Principle Information Security Assurance Engineer/Specialist
Doha, Doha Municipality, Qatar · Jornada completa
Sé el primero en postularte
- Experiencia
- Más de 6 años
- Salario
- —
- Vacantes
- 1
- Al corriente
- hace 1 día
- Modo de trabajo
- En la oficina
- Educación
- licenciatura
- Reanudar
- Se requiere solicitud
Dónde trabajarás
Descripción del trabajo
Position Overview
The Principle Information Security Assurance Engineer/Specialist is responsible for spearheading and enforcing comprehensive security assurance programs throughout the enterprise by evaluating and enhancing security measures across various systems, applications, and databases. This role involves conducting thorough audits to detect any unauthorized or malicious user and administrative activities, promoting and maintaining a secure Software Development Life Cycle (SDLC), and managing penetration testing and vulnerability assessments to protect the confidentiality, integrity, and availability of information assets. Furthermore, the position provides strategic and technical leadership to support the Director of Information Security in crafting and deploying effective cybersecurity strategies.
Primary Duties and Responsibilities
- Conduct audits of application user logs, profile management actions, privileged user operations, and access to objects or services, including the review of changes stemming from change requests.
- Ensure that security controls and considerations are integrated within the SDLC process.
- Perform periodic internal penetration tests in assigned sectors and assist in evaluating the organization's overall security posture across infrastructure, also overseeing external penetration tests scheduled or triggered by events.
- Execute vulnerability scans and interpret their outcomes to guide remediation efforts.
- Coordinate and monitor security patch deployments with relevant teams, providing necessary assistance.
- Evaluate change requests in terms of risk to application and database security, review their impact on operations, and approve them following authoritative consent.
- Analyze current security technologies and processes to optimize controls and effectiveness.
- Offer support and conduct analyses during and after security incidents as required.
- Address information assurance related technical issues by investigating and resolving problems.
- Research advancements in security and propose improvements to management.
- Lead and coordinate initiatives related to Information Security projects.
Educational Background
A minimum of a Bachelor's degree in Information Technology, Computer Science, Cyber Security, Business Administration, or a related field is required.
Professional Experience
The ideal candidate should possess at least 6 years of professional experience within the IT field, including expertise in penetration testing, corporate Application Security, analytical roles, solution delivery, or closely related areas.
Additional Information
To learn more about the handling of personal data, please consult the organization's privacy policy.