CSEA Contractor
Doha, Doha Municipality, Qatar · مکمل وقت
درخواست دینے والے پہلے فرد بنیں۔
- تجربہ
- 10+ سال
- تنخواہ
- —
- کھلنا
- 1
- پوسٹ کیا گیا
- 3 گھنٹے قبل
- کام کا موڈ
- دفتر میں
- تعلیم
- بیچلر کی ڈگری
- دوبارہ شروع کریں۔
- درخواست دینے کی ضرورت ہے۔
جہاں آپ کام کریں گے۔
ملازمت کی تفصیل
Role Overview
The CSEA Contractor will actively support the Cyber Security Engineering and Architecture team by engaging in security architecture initiatives, conducting technical security assessments, implementing control measures, performing risk evaluations, and delivering advisory services. These efforts span enterprise-wide systems, various infrastructure components, multiple cloud environments, and applications.
Core Responsibilities
- Apply hands-on expertise with Enterprise Security Architecture frameworks and contemporary security technologies including Identity and Access Management (IAM), Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR/XDR), Web Application Firewalls (WAF), Secure Access Service Edge (SASE), Zero Trust architectures, cloud security platforms, and automation tools.
- Exhibit robust knowledge of IT infrastructure security encompassing network, cloud, endpoint, identity security, and secure architecture design principles.
- Demonstrate advanced understanding of application security, including secure software development lifecycle (SDLC), DevSecOps practices, API security, secure coding standards, and threat modeling for applications.
- Implement, validate, and review security controls across IT infrastructure, cloud environments such as AWS, Azure, and Google Cloud Platform (GCP), and enterprise software applications.
- Develop, uphold, and improve security control libraries, architectural patterns, baselines, and standards to ensure their seamless integration within security architecture and engineering procedures.
- Maintain comprehensive knowledge of cybersecurity standards, regulations, and frameworks like NIST, ISO/IEC 27001, CIS Controls, GDPR, PCI-DSS, among others applicable to compliance requirements.
- Execute security design and architecture reviews, conduct threat assessments, identify vulnerabilities, and perform detailed technical risk and gap analyses.
- Provide support to business units, project teams, IT departments, and security stakeholders for selecting, designing, and deploying secure information systems and technology solutions.
- Utilize scripting and automation expertise using languages and tools such as Python, PowerShell, Bash, Terraform, and Ansible to enhance security processes.
- Assist in security incident investigations, perform forensic examinations, root cause analysis, and recommend improvements post-incident.
- Deliver technical consultation and advisory services on projects and initiatives related to Cyber Security Engineering and Architecture as directed by the CSEA Section Head.
- Translate complex cybersecurity concepts, risk factors, and strategic recommendations into clear, non-technical language for various audiences including business stakeholders.
- Participate actively in cybersecurity committees, technical groups, architecture review boards, project discussions, and cross-functional security collaborations.
- Exhibit strong analytical, problem-solving, and decision-making abilities to evaluate complex technical environments and suggest practical security solutions.
- Capable of both independent work and effective collaboration with security architects, Security Operations Center (SOC) analysts, IT teams, application developers, project managers, and business units.
- Communicate effectively with excellent verbal and written skills to document findings, specifications, risks, and remediation actions clearly and professionally.
- Mentor and support team members by sharing knowledge, technical skills, and fostering growth in internal cybersecurity engineering and architecture capabilities.
Key Deliverables
- Comprehensive security architecture reviews
- Detailed security design review documentation
- Threat modeling and risk assessment reports
- Security control mapping with actionable recommendations
- Development and maintenance of architectural patterns, baselines, and standards
- Technical security advisory documentation
- Secure design guidance for infrastructure, cloud services, and applications
- Strategic security enhancement roadmaps
- Support for incident response operations and technical investigations
- Conduct training and knowledge transfer sessions for team members
Qualifications and Experience
- Bachelor's degree in relevant technology fields such as Cybersecurity, Computer Science, Computer Engineering, Information Security, Information Technology, or related disciplines. Advanced degrees or professional certifications are advantageous.
- At least 10 years of professional experience in cybersecurity, information security, security engineering, or IT infrastructure protection, including a minimum of 3 years specializing in cybersecurity architecture or enterprise security architecture.
Preferred Certifications
- Certifications such as CISSP, CISM, SABSA, or TOGAF are desirable.
- Cloud security credentials like CCSP, Azure Security Engineer, or AWS Security Specialty are preferred.
- Certifications related to cybersecurity such as GCIH, GCIA, GSEC, or Security+ are favored.
- Additional relevant certifications in cybersecurity, cloud security, or architecture will be considered.
Language Requirements
Proficiency in both English and Arabic is mandatory for this role.
ہنر
DevSecOps
Security Information and Event Management (SIEM)
Identity and Access Management (IAM)
Endpoint detection and response (EDR)
Enterprise Security Architecture
Cloud Security (AWS, Azure, GCP)
Security Control Implementation
Risk Assessment and Threat Modeling
Security Automation and Scripting (Python, PowerShell, Bash, Terraform, Ansible)
Security Incident Response and Forensics
Cybersecurity Standards and Compliance (NIST, ISO 27001, GDPR, PCI-DSS)
Technical Security Advisory