Cyber Security Specialist
General Commercial Gaming Regulatory Authority - GCGRA
صاحب عمل نشط
نشرت في 6 ابريل
أرسل لي وظائف مثل هذه
الخبرة
5 - 10 سنوات
موقع العمل
التعليم
بكالوريوس في العلوم(أجهزة الكمبيوتر)
الجنسية
أي جنسية
جنس
غير مذكور
عدد الشواغر
1 عدد الشواغر
الوصف الوظيفي
الأدوار والمسؤوليات
Under the coordination of the Cyber Security Manager, the Cyber Security Specialist is responsible to validate the engineering, implementation and operational security controls that protect GCGRA business applications and enterprise IT assets. This role places a strong emphasis on cyber defence operations, vulnerability management, security assessment, incident response and threat hunting, ensuring a resilient and proactive security posture across the organization.
The Specialist leads and supports the protection of Microsoft 365 SaaS cloud business services and other corporate environments, safeguarding the confidentiality, integrity, and availability of GCGRA assets. This includes implementing and monitoring solutions like advanced threat detection, Security Information Event Management (SIEM), hardening of systems and applications, and continuously evaluating security controls against evolving threats.
As a key contributor to Security Architecture & Engineering, and Cyber Security Operations Center (CSOC) functions, the role is responsible for monitoring, analyzing, and responding to security events, as well as identifying and remediating vulnerabilities across cloud and on-premise environments. The Specialist drives proactive defence strategies by leveraging threat intelligence, conducting security assessments and incident handling, and coordinating timely mitigation of risks in mission-critical environments.
Education:
- Bachelor s degree in computer science, Information Technology, Cybersecurity, or a related field.
Experience:
- 5 8 years of extensive technical experience in cybersecurity, with a focus on securing complex IT infrastructures, cyber defence and security operations.
Technical Skills:
- Security Products: Proficient with M365 Security (Defender, Sentinel), endpoint protection & EDR/XDR (Defender, CrowdStrike) SIEM (Azure Sentinel, Splunk, or similar), and firewalls (Palo Alto Networks, Fortinet).
- Frameworks: Advanced knowledge of NIST, ISO 27001, CIS Controls, and UAE-specific regulatory requirements.
- Incident Response: familiar with Security Operations Centre technical controls, processes and procedures, able to manage and monitor security events and incidents in enterprise platforms.
- Threat Hunting: Proven experience in managing cybersecurity incidents and conducting threat hunting using advanced methodologies.
Certifications
- Offensive Security OSCP+ (PEN-200Penetration Testing with Kali Linux), OSEP (PEN-300: Evasion Techniques and Breaching Defenses)
- CEH (Certified Ethical Hacker).
- Microsoft Security Operations Analyst Associate (SC-200).
Perimeter & Endpoint Security:
Support the engineering, execute the deployment and harden GCGRA advanced security controls, including L7 firewalls, IPS, VPN, Endpoint Detection and Response (EDR/XDR) and Data Protection solutions.
Cyber Security Operations
Security Monitoring & Detection: Operate and optimize SIEM/XDR/M365 security stack for continuous monitoring, alert triage, and investigation, ensuring log integrity, use case tuning, and reduced false positives. Incident Response & Threat Handling: Execute end-to-end incident response (detect, analyze, contain, eradicate, recover) supported by root cause analysis and standardized runbooks.
Threat Hunting & Intelligence: Enhance detection through proactive threat hunting, use case refinement, and integration of global/regional threat intelligence.
Cloud & Identity Security: Secure M365 and identity platforms by enforcing Conditional Access, monitoring anomalous activities, and aligning with Zero Trust principles.
Security Automation & SOAR: Develop and maintain SOAR playbooks to automate response actions, improve consistency, and reduce mean time to respond (MTTR).
Operational Coordination & Reporting: Collaborate with internal/external stakeholders, maintain operational documentation, and report on incidents, risks, and security posture.
Security Leadership: Mentor and guide SOC analysts and engineers, fostering continuous improvement in detection and response capabilities.
SOC Design, Build, and Operations:
Lead the establishment and optimization of the Security Operations Center (SOC) function, including strategy design, team building, and automated response workflows.
Vulnerability Management & Security Posture
Vulnerability Management (RBVM): Lead end-to-end vulnerability lifecycle (scanning, prioritization, remediation) using risk-based approaches to address critical and actively exploited vulnerabilities.
Security Assessment & Hardening: Identify misconfigurations, shadow IT, and infrastructure weaknesses; drive remediation and system hardening across cloud and on-prem environments.
Security Posture & Compliance: Continuously assess and improve security posture in alignment with international standards (e.g., NIST, ISO 27001) and regional regulations (e.g., NESA, SIA).
Threat & Risk Assessment: Perform targeted risk assessments on critical assets and infrastructure, defining and tracking mitigation strategies.
Tooling & Platforms: Utilize enterprise vulnerability management and security platforms (e.g., Qualys, Tenable, Microsoft Defender) to support continuous exposure management.
Security Architecture and Engineering:
Contribute to the design and engineering of advanced cybersecurity systems to protect M365 SaaS cloud and on-premise environments.
Project Management: Support the execution of secure engineering and system upgrades, including risk assessments, and project scheduling.
الملف الشخصي المطلوب للمرشحين
Education:
- Bachelor s degree in computer science, Information Technology, Cybersecurity, or a related field.
Experience:
- 5 8 years of extensive technical experience in cybersecurity, with a focus on securing complex IT infrastructures, cyber defence and security operations.
Technical Skills:
- Security Products: Proficient with M365 Security (Defender, Sentinel), endpoint protection & EDR/XDR (Defender, CrowdStrike) SIEM (Azure Sentinel, Splunk, or similar), and firewalls (Palo Alto Networks, Fortinet).
- Frameworks: Advanced knowledge of NIST, ISO 27001, CIS Controls, and UAE-specific regulatory requirements.
- Incident Response: familiar with Security Operations Centre technical controls, processes and procedures, able to manage and monitor security events and incidents in enterprise platforms.
- Threat Hunting: Proven experience in managing cybersecurity incidents and conducting threat hunting using advanced methodologies.
Certifications
- Offensive Security OSCP+ (PEN-200Penetration Testing with Kali Linux), OSEP (PEN-300: Evasion Techniques and Breaching Defenses)
- CEH (Certified Ethical Hacker).
- Microsoft Security Operations Analyst Associate (SC-200).
القطاع المهني للشركة
- الدفاع
- العسكرية
- حكومة
المجال الوظيفي / القسم
- سوفت وير تقنية المعلومات
الكلمات الرئيسية
- Cyber Security Specialist
تنويه: نوكري غلف هو مجرد منصة لجمع الباحثين عن عمل وأصحاب العمل معا. وينصح المتقدمون بالبحث في حسن نية صاحب العمل المحتمل بشكل مستقل. نحن لا نؤيد أي طلبات لدفع الأموال وننصح بشدة ضد تبادل المعلومات الشخصية أو المصرفية ذات الصلة. نوصي أيضا زيارة نصائح أمنية للمزيد من المعلومات. إذا كنت تشك في أي احتيال أو سوء تصرف ، راسلنا عبر البريد الإلكتروني abuse@naukrigulf.com
General Commercial Gaming Regulatory Authority - GCGRA
The General Commercial Gaming Regulatory Authority (GCGRA) is the federal executive agency responsible for regulating and overseeing commercial gaming in the United Arab Emirates. We aim to drive sustainable growth by cultivating world-class commercial gaming operations and implementing efficient regulation, grounded in the principles of integrity, innovation, and responsible practices.
https://iaakbv.fa.ocs.oraclecloud.com/hcmUI/CandidateExperience/en/sites/CX/job/577
وظائف مماثلة
أخصائي - مركز الدفاع السيبراني
Dicetek LLC
- 5 - 10 سنوات
- الإمارات العربية المتحدة - الإمارات العربية المتحدة (UAE)
Cybersecurity Analyst
Dicetek LLC
- 5 - 10 سنوات
- United Arab Emirates - United Arab Emirates (UAE)
SOC L1 أو SOC L2
CYBER GATE DEFENSE L.L.C.
- 2 - 7 سنوات
- أبوظبي - الإمارات العربية المتحدة
مهندس أمن المعلومات
SUNDUS MANAGEMENT CONSULTANCY & STUDIES BUREAUL.L.C
- 3 - 6 سنوات
- دبي - الإمارات العربية المتحدة
أخصائي الأمن
Al Futtaim Private Company (LLC)
- 3 - 5 سنوات
- دبي - الإمارات العربية المتحدة