Security inspector Jobs - Cairo Egypt
2348 Jobs Found
Job Description: <br>· Develop, implement, and maintain information security policies, standards, and procedures.· As an Information Security Assessor (QSA), you will lead and support client engagements focused on evaluating security controls, validating compliance against regulatory frameworks, and providing structured, evidence-based reporting.· Conduct information security risk assessments and recommend mitigation plans.· Ensure compliance with security frameworks and regulatory requirements (PCI is Must)· Coordinate with internal teams and external auditors during PCI DSS audits and certification processes.· Hands-on experience with PCI DSS compliance and audit processes is Must· Responsible for protecting the organization's systems, networks, and data from cyber threats and security breaches by implementing effective security controls and ensuring compliance with security policies.· Perform Security Assessments: Lead and execute PCI DSS assessments, including scoping client environments, performing control validation, and producing required deliverables such as Reports on Compliance (ROC), Attestations of Compliance (AOC), and Self-Assessment Questionnaires (SAQ), as applicable.· Develop and maintain information security governance frameworks, policies, and procedures.· Develop Assessment Reports: Produce clear, structured reports that document compliance status, supporting evidence, and identified gaps in alignment with applicable regulatory requirements. Provide Advisory Support: Guide clients in preparation for assessments by assisting with scoping, identifying sensitive data flows, performing gap analyses, and outlining remediation actions. Support Technical Documentation: Contribute to or lead the development and review of policies and procedures to align with compliance requirements and industry standards. Assist in the development, implementation, and maintenance of GRC policies, standards, and procedures. Conduct risk assessments to identify, analyze, and evaluate potential risks and vulnerabilities across various business functions and IT systems. Collaborate with cross-functional teams to ensure alignment of GRC activities with business objectives. Requirements:· Bachelor’s degree in computer science, Information Technology, or a related field.· English Level Excellent to fluent is must (written and spoken).· 3+ years of experience in Information Security, Governance, Risk, and Compliance (GRC), or a similar role.· Strong documentation, analytical, and reporting skills.· Excellent communication and stakeholder management skills.· Strong knowledge of security standards and compliance frameworks, including PCI DSS, and other relevant regulations.· Practical experience with PCI DSS compliance, including gap assessments, audit preparation, evidence collection, and remediation activities.<br>Preferred Certifications PCI DSS Professional (PCIP)
Job Description: <br>· Develop, implement, and maintain information security policies, standards, and procedures.· As an Information Security Assessor (QSA), you will lead and support client engagements focused on evaluating security controls, validating compliance against regulatory frameworks, and providing structured, evidence-based reporting.· Conduct information security risk assessments and recommend mitigation plans.· Ensure compliance with security frameworks and regulatory requirements (PCI is Must)· Coordinate with internal teams and external auditors during PCI DSS audits and certification processes.· Hands-on experience with PCI DSS compliance and audit processes is Must· Responsible for protecting the organization's systems, networks, and data from cyber threats and security breaches by implementing effective security controls and ensuring compliance with security policies.· Perform Security Assessments: Lead and execute PCI DSS assessments, including scoping client environments, performing control validation, and producing required deliverables such as Reports on Compliance (ROC), Attestations of Compliance (AOC), and Self-Assessment Questionnaires (SAQ), as applicable.· Develop and maintain information security governance frameworks, policies, and procedures.· Develop Assessment Reports: Produce clear, structured reports that document compliance status, supporting evidence, and identified gaps in alignment with applicable regulatory requirements. Provide Advisory Support: Guide clients in preparation for assessments by assisting with scoping, identifying sensitive data flows, performing gap analyses, and outlining remediation actions. Support Technical Documentation: Contribute to or lead the development and review of policies and procedures to align with compliance requirements and industry standards. Assist in the development, implementation, and maintenance of GRC policies, standards, and procedures. Conduct risk assessments to identify, analyze, and evaluate potential risks and vulnerabilities across various business functions and IT systems. Collaborate with cross-functional teams to ensure alignment of GRC activities with business objectives. Requirements:· Bachelor’s degree in Computer Science, Information Technology, or a related field.· English Level Excellent to fluent is must (written and spoken).· 3+ years of experience in Information Security, Governance, Risk, and Compliance (GRC), or a similar role.· Strong documentation, analytical, and reporting skills.· Excellent communication and stakeholder management skills.· Strong knowledge of security standards and compliance frameworks, including PCI DSS, and other relevant regulations.·Practical experience with PCI DSS compliance, including gap assessments, audit preparation, evidence collection, and remediation activities.<br>Preferred Certifications PCI DSS Professional (PCIP)
The Security Analyst is responsible for protecting the organization’s digital assets by monitoring systems, identifying vulnerabilities, and addressing cyber threats. They ensure compliance with security standards, manage access controls, escalate incidents, enforce policies, and provide training to maintain a secure and resilient IT environment.<br><br>Main Tasks Duties include, but are not limited to the following<br>:Monitor security systems and tools, investigate anomalies, and respond to threats, vulnerabilities, and incidents. Conduct regular vulnerability assessments and penetration testing to identify weaknesses in infrastructure, applications, and processes. Manage identity and access management (IAM) processes, including role-based access controls (RBAC), provisioning, deprovisioning, and periodic reviews. Ensure compliance with security standards and regulations, supporting internal and third-party risk assessments and mitigation efforts. Proactively address cyber threats and escalate critical incidents to the Cybersecurity Manager with actionable recommendations for resolution. Develop, test, and maintain incident response plans to ensure readiness for cybersecurity breaches. Enforce cybersecurity policies, conduct training programs, and foster a culture of security awareness. Stay updated on cybersecurity trends, technologies, and best practices to enhance the organization’s security posture. Maintain detailed records of incidents, including root cause analysis, resolution steps, and lessons learned. Prepare periodic reports on security metrics, incidents, and system health for review by the Cybersecurity Manager and IT leadership<br>Education <br>Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field is typically required.<br>Experience<br>4+ years of experience in IT, of which 2 cybersecurity roles, such as a Security Analyst, IT Security Specialist, or similar position. Experience in manufacturing environment is a plus.<br>Languages<br>Proficient in English Proficient in Arabic
JOB PURPOSE:<br>Protect the payment platforms of Modupay, customer data and internal systems from any form of cyber-attacks by implementing security measures, detecting any gaps and reacting to any form of attacks.<br>KEY ACCOUNTABILITIES:<br>Develop, maintain, and enhance information security policies, standards, procedures, and secure configuration baselines. Plan, perform, and coordinate vulnerability assessments and penetration tests for internal, external, web, API, cloud, and mobile environments, and track remediation to closure. Execute security testing methodologies including reconnaissance, validation of findings, exploitation within approved scope, post-test reporting, and retesting of remediated issues. Develop, implement, and distribute incident response, escalation, and breach-handling procedures, and support investigations of security events. Monitor and analyze security alerts, threat intelligence, and attack trends, and communicate actionable risk information to technical and business stakeholders. Conduct control reviews to confirm adherence to security policies, operational procedures, and secure development and infrastructure practices. Support compliance with Egyptian data protection requirements, National Telecom Regulatory Authority cybersecurity obligations where applicable, PCI DSS, and relevant Central Bank of Egypt expectations for financial services. Work with IT, engineering, product, and third-party providers to remediate vulnerabilities, strengthen security architecture, and improve security posture across the environment.<br>KNOWLEDGE, SKILLS & COMPETENCIES:Education Background Bachelor’s degree in Computer Science or Information Systems or Engineering Competencies Strong understanding of computer science fundamentals, operating systems, networks, web technologies, databases, authentication, and common enterprise architectures. Hands-on capability to perform penetration testing and vulnerability assessments using recognized methodologies and secure reporting practices. Practical knowledge of web, API, network, cloud, Active Directory, and mobile security testing concepts, including validation of findings, risk rating, and remediation guidance. Experience with security operations concepts such as SIEM, DLP, EDR, incident response, threat hunting, perimeter defense, risk assessment, and security metrics. Strong understanding of adversary tactics, techniques, and procedures, threat modeling, kill chain analysis, and common attack paths used by cybercriminal and advanced threat actors. Ability to write clear technical reports and executive summaries, communicate risks effectively, and speak authoritatively to technical and non-technical audiences. Familiarity with the Egyptian cybersecurity and payments landscape, including digital banking, wallets, card environments, and local regulatory expectations. Relevant certifications preferred, such as OSCP, PNPT, e JPT, CEH Practical, GPEN, Security+, CySA+, or CISSP/SSCP, with at least one hands-on offensive security certification strongly preferred for roles performing penetration testing. Strong stakeholder management, ethics, discretion, and the ability to work within approved rules of engagement and documented authorization for testing activities. Language Skills Very Good in writing and reading English language Years of Experience2-3 Years Internal Stakeholders CISO, Product, Compliance, IT Operations, Legal, HRExternal Stakeholders External auditors, penetration testing vendors, regulators, payment partners, and relevant Egyptian authorities and industry bodies.
About noon <br>We’re building an ecosystem of digital products and services that power everyday life across the Middle East—fast, scalable, and deeply customer-centric. Our mission is to deliver to every door every day. We want to redefine what technology can do in this region, and we’re looking for a Cloud Security Engineer who can help us move even faster.noon’s mission: Every door, every day.<br>What you'll do:Team noon has some of the fastest, smartest, and hardest-working people we've encountered. With a young, aggressive, and talented team, we're driving major missions forward. Noon's Group Cybersecurity is looking for a Security Engineer, Cloud & Operations to join our Cloud Security team. This is a hands-on engineering role, you will build cloud-native detections that catch real attacker behavior in GCP, deploy preventive controls at org scale, and investigate the SOC alerts your own detections generate. You write the detection rule, you investigate the alert it fires, and you convert findings into durable controls or tooling that prevents recurrence. We hire engineers who build, not analysts who configure. Build and maintain cloud detection rules in SIEM and EDR including GCP-specific attack paths, and managing them through sandbox validation, retro hunts, false-positive elimination, and risk-scoring alignment. Design and deploy preventive WAF and cloud security controls Investigate security alerts and incidents from the SOC, determine root cause, support remediation with engineering teams, and reduce noise through systematic detection tuning and exemption strategies. Build and maintain internal cloud security tooling, security scanning pipelines, shipping cross-project services that scale across the group. Triage and tune EDR alerts, including detection policy adjustments, response workflow automation, playbook contributions, and endpoint investigation support. Build incident response automations based on established playbooks, including containment workflows, IR actions and isolation responses. Surface cloud security misconfiguration and work with engineering teams on IAM to right-size access without disruption. Partner with Dev Ops, IT, Product Security, and Offensive Security teams to operationalize cloud restrictions, onboard new environments, validate security controls, and provide evidence for compliance and audit requirements.<br>What you'll need:2 to 4 years of experience in cloud security, detection engineering, security operations, or software engineering with a security focus. Hands-on experience with GCP security fundamentals: IAM, org policies, service accounts, Cloud Storage, Cloud Build, Cloud Run, or equivalent depth on another major cloud provider. Practical experience writing or maintaining detection rules in a SIEM platform (Splunk, Google Sec Ops, or similar), including rule authoring, testing, and false-positive management. Ability to investigate security alerts end-to-end: from initial triage through root-cause analysis, evidence collection, and supporting remediation efforts with relevant teams. Familiarity with at least one EDR platform (Crowd Strike Falcon or similar), including alert triage and basic detection tuning. Clear communication skills with the ability to document findings, write incident reports, and coordinate with cross-functional teams without requiring executive escalation. Comfortable working across multiple environments (production, staging, sandbox) and geographies with structured processes and attention to operational impact. Software engineering background preferred - production-quality coding capability in Python, Go, or similar. We want someone who builds tools and services. Experience in product-first, consumer internet, e-commerce, fintech, or marketplace environments - preferred<br>Who will excel? We’re looking for people with high standards, who understand that hard work matters. You need to be relentlessly resourceful and operate with a deep bias for action. We need people with the courage to be fiercely original.noon is not for everyone; readiness to adapt, pivot, and learn is essential.
Property Security & Guest Relations Manager Company Description Ahmed Global Investments is an international real estate investment and property management company with residential and vacation rental properties in Egypt. The company is focused on providing safe, well-maintained accommodations and exceptional guest experiences while protecting company assets and supporting long-term growth. Ahmed Global Investments values professionalism, integrity, reliability, and outstanding customer service. We are seeking a trusted local representative to support property operations, guest services, and security functions in El Shorouk City and the Greater Cairo area. Role Description Reporting to the Property Manager and working as directed, the Property Security & Guest Relations Manager is responsible for property security, guest support, property inspections, contractor coordination, and owner assistance. This role serves as the local representative for company operations and helps ensure that all properties remain secure, well-maintained, and guest-ready. The successful candidate will conduct regular property inspections, coordinate maintenance activities, assist guests during check-in and check-out, respond to emergencies, and serve as a trusted point of contact for guests, contractors, and company representatives. When the owner is present in Egypt, the Property Security & Guest Relations Manager will be expected to provide licensed personal security, transportation support, and general assistance on a 24-hour availability basis. The employee must remain reachable at all times, accompany the owner when requested, and assist with travel, meetings, appointments, property visits, and other activities throughout Cairo, El Shorouk, and New Cairo. The employee will perform duties as assigned by the Property Manager and support company operations, guest services, property management activities, security functions, maintenance coordination, and other responsibilities as required. Responsibilities Property Security & Oversight Conduct weekly inspections of apartments and company properties Inspect doors, windows, locks, utilities, and overall property condition Monitor property security and identify potential concerns Meet and supervise contractors, maintenance personnel, and service providers Respond to emergencies and security-related incidents Coordinate with local authorities and emergency services when necessary Maintain records of inspections, incidents, and property activities Ensure properties remain secure, clean, and guest-ready Guest Relations Welcome guests during check-in and assist during check-out Assist guests with luggage when needed Arrange transportation and local services for guests Serve as a point of contact for guest needs and concerns Assist with communication between guests and local vendors or service providers Remain available to respond to guest issues and emergencies Help ensure a positive guest experience at all company properties Owner Support & Personal Security Accompany the owner when requested throughout Cairo, El Shorouk, New Cairo, and other locations within Egypt Provide licensed personal security and support services while the owner is present in Egypt Remain available on a 24-hour basis during periods when the owner is in Egypt Assist with transportation coordination and travel arrangements Assist with translation and communication in English and Arabic Assist the owner with appointments, meetings, banks, businesses, and government offices Accompany the owner during property visits, inspections, and business activities Maintain confidentiality and exercise discretion regarding company and personal matters Qualifications Required Qualifications Egyptian citizen Clean criminal record (فيش وتشبيه) Military service completed or legally exempt Must possess a valid security guard license, certification, or other authorization required to legally perform security duties in Egypt Ability to provide proof of current licensing, certification, or security training upon request Strong English language skills are required Must speak, read, and write English proficiently Must be able to communicate professionally with international guests without an interpreter Smartphone with Whats App Professional appearance and demeanor Excellent references and reputation for honesty, reliability, and trustworthiness Ability to work independently and responsibly Ability to maintain confidentiality and handle sensitive information Ability to provide 24-hour availability when the owner is present in Egypt Preferred Qualifications Previous experience in security, executive protection, hospitality, customer service, property management, military service, law enforcement, or related fields First aid certification Valid driver's license is a plus Residence near El Shorouk City is preferred Transportation can be provided when necessary Additional Information Compensation will be based on experience, qualifications, English proficiency, availability, and overall suitability for the position. Only candidates who meet the English language requirement, security licensing requirements, and demonstrate professionalism, reliability, discretion, and strong character will be considered.
We are seeking a technical and customer-focused Security Implementation Engineer to join our growing team. This role is central to our customer success mission, responsible for the end-to-end technical integration of new clients into COGNNA's security monitoring Platform. The ideal candidate is a hands-on expert with major SIEM/Security platforms and possesses deep system administration skills across Linux, Windows, and cloud environments, enabling them to independently troubleshoot and resolve complex integration challenges.<br><br>???? Key Responsibilities<br><br>???? Client Onboarding & Implementation:<br><br>Lead the technical onboarding process for new customers, from initial kick-off to full operational status Integrate customer log sources (e.g., firewalls, servers, cloud platforms, applications) with our security data lake Develop and configure custom parsers and data connectors to ensure accurate data ingestion and normalization<br><br>????️♂️ System Administration & Troubleshooting:<br><br>Utilize deep expertise in Linux and Windows Server to troubleshoot agent installations, log forwarding configurations, and connectivity issues directly on customer systems Act as the primary technical resource for diagnosing and resolving complex infrastructure and OS-level issues that impede data collection Contribute to the continuous improvement of our onboarding processes, creating documentation and automation scripts to increase efficiency<br><br>???? Security Advisory & Customer Success:<br><br>Serve as a trusted technical advisor to clients during the onboarding phase, providing guidance on logging best practices and security architecture Work closely with the Security Operations Center (SOC) and account managers to ensure a seamless handover of clients upon successful onboarding<br><br>Requirements<br><br>???? Experience:<br><br>Hands-on experience in a technical cybersecurity role (e.g., SOC Engineer, SIEM Engineer, Security Consultant)3+ with direct responsibility for technical implementation or support Proven experience managing and troubleshooting both Linux (e.g., Ubuntu, Cent OS) and Windows Server environments in a production setting<br><br>???? Technical Skills:<br><br>SIEM: Expertise with major SIEM platforms. Experience with systems like Splunk, Microsoft Sentinel, Elastic Search, or Google Sec Ops is essential Operating Systems: Deep proficiency in system administration, log management, and troubleshooting across Linux and Windows Scripting: Proficiency in at least one scripting language (e.g., Python, Bash, Power Shell) for automation and parsing Security Concepts: Strong knowledge of network security architecture, cloud security (AWS, Azure, GCP), and security devices (Firewalls, IDS/IPS, EDR) Google Cloud and management of Google Sec Ops experience<br><br>???? Soft Skills:<br><br>Exceptional problem-solving skills with the ability to work independently Strong communication and interpersonal skills, with an ability to articulate technical concepts to diverse audiences A proactive, detail-oriented, and self-motivated work ethic<br><br>Benefits<br><br>???? Impact that Matters - Build products that shape the future of cybersecurity and protect organizations globally.<br><br>???? Continuous Growth - Access to certifications, trainings, and opportunities to sharpen your expertise.<br><br>???? Ownership Mindset - Benefit from our benefits program and grow with COGNNA's success.<br><br>???? Culture of Trust - We empower talent, encourage ownership, and celebrate real outcomes.
Manage risk-based IT and Information Security audit engagements. Evaluate cybersecurity governance, security controls, and information security frameworks. Assess IT infrastructure, cloud environments, networks, databases, and critical applications. Review IT General Controls (ITGCs), application controls, identity and access management, change management, and disaster recovery processes. Evaluate compliance with regulatory requirements, industry standards, and internal policies. Identify control deficiencies, assess associated risks, and recommend practical remediation actions. Prepare and present audit findings and reports to senior management and relevant committees. Monitor and follow up on management action plans to ensure timely remediation of audit findings. Manage and mentor audit team members and ensure the quality and timely completion of audit engagements. <br><br>Requirements<br><br>Bachelor's degree in Information Systems, Computer Science, Cybersecurity, or a related discipline. Significant experience in IT Audit, Information Security Audit, IT Risk Management, or Cybersecurity Assurance. Professional certifications such as: CISA (Certified Information Systems Auditor) - preferred. CISM (Certified Information Security Manager). CISSP (Certified Information Systems Security Professional). CRISC (Certified in Risk and Information Systems Control). CIA (Certified Internal Auditor) with a focus on IT auditing. Strong knowledge of cybersecurity frameworks, IT governance, cloud technologies, and regulatory compliance requirements.
Key Responsibilities Generate new business opportunities and manage the full sales cycle. Build and maintain strong relationships with enterprise customers. Identify client security needs and recommend tailored cybersecurity solutions. Prepare proposals, negotiate contracts, and close deals. Collaborate with technical teams to deliver the best solutions. Achieve monthly and annual sales targets. Requirements Bachelor's degree in Business, IT, Computer Science, or a related field.3-5 years of B2B sales experience, including 1+ year in cybersecurity or IT solutions sales. Strong knowledge of cybersecurity solutions (Network Security, Cloud Security, Endpoint Security, SIEM, IAM, etc.). Excellent communication, presentation, and negotiation skills. Proven track record of achieving sales targets. Fluency in English is required.
Own the end-to-end vulnerability management lifecycle across multiple environments (test, staging, DR, production). Coordinate and oversee vulnerability scanning activities using enterprise-grade tools over appliances, VMs and containers. Prioritize findings based on risk, ensure timely remediation with IT/Application teams, and track closure. Coordinate internal and external penetration testing engagements with third-party vendors. Review penetration test reports, validate findings, and follow up remediation until closure. Act as the technical bridge between assessors and internal technical teams. Run assurance activities across security controls (e.g., Firewall, EDR, AV, DLP, Sandbox, etc.). Ensure findings are remediated and closed within agreed SLAs and security baselines. Supervise POC activities for security tools and controls. Support requirement validation, testing, and evaluation during information security initiatives.<br><br>Requirements<br><br>Bachelor's degree in computer science, Information Systems, or equivalent education +6 years of experience in the Info Sec. Proven hands-on experience in vulnerability management and penetration testing coordination. Strong understanding of security controls, system hardening, and risk assessment. Experience working closely with IT, Infrastructure, and Application teams. Ability to translate technical findings into clear, actionable remediation steps. Prior experience in a regulated environment (Fin Tech, banking is preferred) is a strong plus. Security certifications such as CISSP, CISM, CRISC, CEH, or equivalent are an advantage.
Company Description Bloomfield Paper Factory is a trusted manufacturer specializing in high-quality paper products. Committed to innovation and sustainability, the factory continually invests in advanced processes and environmentally friendly practices. Located in Al-Hidd, the company prides itself on delivering exceptional products to meet diverse market needs. Bloomfield Paper Factory fosters a collaborative and inclusive workplace culture, empowering its team to drive success and growth. We are a multi-entity manufacturing and distribution group operating across Saudi Arabia, Bahrain, and China. We are looking for a reliable, security-minded IT Systems & Email Security Administrator to remotely manage our email environment, user accounts, and day-to-day technology operations across all our entities. This is a trusted, hands-on role for someone who is organized, accountable, and takes information security seriously. You will keep our communication systems running smoothly, onboard and support users, and ensure our technology is deployed and maintained to a high standard.<br>Role Description We are seeking an IT Systems & Email Security Administrator for a full-time, on-site role based in Al-Hidd. The role involves overseeing the factory's IT systems, ensuring smooth operation, resolving technical issues, and maintaining system security. Responsibilities include managing system administration, troubleshooting, providing technical support, and safeguarding the organization’s network and email communication platforms. The Administrator will also collaborate with internal teams to implement and maintain secure IT solutions. Location: Remote (based in Egypt) — supporting operations across Saudi Arabia, Bahrain & China Type: Full-time · Remote Reports to: Executive Managemen Administer and secure the company email environment (Microsoft 365 / Google Workspace): setup, configuration, mailbox management, spam/phishing protection, and email security policies. Manage user accounts and identities across all entities: onboarding, offboarding, permissions, password resets, and access reviews. Configure, deploy, and maintain business applications and technology tools for users across multiple locations. Implement and enforce IT security best practices: multi-factor authentication (MFA), least-privilege access, audit logging, and data retention/backup policies. Provide remote technical support to staff across Saudi Arabia, Bahrain, and China. Maintain clear documentation of systems, accounts, and procedures. Monitor systems, respond to incidents, and escalate issues to management when needed. Requirements Proven experience as an IT Administrator, Email/Systems Administrator, or similar role. Strong hands-on expertise with Microsoft 365 administration and/or Google Workspace (email, user management, security & compliance center). Solid understanding of email security (SPF, DKIM, DMARC, anti-phishing) and endpoint/account security. Experience managing users and identities across distributed/remote teams. Excellent communication skills in English (Arabic is a strong plus). High level of integrity, discretion, and accountability when handling sensitive company data. Ability to work independently across multiple time zones.<br><br>Qualifications Nice to Have Experience supporting organizations across the GCC and/or internationally. Familiarity with data protection / compliance frameworks (e.g., Saudi PDPL). Relevant certifications (Microsoft 365, ITIL, Comp TIA, or equivalent). What We Offer A trusted, autonomous remote role with real ownership. A growing multi-national group with long-term opportunities. Direct collaboration with executive management. Strong skills in Technical Support and Information Technology operations Proficiency in System Administration, including maintaining and managing systems Expertise in Troubleshooting and resolving hardware, software, and connectivity issues Knowledge and experience in Network Security and best practices for protecting sensitive information Excellent problem-solving and analytical skills Demonstrated ability to work independently and as part of a team Bachelor's degree in Computer Science, Information Technology, or a related field Relevant certifications such as Comp TIA Security+, CCNA, or MCSA are an advantage To apply, please send your CV and a brief note about your relevant experience to hr@alisdai.com. Shortlisted candidates will be asked to complete a short reference and security background check as part of our standard hiring process.
Who we are?- onebank was established in 2020 as the company responsible for launching the 1st digital native bank in Egypt. The digital bank aims to create innovative solutions tailored to serve the needs of the banking customers in Egypt.-Our main goal is to create a positive customer experience through the differentiated journey that our customers live while using the digital bank.-Our Drive: We use our drive and commitment to energies, engage and inspire others, upholding the highest standards of work ethic, honesty and morality.<br>JOB PURPOSEEnsuring that the organization adheres to information security laws, regulations, and industry standards Including ISO27001 & PCI-DSS compliance & certifications.<br>MINIMUM QUALIFICATIONS/EDUCATION/EXPERIENCE<br>Bachelor's degree in information technology, computer science, or a related field<br>-Certifications:- ISO27001 LA or ISO 27001 LI- PCI- GRCP- GRCA<br>- 5-7+ years of experience in Information technology (IT) and Information security- Experience in ISO & PCI compliance and surveillance.- CBE CSF<br>Job Duties & Responsibilities <br>Collaborate with internal teams and provide guidance and support to address security gaps or non-compliance issues in a timely manner<br>Coordinate and facilitate internal and external audits to evaluate the effectiveness of information security controls and ensure compliance with internal policies and external regulations by preparing relevant documentation and evidence to support the audit process and facilitating interviews, data collection, and analysis during the audit, and coordinating follow-up actions to address audit findings.<br>Prepare reports on information security compliance status and progress to ensure transparency and accountability to be presented to management and relevant committees with the necessary information to make informed decisions and prioritize actions.<br>Assuring compliance to security best practices, standards (ISO27001:2013 and PCI-DSS 3.1) and regulatory (CBE CSF) to mitigate risks, protect sensitive information, and maintain customer trust.<br>Ability to lead and manage cross-functional teams and projects to successfully execute information security compliance projects and meet compliance requirements by clearly define project objectives, scope, and deliverables in addition to monitor project progress, identify and address any obstacles or challenges, and provide guidance and support as needed.<br>In-depth understanding of information security regulations and relevant industry standards ISO27001 & PCI-DSS<br>Conducting regular assessments, audits, and gap analyses including third-party audits to identify areas of non-compliance in addition to Developing and implementing remediation plans, monitor compliance, and provide guidance to stakeholders to meet security standards and regulatory requirements.<br>Stay up to date with evolving compliance requirements and industry best practices by proactively reaching out to regulatory bodies, auditors, and external stakeholders
Who we are?- onebank was established in 2020 as the company responsible for launching the 1st digital native bank in Egypt. The digital bank aims to create innovative solutions tailored to serve the needs of the banking customers in Egypt.-Our main goal is to create a positive customer experience through the differentiated journey that our customers live while using the digital bank.-Our Drive: We use our drive and commitment to energies, engage and inspire others, upholding the highest standards of work ethic, honesty and morality.<br>JOB PURPOSEEnsuring that the organization adheres to information security laws, regulations, and industry standards Including ISO27001 & PCI-DSS compliance & certifications.<br>MINIMUM QUALIFICATIONS/EDUCATION/EXPERIENCE<br>Bachelor's degree in information technology, computer science, or a related field<br>-Certifications:- ISO27001 LA or ISO 27001 LI- PCI- GRCP- GRCA<br>- 5-7+ years of experience in Information technology (IT) and Information security- Experience in ISO & PCI compliance and surveillance.- CBE CSF<br>Job Duties & Responsibilities <br>Collaborate with internal teams and provide guidance and support to address security gaps or non-compliance issues in a timely manner<br>Coordinate and facilitate internal and external audits to evaluate the effectiveness of information security controls and ensure compliance with internal policies and external regulations by preparing relevant documentation and evidence to support the audit process and facilitating interviews, data collection, and analysis during the audit, and coordinating follow-up actions to address audit findings.<br>Prepare reports on information security compliance status and progress to ensure transparency and accountability to be presented to management and relevant committees with the necessary information to make informed decisions and prioritize actions.<br>Assuring compliance to security best practices, standards (ISO27001:2013 and PCI-DSS 3.1) and regulatory (CBE CSF) to mitigate risks, protect sensitive information, and maintain customer trust.<br>Ability to lead and manage cross-functional teams and projects to successfully execute information security compliance projects and meet compliance requirements by clearly define project objectives, scope, and deliverables in addition to monitor project progress, identify and address any obstacles or challenges, and provide guidance and support as needed.<br>In-depth understanding of information security regulations and relevant industry standards ISO27001 & PCI-DSS<br>Conducting regular assessments, audits, and gap analyses including third-party audits to identify areas of non-compliance in addition to Developing and implementing remediation plans, monitor compliance, and provide guidance to stakeholders to meet security standards and regulatory requirements.<br>Stay up to date with evolving compliance requirements and industry best practices by proactively reaching out to regulatory bodies, auditors, and external stakeholders
Responsibilities Own end-to-end technical sales cycles: proposals, RFPs, BoMs, PoCs, and solution architecture. Design multi-domain security architectures (SIEM/SOAR, EDR/XDR, DAM, DLP, VM, Threat Intelligence). Engage CISOs and security architects as a trusted advisor; lead workshops and executive presentations. Maintain competitive positioning against vendors. Mentor junior engineers and build reusable pre-sales assets and templates.<br>Qualifications+2 years of experience in a pre-sales or solutions engineering role within cybersecurity. Focus: Technical leadership, Complex deal ownership, C-level engagement. Deep familiarity with at least 3 top security vendors and their leading solutions. Strong proposal writing and presentation skills.
About Vera Safe:Vera Safe is an innovative and successful U. S. headquartered privacy and cybersecurity compliance consulting firm and law firm. Due to rapid growth and increased demand for our international privacy and technology compliance and legal services, Vera Safe is seeking creative, motivated, and collaborative IT security experts to join our team. This is a fully remote position.<br>Watch / listen to learn more about Vera Safe: Check out our podcast! Apple Podcast: https://apple.co/4b28hw EYou Tube: https://www.youtube.com/@PrivacyInPractice/videos Spotify: https://bit.ly/4moSMU7<br>Vera Safe is proud to be certified as a Great Place to Work©, with 97% of our employees affirming that we are truly a great place to work. This means we foster trust, collaboration, and a positive work environment. We are committed to maintaining this standard of meaningful work, work-life balance, and a supportive community. Check out our great benefits, which are listed at the end of this job description.<br>About the Role:Vera Safe’s mission: Provide the world’s best data protection advice, with a human touch. Right now, we are seeking an IT Security Advisor to join our growing team and help us pursue this mission.<br>Our clients vary in size, location, industry, and service needs, and they love the way we advise on privacy compliance. They love our work so much, in fact, that there is a growing demand for our cybersecurity consulting (hence the need for you!).<br>This is an excellent opportunity for anyone who wants to join a team working on the cutting edge of privacy, data protection, and cybersecurity, and is excited about assisting a wide range of clients with fractional CISO-type support, including IT security program design, implementation, and management.<br>Key Responsibilities Practice Development:Serve as an integral part of Vera Safe’s cybersecurity consulting practice area through the management of client relationships and both individual and team projects/deliverables. Expand on Vera Safe’s security consulting offerings, including—but certainly not limited to—Microsoft 365 hardening, configuration auditing, and risk assessment. Further develop internal service delivery methodologies, documentation, templates, and quality control processes.<br>Client Engagement and Delivery:Handle consulting projects, including fractional-CISO-type engagements, with a strong focus on securing Microsoft 365 environments. Conduct detailed cybersecurity risk assessments, including analysis of current security controls, vulnerabilities, and threat landscape. Provide oversight and strategic direction for incident response, including breach containment, investigation, and post-incident review. Lead and execute security assessments, architecture reviews, IT security policy drafting and implementation, and remediation planning. Communicate findings and recommendations to clients clearly and professionally either through written reports and executive briefings or execution of hands-on implementation. Build trusted relationships with client stakeholders, including CISOs, IT directors, and compliance teams. Collaborate with project managers and privacy-focused project teams to determine and meet client requirements and specific project needs. Analyze practical situations and develop solutions to specialized needs.<br>Thought Leadership and Cross-Functional Collaboration:Stay current on evolving security threats and technologies. Represent our IT security practice internally and externally, including contributions to client alerts and conference talks. Collaborate with Vera Safe’s Professional Services team to ensure tight integration between our IT security and privacy advisory services.<br>Required Qualifications:At least four years of hands-on experience in IT security consulting, IT security engineering, or equivalent. At least one relevant certification (e.g., CISA, CISSP, CISM, CRISC, CCSP, SC-100 Cybersecurity Architect). Deep technical expertise in Microsoft Defender XDR, Crowd Strike Falcon, Sentinel One, or other similar technologies. Proficiency with IT security standards and frameworks (e.g., NIST CSF, ISO/IEC 27001, NIST 800-53, NIST 800-171, CIS Controls). Experience performing audit readiness assessments for frameworks, laws, and regulations (e.g., POPIA, HIPAA, ISO, NIST, GLBA). Technical background in scripting, automation, or security tooling (e.g., Power Shell, Sentinel, Defender for Endpoint). Experience developing and conducting tabletop exercises such as Business Continuity and Disaster Recovery scenarios. Experience conducting enterprise-wide formal risk assessments. Strong understanding of email security (e.g., DKIM, DMARC, SPF). Familiarity with security stacks (e.g., SIEM/SOAR, IAM, EDR, CASB). Strong understanding of cloud security posture assessments. Strong understanding of enterprise security principles, zero trust architecture, and IT security risk management. Excellent client-facing communication and report writing skills. Team player, interested in contributing to a growing enterprise. Strong writing/editing skills and attention to detail. Willingness to learn new skills and receive direction and feedback from team members. Willingness to pursue and maintain privacy certifications (e.g., CIPP/E, CIPM, CIPT). Willingness to work occasional evenings, primarily for full team meetings or essential client work.<br>Preferred Qualifications:Experience working directly with clients, in a service-oriented environment. Experience building or growing a consulting practice or service line. Experience in regulated industries (e.g., healthcare, finance, pharma). Familiarity with contract provisions that address data protection and security responsibilities. Experience migrating or overseeing the migration of systems from on-premises or hybrid to cloud-federated systems. Experience with development and implementation of incident response plans. Professional involvement in the privacy and/or data security space (attendance at privacy conferences; membership or publication in the IAPP, ISACA, etc.). Privacy certification (or similar).<br>Immediate Supervisor:Senior Vice President and Head of Professional Services<br>Key Competencies:Detail-oriented and highly organized with a strong work ethic. Ability to thrive and perform in a fully remote and international environment. Excellent written and verbal communication skills. Highly skilled in time management to enable successful work with international teams in meeting deadlines. Highly capable of independent work to fully deliver on all commitments. Ability to work productively in a cross-functional, multi-disciplinary consulting team. Experience building and maintaining relationships with colleagues and clients through polished, professional interactions and products regardless of the client’s experience with Vera Safe’s service line.<br>Vera Safe Values:In addition to technical knowledge, skills, and competencies for a specific position, Vera Safe seeks team members who are proficient in values critical to our organization. We are seeking individuals who demonstrate interest in and experience applying creativity, feedback, and business acumen in a welcoming culture that recognizes what each individual contributes to our team.<br>Vera Safe’s Excellent Benefits Include:Work from almost anywhere with Wi-FiPaid Time Off (PTO) Paid holidays Annual bonuses Membership in the International Association of Privacy Professionals (IAPP) and IAPP exam fee reimbursement (CIPP/E) Flexible working schedule in some roles Reimbursement for certain personal flight ticket Company laptop provided<br>Other Benefits:Tremendous professional development growth opportunities in the privacy, data protection, and cybersecurity niche. The chance to have a long-lasting effect on a small but growing international business. Work in an open environment with a team that respects your ideas and contributions. Occasional opportunities to travel in North America and Europe.<br>Our HR Privacy Notice is available at the following link:https://verasafe.com/legal/human-resources-privacy-policy/<br>Note:There are several steps to our recruitment process, each carefully crafted over the span of our 16 years in operations, to best ensure you and Vera Safe are a strong match – we want to hire team members who will thrive by being a part of our team! We recognize the investment of time can be a burden, but we think it’s worth it, and we appreciate you taking the time to complete it. We’ve found it enables us to find the best team members, regardless of their experience, where they went to school, or where they were trained. We want smart, kind, creative colleagues, plain and simple, and our process is a crucial part of our ability to hire this way.
Are you a security and compliance leader who thrives on customer trust? Do you want to work for a best-in-class, 100% remote organization with the brightest talent from around the world? If so, then keep reading…<br><br>At Sparkrock, we help social benefit organizations, such as nonprofits, school boards, and government agencies, reach their full potential through technology. Every day, over 150,000 people use our ERP and product platforms to work more efficiently, freeing up time and resources to focus on the good they want to achieve.<br><br>As our Group Security & Compliance Manager, you will own the entire customer-trust and compliance function across a growing private-equity portfolio, not one slice of it at one company. Every enterprise deal that hinges on security passes through you, and you get to build the program from the trust portal up rather than inherit someone else's mess.<br><br>Unlike most GRC managers who sit inside a single company running one SOC 2, this role spans multiple portfolio companies on different clouds, and it owns the AI trust story as a first-class part of the job. You'll drive SOC 2 Type II audits, stand up the customer-facing trust portal, and own AI compliance as the frameworks are still settling, representing the group directly in every customer security review.<br><br>If you thrive at the intersection of broad ownership, direct influence on revenue, and building something before the playbook is written, this role is for you.<br><br>Responsibilities<br><br>Lead customer security reviews, RFPs, RFIs, and questionnaires, turning around accurate, complete responses fast enough to keep deals moving Stand up and maintain a customer-facing trust portal (Safe Base / Vanta / Drata or equivalent), including a dedicated AI/ML section Own SOC 2 Type II program management, driving audits across portfolio companies (including Sparkrock's Type II conversion and CXT scoping), coordinating evidence with the Senior Group Security Engineer, and managing auditor relationships Author and maintain security policies and documentation, including DPAs, sub-processor lists, and incident-communication templates Own AI compliance and trust, including AI questionnaire responses, AI sub-processor management, framework tracking (EU AI Act, ISO 42001, NIST AI RMF), AI use disclosure, AI acceptable-use policy, and AI incident-comms playbooks Run third-party vendor security reviews and renewals Build and deliver internal security awareness training, and onboard customers through the required security setup Draft and coordinate customer-facing incident communications, including breach/incident notifications with legal and engineering<br><br><br><br><br>Requirements<br><br>6+ years in security GRC, customer trust, or Saa S compliance Excellent spoken and written English. Articulate, polished, and credible in live calls with enterprise customers and third parties — this person represents the group externally SOC 2 audit experience as a primary point of contact (Type II strongly preferred) Working understanding of cloud security concepts — able to read and translate technical findings, not produce them Awareness of the AI compliance landscape and willingness to own it<br><br><br><br><br>Nice to have<br><br>CISSP / CISA / CIPP/E; Vanta / Drata / Safe Base experience PE-backed or multi-portfolio background ISO 42001 / NIST AI RMF familiarity; EU AI Act awareness<br><br><br><br><br>Benefits<br>We don’t call them perks; they’re just part of what makes working at Sparkrock great.<br><br><br>We are 100% remote and global. Live your best life wherever that may be, and never lose out on career opportunities because of it Flexible work hours. We work asynchronously and don’t care when you’re online, just that you deliver great results and are there for our customers We are dedicated to your growth with consistent and meaningful feedback, support in achieving your personal career goals, and access to leading-edge tools, playbooks, and technology to amplify your experience Introductions to thought leaders in the space and webinars on cutting-edge tech hot topics Stipend to help set up your ideal home office Focus on culture: coffee chats, happy hours, cooking classes, book clubs, and more!<br><br><br><br><br>If you are a security and compliance professional who has lived and breathed customer trust and is ready to bring that expertise to a high-impact, high-ownership role, we would love to hear from you. Apply today and help us build a trust program that enterprise customers and an entire portfolio of companies can rely on.<br><br>We strive to build a team that reflects the diversity of the community we work in and encourage applications from traditionally underrepresented groups such as women, visible minorities, Indigenous peoples, people identifying as LGBTQ2SI, veterans, and people with disabilities.<br><br>All open roles are for existing vacancies unless otherwise communicated to the candidate. We are committed to keeping candidates informed throughout the process and will notify all interviewed applicants of our hiring decision within 45 days of their interview. Sparkrock retains all job postings and related recruitment information for a minimum of three years.<br><br>We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Job Purpose:Ensure the implementation of all occupational health & safety standards and civil defense regulations across the bank’s headquarters and branches, maintaining a safe and compliant work environment. Job Responsibilities: Develop and implement fire safety regulations for all facilities based on size and risk. Monitor compliance with fire safety and civil defense requirements before and during operations. Oversee occupational safety readiness of all new and existing bank facilities. Prepare and implement emergency response plans across all locations. Lead evacuation drills and supervise maintenance of fire-fighting systems. Ensure readiness and functionality of fire alarm and safety systems. Coordinate with relevant departments to address observations from Civil Defense and regulatory bodies. Follow up on legal cases or violations related to safety and compliance. Maintain and supervise an electronic safety database for all bank facilities. Prepare quarterly safety reports for executive review. Issue internal safety guidelines and security instructions.<br>Qualifications & Requirements Relevant academic qualification. Minimum 8 years of experience in security-related roles (Armed Forces, Police, Security, or Civil Defense). Proven experience in civil defense and fire safety systems.
Job Purpose:Ensure the implementation of all occupational health & safety standards and civil defense regulations across the bank’s headquarters and branches, maintaining a safe and compliant work environment. Job Responsibilities: Develop and implement fire safety regulations for all facilities based on size and risk. Monitor compliance with fire safety and civil defense requirements before and during operations. Oversee occupational safety readiness of all new and existing bank facilities. Prepare and implement emergency response plans across all locations. Lead evacuation drills and supervise maintenance of fire-fighting systems. Ensure readiness and functionality of fire alarm and safety systems. Coordinate with relevant departments to address observations from Civil Defense and regulatory bodies. Follow up on legal cases or violations related to safety and compliance. Maintain and supervise an electronic safety database for all bank facilities. Prepare quarterly safety reports for executive review. Issue internal safety guidelines and security instructions.<br>Qualifications & Requirements Relevant academic qualification. Minimum 8 years of experience in security-related roles (Armed Forces, Police, Security, or Civil Defense). Proven experience in civil defense and fire safety systems.
Role Description This is a full-time on-site role for a Presales Engineer for access control and physical security systems. The Presales Engineer will be responsible for providing technical support to customers, collaborating with sales teams to secure and win business, integrating solutions, and ensuring security. Estimate and prepare the bill of quantities for access control systems. Conduct material takeoff from received drawings Preparing Technical submittals for projects designed and support if required in team members' technical submittals. Prepare workshop drawings if needed from projects which have been awarded.<br>Qualifications Minimum 3-5 Years of Experience in access control systems & CCTVBachelor's degree in Engineering Technical Support and Presales skills Excellent written and verbal communication skills Problem-solving and critical thinking skills Strong attention to detail and organizational skills
Info Sec Compliance & Assurance Lead<br>About Andela Andela exists to connect brilliance and opportunity. Since 2014, we have been dedicated to breaking down global barriers and accelerating the future of work for both technologists and organizations around the world. For technologists, Andela offers competitive long-term career opportunities with leading organizations, access to a global community of professionals, and educational opportunities with leading technology providers. At Andela, we’re deeply passionate about creating long-lasting and transformative growth opportunities for all - and doing it in an E. P. I. C. way! We’re excited to continue building our remote-first team with incredible people like you. After applying for this role, you will join our Andela Community of brilliant technologists by passing a technical screening and live interview. As a community member, you’ll have access to many exclusive technologist roles. Join Andela today to access this opportunity and more in our global marketplace! Our roles are typically filled at lightning speed, so if you’re considering applying, get your application in quickly!<br><br>-- Full-time-- Payment in USD<br>Description This role exists to accelerate information security compliance posture across IT and Digital Transformation. The specialist acts as the Info Sec function's technical compliance arm tracking, evidencing, and reporting on remediation progress against CBE Cybersecurity Framework requirements, PCI DSS obligations, and internal control commitments. The role also leads and executes assurance exercises, either directly or by scoping and managing third-party security assessment engagements.<br>RESPONSIBILITIESIT & Digital Transformation Compliance Follow-UpMaintain a live compliance tracker across all active CBE Cybersecurity Framework control domains (IAM, PAM, GRC, Container Security, and others). Conduct regular technical walk-throughs with IT and Digital Transformation teams to validate implementation status and close evidence gaps. Escalate risks and blockers to the Head of GRC and CISO with clear risk-quantified language suitable for Risk Committee reporting. Map remediation actions to OKR key results and track delivery against agreed timelines. Prepare compliance status reports in a format suitable for senior management and regulatory audiences. PCI DSS Engagement Lead Own the end-to-end PCI DSS engagement cycle — scoping, gap assessment, remediation tracking, QSA coordination, and Report on Compliance (RoC) or Self-Assessment Questionnaire (SAQ) readiness. Coordinate across IT, Operations, and Digital to ensure cardholder data environment (CDE) controls are implemented, evidenced, and maintained. Manage the relationship with the appointed Qualified Security Assessor (QSA) and act as the internal point of contact throughout the assessment cycle. Drive closure of PCI DSS findings and build a compensating controls register where technical controls are not yet feasible. Maintain PCI DSS documentation library including network diagrams, data flow diagrams, asset inventory, and policies relevant to the CDE. Info Sec Assurance Exercises Plan and execute assurance activities including control testing, configuration reviews, access reviews, and policy compliance spot checks. Scope, procure, and manage third-party security assessment vendors where specialized assessment capability is required (e.g., penetration testing, red team exercises, cloud security reviews). Produce clear assurance reports with risk-rated findings, business impactstatements, and prioritized remediation recommendations. Track finding remediation to closure and validate effectiveness of corrective actions. Coordinate with the Info Sec Control Validation Manager (Islam Nasser) to align assurance outputs with broader control validation programme.<br>MANDATORY EXPERIENCEMinimum 7 years of information security experience, with at least 3 years in a banking or financial institution. Hands-on PCI DSS experience — must have participated in or led at least one full RoC or SAQ-D assessment cycle. Deep knowledge of CBE Cybersecurity Framework requirements and Egyptian regulatory context. Experience conducting technical compliance gap assessments across IT infrastructure, network, and application layers. Strong written and verbal communication skills in both Arabic and English.<br>PREFERRED CERTIFICATIONSCISA — Certified Information Systems Auditor PCIP or PCI ISA — PCI Internal Security Assessor ISO 27001 Lead Auditor CISM — Certified Information Security Manager<br>PREFERRED EXPERIENCEPrior experience in an Egyptian bank or financial institution operating under CBE oversight. Familiarity with GRC tooling (RSA Archer, Service Now GRC, or equivalent). Experience working with external auditors, QSAs, and regulators.<br>WHAT SUCCESS LOOKS LIKE IN 90 DAYSDeliver a complete, evidence-backed CBE Cybersecurity Framework compliance status report across all active domains. Establish a PCI DSS engagement plan with milestones, QSA calendar, and CDE scope document. Execute at least one Info Sec assurance exercise (self-led or vendor-managed) with a formal findings report. Onboard into GRC tooling and OKR tracking system.<br>At Andela, we know our strengths lie in our diverse community whose talents, perspectives, backgrounds, and orientations we take pride in. Andela is committed to nurturing a work environment where all individuals are treated with respect and dignity. Everyone has the right to work in a professional atmosphere that promotes equal employment opportunities and prohibits discriminatory practices. Andela provides equal employment opportunities to all employees and applicants without regard to factors including but not limited to race, color, religion, gender, sexual orientation, gender identity, national origin, age, disability, pregnancy (including breastfeeding), genetic information, HIV/AIDS or any other medical status, family or parental status, marital status, amnesty or status as a covered veteran in accordance with applicable federal, state and local laws. This commitment applies to all terms and conditions of employment, including but not limited to hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. Our policies expressly prohibit any form of harassment and/or discrimination, as stated above