Security inspector Jobs in Qatar
4053 Jobs Found
Black & Grey HR is recruiting for an established technology solutions and services provider in Doha, Qatar. Our client is seeking an experienced Security Operations Officer – Data Security Specialist responsible for executing and enhancing security operations, monitoring and responding to threats with a focus on mega sports events and non-event periods. Collaborate across teams to implement effective security measures for information systems.<br>Key Responsibilities Data Security Engineering Design and implement data protection controls across enterprise, cloud environments and Artificial Intelligence Solutions. Deploy and manage solutions such as Data Loss Prevention (DLP), data masking, and tokenization. Collaborate with application and infrastructure teams to embed security into data lifecycle management. Implement and manage data discovery and classification tools to identify, categorize, and label sensitive data across the organization. Continuously monitor data security posture and produce regular compliance and risk reports. Assist the incident response team in investigating and responding to data security incidents, including insider threats and breaches.<br>Cloud Data Security Implement and manage data protection controls in GCP and Azure. Secure databases and data lakes. Configure encryption at rest, in transit, and in use, with BYOK strategies. Deploy cloud-native data discovery and classification solutions. Manage secrets management and ensure secure access to data storage systems. Implement controls for AI data governance.<br>Cryptography Define and enforce cryptographic practices and key management standards. Manage enterprise encryption practices for data at rest, in transit, and in use. Ensure compliance with organizational and industry cryptographic standards.<br>Data Privacy Ensure compliance with privacy regulations (GDPR, HIPAA, PDPPL). Embed privacy-by-design principles and requirements into technical controls. Drive data classification and governance programs to safeguard personal and sensitive information.<br>Database Security Secure structured and unstructured data repositories, including relational and NoSQL databases. Implement database activity monitoring (DAM) and user access controls. Perform regular security reviews and hardening of database systems.<br>Collaboration & Governance Collaborate with other stakeholders on data protection strategies. Ensure compliance with Qatar’s NCSA framework and international standards. Conduct data security assessments for vendors and third-party integrations. Review and approve data sharing agreements. Define and track data security KPIs and metrics. Maintain data security dashboards for continuous monitoring. Stay current with emerging threats, technologies, and industry best practices.<br>Requirements8+ years of experience in information security with a focus on data protection, cryptography, and database security. Bilingual (Arabic Speaker) Preferred. Hands-on experience with cloud platforms, especially GCP and Azure. Strong understanding of encryption standards, cryptographic protocols, and key management processes. Practical experience with secrets management (Hashi Corp Vault, AWS Secrets Manager, Azure Key Vault, GCP Secret Manager). Proven expertise in cloud-native data protection across multi-cloud environments. Experience implementing data masking, tokenization, and anonymization techniques. Bachelor’s degree in computer science, Information Security, or related field. Professional certifications such as CISSP, CCSP, CDPSE, or CCSK. Cloud security certifications (GCP, Azure, or AWS Security Specialty) preferred.<br>Required Skillsets Hands-on experience with DLP solutions (Forcepoint, Microsoft Purview, Google Cloud DLP). Implementation of data anonymization, pseudonymization, and masking techniques. Configuration and monitoring of DAM solutions (Imperva, IBM Guardium). Experience with data discovery and classification tools (Forcepoint, Microsoft Purview). Strong knowledge of cryptographic and key management systems (KMS, GCP Cloud KMS, Azure Key Vault). Securing relational, NoSQL, and data lake environments. Performing database vulnerability assessments and security audits. Working knowledge of secret management solutions and integration with CI/CD pipelines.
Position Purpose Summary Principal Information Security Assurance Engineer/ Specialist lead and enforce enterprise-wide security assurance initiatives by evaluating and strengthening security mechanisms across systems, applications, and databases. Conduct comprehensive audits to detect and prevent unauthorized or malicious activities by users and administrators. Drive the adoption and continuous improvement of a secure SDLC framework across the be IN. Oversee and execute regular penetration testing and vulnerability assessments to safeguard the integrity, confidentiality, and availability of information assets. Provide strategic, administrative, and technical leadership to support the Director of Information Security in developing and implementing robust cybersecurity strategies.<br>Key Responsibilities and Accountabilities Review audit log of user applications, profile administration activities and privileged users, review objects/services access and usage. Audit operational change due to the change request. Audit privileged level access and changes to services, applications, databases. Ensure security mechanisms are considered within the SDLC. Conduct periodically internal penetration testing in assigned areas and contribute to the assessment of the security posture across all of infrastructure and oversee scheduled and event/service driven external penetration testing. Conduct vulnerability scanning and be able to interpret the results. Tracks and coordinate the security patching activities with relevant teams and provide the required support. Assess change request for the risk it poses to application and databases security and review the subsequent impact on operations. Approve the request after checking for approval from necessary authorities. Examine mechanisms and technologies in achieving and optimizing security controls and processes. To provide support and analysis during and after a security incidents, as necessary. Analyzes general information assurance-related technical problems and provide support in solving these problems. Research security enhancements and make recommendations to management. Coordinate the activities related to Information Security Projects.<br>Education Minimum Bachelor Degree in IT, Computer Science, Cyber Security, Business Administration or related field.<br>Experience Minimum 6 years of experience in IT domain, penetration testing, professional experience in corporate Applications Security, Analysis and Solutions Delivery or in any similar role.<br>Please refer to our privacy policy to know more about how we process your personal data
Position Purpose Summary Principle Information Security Assurance Engineer/ Specialist lead and enforce enterprise-wide security assurance initiatives by evaluating and strengthening security mechanisms across systems, applications, and databases. Conduct comprehensive audits to detect and prevent unauthorized or malicious activities by users and administrators. Drive the adoption and continuous improvement of a secure SDLC framework across the be IN. Oversee and execute regular penetration testing and vulnerability assessments to safeguard the integrity, confidentiality, and availability of information assets. Provide strategic, administrative, and technical leadership to support the Director of Information Security in developing and implementing robust cybersecurity strategies.<br>Key Responsibilities and Accountabilities Review audit log of user applications, profile administration activities and privileged users, review objects/services access and usage. Audit operational change due to the change request. Audit privileged level access and changes to services, applications, databases. Ensure security mechanisms are considered within the SDLC. Conduct periodically internal penetration testing in assigned areas and contribute to the assessment of the security posture across all of infrastructure and oversee scheduled and event/service driven external penetration testing. Conduct vulnerability scanning and be able to interpret the results. Tracks and coordinate the security patching activities with relevant teams and provide the required support. Assess change request for the risk it poses to application and databases security and review the subsequent impact on operations. Approve the request after checking for approval from necessary authorities. Examine mechanisms and technologies in achieving and optimizing security controls and processes. To provide support and analysis during and after a security incidents, as necessary. Analyzes general information assurance-related technical problems and provide support in solving these problems. Research security enhancements and make recommendations to management. Coordinate the activities related to Information Security Projects.<br>Education Minimum Bachelor Degree in IT, Computer Science, Cyber Security, Business Administration or related field.<br>Experience Minimum 6 years of experience in IT domain, penetration testing, professional experience in corporate Applications Security, Analysis and Solutions Delivery or in any similar role.<br><br>Please refer to our privacy policy to know more about how we process your personal data
Position Purpose Summary Principle Information Security Assurance Engineer/ Specialist lead and enforce enterprise-wide security assurance initiatives by evaluating and strengthening security mechanisms across systems, applications, and databases. Conduct comprehensive audits to detect and prevent unauthorized or malicious activities by users and administrators. Drive the adoption and continuous improvement of a secure SDLC framework across the be IN. Oversee and execute regular penetration testing and vulnerability assessments to safeguard the integrity, confidentiality, and availability of information assets. Provide strategic, administrative, and technical leadership to support the Director of Information Security in developing and implementing robust cybersecurity strategies.<br>Key Responsibilities and Accountabilities Review audit log of user applications, profile administration activities and privileged users, review objects/services access and usage. Audit operational change due to the change request. Audit privileged level access and changes to services, applications, databases. Ensure security mechanisms are considered within the SDLC. Conduct periodically internal penetration testing in assigned areas and contribute to the assessment of the security posture across all of infrastructure and oversee scheduled and event/service driven external penetration testing. Conduct vulnerability scanning and be able to interpret the results. Tracks and coordinate the security patching activities with relevant teams and provide the required support. Assess change request for the risk it poses to application and databases security and review the subsequent impact on operations. Approve the request after checking for approval from necessary authorities. Examine mechanisms and technologies in achieving and optimizing security controls and processes. To provide support and analysis during and after a security incidents, as necessary. Analyzes general information assurance-related technical problems and provide support in solving these problems. Research security enhancements and make recommendations to management. Coordinate the activities related to Information Security Projects.<br>Education Minimum Bachelor Degree in IT, Computer Science, Cyber Security, Business Administration or related field.<br>Experience Minimum 6 years of experience in IT domain, penetration testing, professional experience in corporate Applications Security, Analysis and Solutions Delivery or in any similar role.<br><br>Please refer to our privacy policy to know more about how we process your personal data
Position Purpose Summary Principle Information Security Assurance Engineer/ Specialist lead and enforce enterprise-wide security assurance initiatives by evaluating and strengthening security mechanisms across systems, applications, and databases. Conduct comprehensive audits to detect and prevent unauthorized or malicious activities by users and administrators. Drive the adoption and continuous improvement of a secure SDLC framework across the be IN. Oversee and execute regular penetration testing and vulnerability assessments to safeguard the integrity, confidentiality, and availability of information assets. Provide strategic, administrative, and technical leadership to support the Director of Information Security in developing and implementing robust cybersecurity strategies.<br>Key Responsibilities and Accountabilities Review audit log of user applications, profile administration activities and privileged users, review objects/services access and usage. Audit operational change due to the change request. Audit privileged level access and changes to services, applications, databases. Ensure security mechanisms are considered within the SDLC. Conduct periodically internal penetration testing in assigned areas and contribute to the assessment of the security posture across all of infrastructure and oversee scheduled and event/service driven external penetration testing. Conduct vulnerability scanning and be able to interpret the results. Tracks and coordinate the security patching activities with relevant teams and provide the required support. Assess change request for the risk it poses to application and databases security and review the subsequent impact on operations. Approve the request after checking for approval from necessary authorities. Examine mechanisms and technologies in achieving and optimizing security controls and processes. To provide support and analysis during and after a security incidents, as necessary. Analyzes general information assurance-related technical problems and provide support in solving these problems. Research security enhancements and make recommendations to management. Coordinate the activities related to Information Security Projects.<br>Education Minimum Bachelor Degree in IT, Computer Science, Cyber Security, Business Administration or related field.<br>Experience Minimum 6 years of experience in IT domain, penetration testing, professional experience in corporate Applications Security, Analysis and Solutions Delivery or in any similar role.<br><br>Please refer to our privacy policy to know more about how we process your personal data
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p><strong><u>Communication</u></strong></p><br><p><strong>Internal Communication</strong><br>- Manager - Security<br>- Operational Managers<br><strong>Purpose</strong><br>- To report on implementation effectiveness of Security strategy, Security performance outputs and related risk, compliance/non-conformance, incidents’ outcome and investigation findings<br>- To direct operational management response so as to ensure effective implementation of Security strategy, attain Security performance requirements, mitigate Security related risk, achieve regulatory and obligation compliance</p><br><p><br><strong>External Communication</strong><br>- Contracted security provider and their employees<br><strong>Purpose</strong><br>- To manage effective application of Security strategy with the operational environment, Milaha HSSEQ framework, HSSEQ related risk identification and control processes, Compliance mapping</p><br><p><strong><u>Occupational Health & Safety and Environment</u></strong></p><br><p><strong>Accountability</strong><br>Are accountable for their acts and omissions.</p><br><p><strong>Responsibility</strong><br>To follow agreed safe systems of work; to follow training and instructions; and to report accidents, incidents and near misses.</p><br><p><strong>Authority</strong><br>To stop work if they think the work is unsafe.</p><br><br>Responsibilities:<br><p><strong><u>Key Roles & Responsibilities</u></strong><br>• Coordinate and monitor execution of contracted security providers Service Level Agreements (SLAs), key performance indicators, capacity, workflow plans for multiple sites to ensure delivery of a professional service which minimises potential disruption to business continuity, security risks, and undesirable conditions<br>• Maintain a proactive and effectual security oversight of all Milaha venues not covered by Contracted security providers<br>• Maintain awareness of all current regulations, laws, guidelines, and provide feedback to the Manager - Security to ensure loss prevention policies and procedures are in compliance<br>• Draft and propose bespoke technical procedures, specialist manuals, checklists and forms in order to provide documented work procedures and processes, support business continuity, provide continual improvement and operate to international standards in line with client, contractual and regulatory compliance requirements<br>• Investigate incidents relating to reported stock losses, theft, claims, damages, suspicious activity and other operational incidents using the collected information to compile comprehensive report to Manager – Security<br>• Prepare all required reports, including internal and external security-related communications as directed by Manager – Security, review such reports in a timely manner with management team and take appropriate action as necessary to address any report discrepancies or operational issues<br>• Provide clear, concise inspection reports and relevant non-conformities to department and business unit managers where relevant to enable corrective actions to be undertaken<br>• Create, modify and ensure a smooth-running operation by enforcing post specific policies and procedures through proper communication and training. Ensuring that post instructions and schedules are maintained and are updated regularly<br>• Establish and oversee property emergency and applicable security programs in accordance with regulatory compliance<br>• Direct response to emergency situations including, but not limited to medical emergencies, and threats to life and/or property<br>• Create and conduct security training programs, ensure that all staff receive the appropriate training on loss prevention and security matters<br>• Identify opportunities and risks within Security and propose improvements to existing processes<br>• Liaise with all stakeholders (external and internal) maintaining effective communication links to proactively resolve any queries/issues that may arise<br>• Act as a primary focal point for local building code officials, government and law enforcement agencies as required<br>• Perform job related duties as assigned<br>Decision Making Authority:<br>• Autonomous authority to make operational decisions regarding the implementation of approved physical security policy and procedure at any Milaha site or vessel<br>• May undertake whatever corrective action they feel reasonable at a given point in time to mitigate risk to people, environment or property</p><br><br>Qualifications:<br><p><strong>Education & Professional Qualification </strong><br>- 3-year Full Time Degree (Associated Degree) from a recognised institution, or 2-year Full Time Graduate Diploma in Security<br>- Preferred qualifications of specific tradecraft such as Emergency Management, Access Control, Physical Hardening, Fire Safety etc.</p><br><p><strong>Professional Experience </strong><br>- 3 - 5 years of experience in Security profession in high risk environment<br>- At least 2 years of supervisory experience of operational functions within physical security provision</p><br><p><strong>Geographic Experience </strong><br>- Not required</p><br><p><strong>Computer Skills </strong><br>- Good knowledge of Office and web applications<br>- Advanced MS Excel and PowerPoint skills</p><br><p><strong>Language Skills </strong><br>- Fluent spoken and written Arabic & English</p><br><p><strong>Market/Industry/Functional Knowledge</strong><br>- Not required</p><br> </div>
Note: By applying to this position you will have an opportunity to share your preferred working location from the following: Dubai - United Arab Emirates; Doha, Qatar; Riyadh Saudi Arabia. Minimum qualifications:<br><br>Bachelor's degree in Cybersecurity, with a focus on offensive security or equivalent practical experience.3 years of experience in three of the following security areas: web application security assessment, mobile application security assessment, API security assessment, red team assessments, EDR evasion, exploit development, cloud, social engineering, scripting, tool development. Experience delivering reporting and presentations to both technical and executive audiences. Experience with operating system security across operating systems or Linux.<br><br>Preferred qualifications:<br><br>Certifications related to application security including BSCP, OSWE, e WPTX, e MAPT, 8ksec CMSE or relevant SANS courses. Experience in creating security tools and understanding of underlying programming languages (such as Python, C#, C/C++, Rust, Nim or similar). Experience conducting web application, API, and mobile (i OS and Android) security assessments following industry standards such as OWASP WSTG/ASVS, OWASP Top 10, OWASP API Top 10 and OWASP MASVS/MASTG. Experience in web application and API penetration testing tooling including Burp Suite Professional, Burp Suite extensions, Postman, nuclei, ffuf and sqlmap.<br><br>About The Job<br><br>As a Security Consultant, you will be responsible for helping clients effectively prepare for, proactively mitigate, and detect and respond to cyber security threats. Security Consultants have an understanding of computer science, operating system functionality and networking, cloud services, corporate network environments and how to apply this knowledge to cyber security threats.<br><br>As a Security Consultant, you could work on engagements including assisting clients in navigating technically complex and high-profile incidents, performing forensic analysis, threat hunting, and malware triage. You may also test client networks, applications and devices by emulating the latest techniques to help them defend against threats, and will be the technical advocate for information security requirements and provide an in-depth understanding of the information security domain. You will also articulate and present complex concepts to business stakeholders, executive leadership, and technical contributors and successfully lead complex engagements alongside cross functional teams.<br><br>We are seeking a highly skilled and experienced Application Security Consultant to join the team.<br><br>In this role, you will be responsible for providing cybersecurity consulting services and support to the clients, including assessing and advising clients on both technical and process-based controls for all manner of environments.<br><br>Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.<br><br>Responsibilities<br><br>Conduct comprehensive security assessments of Web applications, APIs, and Mobile applications by identifying, exploiting and validating vulnerabilities using industry-standard methodologies such as the OWASP Web Security Testing Guide (WSTG), OWASP API Security Top 10, and OWASP Mobile Application Security Testing Guide (MASTG). Discover critical vulnerabilities in applications and be able to weaponize them. Expand the team’s capabilities through tool creation, research on offensive techniques, incorporation of threat actor intelligence, internal presentations and knowledge share. Develop comprehensive and accurate reports and presentations for both technical and executive audiences, and act as a trusted advisor to c-level, security leaders and other customer stakeholders. Assist with scoping prospective engagements, leading teams for engagements from kickoff through remediation phase, as well as mentoring other staff.<br><br><br>Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also Google's EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know by completing our Accommodations for Applicants form .
Job Overview<br><br>An established organization is seeking an experienced Security Supervisor to oversee security personnel and ensure the effective delivery of security operations across commercial facilities.<br><br>Key Responsibilities<br><br>Supervise security officers during assigned shifts. Monitor access control and CCTV operations. Conduct routine patrols and inspections. Manage incident reporting and investigations. Ensure compliance with security procedures. Coordinate emergency response activities. Train and mentor security staff. Prepare operational reports.<br><br>Requirements<br><br>Minimum 5 years' experience in the security industry. Previous supervisory experience. Fluent in both Arabic and English (spoken and written). Able to attend client interviews before deployment. Strong leadership and communication skills.<br><br>Preferred<br><br>Security-related certifications. First Aid Certificate. Valid Qatar Driving Licence.
Job Description<br><br> Job Details: <br><br> Position Title: Cybersecurity Specialist<br><br> Reports to: IT Manager<br><br> Department: Information Technology (IT)<br><br>Job Purpose<br><br>To lead and oversee GDI’s information security IT operations, network infrastructure, and Operational Technology (OT) environments, ensuring the confidentiality, integrity, and availability of IT and industrial systems (IACS). The role is responsible for leading IT security operations, vulnerability management, incident response, and compliance in alignment with ISMS (ISO 27001) and relevant industrial cybersecurity standards, including ISA/IEC 62443. The role also provides technical direction and oversight of IT operational functions, including Network Administration, to ensure secure, resilient, and efficient technology service delivery across the organization.<br><br>Description<br><br> Key Accountabilities: <br><br>Network Infrastructure & Connectivity Support<br><br> Lead and oversee the secure design, implementation, operation, and continuous improvement of GDI’s network infrastructure to ensure availability, performance, resilience, and security across corporate and operational environments. Supervise network administration activities, including routers, switches, firewalls, VPN services, wireless networks, communication platforms, and related infrastructure technologies, to ensure compliance with approved security standards, operational requirements, and best practices. Ensure reliable and secure connectivity for users, systems, operational technologies, and external integrations through continuous monitoring, performance management, and proactive resolution of network-related issues. Enforce network security controls, including segmentation, access control, monitoring, logging, and secure communications, to protect organizational assets and support compliance with ISMS and regulatory requirements. Provide technical direction and oversight to Network Administration resources to ensure effective service delivery, compliance with service levels, and consistent implementation of operational and security procedures. Coordinate with internal stakeholders and external service providers to support communication systems, data center connectivity, VSAT services, internet services, and third-party connectivity requirements. Support incident response, business continuity, and disaster recovery activities by maintaining network resilience, availability, recoverability, and operational readiness. Ensure the security of Operational Technology (OT) and Industrial Automation and Control Systems (IACS) environments through network segmentation, secure remote access controls, monitoring activities, and implementation of applicable industrial cybersecurity requirements (including ISA/IEC 62443 standards). <br><br>Network Security & Access Control<br><br> Lead and oversee the implementation, operation, and continuous improvement of network security controls and access management frameworks to protect GDI’s information assets, infrastructure, and operational environments. Define and enforce secure access requirements relating to authentication, authorization, network segmentation, privileged access, and remote connectivity in alignment with ISMS requirements, cybersecurity standards, and regulatory obligations. Oversee administration of identity and access controls across network and security environments and ensure adherence to the principles of least privilege and segregation of duties. Direct the configuration, management, and optimization of firewalls, VPNs, Network Access Control (NAC) solutions, intrusion detection and prevention technologies, and related security platforms in coordination with Network Administration resources. Monitor and review access rights, privileged accounts, network security events, and security logs to identify unauthorized activities and ensure compliance with approved security requirements. Coordinate periodic access reviews, access recertification activities, and remediation actions to maintain appropriate access governance and security compliance. Provide technical guidance on secure network architecture, access control design, and security requirements to support business needs while maintaining an effective security posture. Support incident investigations, forensic reviews, compliance assessments, and audit activities relating to network security and access management. <br><br>Incident Management & Operational Security Support<br><br> Lead and govern the end-to-end incident management process for IT and security-related events, ensuring timely detection, response, resolution, and documentation in line with approved procedures and SLAs. Establish and maintain incident management processes, escalation procedures, communication protocols, and reporting mechanisms aligned with ISMS requirements and business continuity objectives. Oversee monitoring, triage, analysis, prioritization, and escalation of cybersecurity and operational incidents and coordinate response activities with internal teams and external service providers. Direct incident response and recovery activities, ensuring root cause analyses are completed and corrective actions are implemented to prevent recurrence and strengthen operational resilience. Provide technical leadership and guidance to IT support and Network Administration teams in resolving complex incidents and maintaining service availability. Ensure incident records, investigation findings, response activities, and closure documentation are accurately maintained to support audit, compliance, and performance monitoring requirements. Develop and maintain incident response playbooks, coordinate incident response exercises, and support disaster recovery and business continuity readiness activities. <br><br>Vulnerability Management<br><br> Lead and govern GDI’s vulnerability management program to ensure timely identification, assessment, prioritization, remediation, and reporting of vulnerabilities across systems, networks, applications, cloud environments, and operational technologies. Oversee vulnerability scanning, assessment, reporting, and remediation activities and ensure identified vulnerabilities are appropriately risk-ranked, assigned, tracked, and resolved through approved remediation processes. Direct implementation of corrective actions, patch management activities, configuration hardening initiatives, and security improvement measures in coordination with Network Administration and other IT resources. Provide analysis, reporting, and recommendations regarding security risks, vulnerability trends, threat exposure, and remediation performance to management and relevant stakeholders. Support incident investigations, audit activities, compliance assessments, and security reviews through provision of vulnerability management data, remediation evidence, and security assurance information. Oversee vulnerability identification and remediation activities relating to OT and IACS environments in alignment with industrial cybersecurity requirements and operational risk considerations. <br><br>Compliance, Audit & Risk Management<br><br> Ensure compliance with information security policies, standards, ISMS (ISO 27001) requirements, industrial cybersecurity requirements, and applicable regulatory obligations through effective implementation and monitoring of security controls and operational practices. Coordinate internal audits, external audits, cybersecurity assessments, certification activities, compliance reviews, and remediation programs to support audit readiness and ongoing compliance. Oversee identification, tracking, reporting, and remediation of audit findings, non-conformities, security observations, and control gaps and ensure corrective actions are completed within agreed timelines. Maintain security documentation, policies, procedures, access review records, vulnerability management records, incident documentation, and audit evidence required to support compliance and assurance activities. Conduct and coordinate security risk assessments, vulnerability risk assessments, and control reviews and ensure identified risks are appropriately documented and incorporated into relevant risk registers. Monitor implementation of risk treatment plans, mitigation activities, and corrective actions and provide reporting on residual risks, remediation progress, and risk exposure. Prepare and present security risk reports, compliance updates, assessment results, and cybersecurity insights to management and stakeholders to support informed decision-making. Conduct cybersecurity risk assessments relating to Operational Technology (OT) and Industrial Automation and Control Systems (IACS), considering operational impacts, safety implications, and applicable industrial cybersecurity requirements. <br><br>Communications & Working Relationships<br><br>Internal<br><br> IT Manager and IT Teams Operations, Technical, Finance, Internal Audit, Governance, HR, and QHSE Teams <br><br>External<br><br> Infrastructure, Cybersecurity, Telecommunications and Managed Service Providers Cloud Service Providers and Technology Vendors Hardware, Software, Network, and Communication Systems Vendors External Technical Consultants <br><br>Context, Work Environment & Decision-Making Authority<br><br> Operates within a security-critical technology environment supporting GDI’s Information Security Management System (ISMS), cybersecurity strategy, network infrastructure, enterprise technology platforms, and Operational Technology (OT) environments. Leads cybersecurity operations, network security, vulnerability management, incident response, compliance, and risk management activities across corporate and operational technology environments. Provides technical leadership, oversight, and direction to Network Administration and IT support resources to ensure compliance with security standards, operational requirements, and approved procedures. Exercises professional judgment in assessing cybersecurity risks, directing incident response activities, implementing security controls, prioritizing remediation actions, and recommending security improvements within approved governance frameworks. Monitors emerging cybersecurity threats, vulnerabilities, regulatory developments, and industrial cybersecurity requirements and recommends actions to strengthen organizational security posture and resilience. Escalates significant cybersecurity risks, major incidents, control deficiencies, and compliance concerns to IT Management for resolution and strategic decision-making. <br><br>Minimum Qualifications<br><br>Qualifications, Experience & Skills: <br><br> Bachelor’s degree in information technology, Computer Science or a related field from an internationally recognized university or relevant proven experience. Professional certifications such as CISSP, CISM, CEH, Security+, GSEC, GIAC certifications, or equivalent are preferred. Knowledge of information security and industrial cybersecurity standards, including ISO/IEC 27001 and ISA/IEC 62443. Familiarity with Operational Technology (OT), Industrial Automation and Control Systems (IACS), and IT/OT convergence principles is advantageous . <br><br>Minimum Experience<br><br> Minimum of 8 years of relevant experience in IT security or cybersecurity roles, including exposure to network security, vulnerability management, incident response, and familiarity with OT/IACS environments is an advantage. <br><br>Job-Specific Skills (Generic / Technical)<br><br> Strong knowledge of network security architecture, network administration, access control frameworks, and cybersecurity technologies including firewalls, VPNs, NAC, SIEM, endpoint security, and monitoring platforms. Strong understanding of incident response, vulnerability management, threat mitigation, security operations, risk assessment, and security governance practices. Knowledge of information security management systems, ISO 27001 requirements, cybersecurity compliance practices, and audit readiness requirements. Good understanding of Operational Technology (OT), Industrial Automation and Control Systems (IACS), industrial cybersecurity principles, ISA/IEC 62443 requirements, and IT/OT convergence environments. Ability to assess cybersecurity risks, analyze vulnerabilities, investigate incidents, and recommend practical mitigation and remediation strategies. Strong leadership, stakeholder management, communication, and coordination skills with the ability to guide technical teams and collaborate effectively with business and technology stakeholders. Strong analytical, problem-solving, decision-making, and incident management capabilities in complex operational environments. Ability to manage multiple priorities, security initiatives, incidents, and operational activities in a fast-paced environment. Language proficiency: English (required).
About The Role<br><br>Our client is seeking a SCADA Cyber Security Engineer to support the secure operation of critical operational technology (OT) environments across a major infrastructure network. The role will focus on cyber security, industrial communications, network monitoring and SCADA system reliability.<br><br>Key Responsibilities<br><br>Monitor and maintain secure OT and SCADA communications. Support cyber security systems and network management platforms. Monitor communication performance across operational systems. Investigate cyber security incidents and implement corrective actions. Coordinate with internal IT teams and external vendors. Support server maintenance and communications infrastructure. Produce security, network performance and operational reports. Review cyber security risks and recommend improvements. Support disaster recovery and business continuity initiatives.<br><br>Requirements<br><br>Bachelor's degree in Engineering or related discipline. Minimum 10 years' experience supporting SCADA or Industrial Control Systems. Experience within utilities, water, wastewater, energy or critical infrastructure. Strong knowledge of industrial cyber security and network management. Experience with SCADA, OT systems, networking and communications. Understanding of cyber security standards and best practices. Excellent troubleshooting and stakeholder management skills.
<p>The Security Manager in ensuring the safety and security of guests, employees, and property at Banyan Tree Doha. The role is responsible for assisting in the implementation of security strategies, emergency preparedness, loss prevention, fire & life safety, and compliance with hotel policies, operational standards, and legal requirements.</p><p>Assist in planning, implementing, and monitoring hotel security policies, procedures, and operational standards. Supervise daily security operations including patrols, access control, CCTV monitoring, incident reporting, and loss prevention. Ensure strict control of back-of-house access for contractors, suppliers, and visitors; issue and manage visitor passes. Maintain confidentiality of all security-related records and investigations. Review daily security logbooks and reports; escalate critical issues to the Security Manager promptly. Ensure full readiness for all emergency situations in accordance with hotel procedures. Coordinate closely with Engineering to conduct regular inspections and preventive maintenance of all safety and fire-fighting equipment. Establish, review, and update emergency manuals, fire & safety procedures, and crisis management plans. Conduct and coordinate regular fire drills, evacuation exercises, and emergency simulations. Maintain strong working relationships with local Police, Fire Brigade, and relevant authorities; conduct regular courtesy visits. Train all employees on basic security awareness and emergency responsibilities. Conduct specialized training for Security team members, including: Fire prevention & basic fire-fighting Life-saving techniques Crime scene preservation Crisis response & report writing Guest interaction, psychology, and public relations Coordinate with Human Resources & L&D to plan and execute continuous technical and skills training programs. Ensure full compliance with the Integrated Management System (IMS), including: Quality Management Environmental Management Occupational Health & Safety Food Safety Customer Complaint Handling Actively participate in risk management, environmental protection, energy & water-saving initiatives, and continuous improvement programs.</p><p><strong>Desired Candidate Profile</strong></p><p>Qualifications</p><ul><li>Attention to detail</li><li>Reliability and strong work ethic</li><li>Ability to follow instructions and take initiative</li><li>Creativity and passion for food</li></ul>
Key Responsibilities Customer Engagement & Strategy Opportunity Qualification: Partner with Account Executives to technically qualify sales leads, ensuring alignment between client budgets, timelines, and our delivery capabilities. Requirement Gathering & Analysis: Lead deep-dive discovery sessions to uncover clients' current security posture, pain points, regulatory compliance gaps, and business objectives. Customer Workshops & Assessments: Design and execute technical workshops and high-level maturity assessments to identify vulnerabilities and position relevant security frameworks. Solution Architecture & Proposal Development Solution Architecture & Design: Architect robust, end-to-end cybersecurity solutions that integrate seamlessly into diverse client environments (on-premises, hybrid, and multi-cloud). RFI/RFP/RFQ Response Preparation: Own the technical response strategy for complex tenders, ensuring comprehensive compliance, competitive differentiation, and timely submission. Bill of Material (BoM) Creation: Engineer accurate, cost-optimized multi-vendor BoMs, leveraging vendor frameworks and discount structures to maximize profitability. Statement of Work (SoW) Preparation: Author highly detailed SoWs that define the exact project scope, technical deliverables, assumptions, milestones, and out-of-scope boundaries to mitigate delivery risk. Technical Validation & Sales Enablement Technical Presentations & Demonstrations: Deliver high-impact technical presentations and tailored product demonstrations that clearly articulate the business value and ROI of the proposed architecture. Proof of Concept (PoC) Management: Define success criteria, scope, and execute PoCs and Proof of Values (PoVs) to technically validate solutions and overcome buyer hesitations. Vendor Coordination: Maintain strong relationships with strategic security vendors to stay ahead of product roadmaps, secure specialized deal pricing, and co-architect complex solutions. Project Handover to Delivery Teams: Lead comprehensive post-sale handover sessions with implementation and delivery teams to ensure flawless execution. Sales Enablement: Conduct internal training sessions for the broader sales team on new security technologies, vendor programs, and competitive displacement strategies.<br>Technical Competencies The ideal candidate must demonstrate mid-to-senior level architectural and conceptual expertise across the following domains:Network & Edge Security: Secure Web Gateway (SWG), Forward/Reverse Proxy Solutions, Web Application Firewall (WAF), and DDoS Protection. Content & Endpoint Security: Next-Generation Endpoint Security, Endpoint Detection & Response (EDR), Extended Detection & Response (XDR), and Email Security ecosystems. Security Operations & Automation: Security Orchestration, Automation, and Response (SOAR), Threat Intelligence Platform (TIP) integration, and Vulnerability Management life cycles. Identity & Access Governance: Privileged Access Management (PAM), Identity and Access Management (IAM), and Directory Services. Modern Security Architectures: Zero Trust Architecture (ZTA) design, Secure Access Service Edge (SASE), and Security Service Edge (SSE). Cloud & Data Security: Cloud Security Posture Management (CSPM), Cloud Workload Protection (CWPP), Data Loss Prevention (DLP), and data encryption/masking strategies.<br>Preferred Vendor Knowledge While platform-agnostic architectural skills are essential, practical presales or implementation experience with a combination of the following vendor ecosystems is highly valued:Next-Gen Firewall & SASE: Palo Alto Networks (Strata/Prisma), Fortinet (Forti Gate/Forti SASE) Endpoint & XDR: Paloalto, Trend Micro, Crowd Strike Network Visibility & NDR: Extra Hop, Darktrace, Vectra AI, Trellix Application & Edge Delivery: F5 (BIG-IP, Distributed Cloud), Cloudflare Email Security: Proofpoint, Fortinet, Trellix Identity & Privileged Access: Delinea, Xage, Beyond Trust Cloud Security & SSE: Zscaler, Netskope Vulnerability Management: Tenable, Trellix Qualifications & Certifications Academic Background Required: Bachelor’s degree from an accredited institution in Computer Science, Cyber Security, Information Technology, Computer Engineering, or a closely related technical field.<br>Professional Certifications Candidates are expected to hold, or be actively pursuing, certifications that validate both broad security knowledge and vendor-specific expertise:Core Security Knowledge: CISSP (preferred), CISM, or CCSP. Technical Foundations: CEH (Certified Ethical Hacker) or Comp TIA Security+. Vendor-Specific Tracks: Fortinet NSE (Level 4 or higher), Palo Alto Networks PCNSE, or Cisco Security Certifications (CCNP Security).<br>Experience Requirements Presales Expertise: At least 3–5 years dedicated to a customer-facing Cyber Security Presales role, driving technical wins within a System Integrator or Value-Added Reseller (VAR). Consulting & Design: Proven track record of conducting security consultations and building defense-in-depth enterprise architectures. Tendering Proficiency: Demonstrable experience independently managing, writing, and winning high-value RFP/RFI responses for both commercial enterprises and public sector/government entities. Sector Exposure: Significant experience navigating the distinct procurement processes, compliance requirements, and stakeholder landscapes of enterprise corporations and government agencies.<br>Soft Skills & Leadership Attributes Executive Presentation Skills: Ability to command a room, articulating highly technical, granular security risks into clear, business-driven outcomes for C-level executives. Communication & Relationship Management: Exceptional verbal and written communication skills; a natural ability to build rapport and establish long-term technical credibility with clients. Analytical Thinking & Problem Solving: Methodical approach to deconstructing chaotic, poorly defined client environments into structured, secure, and compliant architectures. Collaboration & Time Management: Ability to self-manage tight tender deadlines, multi-task across concurrent sales opportunities, and collaborate seamlessly across cross-functional teams (Sales, Delivery, Finance, Vendors). Leadership Potential: Drive to mentor junior presales engineers, take ownership of specific technology practices, and champion internal process improvements.
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<br>Company Description<br><br><p><strong>Rixos Premium Qetaifan Island North</strong> stands as a premier luxury destination on the dynamic, man-made Qetaifan Island off the coast of Lusail, Doha. Operating under the renowned Accor umbrella, this five-star resort seamlessly blends high-end hospitality with adrenaline-pumping entertainment, making it one of Qatar’s most sought-after lifestyle and leisure hubs.</p><br><br>Job Description<br><br><p>We are seeking a detail-oriented and professional HSE Security Officer to join our team in Lusail, Qatar. In this role, you will be responsible for maintaining a safe, secure, and compliant work environment by implementing and enforcing health, safety, and security protocols. You will play a critical role in protecting our organization's assets, personnel, and operations while ensuring adherence to local and international HSE standards.</p><br><ul><li>Conduct regular security patrols and surveillance of company premises, including buildings, parking areas, and restricted zones</li><li>Monitor and manage access control systems, CCTV cameras, and alarm systems to ensure facility security</li><li>Identify, assess, and document potential health, safety, and security hazards throughout the workplace</li><li>Investigate security incidents, accidents, and near-misses; prepare detailed reports and recommend corrective actions</li><li>Enforce compliance with HSE policies, procedures, and Qatar labor law requirements</li><li>Respond promptly to security breaches, emergencies, and safety incidents; coordinate with emergency services when necessary</li><li>Conduct safety inspections and audits to verify adherence to established protocols</li><li>Maintain accurate and organized records of security incidents, inspections, and maintenance activities</li><li>Provide security briefings and HSE training to employees on relevant policies and procedures</li><li>Collaborate with management and other departments to develop and improve safety and security initiatives</li><li>Ensure proper use and maintenance of personal protective equipment (PPE) across the organization</li><li>Monitor visitor access and maintain visitor logs in compliance with security procedures</li></ul><br>Qualifications<br><br><ul><li>Proven experience as a Security Officer, HSE Officer, or similar role in a corporate or industrial environment</li><li>Strong knowledge of health, safety, and environmental (HSE) regulations and best practices</li><li>Familiarity with Qatar labor laws and local HSE compliance requirements</li><li>Proficiency in security systems, access control, and CCTV monitoring</li><li>Excellent analytical and risk assessment skills</li><li>Strong written and verbal communication abilities</li><li>Exceptional organizational and record-keeping skills</li><li>Ability to remain calm and make decisive decisions in emergency situations</li><li>Physical fitness and ability to perform regular patrols and inspections</li><li>Proficiency in incident investigation and root cause analysis</li><li>Knowledge of emergency response procedures and protocols</li><li>Preferred: First aid/CPR certification or equivalent</li><li>Preferred: Previous experience with security clearance processes</li><li>Preferred: Leadership or supervisory experience in security or safety roles</li><li>Preferred: Conflict resolution and de-escalation skills</li></ul> </div>
General Description<br>Join a leading consulting engagement supporting a major enterprise organization in Doha, Qatar, supporting enterprise-wide adoption of Artificial Intelligence, Generative AI, and intelligent automation platforms.<br>We are looking for an experienced AI Security Expert to help establish secure AI practices, governance frameworks, and security controls across emerging AI technologies including agent-based AI solutions, AI-as-a-Service platforms, Microsoft Copilot, Service Now AI, Snowflake AI capabilities, and other enterprise AI solutions.<br>This role focuses on securing the entire AI lifecycle, from architecture and development through deployment, governance, monitoring, and incident response. The selected consultant will work closely with AI engineering teams, enterprise architects, cybersecurity specialists, and business stakeholders to ensure AI solutions are deployed securely, responsibly, and in accordance with organizational risk and governance requirements.<br>This opportunity is ideal for professionals with hands-on experience securing Generative AI, LLM platforms, AI governance, AI threat modelling, and Responsible AI initiatives within enterprise environments.<br>This is a 12-month contract / freelance engagement.<br>Key Responsibilities<br>AI Security Architecture Review security controls for agent-based AI solutions, AI-as-a-Service platforms, and embedded AI capabilities Assess AI solution architectures to ensure secure design and deployment Recommend AI-specific security controls aligned with enterprise cybersecurity standards Support secure implementation of enterprise AI technologies including Microsoft Copilot, Service Now AI, and Snowflake AI capabilities.<br>AI Threat Modelling Perform lifecycle-based threat modelling for AI applications and intelligent systems Identify AI-specific attack vectors, risks, and vulnerabilities Develop mitigation strategies for AI workloads and Large Language Model (LLM) implementations Support secure design throughout the AI development lifecycle.<br>AI Governance & Responsible AIDefine Secure AI Dataset Governance practices Establish Responsible AI controls and governance frameworks Develop secure AI architecture, hosting, and development standards Support AI risk management and regulatory compliance initiatives Recommend AI deployment best practices across enterprise environments.<br>AI Incident Response & Security Operations Develop AI-specific Incident Detection and Response Plans Create AI security playbooks and response procedures Support AI monitoring, threat detection, and security readiness initiatives Recommend security controls for AI model deployment and operational monitoring.<br>Stakeholder Engagement & Advisory Collaborate with AI engineering teams, enterprise architects, cybersecurity teams, and business stakeholders Provide expert guidance on AI security strategy and governance Participate in architecture reviews and AI security assessments Produce documentation, security recommendations, governance standards, and architecture guidance.<br>Required Experience Practical experience (approximately 1–3 years) securing enterprise AI platforms, Generative AI solutions, or intelligent automation technologies Experience securing agent-based AI systems, AI-as-a-Service platforms, or embedded AI capabilities Strong understanding of AI threat modelling methodologies Experience designing secure AI architectures and AI security controls Knowledge of Responsible AI principles and AI governance frameworks Experience developing AI Incident Detection and Response Plans Familiarity with AI dataset governance, secure AI development, and AI deployment practices Experience working with enterprise AI technologies such as Microsoft Copilot, Service Now AI, Snowflake AI, or similar platforms is highly desirable Knowledge of LLM security concepts, AI risk management, and emerging AI threats is advantageous Strong stakeholder communication and documentation skills Experience within enterprise or consulting environments is preferred Immediate or short-notice availability is highly preferred<br>Work Setup Onsite Engagement12-Month Contract / Freelance Engagement
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span><b>Network Infrastructure Management</b> <br><br></span><ul><li><span>Configure, manage, and troubleshoot Cisco switching and routing infrastructure.<br></span></li><li><span>Monitor and maintain LAN, WAN, and wireless network environments.<br></span></li><li><span>Implement network changes, upgrades, and optimization activities.<br></span></li><li><span>Conduct network performance analysis and capacity planning.<br></span></li></ul><b>Security Administration</b><br><br><ul><li><span>Configure, manage, and troubleshoot Cisco Firepower/ASA and Palo Alto Firewalls.<br></span></li><li><span>Implement and maintain firewall policies, NAT, VPNs, and security controls.<br></span></li><li><span>Perform security hardening, vulnerability remediation, and security monitoring.<br></span></li><li><span>Investigate and resolve network and security incidents.<br></span></li></ul><br><span>Requirements<b>Educational Qualification</b> <br><br></span><ul><li><span>Bachelor's Degree/Diploma<br></span></li><li><span>Telecommunications, or a related field.</span><br></li></ul><b>Technical Skills Required</b> <br><br><ul><li><span>Cisco Identity Services Engine (ISE)<br></span></li><li><span>Cisco Firewalls (ASA / Firepower)<br></span></li><li><span>Palo Alto Firewalls<br></span></li><li><span>Cisco Switching (Catalyst Series)<br></span></li><li><span>Cisco Routing Technologies<br></span></li><li><span>Cisco Wireless LAN Controller (WLC)<br></span></li><li><span>VPN Technologies (Site-to-Site and Remote Access)<br></span></li><li><span>Network Security Best Practices<br></span></li><li><span>Troubleshooting and Root Cause Analysis<br></span></li></ul><b>Preferred Certifications</b><br><br><ul><li><span>CCNA / CCNP Enterprise<br></span></li><li><span>CCNP Security<br></span></li><li><span>Palo Alto PCNSA / PCNSE<br></span></li><li><span>Cisco ISE Certification (Preferred)<br></span></li></ul><br> </div>
Responsibilities<br><br> Penetration Testing: Conduct penetration tests on web applications, mobile applications, APIs, and thick client applications. Prepare detailed reports with actionable recommendations for remediation. Security Scanning: Implement and manage automated security scanning tools (SAST, DAST, SCA) to continuously monitor and identify vulnerabilities in code, configurations, and dependencies across all application types. Threat Modelling: Perform threat modelling to identify potential security risks associated with various types of applications. Provide guidance on mitigating these risks. Code Review: Review application code for security vulnerabilities across multiple platforms and offer practical recommendations for remediation. Training & Awareness: Develop and deliver training sessions and workshops to raise awareness about application security among development teams and other stakeholders, tailored to different application types. Tool Evaluation: Assess and recommend tools and technologies to enhance application security testing and monitoring capabilities across various platforms. Documentation: Create and maintain comprehensive documentation related to security assessments, vulnerability management, and security policies for diverse application types. <br><br>Qualifications<br><br> Education: Bachelor’s / college degree in Computer Science, Information Security, or a related field. Experience: At least 2 years of experience in application security, software development, or a related field. Certifications: Relevant certifications (e.g., BCSP, OSWA, OSWE, e WPT, e WPTX, SEC542) are highly desirable. Technical Skills: Proficiency with security testing tools such as Burp Suite (required), Fortify, Sonar Qube, and Postman (preferred). Strong understanding of secure coding practices and experience with at least one programming language. Knowledge: In-depth knowledge of application security principles and practices, familiar with security frameworks and guidelines (e.g., OWASP Top 10, ASVS, MASVS, WSTG, MSTG). Familiarity with Dev Sec Ops practices and CI/CD pipelines is a plus. <br><br>About Malomatia<br><br> ABOUT US <br><br>malomatia is a leading Qatar-based IT services and solutions provider, bringing together top Qatari and international talent to deliver innovative, end-to-end technology solutions that empower clients to achieve their strategic goals.<br><br>Our mission<br><br>Empowering Qatar’s businesses and governments to leap into the digital future with agile, knowledge-driven solutions.<br><br>Our vision<br><br>To become Qatar’s trusted knowledge partner in digital transformation, disrupting industries, shaping the future, and building a world-class tech ecosystem.<br><br>Driving change that makes a real impact<br><br>Since 2008, malomatia has been driving Qatar’s digital transformation through innovative, ISO-certified IT solutions. With expertise across key public and private sectors, we empower the nation’s vision with advanced services in cloud, cybersecurity, AI, and contact center excellence, elevating the role of technology in shaping Qatar’s sustainable future.<br><br>About The Team<br><br>Established in 2008, malomatia is a Qatari leader in IT services and digital transformation. We serve key sectors including Government, Healthcare, Education, Customs, and Transportation, delivering impactful solutions that support national development goals. Powered by a diverse team of skilled Qatari and international IT professionals, we deliver innovative, high-value digital solutions tailored to the unique needs of our clients.<br><br>Our mission is to inspire customers to thrive through digital excellence, and we envision becoming the trusted partner of choice in building a smarter society through technology and talent. We are driven by core values that define our culture and approach: ownership, integrity, empathy, teamwork, transparency, agility, excellence, trust, and innovation.<br><br>Join us in shaping the future of technology in Qatar
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span></span><p><span>•</span><span> Manage preventive and corrective maintenance performance for all Security Systems.</span><br></p><br><p><span>•</span><span> Lead subject-matter experts and ensure appropriate certified technical coverage and competency.</span><br></p><br><p><span>•</span><span> Review and approve technical method statements, SOPs, and preventive-maintenance schedules.</span><br></p><br><p><span>•</span><span> Provide technical input to the Change Advisory Board for system changes.</span><br></p><br><p><span>•</span><span> Monitor discipline performance and Lead root-cause analysis and problem management report to the Service Delivery Manager.</span><br></p><br><p><span>•</span><span> Ensure high system availability, SLA compliance, preventive-maintenance completion, and reduction in repeat incidents.</span><br></p><br><br><span>Requirements</span><p><span>•</span><span> Bachelor's degree or Diploma in Engineering, IT, or a relevant technical discipline.</span><br></p><br><p><span>•</span><span> Minimum 10 years of hands-on experience with relevant security systems in a large enterprise or airport environment.</span><br></p><br><p><span>•</span><span> Relevant certifications in security-system technologies, particularly Milestone VMS and physical-security systems.</span><br></p><br><p><span>•</span><span> ITIL Foundation certification.</span><br></p><br><p><span>•</span><span> Strong technical knowledge of CCTV, video surveillance, VMS platforms, servers, and related security infrastructure.</span><br></p><br><p><span>•</span><span> Strong OEM/vendor management and technical escalation experience.</span><br></p><br><p><span>•</span><span> Excellent leadership, mentoring, problem-solving, and analytical skills.</span><br></p><br><br> </div>
About QNB<br><br>Established in 1964 as the country’s first Qatari-owned commercial bank, QNB Group has steadily grown to become the largest bank in the Middle East and Africa (MEA) region.<br><br>QNB Group’s presence through its subsidiaries and associate companies extends to more than 31 countries across three continents providing a comprehensive range of advanced products and services. The total number of employees is more than 28,000 serving up to 20 million customers operating through 1,000 locations, with an ATM network of 4,300 machines.<br><br>QNB has maintained its position as one of the highest rated regional banks from leading credit rating agencies including Standard & Poor’s (A), Moody’s (Aa3) and Fitch (A+). The Bank has also been the recipient of many awards from leading international specialised financial publications.<br><br>Based on the Group’s consistent strong financial performance and its expanding international presence, QNB currently ranks as the most valuable bank brand in the Middle East and Africa, according to Brand Finance Magazine.<br><br>QNB Group has an active community support program and sponsors various social, educational and sporting events.<br><br>Job Summary<br><br>The incumbent will be primarily responsible in providing support of the Information Security solutions. This includes provide first and second line support and maintain key technology solutions designed to protect the firm from cyber security attacks. The incumbent will be the focal point for end user escalations for security technology issues they may be experiencing.<br><br>Main Responsibilities<br><br> Shareholder & Financial: - Promote cost consciousness and efficiency and enhance productivity, to minimise cost, avoid waste, and optimise benefits for the bank. - Implements KPI’s and best practices for Security Technologies Services - Act within the limits of the powers delegated to the incumbent. - Support to maintain KPI’s and best practices for AVP – Cyber Security Technologies & Services Customer (Internal & External): - Provide 1st level support to key technical security solutions in line with business strategies and objectives of the group - Support operational process, procedures and guidelines, aligned to good practise for service management, problem and incident management, change management and configuration management. - Support end users with installation and troubleshooting of GIS provided and supported security products on their devices. - Review of IT and business requests for change requests to security controls (for example: firewall change reviews) - To assist customers in all their queries on Bank’s product and seek solution to their requests. - Maintain activities in accordance with Service Level Agreements (SLAs) with internal departments/units to achieve improvements in turn-around time. - Build and maintain strong/effective relationships with related departments/units to achieve the Group’s objectives. - Provide timely/accurate data to external/internal Auditors, Compliance, Financial Control and Risk when required. Internal (Processes, Products, Regulatory): - Support the design and implementation of the QNB's information security program. - Develop, implement and administer technical security standards, as well as a suite of security services and tools to address and mitigate security risk. - Examine impacts of new technologies on the QNB's overall information security profile. - Establish processes to review implementation of new technologies to ensure security compliance. - Responsible to ensuring that any audit issues or identified regulatory gaps are addressed timely. Learning & Knowledge: - Possess an understanding of business processes and controls in all related operational areas. - Must have an expert understanding of information security issues, best practices, and a working knowledge of IT systems. - Create education and training program within the team and advise operating units at all levels on security issues, best practices, and vulnerabilities. - Proactively identify areas for professional development of self and undertake development activities. - Seek out opportunities to remain current with all developments in professional field. - Ensure speedy resolution of unresolved grievances or conflicts within the team members. E. Legal, Regulatory, and Risk Framework Responsibilities: - Comply with all applicable legal, regulatory and internal compliance requirements including, but not limited to, Group Compliance Policies and Procedures (AML & CTF, Sanctions Policy, Data Protection Policy, Fraud Control Policy, Whistle Blowing Policy, Conflict of Interest and Insider Dealing Policy). - Understand and effectively perform your role under the Three Lines of Defence principle to identify measure, monitor, manage and report risks. Other: - Ensure high standards of data protection and confidentiality to safeguard commercially sensitive information. - Maintaining utmost confidentiality concerning customer and internal bank information obtained during the course of business and provide such information on a need to know basis only to Senior Management of QNB, Audit and Compliance functions, and relevant Regulators. - Maintain high professional standards to uphold QNB's reputation and to strengthen its market leadership position. - All other ad hoc duties/activities related to QNB that management might request from time to time.<br><br>Education And Experience Requirements<br><br> Bachelor’s degree preferably in computer science, computer engineering or related subjects. At least 6 years of relevant experience, preferably within a highly rated international bank or large corporate in an information security engineering capacity. Professional certification such as CISSP is mandatory Security engineering certifications and qualifications in Microsoft operating systems (such as MCSA, MCSE, et al) or Linux (such as RHCP, et al) are mandatory<br><br>Note: you will be required to attach the following:<br><br>Resume/CVCopy of Passport or QID Copy of Education Certificate Copy of Birth Certificate
Job Summary We are seeking an experienced ICS Cybersecurity Specialist to strengthen the cybersecurity posture of Industrial Control Systems (ICS) and Operational Technology (OT) environments. The successful candidate will be responsible for securing critical industrial control systems, conducting cybersecurity risk assessments, implementing security controls, monitoring OT environments, responding to security incidents, and ensuring compliance with ISA/IEC 62443 and other industrial cybersecurity standards. The ideal candidate will have hands-on experience with SCADA, DCS, PLC, SIS, industrial networks, SIEM, IDS/IPS, endpoint security, vulnerability management, and OT security frameworks. Experience in Oil & Gas, Petrochemical, Chemical, Energy, Utilities, Manufacturing, or Process Industries is highly preferred. Key Responsibilities ICS/OT Cybersecurity Design, implement, and maintain cybersecurity controls for Industrial Control Systems (ICS) and Operational Technology (OT). Develop and maintain OT cybersecurity strategies, policies, standards, and procedures. Implement defense-in-depth strategies for industrial environments. Ensure secure operation of critical infrastructure and industrial automation systems. Industrial Control Systems Security Secure and support:SCADA Systems Distributed Control Systems (DCS) Programmable Logic Controllers (PLC) Safety Instrumented Systems (SIS) Human Machine Interfaces (HMI) Engineering Workstations Historians Industrial Communication Networks Implement secure configurations and hardening practices for industrial assets. Risk Assessment & Vulnerability Management Conduct cybersecurity risk assessments for ICS/OT environments. Perform vulnerability assessments and gap analysis. Recommend mitigation strategies and remediation plans. Assess cybersecurity risks associated with industrial automation systems. Track remediation activities until closure. Security Monitoring & Incident Response Monitor OT security events using SIEM platforms. Configure and manage IDS/IPS solutions. Monitor endpoint security for industrial assets. Investigate cybersecurity incidents. Perform Root Cause Analysis (RCA). Coordinate incident response and recovery activities. Develop incident response playbooks for OT environments. Network Security Secure industrial networks. Configure and manage industrial firewalls. Monitor network traffic. Implement network segmentation. Secure remote access solutions. Support Zero Trust initiatives where applicable. System Hardening & Patch Management Perform system hardening for OT assets. Implement patch management strategies. Manage secure baseline configurations. Validate system integrity after updates. Ensure compliance with OEM recommendations and cybersecurity best practices. Compliance & Governance Ensure compliance with:ISA/IEC 62443NIST Cybersecurity Framework (preferred) NIST SP 800-82 (preferred) Organizational cybersecurity policies Conduct cybersecurity audits. Prepare compliance documentation. Support internal and external audits. Documentation & Reporting Prepare and maintain:Cybersecurity Policies Security Standards Risk Assessment Reports Vulnerability Assessment Reports Audit Reports Incident Reports Compliance Documentation Technical Recommendations Security Procedures Collaboration Work closely with:Control Systems Engineers Instrumentation Engineers Operations Teams Maintenance Teams IT Infrastructure Teams Network Engineers Cybersecurity Teams Vendors and OEMsSupport cybersecurity improvement initiatives across industrial environments. Training & Awareness Conduct OT cybersecurity awareness sessions. Develop cybersecurity best practice guidelines. Support user awareness programs. Provide technical guidance to engineering and operations teams. Education Bachelor's Degree in:Electrical Engineering Electronics Engineering Instrumentation Engineering Automation Engineering Computer Engineering Cybersecurity Computer Science Information Technology Related Engineering Discipline Required Experience Minimum 5+ years of experience in Industrial Control Systems (ICS), Control Systems Engineering, Industrial Automation, or Industrial Operations. Minimum 3+ years of dedicated experience in ICS/OT Cybersecurity. Experience in:Oil & Gas Petrochemical Chemical Manufacturing Energy Utilities Process Industries
About Agoda<br><br>At Agoda, we bridge the world through travel. Our story began in 2005, when two lifelong friends and entrepreneurs, driven by their passion for travel, launched Agoda to make it easier for everyone to explore the world.<br><br>Today, we are part of Booking Holdings [NASDAQ: BKNG], with a diverse team of over 7,000 people from 90 countries, working together in offices around the globe. Every day, we connect people to destinations and experiences, with our great deals across our millions of hotels and holiday properties, flights, and experiences worldwide.<br><br>No two days are the same at Agoda. Data and technology are at the heart of our culture, fueling our curiosity and innovation. If you’re ready to begin your best journey and help build travel for the world, join us.<br><br>We are looking for a hands on Senior Security Engineer to secure our cloud and platform environments. This role works closely with engineering teams and focuses on building, reviewing, and operating security controls using Infrastructure as Code, Kubernetes, and custom security services written in Go and Type Script.<br><br>Key Responsibilities:<br><br>Secure Cloud Deployment:<br><br>Design, implement, and manage secure cloud deployments across AWS and GCP environments using Terraform. Kubernetes & Git Ops Security: Deploy and manage both internal and third‑party security products within the Kubernetes ecosystem. Work with Git Ops workflows using tools like Argo CD and Flux, and Helm charts. Security Automation & Tooling: Design and build security tooling and services using Go and Type Script. Misconfiguration Management: Proactively identify, analyze, and remediate cloud misconfigurations. Cloud Architecture Guidance: Provide guidance to Engineering teams on secure architecture. Threat Detection & Response: Build and optimize cloud-native detection rules and alerting pipelines to monitor for suspicious activities within the cloud and container workloads.<br><br>Required Skills & Experience:<br><br>8+ years of experience in security engineering, cloud security, or platform engineering roles. Hands-on experience securing production workloads in AWS and GCP. Strong experience designing and securing Infrastructure as Code using Terraform. Deep understanding of Kubernetes security, including troubleshooting Helm deployments and Git Ops-based workflows. Strong programming skills in Go and Type Script, with Python used for automation where appropriate. Experience embedding security controls into CI/CD pipelines. Certifications (Required) Certified Kubernetes Administrator (CKA) Certified Kubernetes Security Specialist (CKS) Certifications (Preferred) AWS Certified Security Specialty Google Professional Cloud Security Engineer Hashi Corp Certified: Terraform Associate Nice-to-Have Experience with Policy-as-Code frameworks such as Open Policy Agent (OPA). Experience securing service mesh environments (Istio). Background in software engineering or platform engineering before moving into security.<br><br>#sanfrancisco #sanjose #losangeles #sandiego #oakland #denver #miami #orlando #atlanta #chicago #boston #detroit #newyork #portland #philadelphia #dallas #houston #austin #seattle #sydney #melbourne #perth #toronto #vancouver #montreal #shanghai #beijing #shenzhen #prague #Brno #Ostrava #cairo #alexandria #giza #estonia #paris #berlin #munich #hamburg #stuttgart #cologne #frankfurt #hongkong #budapest #jakarta #bali #dublin #telaviv #milan #rome #venice #florence #naples #turin #palermo #bologna #tokyo #osaka #kualalumpur #malta #amsterdam #oslo #manila #warsaw #krakow #doha #alrayyan #riyadh #jeddah #mecca #medina #singapore #seoul #barcelona #madrid #stockholm #zurich #taipei #tainan #taichung #kaohsiung #bangkok #Phuket #istanbul #london #manchester #edinburgh #hcmc #hanoi #lodz #wroclaw #poznan #katowice #rio #salvador #newdelhi #bangalore #bandung #yokohama #nagoya #okinawa #fukuoka #jerusalem #IT #4<br><br>Please review our Hiring Process Guidelines before your interview — click here to learn how interviewing at Agoda works.<br><br>Discover More About Working At Agoda<br><br>Agoda Careers https://careersatagoda.com Facebook https://www.facebook.com/agodacareers/Linked In https://www.linkedin.com/company/agoda You Tube https://www.youtube.com/agodalife<br><br>Equal Opportunity Employer <br><br>At Agoda, we pride ourselves on being a company represented by people of all different backgrounds and orientations. We prioritize attracting diverse talent and cultivating an inclusive environment that encourages collaboration and innovation. Employment at Agoda is based solely on a person’s merit and qualifications. We are committed to providing equal employment opportunity regardless of sex, age, race, color, national origin, religion, marital status, pregnancy, sexual orientation, gender identity, disability, citizenship, veteran or military status, and other legally protected characteristics.<br><br>We will keep your application on file so that we can consider you for future vacancies and you can always ask to have your details removed from the file. For more details please read our privacy policy.<br><br>Disclaimer<br><br>We do not accept any terms or conditions, nor do we recognize any agency’s representation of a candidate, from unsolicited third-party or agency submissions. If we receive unsolicited or speculative CVs, we reserve the right to contact and hire the candidate directly without any obligation to pay a recruitment fee.