Cyber Security Engineering and Architecture (CSEA) Contractor
Doha, Doha Municipality, Qatar · عقد
كن أول من يتقدم بطلب
- خبرة
- أكثر من 10 سنوات
- مرتب
- —
- الوظائف الشاغرة
- 1
- تم النشر
- • 6 نجوم
- وضع العمل
- في المكتب
- تعليم
- Bachelor’s degree in Cybersecurity or related field
- سيرة ذاتية
- مطلوب للتقديم
مكان عملك
المسمى الوظيفي
Role Overview
The contractor will provide expert hands-on assistance to the Cyber Security Engineering and Architecture team by actively engaging in security architecture tasks, technical security evaluations, control implementations, risk evaluations, and advisory services across company systems, infrastructure, cloud services, and software applications.
Key Responsibilities
- Apply enterprise security architecture methodologies and leverage advanced security technologies such as IAM, SIEM, EDR/XDR, WAF, SASE, Zero Trust, cloud security, and automation tools.
- Ensure comprehensive IT infrastructure security including network, cloud, endpoint, identity security, and secure architectural designs.
- Maintain strong application security through secure SDLC, DevSecOps, API protection, secure coding, and threat modeling.
- Implement, validate, and review security controls across IT infrastructure, AWS, Azure, GCP cloud platforms, and enterprise apps.
- Develop and improve security control libraries, architecture standards, baselines, and ensure their consistent use within security architecture activities.
- Adhere to cybersecurity standards and regulations including NIST, ISO/IEC 27001, CIS Controls, GDPR, PCI-DSS, etc.
- Conduct security design reviews, threat and risk assessments, and identify security gaps.
- Support business units, IT and project teams, and security stakeholders in designing and implementing secure IT solutions.
- Utilize scripting and automation skills using Python, PowerShell, Bash, Terraform, Ansible, or similar.
- Assist in incident response, forensic investigations, root cause analysis, and recommend improvements post-incident.
- Provide technical advice and consultation on CSEA projects and initiatives under the guidance of the CSEA Section Head.
- Translate complex cybersecurity concepts and risks into understandable terms for varied stakeholders.
- Actively participate in cybersecurity committees, architecture review boards, and collaborative security discussions.
- Apply analytical and problem-solving skills to propose effective security solutions.
- Work both independently and collaboratively with architects, SOC analysts, IT teams, and business units.
- Prepare detailed documentation of security findings, architecture recommendations, risks, and remediation.
- Mentor and guide CSEA team members to develop technical expertise within the team.
Expected Deliverables
- Conduct and document security architecture reviews and design reports.
- Create threat models, risk assessments, and security control mappings.
- Develop architecture patterns, baselines, and maintain security standards.
- Produce technical security advisory documents and secure design recommendations.
- Design roadmaps for security improvements.
- Support incident response activities and related technical analyses.
- Lead knowledge sharing sessions within the CSEA team.
Qualifications and Experience
- Bachelor’s degree in Cybersecurity, Computer Science, Computer Engineering, Information Security, Information Technology or related field is required.
- A higher degree or professional certifications such as CISSP, CISM, SABSA, TOGAF (architecture), CCSP, Azure Security Engineer, AWS Security Specialty, GCIH, GCIA, GSEC, Security+, or other relevant cybersecurity/cloud/architecture certifications are preferred.
- At least 10 years of relevant experience in cybersecurity, information security, security engineering, or IT infrastructure security.
- This includes a minimum of 3 years of direct experience in cybersecurity architecture, security engineering, or enterprise security architecture roles.
- Proficiency in English and Arabic languages is mandatory.
مهارات
تقييم المخاطر
أمن الشبكات
الاستجابة للحوادث
Threat modeling
Enterprise Security Architecture
Cloud Security (AWS, Azure, GCP)
Security Automation and Scripting
Security Control Implementation
Compliance and Regulatory Standards
Application Security (DevSecOps)
Security Documentation and Reporting
Security Mentorship