Cybersecurity Engineer
الوصف الوظيفي
About the Role
We are seeking a highly skilled and experienced Cybersecurity Engineer to safeguard our enterprise applications, infrastructure, and cloud environments. In this critical role, you will be responsible for designing, implementing, and maintaining robust security controls, identifying vulnerabilities, and responding swiftly to emerging threats. The ideal candidate will possess deep expertise in application security, cloud security, identity and access management, vulnerability management, and security automation, while ensuring strict adherence to organizational and industry security standards.
Key Responsibilities
- Security Architecture & Implementation: Design, deploy, and maintain enterprise-wide security controls across applications, infrastructure, and cloud environments to mitigate risks and enhance resilience.
- Vulnerability & Risk Management: Conduct comprehensive vulnerability assessments, security scans, penetration testing coordination, and risk evaluations to proactively identify and address potential threats.
- Secure Development Practices: Integrate automated security scanning tools into CI/CD pipelines to enforce secure coding standards and prevent vulnerabilities from entering production.
- Incident Response & Threat Mitigation: Monitor security alerts, investigate incidents, and lead rapid response efforts to contain and remediate threats while minimizing operational impact.
- Identity & Access Management (IAM): Implement and manage IAM solutions, including multi-factor authentication (MFA), role-based access control (RBAC), and privileged access management (PAM) to ensure secure user authentication and authorization.
- Web Application Firewall (WAF) & Cloud Security: Configure and manage WAFs and cloud-native security services (e.g., Google Cloud Armor, AWS WAF, Azure WAF) to protect web applications from malicious attacks.
- Cross-Functional Collaboration: Partner with development, DevOps, infrastructure, and compliance teams to embed security-by-design principles into all stages of the software development lifecycle (SDLC).
- Security Documentation & Compliance: Develop, maintain, and enforce security policies, standards, incident response procedures, and compliance documentation to meet regulatory and industry requirements.
- Audit & Compliance Support: Assist in security audits, assessments, and compliance initiatives to ensure alignment with frameworks such as ISO 27001, NIST Cybersecurity Framework, CIS Controls, and SOC 2.
Must-Have Skills & Qualifications
- Vulnerability & Container Security: Hands-on experience with tools such as Trivy, Grype, Snyk, or Prisma Cloud for vulnerability scanning and container image security.
- Secrets Detection & Source Code Security: Proficiency in Gitleaks, GitGuardian, or TruffleHog for identifying exposed secrets and securing source code repositories.
- Application Security Testing: Expertise in Burp Suite, OWASP ZAP, Nessus, or Acunetix for conducting application security tests and vulnerability assessments.
- WAF & Cloud Security: Experience configuring and managing Web Application Firewalls (WAFs) or cloud-native security services like Google Cloud Armor, AWS WAF, Azure WAF, or Cloudflare WAF.
- Identity & Access Management (IAM): Strong background in IAM solutions, including Okta, Microsoft Entra ID (Azure AD), Ping Identity, Auth0, or Keycloak.
- Core Security Domains: In-depth knowledge of application security, cloud security, IAM, vulnerability management, and incident response.
- Security Fundamentals: Familiarity with OWASP Top 10, Secure SDLC, and threat modeling methodologies to identify and mitigate security risks.
- Technical Proficiency: Experience with Linux, networking (TCP/IP, DNS, HTTPS), and version control systems (Git, GitHub, GitLab, Bitbucket).
- Analytical & Soft Skills: Exceptional problem-solving abilities, strong analytical mindset, and excellent communication skills to collaborate effectively with technical and non-technical stakeholders.
Good-to-Have Skills & Qualifications
- SIEM & Threat Detection: Experience with SIEM platforms such as Splunk, Microsoft Sentinel, QRadar, or Elastic Security for centralized log management and threat detection.
- Container & Kubernetes Security: Knowledge of Docker, Kubernetes, or OpenShift for securing containerized environments and orchestration platforms.
- Cloud Platforms: Familiarity with Google Cloud Platform (GCP), AWS, or Microsoft Azure for deploying and managing cloud-native security solutions.
- Security Automation & Scripting: Proficiency in Python, Bash, or PowerShell for automating security workflows and enhancing operational efficiency.
- CI/CD Tools: Experience with Jenkins, GitHub Actions, GitLab CI, or Azure DevOps for integrating security into continuous integration and deployment pipelines.
- Compliance Frameworks: Understanding of ISO 27001, NIST Cybersecurity Framework, CIS Controls, or SOC 2 for aligning security practices with regulatory standards.
- Endpoint Protection: Knowledge of endpoint security tools such as Microsoft Defender, CrowdStrike, or SentinelOne for protecting endpoints against cyber threats.
- Certifications: Relevant certifications such as CompTIA Security+, CEH, GSEC, CISSP, CCSP, or Google Professional Cloud Security Engineer are highly desirable.
Preferred Qualifications
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field.
- 3–11 years of progressive experience in cybersecurity, application security, cloud security, or security engineering.
- Proven track record of securing enterprise applications and cloud-native environments.
- Strong grasp of security architecture, risk management, and industry best practices.
- Excellent verbal and written communication skills with the ability to articulate complex security concepts to diverse audiences.
يمكن أن يرتكب الذكاء الاصطناعي أخطاءً.