top 10, and OWASP Mobile Application Security Testing Guide (MASTG). Discover critical vulnerabilities in applications and be able to weaponize them. Expand the team’s capabilities through tool creation, research on offensive techniques, incorporation of threat actor intelligence, internal presentations and knowledge share. Develop comprehensive and accurate reports and presentations for both technical and executive audiences, and act as a trusted advisor to c-level, security leaders and other customer stakeholders. Assist with scoping prospective engagements, leading teams for engagements from kickoff through remediation phase, as well as mentoring other staff.<br><br><br>Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also Google's EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know by completing our Accommodations for Applicants form .
Job Overview<br><br>An established organization is seeking an experienced Security Supervisor to oversee security personnel and ensure the effective delivery of security operations across commercial facilities.<br><br>Key Responsibilities<br><br>Supervise security officers during assigned shifts. Monitor access control and CCTV operations. Conduct routine patrols and inspections. Manage incident reporting and investigations. Ensure compliance with security procedures. Coordinate emergency response activities. Train and mentor security staff. Prepare operational reports.<br><br>Requirements<br><br>Minimum 5 years' experience in the security industry. Previous supervisory experience. Fluent in both Arabic and English (spoken and written). Able to attend client interviews before deployment. Strong leadership and communication skills.<br><br>Preferred<br><br>Security-related certifications. First Aid Certificate. Valid Qatar Driving Licence.
Job Description<br><br> Job Details: <br><br> Position Title: Cybersecurity Specialist<br><br> Reports to: IT Manager<br><br> Department: Information Technology (IT)<br><br>Job Purpose<br><br>To lead and oversee GDI’s information security IT operations, network infrastructure, and Operational Technology (OT) environments, ensuring the confidentiality, integrity, and availability of IT and industrial systems (IACS). The role is responsible for leading IT security operations, vulnerability management, incident response, and compliance in alignment with ISMS (ISO 27001) and relevant industrial cybersecurity standards, including ISA/IEC 62443. The role also provides technical direction and oversight of IT operational functions, including Network Administration, to ensure secure, resilient, and efficient technology service delivery across the organization.<br><br>Description<br><br> Key Accountabilities: <br><br>Network Infrastructure & Connectivity Support<br><br> Lead and oversee the secure design, implementation, operation, and continuous improvement of GDI’s network infrastructure to ensure availability, performance, resilience, and security across corporate and operational environments. Supervise network administration activities, including routers, switches, firewalls, VPN services, wireless networks, communication platforms, and related infrastructure technologies, to ensure compliance with approved security standards, operational requirements, and best practices. Ensure reliable and secure connectivity for users, systems, operational technologies, and external integrations through continuous monitoring, performance management, and proactive resolution of network-related issues. Enforce network security controls, including segmentation, access control, monitoring, logging, and secure communications, to protect organizational assets and support compliance with ISMS and regulatory requirements. Provide technical direction and oversight to Network Administration resources to ensure effective service delivery, compliance with service levels, and consistent implementation of operational and security procedures. Coordinate with internal stakeholders and external service providers to support communication systems, data center connectivity, VSAT services, internet services, and third-party connectivity requirements. Support incident response, business continuity, and disaster recovery activities by maintaining network resilience, availability, recoverability, and operational readiness. Ensure the security of Operational Technology (OT) and Industrial Automation and Control Systems (IACS) environments through network segmentation, secure remote access controls, monitoring activities, and implementation of applicable industrial cybersecurity requirements (including ISA/IEC 62443 standards). <br><br>Network Security & Access Control<br><br> Lead and oversee the implementation, operation, and continuous improvement of network security controls and access management frameworks to protect GDI’s information assets, infrastructure, and operational environments. Define and enforce secure access requirements relating to authentication, authorization, network segmentation, privileged access, and remote connectivity in alignment with ISMS requirements, cybersecurity standards, and regulatory obligations. Oversee administration of identity and access controls across network and security environments and ensure adherence to the principles of least privilege and segregation of duties. Direct the configuration, management, and optimization of firewalls, VPNs, Network Access Control (NAC) solutions, intrusion detection and prevention technologies, and related security platforms in coordination with Network Administration resources. Monitor and review access rights, privileged accounts, network security events, and security logs to identify unauthorized activities and ensure compliance with approved security requirements. Coordinate periodic access reviews, access recertification activities, and remediation actions to maintain appropriate access governance and security compliance. Provide technical guidance on secure network architecture, access control design, and security requirements to support business needs while maintaining an effective security posture. Support incident investigations, forensic reviews, compliance assessments, and audit activities relating to network security and access management. <br><br>Incident Management & Operational Security Support<br><br> Lead and govern the end-to-end incident management process for IT and security-related events, ensuring timely detection, response, resolution, and documentation in line with approved procedures and SLAs. Establish and maintain incident management processes, escalation procedures, communication protocols, and reporting mechanisms aligned with ISMS requirements and business continuity objectives. Oversee monitoring, triage, analysis, prioritization, and escalation of cybersecurity and operational incidents and coordinate response activities with internal teams and external service providers. Direct incident response and recovery activities, ensuring root cause analyses are completed and corrective actions are implemented to prevent recurrence and strengthen operational resilience. Provide technical leadership and guidance to IT support and Network Administration teams in resolving complex incidents and maintaining service availability. Ensure incident records, investigation findings, response activities, and closure documentation are accurately maintained to support audit, compliance, and performance monitoring requirements. Develop and maintain incident response playbooks, coordinate incident response exercises, and support disaster recovery and business continuity readiness activities. <br><br>Vulnerability Management<br><br> Lead and govern GDI’s vulnerability management program to ensure timely identification, assessment, prioritization, remediation, and reporting of vulnerabilities across systems, networks, applications, cloud environments, and operational technologies. Oversee vulnerability scanning, assessment, reporting, and remediation activities and ensure identified vulnerabilities are appropriately risk-ranked, assigned, tracked, and resolved through approved remediation processes. Direct implementation of corrective actions, patch management activities, configuration hardening initiatives, and security improvement measures in coordination with Network Administration and other IT resources. Provide analysis, reporting, and recommendations regarding security risks, vulnerability trends, threat exposure, and remediation performance to management and relevant stakeholders. Support incident investigations, audit activities, compliance assessments, and security reviews through provision of vulnerability management data, remediation evidence, and security assurance information. Oversee vulnerability identification and remediation activities relating to OT and IACS environments in alignment with industrial cybersecurity requirements and operational risk considerations. <br><br>Compliance, Audit & Risk Management<br><br> Ensure compliance with information security policies, standards, ISMS (ISO 27001) requirements, industrial cybersecurity requirements, and applicable regulatory obligations through effective implementation and monitoring of security controls and operational practices. Coordinate internal audits, external audits, cybersecurity assessments, certification activities, compliance reviews, and remediation programs to support audit readiness and ongoing compliance. Oversee identification, tracking, reporting, and remediation of audit findings, non-conformities, security observations, and control gaps and ensure corrective actions are completed within agreed timelines. Maintain security documentation, policies, procedures, access review records, vulnerability management records, incident documentation, and audit evidence required to support compliance and assurance activities. Conduct and coordinate security risk assessments, vulnerability risk assessments, and control reviews and ensure identified risks are appropriately documented and incorporated into relevant risk registers. Monitor implementation of risk treatment plans, mitigation activities, and corrective actions and provide reporting on residual risks, remediation progress, and risk exposure. Prepare and present security risk reports, compliance updates, assessment results, and cybersecurity insights to management and stakeholders to support informed decision-making. Conduct cybersecurity risk assessments relating to Operational Technology (OT) and Industrial Automation and Control Systems (IACS), considering operational impacts, safety implications, and applicable industrial cybersecurity requirements. <br><br>Communications & Working Relationships<br><br>Internal<br><br> IT Manager and IT Teams Operations, Technical, Finance, Internal Audit, Governance, HR, and QHSE Teams <br><br>External<br><br> Infrastructure, Cybersecurity, Telecommunications and Managed Service Providers Cloud Service Providers and Technology Vendors Hardware, Software, Network, and Communication Systems Vendors External Technical Consultants <br><br>Context, Work Environment & Decision-Making Authority<br><br> Operates within a security-critical technology environment supporting GDI’s Information Security Management System (ISMS), cybersecurity strategy, network infrastructure, enterprise technology platforms, and Operational Technology (OT) environments. Leads cybersecurity operations, network security, vulnerability management, incident response, compliance, and risk management activities across corporate and operational technology environments. Provides technical leadership, oversight, and direction to Network Administration and IT support resources to ensure compliance with security standards, operational requirements, and approved procedures. Exercises professional judgment in assessing cybersecurity risks, directing incident response activities, implementing security controls, prioritizing remediation actions, and recommending security improvements within approved governance frameworks. Monitors emerging cybersecurity threats, vulnerabilities, regulatory developments, and industrial cybersecurity requirements and recommends actions to strengthen organizational security posture and resilience. Escalates significant cybersecurity risks, major incidents, control deficiencies, and compliance concerns to IT Management for resolution and strategic decision-making. <br><br>Minimum Qualifications<br><br>Qualifications, Experience & Skills: <br><br> Bachelor’s degree in information technology, Computer Science or a related field from an internationally recognized university or relevant proven experience. Professional certifications such as CISSP, CISM, CEH, Security+, GSEC, GIAC certifications, or equivalent are preferred. Knowledge of information security and industrial cybersecurity standards, including ISO/IEC 27001 and ISA/IEC 62443. Familiarity with Operational Technology (OT), Industrial Automation and Control Systems (IACS), and IT/OT convergence principles is advantageous . <br><br>Minimum Experience<br><br> Minimum of 8 years of relevant experience in IT security or cybersecurity roles, including exposure to network security, vulnerability management, incident response, and familiarity with OT/IACS environments is an advantage. <br><br>Job-Specific Skills (Generic / Technical)<br><br> Strong knowledge of network security architecture, network administration, access control frameworks, and cybersecurity technologies including firewalls, VPNs, NAC, SIEM, endpoint security, and monitoring platforms. Strong understanding of incident response, vulnerability management, threat mitigation, security operations, risk assessment, and security governance practices. Knowledge of information security management systems, ISO 27001 requirements, cybersecurity compliance practices, and audit readiness requirements. Good understanding of Operational Technology (OT), Industrial Automation and Control Systems (IACS), industrial cybersecurity principles, ISA/IEC 62443 requirements, and IT/OT convergence environments. Ability to assess cybersecurity risks, analyze vulnerabilities, investigate incidents, and recommend practical mitigation and remediation strategies. Strong leadership, stakeholder management, communication, and coordination skills with the ability to guide technical teams and collaborate effectively with business and technology stakeholders. Strong analytical, problem-solving, decision-making, and incident management capabilities in complex operational environments. Ability to manage multiple priorities, security initiatives, incidents, and operational activities in a fast-paced environment. Language proficiency: English (required).
About The Role<br><br>Our client is seeking a SCADA Cyber Security Engineer to support the secure operation of critical operational technology (OT) environments across a major infrastructure network. The role will focus on cyber security, industrial communications, network monitoring and SCADA system reliability.<br><br>Key Responsibilities<br><br>Monitor and maintain secure OT and SCADA communications. Support cyber security systems and network management platforms. Monitor communication performance across operational systems. Investigate cyber security incidents and implement corrective actions. Coordinate with internal IT teams and external vendors. Support server maintenance and communications infrastructure. Produce security, network performance and operational reports. Review cyber security risks and recommend improvements. Support disaster recovery and business continuity initiatives.<br><br>Requirements<br><br>Bachelor's degree in Engineering or related discipline. Minimum 10 years' experience supporting SCADA or Industrial Control Systems. Experience within utilities, water, wastewater, energy or critical infrastructure. Strong knowledge of industrial cyber security and network management. Experience with SCADA, OT systems, networking and communications. Understanding of cyber security standards and best practices. Excellent troubleshooting and stakeholder management skills.
<p>The Security Manager in ensuring the safety and security of guests, employees, and property at Banyan Tree Doha. The role is responsible for assisting in the implementation of security strategies, emergency preparedness, loss prevention, fire & life safety, and compliance with hotel policies, operational standards, and legal requirements.</p><p>Assist in planning, implementing, and monitoring hotel security policies, procedures, and operational standards. Supervise daily security operations including patrols, access control, CCTV monitoring, incident reporting, and loss prevention. Ensure strict control of back-of-house access for contractors, suppliers, and visitors; issue and manage visitor passes. Maintain confidentiality of all security-related records and investigations. Review daily security logbooks and reports; escalate critical issues to the Security Manager promptly. Ensure full readiness for all emergency situations in accordance with hotel procedures. Coordinate closely with Engineering to conduct regular inspections and preventive maintenance of all safety and fire-fighting equipment. Establish, review, and update emergency manuals, fire & safety procedures, and crisis management plans. Conduct and coordinate regular fire drills, evacuation exercises, and emergency simulations. Maintain strong working relationships with local Police, Fire Brigade, and relevant authorities; conduct regular courtesy visits. Train all employees on basic security awareness and emergency responsibilities. Conduct specialized training for Security team members, including: Fire prevention & basic fire-fighting Life-saving techniques Crime scene preservation Crisis response & report writing Guest interaction, psychology, and public relations Coordinate with Human Resources & L&D to plan and execute continuous technical and skills training programs. Ensure full compliance with the Integrated Management System (IMS), including: Quality Management Environmental Management Occupational Health & Safety Food Safety Customer Complaint Handling Actively participate in risk management, environmental protection, energy & water-saving initiatives, and continuous improvement programs.</p><p><strong>Desired Candidate Profile</strong></p><p>Qualifications</p><ul><li>Attention to detail</li><li>Reliability and strong work ethic</li><li>Ability to follow instructions and take initiative</li><li>Creativity and passion for food</li></ul>
Key Responsibilities Customer Engagement & Strategy Opportunity Qualification: Partner with Account Executives to technically qualify sales leads, ensuring alignment between client budgets, timelines, and our delivery capabilities. Requirement Gathering & Analysis: Lead deep-dive discovery sessions to uncover clients' current security posture, pain points, regulatory compliance gaps, and business objectives. Customer Workshops & Assessments: Design and execute technical workshops and high-level maturity assessments to identify vulnerabilities and position relevant security frameworks. Solution Architecture & Proposal Development Solution Architecture & Design: Architect robust, end-to-end cybersecurity solutions that integrate seamlessly into diverse client environments (on-premises, hybrid, and multi-cloud). RFI/RFP/RFQ Response Preparation: Own the technical response strategy for complex tenders, ensuring comprehensive compliance, competitive differentiation, and timely submission. Bill of Material (BoM) Creation: Engineer accurate, cost-optimized multi-vendor BoMs, leveraging vendor frameworks and discount structures to maximize profitability. Statement of Work (SoW) Preparation: Author highly detailed SoWs that define the exact project scope, technical deliverables, assumptions, milestones, and out-of-scope boundaries to mitigate delivery risk. Technical Validation & Sales Enablement Technical Presentations & Demonstrations: Deliver high-impact technical presentations and tailored product demonstrations that clearly articulate the business value and ROI of the proposed architecture. Proof of Concept (PoC) Management: Define success criteria, scope, and execute PoCs and Proof of Values (PoVs) to technically validate solutions and overcome buyer hesitations. Vendor Coordination: Maintain strong relationships with strategic security vendors to stay ahead of product roadmaps, secure specialized deal pricing, and co-architect complex solutions. Project Handover to Delivery Teams: Lead comprehensive post-sale handover sessions with implementation and delivery teams to ensure flawless execution. Sales Enablement: Conduct internal training sessions for the broader sales team on new security technologies, vendor programs, and competitive displacement strategies.<br>Technical Competencies The ideal candidate must demonstrate mid-to-senior level architectural and conceptual expertise across the following domains:Network & Edge Security: Secure Web Gateway (SWG), Forward/Reverse Proxy Solutions, Web Application Firewall (WAF), and DDoS Protection. Content & Endpoint Security: Next-Generation Endpoint Security, Endpoint Detection & Response (EDR), Extended Detection & Response (XDR), and Email Security ecosystems. Security Operations & Automation: Security Orchestration, Automation, and Response (SOAR), Threat Intelligence Platform (TIP) integration, and Vulnerability Management life cycles. Identity & Access Governance: Privileged Access Management (PAM), Identity and Access Management (IAM), and Directory Services. Modern Security Architectures: Zero Trust Architecture (ZTA) design, Secure Access Service Edge (SASE), and Security Service Edge (SSE). Cloud & Data Security: Cloud Security Posture Management (CSPM), Cloud Workload Protection (CWPP), Data Loss Prevention (DLP), and data encryption/masking strategies.<br>Preferred Vendor Knowledge While platform-agnostic architectural skills are essential, practical presales or implementation experience with a combination of the following vendor ecosystems is highly valued:Next-Gen Firewall & SASE: Palo Alto Networks (Strata/Prisma), Fortinet (Forti Gate/Forti SASE) Endpoint & XDR: Paloalto, Trend Micro, Crowd Strike Network Visibility & NDR: Extra Hop, Darktrace, Vectra AI, Trellix Application & Edge Delivery: F5 (BIG-IP, Distributed Cloud), Cloudflare Email Security: Proofpoint, Fortinet, Trellix Identity & Privileged Access: Delinea, Xage, Beyond Trust Cloud Security & SSE: Zscaler, Netskope Vulnerability Management: Tenable, Trellix Qualifications & Certifications Academic Background Required: Bachelor’s degree from an accredited institution in Computer Science, Cyber Security, Information Technology, Computer Engineering, or a closely related technical field.<br>Professional Certifications Candidates are expected to hold, or be actively pursuing, certifications that validate both broad security knowledge and vendor-specific expertise:Core Security Knowledge: CISSP (preferred), CISM, or CCSP. Technical Foundations: CEH (Certified Ethical Hacker) or Comp TIA Security+. Vendor-Specific Tracks: Fortinet NSE (Level 4 or higher), Palo Alto Networks PCNSE, or Cisco Security Certifications (CCNP Security).<br>Experience Requirements Presales Expertise: At least 3–5 years dedicated to a customer-facing Cyber Security Presales role, driving technical wins within a System Integrator or Value-Added Reseller (VAR). Consulting & Design: Proven track record of conducting security consultations and building defense-in-depth enterprise architectures. Tendering Proficiency: Demonstrable experience independently managing, writing, and winning high-value RFP/RFI responses for both commercial enterprises and public sector/government entities. Sector Exposure: Significant experience navigating the distinct procurement processes, compliance requirements, and stakeholder landscapes of enterprise corporations and government agencies.<br>Soft Skills & Leadership Attributes Executive Presentation Skills: Ability to command a room, articulating highly technical, granular security risks into clear, business-driven outcomes for C-level executives. Communication & Relationship Management: Exceptional verbal and written communication skills; a natural ability to build rapport and establish long-term technical credibility with clients. Analytical Thinking & Problem Solving: Methodical approach to deconstructing chaotic, poorly defined client environments into structured, secure, and compliant architectures. Collaboration & Time Management: Ability to self-manage tight tender deadlines, multi-task across concurrent sales opportunities, and collaborate seamlessly across cross-functional teams (Sales, Delivery, Finance, Vendors). Leadership Potential: Drive to mentor junior presales engineers, take ownership of specific technology practices, and champion internal process improvements.
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<br>Company Description<br><br><p><strong>Rixos Premium Qetaifan Island North</strong> stands as a premier luxury destination on the dynamic, man-made Qetaifan Island off the coast of Lusail, Doha. Operating under the renowned Accor umbrella, this five-star resort seamlessly blends high-end hospitality with adrenaline-pumping entertainment, making it one of Qatar’s most sought-after lifestyle and leisure hubs.</p><br><br>Job Description<br><br><p>We are seeking a detail-oriented and professional HSE Security Officer to join our team in Lusail, Qatar. In this role, you will be responsible for maintaining a safe, secure, and compliant work environment by implementing and enforcing health, safety, and security protocols. You will play a critical role in protecting our organization's assets, personnel, and operations while ensuring adherence to local and international HSE standards.</p><br><ul><li>Conduct regular security patrols and surveillance of company premises, including buildings, parking areas, and restricted zones</li><li>Monitor and manage access control systems, CCTV cameras, and alarm systems to ensure facility security</li><li>Identify, assess, and document potential health, safety, and security hazards throughout the workplace</li><li>Investigate security incidents, accidents, and near-misses; prepare detailed reports and recommend corrective actions</li><li>Enforce compliance with HSE policies, procedures, and Qatar labor law requirements</li><li>Respond promptly to security breaches, emergencies, and safety incidents; coordinate with emergency services when necessary</li><li>Conduct safety inspections and audits to verify adherence to established protocols</li><li>Maintain accurate and organized records of security incidents, inspections, and maintenance activities</li><li>Provide security briefings and HSE training to employees on relevant policies and procedures</li><li>Collaborate with management and other departments to develop and improve safety and security initiatives</li><li>Ensure proper use and maintenance of personal protective equipment (PPE) across the organization</li><li>Monitor visitor access and maintain visitor logs in compliance with security procedures</li></ul><br>Qualifications<br><br><ul><li>Proven experience as a Security Officer, HSE Officer, or similar role in a corporate or industrial environment</li><li>Strong knowledge of health, safety, and environmental (HSE) regulations and best practices</li><li>Familiarity with Qatar labor laws and local HSE compliance requirements</li><li>Proficiency in security systems, access control, and CCTV monitoring</li><li>Excellent analytical and risk assessment skills</li><li>Strong written and verbal communication abilities</li><li>Exceptional organizational and record-keeping skills</li><li>Ability to remain calm and make decisive decisions in emergency situations</li><li>Physical fitness and ability to perform regular patrols and inspections</li><li>Proficiency in incident investigation and root cause analysis</li><li>Knowledge of emergency response procedures and protocols</li><li>Preferred: First aid/CPR certification or equivalent</li><li>Preferred: Previous experience with security clearance processes</li><li>Preferred: Leadership or supervisory experience in security or safety roles</li><li>Preferred: Conflict resolution and de-escalation skills</li></ul> </div>
General Description<br>Join a leading consulting engagement supporting a major enterprise organization in Doha, Qatar, supporting enterprise-wide adoption of Artificial Intelligence, Generative AI, and intelligent automation platforms.<br>We are looking for an experienced AI Security Expert to help establish secure AI practices, governance frameworks, and security controls across emerging AI technologies including agent-based AI solutions, AI-as-a-Service platforms, Microsoft Copilot, Service Now AI, Snowflake AI capabilities, and other enterprise AI solutions.<br>This role focuses on securing the entire AI lifecycle, from architecture and development through deployment, governance, monitoring, and incident response. The selected consultant will work closely with AI engineering teams, enterprise architects, cybersecurity specialists, and business stakeholders to ensure AI solutions are deployed securely, responsibly, and in accordance with organizational risk and governance requirements.<br>This opportunity is ideal for professionals with hands-on experience securing Generative AI, LLM platforms, AI governance, AI threat modelling, and Responsible AI initiatives within enterprise environments.<br>This is a 12-month contract / freelance engagement.<br>Key Responsibilities<br>AI Security Architecture Review security controls for agent-based AI solutions, AI-as-a-Service platforms, and embedded AI capabilities Assess AI solution architectures to ensure secure design and deployment Recommend AI-specific security controls aligned with enterprise cybersecurity standards Support secure implementation of enterprise AI technologies including Microsoft Copilot, Service Now AI, and Snowflake AI capabilities.<br>AI Threat Modelling Perform lifecycle-based threat modelling for AI applications and intelligent systems Identify AI-specific attack vectors, risks, and vulnerabilities Develop mitigation strategies for AI workloads and Large Language Model (LLM) implementations Support secure design throughout the AI development lifecycle.<br>AI Governance & Responsible AIDefine Secure AI Dataset Governance practices Establish Responsible AI controls and governance frameworks Develop secure AI architecture, hosting, and development standards Support AI risk management and regulatory compliance initiatives Recommend AI deployment best practices across enterprise environments.<br>AI Incident Response & Security Operations Develop AI-specific Incident Detection and Response Plans Create AI security playbooks and response procedures Support AI monitoring, threat detection, and security readiness initiatives Recommend security controls for AI model deployment and operational monitoring.<br>Stakeholder Engagement & Advisory Collaborate with AI engineering teams, enterprise architects, cybersecurity teams, and business stakeholders Provide expert guidance on AI security strategy and governance Participate in architecture reviews and AI security assessments Produce documentation, security recommendations, governance standards, and architecture guidance.<br>Required Experience Practical experience (approximately 1–3 years) securing enterprise AI platforms, Generative AI solutions, or intelligent automation technologies Experience securing agent-based AI systems, AI-as-a-Service platforms, or embedded AI capabilities Strong understanding of AI threat modelling methodologies Experience designing secure AI architectures and AI security controls Knowledge of Responsible AI principles and AI governance frameworks Experience developing AI Incident Detection and Response Plans Familiarity with AI dataset governance, secure AI development, and AI deployment practices Experience working with enterprise AI technologies such as Microsoft Copilot, Service Now AI, Snowflake AI, or similar platforms is highly desirable Knowledge of LLM security concepts, AI risk management, and emerging AI threats is advantageous Strong stakeholder communication and documentation skills Experience within enterprise or consulting environments is preferred Immediate or short-notice availability is highly preferred<br>Work Setup Onsite Engagement12-Month Contract / Freelance Engagement
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span><b>Network Infrastructure Management</b> <br><br></span><ul><li><span>Configure, manage, and troubleshoot Cisco switching and routing infrastructure.<br></span></li><li><span>Monitor and maintain LAN, WAN, and wireless network environments.<br></span></li><li><span>Implement network changes, upgrades, and optimization activities.<br></span></li><li><span>Conduct network performance analysis and capacity planning.<br></span></li></ul><b>Security Administration</b><br><br><ul><li><span>Configure, manage, and troubleshoot Cisco Firepower/ASA and Palo Alto Firewalls.<br></span></li><li><span>Implement and maintain firewall policies, NAT, VPNs, and security controls.<br></span></li><li><span>Perform security hardening, vulnerability remediation, and security monitoring.<br></span></li><li><span>Investigate and resolve network and security incidents.<br></span></li></ul><br><span>Requirements<b>Educational Qualification</b> <br><br></span><ul><li><span>Bachelor's Degree/Diploma<br></span></li><li><span>Telecommunications, or a related field.</span><br></li></ul><b>Technical Skills Required</b> <br><br><ul><li><span>Cisco Identity Services Engine (ISE)<br></span></li><li><span>Cisco Firewalls (ASA / Firepower)<br></span></li><li><span>Palo Alto Firewalls<br></span></li><li><span>Cisco Switching (Catalyst Series)<br></span></li><li><span>Cisco Routing Technologies<br></span></li><li><span>Cisco Wireless LAN Controller (WLC)<br></span></li><li><span>VPN Technologies (Site-to-Site and Remote Access)<br></span></li><li><span>Network Security Best Practices<br></span></li><li><span>Troubleshooting and Root Cause Analysis<br></span></li></ul><b>Preferred Certifications</b><br><br><ul><li><span>CCNA / CCNP Enterprise<br></span></li><li><span>CCNP Security<br></span></li><li><span>Palo Alto PCNSA / PCNSE<br></span></li><li><span>Cisco ISE Certification (Preferred)<br></span></li></ul><br> </div>
Responsibilities<br><br> Penetration Testing: Conduct penetration tests on web applications, mobile applications, APIs, and thick client applications. Prepare detailed reports with actionable recommendations for remediation. Security Scanning: Implement and manage automated security scanning tools (SAST, DAST, SCA) to continuously monitor and identify vulnerabilities in code, configurations, and dependencies across all application types. Threat Modelling: Perform threat modelling to identify potential security risks associated with various types of applications. Provide guidance on mitigating these risks. Code Review: Review application code for security vulnerabilities across multiple platforms and offer practical recommendations for remediation. Training & Awareness: Develop and deliver training sessions and workshops to raise awareness about application security among development teams and other stakeholders, tailored to different application types. Tool Evaluation: Assess and recommend tools and technologies to enhance application security testing and monitoring capabilities across various platforms. Documentation: Create and maintain comprehensive documentation related to security assessments, vulnerability management, and security policies for diverse application types. <br><br>Qualifications<br><br> Education: Bachelor’s / college degree in Computer Science, Information Security, or a related field. Experience: At least 2 years of experience in application security, software development, or a related field. Certifications: Relevant certifications (e.g., BCSP, OSWA, OSWE, e WPT, e WPTX, SEC542) are highly desirable. Technical Skills: Proficiency with security testing tools such as Burp Suite (required), Fortify, Sonar Qube, and Postman (preferred). Strong understanding of secure coding practices and experience with at least one programming language. Knowledge: In-depth knowledge of application security principles and practices, familiar with security frameworks and guidelines (e.g., OWASP Top 10, ASVS, MASVS, WSTG, MSTG). Familiarity with Dev Sec Ops practices and CI/CD pipelines is a plus. <br><br>About Malomatia<br><br> ABOUT US <br><br>malomatia is a leading Qatar-based IT services and solutions provider, bringing together top Qatari and international talent to deliver innovative, end-to-end technology solutions that empower clients to achieve their strategic goals.<br><br>Our mission<br><br>Empowering Qatar’s businesses and governments to leap into the digital future with agile, knowledge-driven solutions.<br><br>Our vision<br><br>To become Qatar’s trusted knowledge partner in digital transformation, disrupting industries, shaping the future, and building a world-class tech ecosystem.<br><br>Driving change that makes a real impact<br><br>Since 2008, malomatia has been driving Qatar’s digital transformation through innovative, ISO-certified IT solutions. With expertise across key public and private sectors, we empower the nation’s vision with advanced services in cloud, cybersecurity, AI, and contact center excellence, elevating the role of technology in shaping Qatar’s sustainable future.<br><br>About The Team<br><br>Established in 2008, malomatia is a Qatari leader in IT services and digital transformation. We serve key sectors including Government, Healthcare, Education, Customs, and Transportation, delivering impactful solutions that support national development goals. Powered by a diverse team of skilled Qatari and international IT professionals, we deliver innovative, high-value digital solutions tailored to the unique needs of our clients.<br><br>Our mission is to inspire customers to thrive through digital excellence, and we envision becoming the trusted partner of choice in building a smarter society through technology and talent. We are driven by core values that define our culture and approach: ownership, integrity, empathy, teamwork, transparency, agility, excellence, trust, and innovation.<br><br>Join us in shaping the future of technology in Qatar
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span></span><p><span>•</span><span> Manage preventive and corrective maintenance performance for all Security Systems.</span><br></p><br><p><span>•</span><span> Lead subject-matter experts and ensure appropriate certified technical coverage and competency.</span><br></p><br><p><span>•</span><span> Review and approve technical method statements, SOPs, and preventive-maintenance schedules.</span><br></p><br><p><span>•</span><span> Provide technical input to the Change Advisory Board for system changes.</span><br></p><br><p><span>•</span><span> Monitor discipline performance and Lead root-cause analysis and problem management report to the Service Delivery Manager.</span><br></p><br><p><span>•</span><span> Ensure high system availability, SLA compliance, preventive-maintenance completion, and reduction in repeat incidents.</span><br></p><br><br><span>Requirements</span><p><span>•</span><span> Bachelor's degree or Diploma in Engineering, IT, or a relevant technical discipline.</span><br></p><br><p><span>•</span><span> Minimum 10 years of hands-on experience with relevant security systems in a large enterprise or airport environment.</span><br></p><br><p><span>•</span><span> Relevant certifications in security-system technologies, particularly Milestone VMS and physical-security systems.</span><br></p><br><p><span>•</span><span> ITIL Foundation certification.</span><br></p><br><p><span>•</span><span> Strong technical knowledge of CCTV, video surveillance, VMS platforms, servers, and related security infrastructure.</span><br></p><br><p><span>•</span><span> Strong OEM/vendor management and technical escalation experience.</span><br></p><br><p><span>•</span><span> Excellent leadership, mentoring, problem-solving, and analytical skills.</span><br></p><br><br> </div>