Security inspector Jobs in Egypt
4861 Jobs Found
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p>Security Engineer</p><p><b>About Millennium</b><br>Millennium is a global, diversified alternative investment firm, founded in 1989. Defined by evolution, innovation and focus, Millennium’s mission is to deliver results for our investors.</p><br><p><br>Our people are empowered with both independence and support: the autonomy to pursue ideas with conviction and the backing of a global network committed to collaboration, disciplined risk management and continuous learning. With opportunities to deepen expertise and accelerate development, talent at Millennium is equipped to adapt, evolve and build lasting impact over time. Discover how transformative growth accelerates impact.</p><br><p><b>Meet the Team</b><br>Core to the health and growth of our business, Millennium’s Information Technology organization builds the flexible, scalable platforms and advanced proprietary systems that support the firm’s active, multi-manager model. Within this organization, the Information Security team partners closely with the business to protect the firm’s information and computer systems across a complex global environment. The team works collaboratively to strengthen security controls, improve resilience, and defend the firm against both external and internal threats.</p><br><p><b>What You'll Do</b></p><br><ul><li><p>Develop, implement, and maintain security policies, procedures, and standards related to Data Lake, Email security, SOAR, Breach Attack Simulation and network security</p><br></li><li><p>Monitor, manage, and analyze security logs, alerts, and events across multiple systems to identify threats, vulnerabilities, and suspicious activity</p><br></li><li><p>Provide security engineering and consulting support to the Security Operations and Information Security teams</p><br></li><li><p>Strengthen perimeter security through automation, improved monitoring, vulnerability identification, and actionable alerting and reporting</p><br></li><li><p>Partner with stakeholders across Technology, Trading, Legal, Internal Audit, and Compliance to support and enforce security policies and controls</p><br></li><li><p>Conduct system audits and vulnerability assessments, manage remediation efforts, and help address findings from audits, penetration tests, and process reviews</p><br></li><li><p>Contribute to incident response activities and use threat intelligence to improve detection, defense, and response capabilities</p><br></li><li><p>Support the transition of security solutions into production, maintain clear documentation, and provide guidance to junior security professionals</p><br></li></ul><p><b>What You Bring</b></p><br><ul><li><p>3+ years of experience in a technical role, including 2+ years focused on network and information security; experience in financial services is preferred</p><br></li><li><p>Proven experience as a Security Engineer with hands-on expertise in logging pipelines, data lakes or SIEM (platforms such as Splunk, ELK, Sentinel, S3/Athena or similar tools) and SOAR automation.</p><br></li><li><p>Strong hands-on experience with network security technologies, including firewalls, intrusion detection and prevention, network detection and response, and network access control. Additional experience in at least one of the following: breach and attack simulation, Email Security or AI Security</p><br></li><li><p>Strong understanding of TCP/IP and related infrastructure concepts, including DNS, Wi-Fi, virtualization, and core networking fundamentals</p><br></li><li><p>Experience using packet capture and network analysis tools such as tcpdump, Wireshark, or ngrep for troubleshooting and investigation</p><br></li><li><p>Knowledge of cloud platforms such as AWS, GCP, or Azure, along with scripting or development skills in Python, PowerShell, shell scripting, or similar languages</p><br></li><li><p>Experience with proxy technologies and a practical understanding of proxy engineering concepts</p><br></li><li><p>Bachelor’s degree in Computer Science, Engineering, or a related field is preferred; an industry certification such as CISSP, GCIA, or CISM is also preferred</p><br></li></ul> </div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>We are looking for a Senior Arbor DDoS Security SME to support and operate existing Arbor AED and AEM platforms protecting a major banking environment against various Distributed Denial-of-Service (DDoS) attacks .<br> The ideal candidate should have strong hands-on experience with Arbor/NETSCOUT DDoS solutions , preferably within a banking or financial services environment , with strong network security and troubleshooting capabilities.<br> Key Responsibilities Administer, operate, monitor, and troubleshoot Arbor AED and AEM platforms.<br> Provide SME-level support for DDoS detection, mitigation, and protection .<br> Monitor DDoS events, traffic patterns, alerts, and mitigation activities.<br> Analyze network traffic and investigate DDoS-related incidents.<br> Troubleshoot complex network security and connectivity issues.<br> Support the continuous availability and performance of the DDoS protection infrastructure.<br> Work closely with network, security, SOC, and infrastructure teams to resolve security incidents.<br> Perform configuration changes, policy tuning, and optimization of Arbor platforms.<br> Support incident response and root-cause analysis for DDoS attacks.<br> Maintain technical documentation, operational procedures, and configuration records.<br> Provide technical guidance and SME support to the banking security/network teams.<br> Support integration and troubleshooting across network security technologies such as firewalls, load balancers, and other security controls.<br> Strong hands-on experience with Arbor AED and AEM / NETSCOUT DDoS solutions.<br> Proven experience in DDoS detection, mitigation, and protection .<br> Strong knowledge of network security and TCP/IP networking .<br> Experience troubleshooting complex network traffic and security incidents.<br> Hands-on experience with Arbor DDoS platforms in a production environment .<br> Strong understanding of network security controls such as firewalls, IPS, WAF, VPN, and load balancing .<br> Experience using network troubleshooting tools such as Wireshark, tcpdump, curl, nc , etc.<br> Preferred Experience Banking / Financial Services experience – highly preferred.<br> Experience working as a resident engineer / SME for a bank or critical enterprise customer.<br> Experience with Cisco, Fortinet, Palo Alto, F5, or similar security technologies .<br> Experience with network security automation or scripting is a plus.<br></span> </div>
<p>The Facilities Manager will be responsible for the full management of the site's security and cleanliness. This is a managerial role, overseeing the security and cleaning teams, tracking performance, and coordinating with senior management.</p><p><strong>Security & Cleanliness (Primary Responsibility)</strong></p><ul><li><p>Full oversight of the on-site security team, ensuring strict enforcement of safety and security procedures</p></li><li><p>Oversee the cleaning team and set a recurring schedule to monitor cleanliness across all areas (offices, meeting rooms, common areas)</p></li><li><p>Develop and maintain emergency plans (fire, evacuation, first aid) and ensure the site is properly equipped for them</p></li><li><p>Ensure security equipment is functional and up to date (CCTV cameras, alarm systems, fire extinguishers)</p></li><li><p>Manage the visitor and employee entry/exit system and maintain records</p></li><li><p>Contract with external security and cleaning companies as needed and oversee their performance</p></li><li><p>Prepare periodic reports for management on the site's security and cleanliness status</p></li></ul><p></p><p><strong>Requirements</strong></p><ul><li><p>Direct supervision of the assigned team (security and cleaning) in terms of scheduling and performance evaluation</p></li><li><p>Manage the security, cleaning, and facilities budget and track expenses</p></li><li><p>Coordinate with senior management on decisions related to site development</p></li></ul><p></p>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>Job Objective To safeguard organizational assets and ensure business resilience by leading proactive security monitoring, incident response, threat mitigation, and continuous improvement of cybersecurity operations. Environment Internal : GEPD management, plasma procurement, manufacturing, sales, finance, logistics and procurement. External : Vendors and governmental authorities. Key responsibility - Lead and coordinate security monitoring, threat detection, and incident response activities across IT and OT environments. - Protect industrial control systems and critical operational assets through continuous monitoring, threat analysis, and risk mitigation. - Monitor the security posture of industrial control systems (ICS), SCADA networks, and critical operational assets, identifying and escalating risks as required. - Prepare and present security reports, incident analyses, risk assessments, and operational metrics to management and key stakeholders. - Assess, prioritize, and track remediation of security vulnerabilities and control gaps within IT and OT environments. - Develop, maintain, and improve security monitoring use cases, detection rules, incident response playbooks, and operational procedures if required. - Collaborate with internal stakeholders and external partners to strengthen cyber resilience and ensure secure business operations. - Enhance security operations capabilities through process improvement, threat intelligence integration, and operational excellence. - Support compliance, audit, and regulatory requirements related to cybersecurity and critical infrastructure protection. Computing Skills Scripting and automation using Python, PowerShell, or Bash. Personal Skills Excellent verbal and written communication skills. Ability to multi-task in a fast paced, high-pressure environment. Quick Learner. Ability to interact effectively with employees at all levels. Strong attention to detail Strong analytical thinking skills Languages Excellent written and spoken English and Arabic</p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><h2>Academic experience required</h2><p>Bachelor's degree in computer science, Computer/Communication Engineering, Information Security or similar field</p><h2>Professional Experience Required</h2><ul><li>5+ years of experience in cybersecurity, with 3+ years in a SOC or incident response role</li><li>Hands-on experience in (SIEM) platforms specially Splunk and log analysis.</li><li>Stronge knowledge of Endpoint Detection and Response (EDR/XDR) technologies.</li><li>Stronge knowledge of Security monitoring, threat detection, and incident response.</li><li>Good knowledge of Network security fundamentals, including TCP/IP, firewalls, IDS/IPS, VPNs, and network protocols.</li><li>Good knowledge of Windows and Linux system administration and security.</li><li>Good knowledge of Vulnerability assessment and remediation management.</li><li>Stronge knowledge of Cyber threat intelligence analysis and threat hunting techniques.</li><li>Stronge knowledge of Security incident investigation, root cause analysis, and digital forensics fundamentals.</li><li>Good knowledge of Identity and Access Management (IAM) and Active Directory security.</li><li>Good knowledge Cloud security concepts and monitoring for enterprise cloud environments.</li><li>Knowledge of Operational Technology (OT), Industrial Control Systems (ICS), and SCADA security monitoring are highly preferred.</li><li>Stronge knowledge of Security tool administration and tuning, including detection rule development.</li><li>Stronge knowledge of Security reporting, dashboard development, and data analysis.</li><li>Hands-on experience of at least two of the cybersecurity frameworks and standards below such as: NIST Cybersecurity Framework ISO/IEC 27001 IEC 62443 MITRE ATT&CK</li></ul><p></p></section>
We are seeking a highly technical and strategic Senior Cybersecurity Consultant to design, build, and lead our overarching Cybersecurity organization. The right candidate will be responsible for structuring the department from the ground up, establishing specialized sub-departments (such as Sec Ops, GRC, App Sec, and Identity & Access Management), and driving our security posture. The ideal candidate is a builder—someone who can define high-level security strategy and RACI matrices one day, and actively configure security scanning tools in the CI/CD pipeline the next.<br><br>Requirements<br><br>Department Leadership & Structuring: Design and formalize the cybersecurity department structure. Define the scope, objectives, and KPIs for all sub-departments (SOC/Sec Ops, Governance Risk & Compliance (GRC), Application Security, and Infrastructure Security) Team Building: Recruit, mentor, and lead a high-performing team of security engineers, analysts, and GRC specialists Hands-on Tool Management: Actively deploy, configure, and manage a suite of cybersecurity tools. Oversee the integration of automated security testing (SAST, DAST, SCA, secret scanning) directly into CI/CD pipelines (e.g., Git Lab) Dev Sec Ops Championing: Lead hands-on implementation of tools such as Sonar Qube, Trivy, Gitleaks, and OWASP ZAP to ensure code and infrastructure are secure by design Regulatory & Compliance Alignment: Ensure the organization's security architecture and policies comply with strict regional financial and cybersecurity frameworks (including NCA, SAMA, CMA, and IA regulations) Incident Response & Architecture: Serve as the ultimate escalation point for severe security incidents. Design secure multi-cloud architectures and ensure robust continuous monitoring<br><br>Required Qualifications<br><br>Experience: 8+ years in cybersecurity, with at least 3 years in a leadership or senior consulting role managing multiple security domains Team Formatting: Proven track record of building and structuring security teams or departments from scratch, preferably within the fintech, insurance, or investment platform sectors Technical Proficiency: Deep, hands-on experience with an array of cybersecurity tools spanning Dev Sec Ops, SIEM, EDR, and vulnerability management Cloud Security: Strong background in securing modern cloud infrastructure (AWS, GCP, or OCI) and containerized environments Communication: Ability to translate complex technical risks into business terms for executive leadership<br><br>Preferred Qualifications (A Plus)<br><br>Recognized industry certifications such as CISSP, CISM, CISA, OSCP, or equivalent executive/technical security credentials Previous experience operating within the specific regulatory landscapes of Saudi Arabia and the broader MENA region<br><br>Benefits<br><br>Hybrid work model Healthy working environment Medical Insurance Social Insurance
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>Monitor all CCTV cameras and surveillance systems throughout the hotel to ensure the safety and security of guests, employees, visitors, and hotel property. Observe and report any suspicious activities, security breaches, or unusual incidents to the Security Supervisor immediately. Maintain continuous surveillance of all assigned camera systems during the shift without interruption. Record, document, and report all security incidents accurately and in a timely manner. Retrieve, review, and preserve CCTV footage when requested by authorized management or for investigation purposes. Ensure that all CCTV equipment, monitors, recording devices, and related systems are functioning properly and report any faults immediately. Maintain confidentiality of CCTV footage and security-related information at all times. Assist security officers by providing real-time information during emergencies, incidents, or investigations. Monitor fire alarm systems, access control systems, and other security monitoring systems where applicable. Ensure all CCTV recordings are stored and archived according to hotel policies and legal requirements. Keep accurate logs of incidents, equipment status, maintenance requests, and daily activities. Report any unauthorized access to restricted areas or suspicious behavior observed through the CCTV system. Coordinate with Security Supervisors and other departments during emergencies or security incidents. Comply with all hotel security procedures, emergency response plans, and safety regulations. Ensure the CCTV Control Room is kept clean, secure, and organized at all times. Use all communication equipment such as telephones, radios, and intercom systems professionally and for official purposes only. Protect all hotel information and refrain from sharing security-related information with unauthorized persons. Participate in emergency drills, security training, and departmental meetings as required. Continuously improve knowledge of CCTV systems, security procedures, and surveillance technology. Carry out all responsibilities related to the hotel's quality management, health and safety, and environmental management systems. Perform any other duties assigned by the Security Supervisor, Security Manager, or Hotel Management that are related to the position.</p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p><strong>Education:</strong> At least a high school diploma.</p><p><strong>Experience:</strong> At least 2 years of work experience in the related field. Experience in the industry is an asset.</p><p><strong>Foreign Language:</strong> Not required.</p><p><strong>Courses and Training:</strong> Prior attendance in courses and seminars in the related field.</p><p><strong>Computer Literacy:</strong> Not required.</p><p><strong>Skills:</strong> Expected to use basic tools and equipment related to the job. Expected to perform simple, specific and standard tasks that are generally repetitive.</p><p></p></section>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>To support the information security controls team by ensuring the proper enforcement of the developed identity related security policies in alignment with the set identity access management & governance security strategy and roadmap. In addition to enforce a proper governance model for the Identity and Access Management across the different applications, infrastructure and systems, including monitoring of identity related policy violations, as well as handling of the different identity access security approvals and reviews. Conduct the annual review and update of the area s processes, procedures and policies with the adherence to the developed SLAs. This includes mainly the review of the People & Human Resources Security Policy, the Physical & Environmental Security Policy and the Identity Related Access Management Procedures. Design and Develop the Identity and Access Management (IAM) Governance program and ensure proper management of the IAM governance activities including developing the different applications security matrices, mapping the different IT roles to their relevant business activities, identifying sensitive access, segregation of duties policies, etc. Liaise with the different business departments to develop an inventory of business activities, mapped to the relevant applications roles, through which sensitive and critical business activities are identified and setup on the IAM platform with appropriate risk ratings. Develop a comprehensive segregation of duties policy across the different business activities and ensure the same is maintained on the IAM platform to control SOD access violations and alert on the same. Liaise with IT Security IAM team to conduct annual review over the applications security matrices to reflect any changes on the matrix and ensure access is granted according to the conducted business activity with no segregation of duties policy violations. Ensure the proper management of the bank s identities according to the developed Human Resources and Physical & Environmental Security Policies through liaising with IT Security Identity & Access Management for the effective utilization and proper setup over the Identity & Access Management, the Privileged Access Management and the Security Access Management platforms. Monitor and track the violations to the developed identity related security policies to ensure the necessary disciplinary actions take place. This includes unjustified Local Admin Privileges, Segregation of Duties Policy Violations, unacceptable use of the bank s resources, etc. Maintain the standard operating procedures (SOP), for the different access management approvals and ensure proper adherence to the set SLA. Provide security controls approvals over identity related access requests, similar to VPN Access, Sensitive Applications Access, Local Admin Privileges, to ensure proper business justification is in place and according to the defined process and SLA. Support the implementation of the key strategic business initiatives and projects through the development of the necessary security access matrix mapped to the staff s job titles and business activities. Define the necessary physical access controls for CIB s headquarters, buildings and branches and work with the relevant teams to ensure proper implementation and enforcement of the same. Support the different HR Re-Structure activities to update the different security access matrix mapped to the staff s new job titles and business activities.</p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li>Bachelor's degree of Engineering, Computer Science, Information Security or equivalent</li><li>Officer: Minimum 4 - 6 years of experience in IT, Information Security and/or Governance, Risk and Compliance</li><li>Senior Officer: 6 - 8 years of experience in IT, Information Security and/or Governance, Risk and Compliance</li><li>Risk management background</li><li>Recommended Certifications: SANS Global Information Assurance Certification (GIAC) CISM</li><li>Mandatory Certifications: ISO 27001:2013 Lead implementer</li><li>Skills</li><li>Very Good command of English and Arabic languages</li><li>Very Good Communication skills</li><li>Very Good Time Management skills</li></ul><p></p></section>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Description</span><br><span></span><p><span><strong>Job Purpose</strong></span>: To support the information security controls team by ensuring the proper enforcement of the <br>developed identity related security policies in alignment with the set identity access management & <br>governance security strategy and roadmap. In addition to enforce a proper governance model for the <br>Identity and Access Management across the different applications, infrastructure and systems, <br>including monitoring of identity related policy violations, as well as handling of the different identity <br>access security approvals and reviews.</p><br><ul><li>Conduct the annual review and update of the area’s processes, procedures and policies with the adherence to the developed SLAs. This includes mainly the review of the People & Human Resources Security Policy, the Physical & Environmental Security Policy and the Identity Related Access Management Procedures.</li><li>Design and Develop the Identity and Access Management (IAM) Governance program and ensure proper management of the IAM governance activities including developing the different applications’ security matrices, mapping the different IT roles to their relevant business activities, identifying sensitive access, segregation of duties policies, … etc.</li><li>Liaise with the different business departments to develop an inventory of business activities, mapped to the relevant applications’ roles, through which sensitive and critical business activities are identified and setup on the IAM platform with appropriate risk ratings.</li><li>Develop a comprehensive segregation of duties policy across the different business activities and ensure the same is maintained on the IAM platform to control SOD access violations and alert on the same.</li><li>Liaise with IT Security IAM team to conduct annual review over the applications’ security matrices to reflect any changes on the matrix and ensure access is granted according to the conducted business activity with no segregation of duties policy violations.</li><li>Ensure the proper management of the bank’s identities according to the developed Human Resources and Physical & Environmental Security Policies through liaising with IT Security Identity & Access Management for the effective utilization and proper setup over the Identity & Access Management, the Privileged Access Management and the Security Access Management platforms.</li><li>Monitor and track the violations to the developed identity related security policies to ensure the necessary disciplinary actions take place. This includes unjustified Local Admin Privileges, Segregation of Duties Policy Violations, unacceptable use of the bank’s resources, etc.</li><li>Maintain the standard operating procedures (SOP), for the different access management approvals and ensure proper adherence to the set SLA.</li><li>Provide security controls approvals over identity related access requests, similar to VPN Access, Sensitive Applications’ Access, Local Admin Privileges, to ensure proper business justification is in place and according to the defined process and SLA.</li><li>Support the implementation of the key strategic business initiatives and projects through the development of the necessary security access matrix mapped to the staff’s job titles and business activities.</li><li>Define the necessary physical access controls for CIB’s headquarters, buildings and branches and work with the relevant teams to ensure proper implementation and enforcement of the same.</li><li>Support the different HR Re-Structure activities to update the different security access matrix mapped to the staff’s new job titles and business activities.</li></ul><br> <br> <span>Qualifications</span><br><span></span><ul><li>Qualifications & Experience</li><li>Bachelor’s degree of Engineering, Computer Science, Information Security or equivalent</li><li>Officer: Minimum 4 - 6 years of experience in IT, Information Security and/or Governance, Risk and Compliance</li><li>Senior Officer: 6 - 8 years of experience in IT, Information Security and/or Governance, Risk and Compliance</li><li>Risk management background</li><li>Recommended Certifications:</li><li>SANS Global Information Assurance Certification (GIAC)</li><li>CISM</li><li>Mandatory Certifications:</li><li>ISO 27001:2013 Lead implementer</li><li>Skills</li><li>Very Good command of English and Arabic languages</li><li>Very Good Communication skills</li><li>Very Good Time Management skills<br></li></ul><br> </div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<strong>About The Role</strong><p>This Senior Cyber Security Engineer / DevSecOps role is a highly collaborative position designed for a security professional who can seamlessly bridge the gap between offensive exploitation and defensive engineering. Instead of sitting in a silo, you will be deeply embedded within the product, engineering, and infrastructure teams to champion security architecture from the ground up.</p><br><strong>What You'll Do</strong><p>• Work closely with the product and engineering teams to review new features and suggest new features that improve security.</p><br><p>• Drive S-SDLC in our cycles and review security acceptance criteria and threat modeling.</p><br><p>• Guide and train the team to cover security checks and security best practices.</p><br><p>• Perform pre-deployment and post-deployment security penetration tests.</p><br><p>• Plan and execute regular web, mobile, and cloud security assessments and pen tests.</p><br><p>• Work closely with the Infrastructure teams to identify security issues through red teaming activities.</p><br><p>• Define, implement, and monitor infrastructure security measures.</p><br><p>• Contribute to the security roadmap & backlog.</p><br><p>• Assess security tools and integrate tools as needed.</p><br><p>• Incident Response & Research.</p><br><p>• Follow new security news, trends, tools, and incidents and drive needed changes.</p><br><p>• Support in managing our Bug-bounty program and security channels.</p><br><p>• Conduct vulnerability research against company assets.</p><br><p>• Work on understanding and improving our security logging and monitoring solutions.</p><br><p>• Coordinate company-wide response to security incidents till remediation.</p><br><p>• Vulnerability management for production/staging environments.</p><br><p>• Actively mentor members of the security team.</p><br><strong>What You'll Need</strong><p>• Bachelor's degree in Computer Science, Software Engineering, or a related field (or equivalent work experience).</p><br><p>• Minimum 5 years of experience performing application and/or infrastructure penetration testing experience above and beyond running automated tools.</p><br><p>• Highly experienced in performing security code reviews; Python experience is a plus.</p><br><p>• Solid understanding of cloud platforms (AWS, Azure, or GCP) and containerization technologies (Docker, Kubernetes), serverless / lambda as a plus.</p><br><p>• Solid understanding of software development principles, software testing methodologies, and version control systems (e.g., Git).</p><br><p>• Hands-on experience implementing security policies in various environments (servers, storage, networks, security, virtualization, systems monitoring, and management).</p><br><p>• Strong communication skills and the ability to effectively articulate technical concepts to technical and non-technical stakeholders.</p><br><p>• Solid understanding of networks and network security (experience in Fortinet is a plus).</p><br><p>• Hands-on experience in managing SIEM solutions.</p><br><p>• Knowledge in EDR, IDS, CSPM, CWPP.</p><br><strong>Who Are We?</strong><p><strong>Thndr</strong> was founded on a <strong>bold dream</strong> to democratize access to investing through smart tech and human-centric design. This is simply our way of saying we give anyone with a smartphone the simple and easy access they need to preserve and grow their wealth. At the same time, we’re shaping the future of investing while actively driving the economies we serve by promoting local investment products.</p><br><p>History has shown that investing is the single greatest way to build long-term wealth, but before <strong>Thndr</strong>, only a very small percentage of people had access to it due to:</p><br><ul><li><p>High barriers to entry — In the form of excessive minimum account balances, complex, outdated onboarding, and low financial literacy.</p><br></li><li><p>Irrelevant experience — Catered toward expert traders and financial specialists, therefore alienating the majority of the population.</p><br></li><li><p>Fragmented offering — Investment products were not gathered in a single, intuitive outlet.</p><br></li></ul><p>We don't just talk about change, we deliver it. Here's a glimpse into our impact so far:</p><br><ul><li><p><strong>5.5 million</strong> app downloads</p><br></li><li><p><strong>EGP 1B+ average daily traded value</strong> across 2025</p><br></li><li><p><strong>#1 digital investing platform</strong> in Egypt for the <strong>third consecutive year</strong></p><br></li><li><p><strong>76% of users are first-time investors</strong></p><br></li><li><p><strong>40%</strong> of our users come from outside of capital cities and have previously had limited access to financial institutions</p><br></li></ul><p>Building on the success of our core platform, we are continuing to change culture and break down barriers by launching <strong>Rumble</strong>, the subscription-based investment recommendations platform.</p><br><p><strong>Rumble</strong> was born with the vision to empower everyday individuals to build wealth confidently and intelligently through access to timely and in-depth advice from the industry’s top experts.</p><br><p>Going beyond traditional investment advice, it offers long and short-term investment recommendations and financial content through engaging articles and videos that guide users on their financial journey and maximize their returns.</p><br><p>At <strong>Thndr</strong>, we're looking for people driven by our mission to help us democratize investing across the MENA region.</p><br> </div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>You will set the technical direction for security across DigitalZone's platform, from application and cloud security to the payment and identity flows at the core of the business.<br> This is the most senior individual-contributor security role: you own the hardest problems, do the hands-on work, and raise the bar for the whole engineering org.<br> You can read the code, build the tooling, and fix the issue, not just file it.<br> What you'll do: Design and mature the secure SDLC, to support engineers in prioritising and remediating findings: Application Security: Leverage deterministic and LLM assisted automation to identify and remediate vulnerabilities across code developed within DigitalZone.<br> Supply Chain Security: Design and implement solutions to mitigate the risks of vulnerable and compromised 3rd party dependencies.<br> Including, the verification of feature and release integrity.<br> Infrastructure & Cloud Security: Integrate scalable solutions to identify and patch vulnerabilities across the container and cloud infrastructure delivery process, including scanning, signing, admission control and runtime security.<br> Run vulnerability management and coordinate penetration tests, and defining and tracking key vulnerability metrics.<br> Define secure-by-design patterns and success criteria for authentication and authorization, cloud networking, secrets management, and IAM.<br> Act as the primary liaison between customers and security vendors, driving alignment on security findings, remediation priorities, risk acceptance decisions, and strategic security outcomes.<br> Immediate, large-scale impact on a high-growth business Top-of-the-market compensation packages Work alongside top regional talent, with team members from Talabat, Careem, Etisalat, and more What you'll bring 8+ years in software or security engineering with deep hands-on depth across application security, cloud/infra security, and detection and response.<br> Strong track record threat modeling and securing systems that handle payments or sensitive financial and PII data.<br> Strong engineering fundamentals: fluency in AWS security, modern authentication and authorisation patterns, and at least one of our core languages.<br> Working knowledge of relevant frameworks (PCI DSS, ISO 27001, OWASP, SOC 2) and how to operationalize them without slowing delivery.<br> Apply judgment on risk tradeoffs and direct, clear and practical communication with engineers and leadership.<br></span> </div>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph">*<p>1. Recommend changes to policies and procedures based on changes to regulations, standards or best practices ensuring that any security mandates are adequately implemented and reported such as ISO, PCI, SWIFT, CBE regulations, and other applicable standards.<br>
2. Recommend and coordinate with the Security Operations Center for the security compliance monitoring requirements as needed such as File Integrity Monitoring, Database Activity Monitoring and others. <br>
3. Ensure maintenance of all needed documentation supporting security compliance requirements, and audit issues for ongoing tracking and documentation.<br>
4. Participate in Secure Development and Acquisition life cycle process to assess and identify areas of concern from security compliance perspective in line with regulations, standards and best practices.<br>
5. Collaborate efforts with the Information Security Analysis Team to provide input to the security risk assessments and risk register, which will ensure all security compliance requirements are being considered and catered for.<br>
6. Review and ensure the semi-annual firewall reviews are conducted to ensure compliance with PCI, Swift standards and the developed security policies.<br>
7. Develop the necessary compliance use cases to support the different security controls and compliance requirements and communicate violations to the relevant teams.<br>
8. Ensure the standard operating procedures (SOP) are maintained for the different compliance processes and ensure proper adherence to the set SLA.<br>
9. Maintain annual compliance with the Information Security Management System - ISO 27001 standard on the certified scope.<br>
10. Liaise with the different IT Teams to develop standard configuration and baselines for IT Infrastructure and Platforms aligned with industry best practices and standards.<br>
11. Conduct periodic reviews against the approved baselines and ensure closure of all identified gaps.<br>
</p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph">*</p><p> <br>
Qualifications & Experience</p>
<ul>
<li>Bachelor degree in Engineering, Computer Science, Information Security or equivalent.</li>
<li>Officer: Minimum 5 - 7 years of experience in IT Security, Risk or Compliance </li>
<li>Senior Officer: Minimum 7-9 years of experience in IT Security, Risk or Compliance</li>
<li>Governance, Risk and Compliance background/knowledge</li>
<li>Recommended Certifications:</li>
</ul>
<p>o ISO 27001:2013 Lead Auditor<br>
o CISSP</p>
<ul>
<li>Mandatory Certifications:</li>
</ul>
<p>o Certified PCI-DSS Professional<br>
o EC Council CEH</p>
<p>Skills</p>
<ul>
<li>Very good command of English and Arabic languages</li>
<li>Very good Analytical skills</li>
<li>Very good Time management </li>
<li>Very good Teamwork Spirit</li>
<li>Very good Negotiation skills<br>
</li>
</ul><p></p></section>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Description</span><br><span></span><p>1. Recommend changes to policies and procedures based on changes to regulations, standards or best practices ensuring that any security mandates are adequately implemented and reported such as ISO, PCI, SWIFT, CBE regulations, and other applicable standards.<br> 2. Recommend and coordinate with the Security Operations Center for the security compliance monitoring requirements as needed such as File Integrity Monitoring, Database Activity Monitoring and others. <br> 3. Ensure maintenance of all needed documentation supporting security compliance requirements, and audit issues for ongoing tracking and documentation.<br> 4. Participate in Secure Development and Acquisition life cycle process to assess and identify areas of concern from security compliance perspective in line with regulations, standards and best practices.<br> 5. Collaborate efforts with the Information Security Analysis Team to provide input to the security risk assessments and risk register, which will ensure all security compliance requirements are being considered and catered for.<br> 6. Review and ensure the semi-annual firewall reviews are conducted to ensure compliance with PCI, Swift standards and the developed security policies.<br> 7. Develop the necessary compliance use cases to support the different security controls and compliance requirements and communicate violations to the relevant teams.<br> 8. Ensure the standard operating procedures (SOP) are maintained for the different compliance processes and ensure proper adherence to the set SLA.<br> 9. Maintain annual compliance with the Information Security Management System - ISO 27001 standard on the certified scope.<br> 10. Liaise with the different IT Teams to develop standard configuration and baselines for IT Infrastructure and Platforms aligned with industry best practices and standards.<br> 11. Conduct periodic reviews against the approved baselines and ensure closure of all identified gaps.<br></p><br><br> <br> <span>Qualifications</span><br><span></span><p><br> Qualifications & Experience</p><br><ul><li>Bachelor degree in Engineering, Computer Science, Information Security or equivalent.</li><li>Officer: Minimum 5 - 7 years of experience in IT Security, Risk or Compliance </li><li>Senior Officer: Minimum 7-9 years of experience in IT Security, Risk or Compliance</li><li>Governance, Risk and Compliance background/knowledge</li><li>Recommended Certifications:</li></ul><p>o ISO 27001:2013 Lead Auditor<br> o CISSP</p><br><ul><li>Mandatory Certifications:</li></ul><p>o Certified PCI-DSS Professional<br> o EC Council – CEH</p><br><p>Skills</p><br><ul><li>Very good command of English and Arabic languages</li><li>Very good Analytical skills</li><li>Very good Time management </li><li>Very good Teamwork Spirit</li><li>Very good Negotiation skills<br></li></ul><br> </div>
<ul><li><strong>Continuous Monitoring:</strong> 24/7 surveillance of network traffic, firewall logs, and endpoint activity for potential security breaches.</li><li><strong>Incident Response & Investigation:</strong> Analyzing alerts from <strong>SIEM</strong> (Security Information and Event Management), <strong>EDR</strong> (Endpoint Detection and Response), and <strong>SOAR</strong> (Security Orchestration, Automation, and Response) tools to identify and contain threats.</li><li><strong>Vulnerability Management:</strong> Proactively identifying security weaknesses through scanning and assisting with patching.</li><li><strong>Reporting:</strong> Documenting security incidents, root causes, and creating reports on compliance and security posture.</li><li><strong>Threat Hunting:</strong> Proactively searching for undetected adversarial activity within the network. </li><li><strong>Monitoring and Analysis:</strong> Regularly monitor network traffic for security breaches, unauthorized access, and suspicious behavior.</li><li><strong>Vulnerability Management:</strong> Perform penetration testing, risk assessments, and regular audits to identify and fix security gaps.</li><li><strong>Incident Response:</strong> Investigate, respond to, and mitigate security incidents and breaches.</li><li>Create and maintain comprehensive network documentation, including network diagrams, configurations, and standard operating procedures. This documentation ensures that the network infrastructure is well-documented, facilitating efficient troubleshooting, maintenance, and future network expansions. Collaborate with cross-functional teams, such as system administrators to ensure the seamless integration of network Security services with other IT systems. They may also lead or participate in projects related to network upgrades, migrations, and expansions.</li></ul>
<ul><li><p>Supervise and oversee the implementation of administrative security procedures across company sites.</p></li><li><p>Lead and manage security personnel, ensuring effective daily operations.</p></li><li><p>Develop and implement security plans and risk management procedures.</p></li><li><p>Monitor and control the entry and exit of employees, visitors, and vehicles in accordance with company policies.</p></li><li><p>Respond to emergencies, investigate security incidents, and prepare detailed reports.</p></li><li><p>Coordinate with different departments to ensure compliance with security and safety policies.</p></li><li><p>Conduct regular security inspections and patrols to maintain a safe and secure environment.</p></li></ul><p></p><p><strong>Requirements</strong></p><ul><li><p>Retired officer from the Armed Forces or Police.</p></li><li><p>Preferred age: 30–42 years.</p></li><li><p>Previous experience in administrative security, industrial security, or site security management.</p></li><li><p>Strong leadership, decision-making, and problem-solving skills.</p></li><li><p>Good communication and report-writing skills.</p></li><li><p>Professional appearance with a high level of discipline and integrity.</p></li><li><p>Proficiency in Microsoft Office is an advantage.</p></li><li><p>Willingness to work rotating shifts and travel between company sites when required.</p></li></ul><p></p>
<p>At SITA, we keep airports moving, airlines flying smoothly, and borders open. Our technology and communication innovations power the success of the global air travel industry. You'll find us in 95% of international airports, working closely with over 2,500 transportation and government clients. Each partnership brings unique challenges, and we thrive on delivering fresh solutions and cutting-edge tech to keep operations running like clockwork. We don’t just move the world forward we’re proud to be recognized as a Great Place to Work by our employees and certified in most of our growing locations. Here, we feel empowered, supported, and inspired to grow. Are you ready to love your job? The adventure begins right here, with you, at SITA.</p><p>As Security Analyst, you will be responsible for monitoring, triaging, and investigating security alerts and events to support the timely identification and escalation of potential security incidents. You will work closely with the SOC team to protect the organization by following established playbooks, procedures, and escalation processes. You will be accountable for validating security alerts, conducting initial investigations, documenting findings, and ensuring that security incidents are escalated appropriately while contributing to continuous improvements in monitoring and operational effectiveness.</p><p>Reporting to the Senior Manager, Service Operations, you will be part of the Security Operations Center (SOC), responsible for monitoring the organization's security posture, identifying threats, investigating suspicious activity, and supporting the broader Cyber Defense function.</p><p><strong>WHAT YOU WILL DO</strong></p><ul><li>Monitor security alerts and events across SIEM, EDR/XDR, cloud, identity, email, and other security monitoring platforms.</li><li>Perform initial alert triage and determine whether activity is malicious, benign, or a false positive.</li><li>Investigate low- to medium-severity security alerts and gather relevant evidence to support response and escalation activities.</li><li>Execute approved SOC playbooks, standard operating procedures (SOPs), and investigation workflows.</li><li>Create, maintain, and update investigation tickets with clear documentation, timelines, evidence, and actions taken.</li><li>Escalate complex, high-risk, or suspicious cases to Senior Security Analysts, SOC SMEs, or the Incident Response team as required.</li><li>Participate in shift handovers and operational reporting to maintain investigation continuity and situational awareness.</li><li>Support vulnerability monitoring, compliance activities, and security operational tasks when required.</li><li>Contribute to knowledge base updates, process improvements, and SOC operational maturity initiatives.</li><li>Maintain high standards of accuracy, professionalism, and confidentiality when handling security investigations and sensitive information.</li></ul><p><strong>Desired Candidate Profile</strong></p><p>You have 1-3 years of experience in Security Operations or a related cybersecurity role.</p><p>You have experience investigating security alerts using EDR/XDR solutions such as Microsoft Defender, Cortex XDR, or CrowdStrike Falcon.</p><p>You have experience using IT service management or ticketing platforms, such as ServiceNow, to document, track, and escalate security investigations.</p><p>You possess a fundamental understanding of SIEM technologies, preferably Elastic or Splunk.</p><p>You have basic knowledge of Windows, Linux, Active Directory, Azure/Entra ID, and networking concepts.</p><p>You understand common cyber threats and attack techniques, including phishing, malware, brute-force attempts, suspicious authentication activity, and endpoint-based detections.</p><p>You can analyze and correlate security events from multiple data sources to support investigations and alert validation.</p><p>You have a foundational understanding of detection rules, correlation logic, and monitoring use cases across SIEM and EDR/XDR platforms.</p><p>You possess strong analytical, organizational, documentation, and communication skills with strong attention to detail.</p><p>You hold a Bachelor's Degree in Information Technology, Cybersecurity, Computer Science, or a related field, and at least one industry-recognized cybersecurity certification such as Security+, GSEC, CySA+, SC-200, AZ-900, or SC-900.</p><p><strong>NICE-TO-HAVE</strong></p><ul><li>Participation in cybersecurity training programs, Capture the Flag (CTF) competitions, cyber labs, or other hands-on learning activities.</li><li>Exposure to cloud security monitoring within Microsoft Azure, Microsoft 365, or AWS environments.</li><li>Familiarity with the MITRE ATT&CK framework and its application to security monitoring and threat investigations.</li></ul>
Implement, and administer enterprise network infrastructure including routers, L2/L3 switches, wireless solutions, load balancers, and remote access technologies to ensure high availability and optimal performance Implement, and maintain security infrastructure across multiple vendors including:Next-Generation Firewalls (NGFW) L3/L4 Firewalls Web Application Firewalls (WAF) Identity and Access Control solutions Secure web gateways and security proxies SASEManage network segmentation, zoning, VPN connectivity, cryptography standards, and DoS/DDoS protection mechanisms to ensure compliance with security standards and best practices Administer and support enterprise voice and collaboration platforms including Avaya, Cisco and Contact Center solutions Monitor network and security infrastructure using enterprise monitoring and logging tools, investigate incidents, perform root cause analysis, and take corrective actions proactively Lead troubleshooting and resolution of complex network, communication, and security incidents while providing third-level support for critical business services Ensure proper documentation, configuration management, backup validation, disaster recovery readiness, and adherence to change management processes Collaborate with internal teams, vendors, and outsourced support providers to ensure service availability, operational excellence, and successful project delivery Participate in infrastructure projects, upgrades, migrations, audits, and security improvement initiatives<br><br>Technical Skills & Experience<br><br>Strong hands-on experience with enterprise networking technologies including routing, switching, and wireless technologies Strong experience with enterprise security solutions Experience with web application firewalls, load balancers, reverse proxies, and secure remote access technologies Good understanding of cybersecurity frameworks, segmentation models, zero-trust concepts, and security operations Experience in enterprise monitoring, logging, and troubleshooting tools Strong analytical, troubleshooting, and incident management skills Experience working in enterprise environments with high availability and strict compliance requirements<br><br>Requirements<br><br>Qualifications<br><br>Bachelor's degree in Information Technology, Computer Science, Engineering, or a related field Professional certifications are highly preferred, such as:CCNP Enterprise / Security PCNSENSECISSPF5 Certifications 5-7 years of experience in enterprise network, security, and communication administration
<p><strong><em><u>Job Description:</u></em></strong> </p><ul><li><p> Design, implement, and maintain network security solutions, including firewalls, VPNs, IDS/IPS, and other security technologies.</p></li><li><p> Monitor network traffic for unusual activity and implement necessary security measures.</p></li><li><p> Conduct regular security assessments to identify vulnerabilities and address potential risks.</p></li><li><p> Configure and manage firewalls to control and monitor network traffic.</p></li><li><p> Ensure firewall policies align with security best practices and organizational requirements.</p></li><li><p> Deploy and manage intrusion detection and prevention systems to safeguard against potential security breaches.</p></li><li><p> Investigate and respond to security incidents in a timely manner.</p></li><li><p> Conduct regular security audits to assess the effectiveness of existing security measures.</p></li><li><p> Collaborate with internal teams to address any identified vulnerabilities or weaknesses.</p></li><li><p> Develop and enforce network security policies and procedures.</p></li><li><p> Provide training and awareness programs to educate staff on security best practices.</p></li></ul><p></p><p><strong>Requirements</strong></p><p></p><p><strong><em><u>Job Requirements</u></em></strong>:</p><ul><li><p> Bachelor's degree in computer science, Information Technology, or a related field.</p></li><li><p> Solid understanding of network protocols, firewall technologies, and intrusion detection/prevention systems.</p></li><li><p> Solid understanding of network protocols, firewall technologies, and intrusion detection/prevention systems.</p></li><li><p> Hands-on experience with network security tools and software (e.g., Wireshark, Nmap, Snort, etc.).</p></li><li><p> Solid understanding Cloud Getaways (Barracuda and Kasper sky Endpoint cloud).</p></li><li><p> Hands-on, technical experience with security solutions and technical knowledge of mainstream operating systems and wide range of security technologies such as Firewalls, IPS, VPN, MFA, WAF, PAM, IAM, Web Proxy and email Gateway, and end-point solutions preferred.</p></li><li><p> Knowledge of encryption technologies and VPN implementations</p></li><li><p> Familiarity with industry compliance standards (e.g., ISO 27001, NIST, PCI DSS).</p></li><li><p> Strong analytical and problem-solving skills with a keen eye for detail.</p></li><li><p> In-depth knowledge of network security technologies and best practices.</p></li><li><p> Certifications such as CISSP, CCNA Security, or equivalent are a plus.</p></li><li><p> Strong analytical and problem-solving skills.</p></li><li><p> Excellent communication and teamwork abilities.</p></li></ul><p></p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p><b>The Position:</b></p><br><p>The Office of the Security Coordinator (OSC) at UNFPA Headquarters, New York, coordinates and leads the organization’s global response to safety and security, enabling the Executive Director's strategic direction regarding the safety and security of UNFPA personnel, property, and assets. OSC provides technical advice, guidance, and support in implementing security policies and procedures to the Executive Director, senior managers, and personnel to fulfill their security-related accountabilities. OSC also leads the organization's Business Continuity Management (BCM) preparation, validation, and testing of Business Continuity Plans (BCPs). </p><br><p><u>The key functions of the Office of the Security Coordinator are:</u></p><br> <p>a. Enable the delivery of activities guided by the 1994 Program of Action of the International Conference on Population and Development (ICPD) targets and objectives, the UNFPA Strategic Plan, in compliance with United Nations and UNFPA safety and security policies and procedures; </p><br> <p>b. Coordinate strategic corporate safety and security management policies and procedures internally within the organization and with external partners. </p><br> <p>c. Mainstream safety and security in organizational programs and activities;</p><br> <p>d. Lead crisis management, preparedness, and business continuity management for UNFPA offices globally in support of managers in their respective geographic areas of responsibility.</p><br> <p>e. Lead the corporate Business Continuity Management (BCM), oversee the preparation, validation, and testing of Business Continuity Plans (BCPs). </p><br> <p>f. Represent UNFPA at the UN Security Management Policy Forums to ensure the organization's specific interests and needs are incorporated in security policies and procedures. </p><br><p>Regional Security Advisers (RSAs), located in each Regional Office, are members of the OSC team and undertake these activities within their respective areas of responsibility.</p><br><p>The RSA reports directly to the Chief, OSC on security policy, technical, and administrative matters, and works closely with the Regional Director as the substantive safety and security expert. As a senior member of the regional management team, the RSA provides strategic and technical advice to regional and country leadership, programme managers, DSS, UN agencies, funds and programmes, and external partners to support informed risk decisions and effective security risk management in line with the UN Framework of Accountability and UNFPA Security Accountability Policy.</p><br><p><b>How you can make a difference:</b></p><br><p>UNFPA is the lead United Nations agency for delivering a world where every pregnancy is intended, every childbirth is safe, and every young person's potential is fulfilled. The UNFPA Strategic Plan for 2026-2029 articulates the organization’s response to a complex global environment, providing a roadmap for resilience and renewal. It is designed to accelerate the implementation of the Programme of Action of the International Conference on Population and Development (ICPD) and the achievement of the Sustainable Development Goals by 2030. This mandate is pursued through a focus</p></div>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>To detect and prevent Cyber Security Incidents by monitoring, detecting and analysing potential intrusions; In addition to respond to cyber threats and act as a first line defence in order to protect the bank s information systems from internal and external threats</p><p>1. Detect, classify, and report incidents to either escalate to the triage team or close the event to ensure the root cause of the incident.</p><p>2. Identify security risks and communicate escalations throughout the incidents per the Security Operations Center (SOC) processes.</p><p>3. Communicate directly with data asset owners and business response plan owners during high severity incidents to maintain the integrity of the Investigation.</p><p>4. Perform analysis of log files to investigate the events to identify the root cause of the incident.</p><p>5. Recommend tuning Security Information & Event Management (SIEM) filters and correlation rules to continuously improve monitoring and detection.</p><p>6. Create monitoring dashboards to ensure real time awareness of security.</p><p>7. Generate reports required for audit and compliance requirements and required SOC governance reports.</p><p>8. Participate in evaluating and recommending security solutions to ensure catering for logging and monitoring requirements in any system to fulfil SOC core objectives.</p><p>9. Monitor all log sources heart beat and report/investigate issues to ensure maintaining healthy logs to avoid any failure of data collection and impacting the core SOC monitoring function.</p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p>Bachelor s degree of Engineering, Computer Science or equivalent</p><p>Minimum 0 - 2 years of experience in cyber security and/or information technology (IT) security</p><p>Experience in analysing security logs</p><p>Proficiency with case management and ticketing systems interaction</p><p>Basic understanding of Information Security frameworks and best practices (e.g. PCI, ISO27K, NIST)</p><p>Recommended Certifications:</p><ul><li>Security+</li><li>GIAC Information Security Fundamentals (GCIA)</li></ul><p>Mandatory Certifications</p><ul><li>Certified Ethical Hacker (CEH)</li></ul><p>Skills:</p><p>Very good command of English and Arabic languages</p><p>Good Communications skills</p><p>Good Analytical skills</p><p></p></section>
Job Summary The Senior Penetration Tester is responsible for conducting advanced security testing to identify vulnerabilities in the organization’s networks, systems, and applications. The role involves performing penetration tests, simulating cyberattacks, and providing actionable recommendations to strengthen the organization’s security posture. Key Responsibilities Conduct penetration testing on web applications, mobile applications, networks, and infrastructure. Perform ethical hacking activities to simulate real-world cyberattacks and identify security weaknesses. Identify and exploit vulnerabilities using tools and manual testing techniques. Prepare detailed technical reports outlining vulnerabilities, risk levels, and remediation recommendations. Work closely with development and IT teams to validate fixes and improve security controls. Lead red team exercises and security assessments when required. Use industry-standard tools such as Burp Suite, Metasploit, Nmap, OWASP ZAP, and Kali Linux. Stay updated on latest cyber threats, attack techniques, and security vulnerabilities. Support security audits, compliance requirements, and risk assessments. Mentor junior penetration testers and provide technical guidance to the team. Requirements Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field.5–8 years of experience in Penetration Testing, Ethical Hacking, or Cybersecurity. Strong experience in Web Application, Network, and Infrastructure Penetration Testing. Deep knowledge of OWASP Top 10 vulnerabilities and exploitation techniques. Hands-on experience with penetration testing tools such as Burp Suite, Metasploit, Nmap, Wireshark, and Kali Linux. Experience with scripting or programming (Python, Bash, or similar) is a plus. Strong knowledge of network protocols, operating systems (Linux & Windows), and security architecture. Excellent analytical and problem-solving skills. Strong reporting and communication skills. Preferred Certifications OSCP (Offensive Security Certified Professional) CEH (Certified Ethical Hacker) GWAPT / GPENCISSP (optional)