Security Officer Jobs in Egypt
11277 Jobs Found
<p>Ensure security and safety across the facility in line with the targets, standards, and instructions set by the General Manager, hotel management, and the Security Manager. Keep related records and work on self-development. Fully perform all duties assigned by the Security Supervisor and senior staff. Ensure the safety of life and property within the assigned area of responsibility. Greet guests, provide information and guidance, and bid them farewell. Organize human and vehicle traffic and support communication between the facility and individuals. Maintain constant vigilance day and night, gather relevant information, and submit it to the appropriate persons. Provide initial response to incidents such as fires, sabotage, injuries, and fights, and report them to the relevant persons. Be respectful, moderate, and polite toward managers, seniors, and colleagues. Pass all relevant information to the next security officer during shift handover. Inform the Security Supervisor of all developments and events that occur within the area of responsibility. Be familiar with the procedures for catching and detaining criminals. Ensure that all devices and equipment, such as walkie-talkies, detectors, and telephones, are well-maintained, clean, charged, and operating properly. Immediately inform the supervisor of any bomb threat or suspicious package and secure the surrounding area. Take part in the Emergency Response Teams. Ensure that the shift area is kept clean, orderly, and neat. Keep logs and records properly and accurately, and verify signatures. Monitor the entry and exit of furniture and equipment being removed for maintenance or repair, and record these movements. Protect hotel guests from any external factors that may cause inconvenience. Gather information and share it with senior staff rather than disclosing it to third parties. When writing an incident report, include detailed information about the individuals involved, the location, time, how the incident developed, and its consequences. Ensure that employees entering or leaving the facility use their ID cards. Identify and report those who do not comply, and monitor the situation. Inspect the surrounding units and report any suspicious persons or vehicles to the supervisor. Use communication tools (walkie-talkies, telephones) correctly and for their intended purpose. Comply fully with shift-change rules and ensure a smooth transition with no issues. Ensure security in areas where explosive or combustible materials are used for entertainment purposes. Take advantage of all opportunities for self-development. Correct deficiencies identified during inspections, report needs, and strive for continuous improvement. Recognize that activities and purchased equipment may have environmental impacts. Participate in activities aimed at protecting biological diversity, share responsibilities, promote environmental awareness, and engage in necessary training. Trainings. To provide minimum consumption of all currently used materials and equipment (paper, printouts, etc.). To implement necessary warnings and departmental trainings in order to save energy inside the facility. To implement responsibilities in order to eliminate and collect waste in a proper way, reduce environmental pollution and harmful effects to the environment. Carry out all responsibilities related to the quality management systems implemented at the facilities. Carry out all other duties assigned by managers and hotel management not specified in the job description.</p><p><strong>Desired Candidate Profile</strong></p><p>Education: Minimum high school diploma</p><p>Experience: At least 2 years in a related field; industry experience is an asset</p><p>Foreign Language: Not required</p><p>Courses/Training: Related field seminars/courses</p><p>Computer Literacy: Not required</p><p>Skills: Ability to use basic tools/equipment; perform simple, repetitive tasks</p>
Scope of the job<br><br>Job Purpose<br><br>Global Digital & Technology (D&T) has a worldwide responsibility for all IT processes, solutions and services. The aim is to further enhance HEINEKEN Global Functions by delivering common business driven solutions and services.<br><br>The Global Information Security department is part of Global D&T and has the overall responsibility of assuring that HEINEKEN’s IT Risks are properly managed and information assets & technology is properly secured.<br><br>The Global Information Security teams include Cyber Defence Operations (CDO), Security Competence Centre (SCC) and Security Chapters (ERP, Enterprise Architecture, Data Privacy, etc) to design, implement, monitor, respond and assist with recovery activities against cyberattacks. They deliver deep security and risk management expertise to enable Product Teams and Global Functions to form a proper 1st Line of Defense (LoD) by building the right capabilities into their products (security by design) and support them.<br><br>The Global Information Security Director is heading the department and responsible for the Global Information Security Strategy and orchestrating all security activities within this department and relevant stakeholders. He is part of the Global D&T Executive Leadership Team.<br><br>The Cyber Security Officer (CSO) is responsible for the management and implementation of the global Cyber Security Strategy based on the NIST Cyber Security Framework, to reduce the risk of a Cybersecurity incident according to the risk appetite of HEINEKEN and the Global Function, as well as to raise wider Global Function Cybersecurity awareness.<br><br>Key Responsibilities<br><br>Security Operations Implement global security strategies to maintain the continuity of systems and update these based on local threats. Responsible to manage updates related to Global Function Security Standards that are required due to local legislative requirements, in consultation with the Global Information Security Specialist in line with HEINEKEN Security Strategy and supporting the HEINEKEN Business Strategy. Responsible for Global Function security approvals regarding global services (e.g. Hei Net), in order to maintain the highest level of security for the information and IT assets of the company. Assist the Global Information Security department in the design of controls/ standards and procedures that have broad implications, requiring systems integration of one or more technical platforms. Perform Risk reviews using the risk management procedure for all new Global Function programs/services to be deployed in the Global Function operational environment and veto programs which do not comply with HEINEKEN’s security standards. Monitor internal and external information security and cyber security policy compliance, review and assess information security audits. <br><br>Performs, as per the prescribed frequency the Information Security Maturity Assessment (ISMA), and ensures that all related evidence is available in support of the assessment. Monitor and ensure the timely closure of tasks related to audit and internal control issues raised by e.g. Global Audit, External Audit, etc. Develops and manages the Information Security action plan to address identified risks and non-compliances. <br><br>Gains approval from the relevant management team on that action plan and its related budget. Monitors and reports on the execution of that actions plan, reporting to the Global D&T Function management team and centrally to the Global Information Security Team. Analyse and challenge derogation requests regarding the ISP/TSP that Global Functions could have with a new solution or program, and communicate to the Global Information Security Team and Design Authority for approval in order to protect the HEINEKEN security environment. Drive resolution of cyber security incident responses and address security vulnerabilities. <br><br>Perform/guide/drive digital investigations upon the request of Global Function/HR or Legal teams in case of breaches of HEINEKEN’s Code of Business Conduct. If the Global Function faces any critical IT security incidents or breakout, he/she is responsible as the Global Function security incident lead to resolve in consultation with the Cyber Defense Operations Team (CDO), Global Function D&T Directors and Global Function Line Managers. <br><br>Identify and perform independent analysis to resolve complex first-time issues including the analysis of technical and economic feasibility of proposed security systems/ solutions. He/she is also responsible to assist the Global Information Security department for any IT technical audit (e.g. Ethical Hack) to any Global Function IT infrastructure or service that a 3rd Party offers to HEINEKEN with a valid and open contract to ensure that security policies are in place. Advises Global Function teams for security requirements (e.g. Patching, Anti-Virus, Vulnerability Management, etc). Security Awareness Drive training campaigns on cyber security awareness according to the global security awareness program and based on the Global Function reality. Security Strategy Responsible for identifying potential risks and recommendations on how to prevent and/or avoid that risk within the Global Function. Collaborate with the Global Information Security Specialist to understand and develop further the controls and processes required to improve information security. Innovation Accelerates and Drives implementation of new Security strategies and standards from global D&T towards the HEINEKEN Global Functions Provide security expertise across multiple technical platforms to various Global Function stakeholders in all phases of solutions development (Ideation, Design, build, test and deploy) and Operations.<br><br>Budget Responsibilities<br><br>Assigned to Global Function D&T Manager.<br><br>Number Of Direct Reports<br><br>None<br><br> Position profile<br><br>Qualifications<br><br>Bachelor or Master degree in business information technology or a related field<br><br>Possesses relevant certifications, e.g. CISSP / CCSP / CISM / CISA / CRISC<br><br>Experience / Skills Required<br><br>5+ years of working in the cyber security field and previous experience working as a cyber-security officer or manager. French is a must and preferable. Has worked with relevant market standards such as NIST, ISO 27001, COBIT and relevant laws and regulations such as privacy laws. Experience in handling security incidents. Proven ability to dynamically assess risks, threats & threat actors. Able to work in a cross functional environment; preferably a background in the FMCG industry. Sense of Business Urgency and safe-cautious mind to close critical gaps and reduce any security breach. Ability to explain complex technical processes to business stakeholders. Flexibility to adjust to multiple demands, shifting priorities, ambiguity, and rapid change. Ability to work and team with a multitude of different people and different cultures (as appropriate). Display professionalism, customer service attitude, attention to detail and quality. Possess strong interpersonal skills, relationship management and negotiation skills, strong verbal, and written communication skills. Develop self and others through continuous learning, sharing best practices, knowledge, and expertise. Excellent management and leadership skills.<br><br>Language(s)<br><br>Fluent English #addjob
<p><h4>Position summary</h4>
<p>Patrol all areas of the property; assist guests with room access. Monitor closed circuit televisions, perimeter alarm system, duress alarms, and fire life safety system. Lock property entrances when required. Conduct daily physical hazard inspections. Respond to accidents, contact EMS or administer first aid/CPR as required. Assist guests/employees during emergency situations. Notify appropriate individuals in the event of accidents, attacks, or other incidents. Defuse guest/employee disturbances. Call for outside assistance if necessary. Complete incident reports to document all security/loss prevention related incidents. Handle all interruptions and complaints. Resolve safety hazard situations. Escort any unwelcome persons from the property without interrupting the orderly flow of property operation. Report to scenes of vehicle accidents/thefts. Call for assistance using proper code responses. Complete a loss prevention shift summary/daily activity report. Maintain confidentiality of all security/loss prevention and property reports/documents; release information only to authorized individuals. Conduct investigations and gather evidence. Conduct interviews with relevant parties.</p>
<p>Follow</p><p></p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
Mission <br><p><b>JOB PURPOSE: </b></p><br><br><p>The Cybersecurity GRC Engineer plays a critical dual role in safeguarding the organization’s digital assets while advancing its cybersecurity governance maturity. This position is responsible for detecting and responding to threats, managing vulnerabilities, and maintaining core security infrastructure. Simultaneously, the role ensures alignment with regulatory standards and cybersecurity frameworks by managing risk, enforcing compliance, and supporting audit readiness. By integrating operational defense with strategic risk oversight, the engineer contributes to a secure, resilient, and regulation-compliant environment that supports business continuity and digital trust.</p><br><br> Profile <p><b>RESPONSIBILITIES/DUTIES </b></p><br><br><p><b>Cybersecurity Operations</b></p><br><br><p>•Perform root cause analysis and assist in remediation of security breaches.</p><br><br><p>•Conduct vulnerability assessments and ensure timely patching and configuration updates.</p><br><br><p>•Collaborate with IT teams to safeguard systems, networks, and cloud environments.</p><br><br><p><b>Governance, Risk & Compliance (GRC)</b></p><br><br><p>•Develop and enforce security policies, procedures, and standards aligned with ISO 27001, NIST, and internal audit requirements.</p><br><br><p>•Maintain the information security risk register and manage control assessments.</p><br><br><p>•Support third-party risk assessments and internal/external audit readiness.</p><br><br><p>•Perform risk and impact assessments for IT and business processes, proposing mitigation plans.</p><br><br><p>•Monitor compliance with data protection laws, regulatory standards, and internal controls.</p><br><br><p>•Develop cybersecurity awareness content and promote a risk-aware culture.</p><br><br><p><b>Security Monitoring, Metrics & Reporting</b></p><br><br><p>•Build dashboards and metrics for key risk indicators (KRIs) and performance indicators (KPIs).</p><br><br><p>•Provide reports on incident response, compliance gaps, and control effectiveness.</p><br><br><p>•Ensure documentation of security incidents, investigations, and preventive actions.</p><br><br><p>•Support change management processes by reviewing technical risks and security implications of system modifications.</p><br><br><p><b>Continuous Improvement & Research</b></p><br><br><p>•Stay updated on cybersecurity trends, technologies, and threat intelligence.</p><br><br><p>•Recommend tools and best practices to enhance detection, prevention, and recovery capabilities.</p><br><br><p>•Participate in cybersecurity projects, system upgrades, and cross-departmental initiatives.</p><br><br><p>•Drive maturity improvement by contributing to gap analyses, self-assessments, and capability building.</p><br><br><p><b>ESSENTIAL QUALIFICATIONS, KNOWLEDGE & EXPERIENCE</b></p><br><br><p><b>QUALIFICATIONS:</b></p><br><br><p>•Bachelor’s degree in Computer Science, Information Security, Engineering, or related field.</p><br><br><p>•Relevant certifications such as:</p><br><br><p>oTechnical Security: CompTIA Security+, CEH, eJPT, ECIR, or GIAC.</p><br><br><p>oGRC & Risk: CRISC, ISO 27001 Lead Implementer/Auditor.</p><br><br><p>•Fluent in English and Arabic, French is a plus.</p><br><br><p><b>KNOWLEDGE:</b></p><br><br><p>•Strong grasp of cybersecurity principles, risk assessment, incident response, and threat intelligence.</p><br><br><p>•Familiarity with industry frameworks: ISO 27001, NIST CSF, CIS Controls.</p><br><br><p>•Good understanding of IT infrastructure, access control, networking protocols (TCP/IP, DNS, HTTP), and Active Directory.</p><br><br><p>•Working knowledge of scripting (e.g., PowerShell, Python, Bash) is a plus.</p><br><br><p><b>EXPERIENCE:</b></p><br><br><p>•3-5 years of experience in cybersecurity or GRC, preferably within a large or regulated organization.</p><br><br><p>•Practical involvement in security operations, compliance audits, vulnerability assessments, and control implementations.</p><br><br><p>•Experience handling internal and external assessments, including ISO audits and risk evaluations.</p><br><br><p>•Exposure to Operational Technology (OT)/IACS environments is a strong advantage.</p><br><br><p>•Experience with third-party risk management and security audits.</p><br><br><p>•Experience using security technologies: SIEM, firewalls, IDS/IPS, EDR, vulnerability management platform.</p><br><br><p><b>DESIRED BEHAVIORS</b></p><br><br><p>•Security-first mindset with a high sense of integrity, responsibility, and ethical conduct.</p><br><br><p>•Critical thinker who applies analytical skills to diagnose risks and resolve security challenges effectively.</p><br><br><p>•Detail-oriented, especially when evaluating incidents, documentation, and compliance requirements.</p><br><br><p>•Communicates with impact, able to translate technical risks into understandable business terms across all levels.</p><br><br><p>•Collaborative team player who fosters alignment between cybersecurity, IT, and business functions.</p><br><br><p>•Proactive learner who stays current with evolving threat landscapes, compliance standards, and best practices.</p><br><br><p>•Resilient and organized under pressure, capable of balancing multiple tasks while meeting deadlines.</p><br><br><p>•Persuasive and assertive, driving security adoption across the organization without compromising stakeholder relationships.</p><br><br><p>•Comfortable with ambiguity, and adaptable to evolving priorities in a dynamic cybersecurity landscape.</p><br><br><br> </div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span><br>JOB SUMMARY<br>Assists the Director of Security in managing security operations on a daily basis. Areas of responsibilities include the protection and safety of property assets, employees, guests and property, accident and fire prevention and response. Ensures the continuous protection of guests, employees and hotel assets. Maintains logs, certifications and documents required by law and Standard Operating Procedures.<br>CANDIDATE PROFILE <br>Education and Experience<br>• High school diploma or GED; 3 years experience in the security/loss prevention or related professional area.<br>OR<br>• 2-year degree from an accredited university in Criminal Justice or related major; 1 year experience in the security/loss prevention or related professional area.<br>CORE WORK ACTIVITIES<br>Managing Security Operations<br>• Assists in the development and implementation of emergency procedures.<br>• Recommends follow-up action for security breaches.<br>• Conducts investigation of all losses of property assets and refers to proper management for disposition.<br>• Deploys security staff to effectively monitor and protect property assets.<br>• Complies with all Corporate Security safety and security management guidelines and procedures.<br>• Completes proper documentation and reports all employee accident and general liability incidents to Claims Reporting Service.<br>• Conducts periodic patrols of entire property and parking areas.<br>• Recognizes success across areas of responsibility.<br>• Handles guest problems and complaints, settling disputes, and resolving grievances and conflicts, or otherwise negotiating with others.<br>• Identifies and makes recommendations for minimizing physical hazards and unsafe work practices.<br>• Implements action plans to monitor and control risk.<br>• Keeps abreast of local criminal activity as it may impact property.<br>• Maintains required reports and documentation regarding patrols of property and parking areas.<br>• Inspects all security equipment and ensures it is fully functioning.<br>• Provides means for obtaining necessary medical attention on a timely basis.<br>• Conducts hourly employee performance appraisals according to Standard Operating Procedures.<br>• Identifies the educational needs of others, developing formal educational or training programs or classes, and teaching or instructing others.<br>• Completes disciplinary procedures and documentation according to Standard and Local Operating Procedures (SOPs and LSOPs) and supports the Peer Review Process.<br>• Maintains first aid and CPR certifications required for Security officers.<br>• Implements local authority requirement for security and safety.<br>Leading Security Teams<br>• Attends pre- and post-convention and weekly forecast meetings to understand group needs and gather critical information to communicate to security officers.<br>• Celebrates successes by publicly recognizing the contributions of team members.<br>• Communicates the importance of safety procedures, detailing procedure codes, ensuring employee understanding of safety codes, monitoring processes and procedures related to safety.<br>• Utilizes interpersonal and communication skills to lead, influence, and encourage others; advocates sound financial/business decision making; demonstrates honesty/integrity; leads by example.<br>• Solicits employee feedback, utilizes an "open door" policy and reviews employee satisfaction results to identify and address employee problems or concerns.<br>• Encourages and builds mutual trust, respect, and cooperation among team members.<br>• Identifies the developmental needs of others and coaching, mentoring, or otherwise helping others to improve their knowledge or skills.<br>• Provides guidance and direction to subordinates, including setting performance standards and monitoring performance.<br>• Provides personal assistance, medical attention, emotional support, or other personal care to others such as coworkers, customers, or patients.<br>• Serves as a role model to demonstrate appropriate behaviors.<br>Providing and Ensuring Exceptional Customer Service<br>• Displays leadership in guest hospitality, exemplifies excellent customer service and creates a positive atmosphere for guest relations.<br>• Empowers employees to provide excellent customer service.<br>• Meets quality standards and customer expectations on a daily basis.<br>• Provides services that are above and beyond for customer satisfaction and retention.<br>Conducting Human Resources Activities<br>• Assists in minimizing cost of accident claims through aggressive claims management.<br>• Brings issues to the attention of Human Resources as necessary.<br>• Strives to improve service performance.<br>• Administers property policies fairly and consistently.<br>Additional Responsibilities<br>• Analyzes information and evaluates results to choose the best solution and solve problems.<br>• Develops and maintains a working relationship with local law enforcement authorities.<br>• Informs and/or updates the executives, the peers and the subordinates on relevant information in a timely manner.<br>• Provides information to supervisors, co-workers, and subordinates by telephone, in written form, e-mail, or in person.<br>• Provides guidance in setting health and safety policies and standards.<br>• Coordinates with Event Sales for VIP escort and media control for large events.<br>At Marriott International, we are dedicated to being an equal opportunity employer, welcoming all and providing access to opportunity. We actively foster an environment where the unique backgrounds of our associates are valued and celebrated. Our greatest strength lies in the rich blend of culture, talent, and experiences of our associates. We are committed to non-discrimination on any protected basis, including disability, veteran status, or other basis protected by applicable law.<br>When you join the Sheraton family, you become a member of its global community. We’ve been a place to gather and connect since 1937. At Sheraton, associates create a sense of belonging in more than 400 communities around the world. We invite, we welcome, and we connect guests through engaging experiences and thoughtful service. If you’re a team player who is excited to deliver a meaningful guest experience, we encourage you to explore your next career opportunity with Sheraton. Join us on our mission to be ‘The World’s Gathering Place’. In joining Sheraton Hotels & Resorts, you join a portfolio of brands with Marriott International. Be where you can do your best work, begin your purpose, belong to an amazing global team, and become the best version of you.</span> </div>
<p><h4>Position summary</h4>
<p>Patrol all areas of the property; assist guests with room access. Monitor closed circuit televisions, perimeter alarm system, duress alarms, and fire life safety system. Lock property entrances when required. Conduct daily physical hazard inspections. Respond to accidents, contact EMS or administer first aid/CPR as required. Assist guests/employees during emergency situations. Notify appropriate individuals in the event of accidents, attacks, or other incidents. Defuse guest/employee disturbances. Call for outside assistance if necessary. Complete incident reports to document all security/loss prevention related incidents. Handle all interruptions and complaints. Resolve safety hazard situations. Escort any unwelcome persons from the property without interrupting the orderly flow of property operation. Report to scenes of vehicle accidents/thefts. Call for assistance using proper code responses. Complete a loss prevention shift summary/daily activity report. Maintain confidentiality of all security/loss prevention and property reports/documents; release information only to authorized individuals. Conduct investigations and gather evidence. Conduct interviews with relevant parties.</p>
<p>Follow</p><p></p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<br>Company Description<br><br><p>* With its stunning location at Sharm El Sheikh, Rixos Premium Seagate offers a luxurious retreat overlooking the shimmering red sea. The hotel offers an All-Inclusive concept combining exceptional restaurants and bars, top-class entertainment venues that also provide a variety of dining experiences and superb wellness and sports facilities. Rixos Premium Seagate offers stylish rooms and suites with direct access to the private beach, and state-of-the-art conference and banquet venues.</p><br><p>A beautiful beach, delicious food with top-quality service restaurants with luxurious buffets, pools, Rixy Club exclusively for children and live entertainment all await your ultimate holiday experience.</p><br><p>Rixos Premium Seagate is located 18 km from Naama Bay, 25 km from the old market of Sharm El-Sheikh and 9 km from Sharm El-Sheikh</p><br><br>Job Description<br><br><p>Ensure security and safety across the facility in line with the targets, standards, and instructions set by the General Manager, hotel management, and the Security Manager. Keep related records and work on self-development.</p><br><p>Fully perform all duties assigned by the Security Supervisor and senior staff.</p><br><p>Ensure the safety of life and property within the assigned area of responsibility.</p><br><p>Greet guests, provide information and guidance, and bid them farewell.</p><br><p>Organize human and vehicle traffic and support communication between the facility and individuals.</p><br><p>Maintain constant vigilance day and night, gather relevant information, and submit it to the appropriate persons.</p><br><p>Provide initial response to incidents such as fires, sabotage, injuries, and fights, and report them to the relevant persons.</p><br><p>Be respectful, moderate, and polite toward managers, seniors, and colleagues.</p><br><p>Pass all relevant information to the next security officer during shift handover.</p><br><p>Inform the Security Supervisor of all developments and events that occur within the area of responsibility.</p><br><p>Be familiar with the procedures for catching and detaining criminals.</p><br><p>Ensure that all devices and equipment, such as walkie-talkies, detectors, and telephones, are well-maintained, clean, charged, and operating properly.</p><br><p>Immediately inform the supervisor of any bomb threat or suspicious package and secure the surrounding area.</p><br><p>Take part in the Emergency Response Teams.</p><br><p>Ensure that the shift area is kept clean, orderly, and neat.</p><br><p>Keep logs and records properly and accurately, and verify signatures.</p><br><p>Monitor the entry and exit of furniture and equipment being removed for maintenance or repair, and record these movements.</p><br><p>Protect hotel guests from any external factors that may cause inconvenience.</p><br><p>Gather information and share it with senior staff rather than disclosing it to third parties.</p><br><p>When writing an incident report, include detailed information about the individuals involved, the location, time, how the incident developed, and its consequences.</p><br><p>Ensure that employees entering or leaving the facility use their ID cards. Identify and report those who do not comply, and monitor the situation.</p><br><p>Inspect the surrounding units and report any suspicious persons or vehicles to the supervisor.</p><br><p>Use communication tools (walkie-talkies, telephones) correctly and for their intended purpose.</p><br><p>Comply fully with shift-change rules and ensure a smooth transition with no issues.</p><br><p>Ensure security in areas where explosive or combustible materials are used for entertainment purposes.</p><br><p>Take advantage of all opportunities for self-development. Correct deficiencies identified during inspections, report needs, and strive for continuous improvement.</p><br><p>Recognize that activities and purchased equipment may have environmental impacts. Participate in activities aimed at protecting biological diversity, share responsibilities, promote environmental awareness, and engage in necessary training.</p><br><p>Trainings. To provide minimum consumption of all currently used materials and equipment (paper, printouts, etc.).</p><br><p>To implement necessary warnings and departmental trainings in order to save energy inside the facility.</p><br><p>To implement responsibilities in order to eliminate and collect waste in a proper way, reduce environmental pollution and harmful effects to the environment.</p><br><p>Carry out all responsibilities related to the quality management systems implemented at the facilities.</p><br><p>Carry out all other duties assigned by managers and hotel management not specified in the job description.</p><br><br>Qualifications<br><br><ul><li><p><strong>Education:</strong> Minimum high school diploma</p><br></li><li><p><strong>Experience:</strong> At least 2 years in a related field; industry experience is an asset</p><br></li><li><p><strong>Foreign Language:</strong> Not required</p><br></li><li><p><strong>Courses/Training:</strong> Related field seminars/courses</p><br></li><li><p><strong>Computer Literacy:</strong> Not required</p><br></li><li><p><strong>Skills:</strong> Ability to use basic tools/equipment; perform simple, repetitive tasks</p><br></li></ul> </div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p><strong>Job Purpose</strong><br>
Lead and manage information security across the organization, ensuring compliance with policies, maintaining ISO 27001 certification, and protecting business systems and data.</p><br>
<p><strong>Core Responsibilities<br>
</strong>Information Security Governance & Compliance:<br>
– Maintain the Information Security Management System (ISMS) and ensure ISO 27001 certification<br>
– Ensure compliance with policies, standards, and procedures<br>
– Manage risk register and track mitigation actions<br>
– Lead ISO audits and resolve observations and non-conformances</p><br>
<p>Risk & Incident Management:<br>
– Establish and manage information security incident response processes<br>
– Conduct root cause analysis and implement corrective actions<br>
– Identify vulnerabilities and coordinate mitigation activities</p><br>
<p>Business Continuity & Disaster Recovery:<br>
– Develop and test Disaster Recovery Plans (DRP)<br>
– Lead Business Continuity Planning (BCP) processes</p><br>
<p>Security Operations & Controls:<br>
– Ensure effective security controls across IT infrastructure<br>
– Manage credential and access control processes<br>
– Work with IT and vendors to identify and mitigate risks</p><br>
<p>Awareness & Training:<br>
– Develop and deliver security awareness training programs<br>
– Ensure staff understanding of Acceptable Use Policies (AUP)</p><br>
<p>Stakeholder Collaboration:<br>
– Act as advisor to IT leadership<br>
– Collaborate with internal teams and external partners<br>
– Communicate risks and security issues effectively</p><br>
<p><strong>Skills & Experiences </strong><br>
8+ years of experience in information security<br>
Strong knowledge of security threats (malware, phishing, ransomware, DDOS)<br>
Experience with ISO 27001 and ISMS frameworks<br>
Strong understanding of networking and infrastructure security<br>
Experience with Windows, Linux, Mac OS, iOS, Android<br>
Familiarity with Azure, AWS, SQL, Active Directory, VPNs<br>
Strong communication and stakeholder management skills<br>
High level of integrity and confidentiality</p><br>
<p><strong>Core Competencies</strong><br>
Analytical thinking<br>
Risk management<br>
Attention to detail<br>
Communication and influencing skills<br>
Leadership and accountability<br>
Problem-solving mindset</p><br>
<br> </div>
<p><h4>Position summary</h4>
<p>Patrol all areas of the property; assist guests with room access. Monitor closed circuit televisions, perimeter alarm system, duress alarms, and fire life safety system. Lock property entrances when required. Conduct daily physical hazard inspections. Respond to accidents, contact EMS or administer first aid/CPR as required. Assist guests/employees during emergency situations. Notify appropriate individuals in the event of accidents, attacks, or other incidents. Defuse guest/employee disturbances. Call for outside assistance if necessary. Complete incident reports to document all security/loss prevention related incidents. Handle all interruptions and complaints. Resolve safety hazard situations. Escort any unwelcome persons from the property without interrupting the orderly flow of property operation. Report to scenes of vehicle accidents/thefts. Call for assistance using proper code responses. Complete a loss prevention shift summary/daily activity report. Maintain confidentiality of all security/loss prevention and property reports/documents; release information only to authorized individuals. Conduct investigations and gather evidence. Conduct interviews with relevant parties.</p>
<p></p><p></p>
Objective: (summary about the position)<br><br>Seeking a highly experienced Security Lead Engineer to lead the design, implementation, and continuous improvement of cybersecurity measures across our hybrid environment. This role requires overseeing infrastructure, application, and cloud security; managing threat detection and response systems; guiding the security posture of internally developed software; and ensuring regulatory compliance through GRC frameworks. The ideal candidate brings technical depth, leadership capabilities, and a proactive mindset to protect our digital assets and business operations.<br><br>Responsibilities:<br><br> Security Architecture & Strategy Design, integrate, and maintain end-to-end security architecture for on-premises and cloud environments Ensure secure network topology including segmentation, access control, and VPN tunnels Lead development and enforcement of security policies, procedures, and best practices Work closely with developers and IT architects to embed security into application and infrastructure design SOC, SIEM, and Threat Management Oversee the operation and tuning of Security Operations Center (SOC) including SIEM platforms Manage endpoint protection through EDR and threat-hunting solutions Manage and enhance email security systems to protect against phishing, malware, and spam, ensuring compliance with organizational security policies Lead incident response efforts and develop threat prevention strategies Application and Cloud Security Supervise vulnerability scanning and penetration testing for internally developed applications Lead WAF deployment and optimization to protect business-critical web applications Implement security best practices and policy enforcement across multi-cloud environments Governance, Risk & Compliance (GRC) Drive cybersecurity-related compliance programs (e.g., SOC 2 Type 2, ISO 27001) Lead cross-functional GRC initiatives and support internal/external audits Manage security risk assessments and recommend mitigation strategies Documentation & Collaboration Maintain detailed documentation for security controls, policies, systems, and incidents Plan and conduct quarterly security awareness sessions to educate staff on emerging cyber threats, security best practices, and the organization's security policies Work collaboratively with software engineers, network teams, Dev Ops, and business units<br><br>Requirements<br><br>Min requirements:<br><br> Education: Bachelor's degree in engineering, Computer Science, Information Security or a related field Experience: 7 years in cybersecurity and information security roles 5+ years of hands-on experience in security architecture and threat management Qualifications necessary for the vacancy Proven expertise in: Security architecture for hybrid cloud/on-prem setups Firewalls, WAF, EDR, SIEM, UTM, IPS, Proxy, and DDoS mitigation Network security protocols, subnetting, VPNs, and access control models Set of skills necessary for the vacancy Problem-Solving and Analytical Skills: Ability to diagnose and resolve complex technical issues efficiently Skilled in designing and implementing scalable and secure IT solutions Organizational Skills: Strong ability to manage multiple projects and prioritize tasks effectively Commitment to meeting deadlines and maintaining high-quality standards Communication and Teamwork: Excellent written and verbal communication skills Ability to collaborate effectively with team members and stakeholders Certifications (Desirable): CISSP, CISM, CEH, OSCP, CCSP Cloud security certifications (e.g., AWS Security Specialty, Microsoft SC-100/SC-200) IT governance certifications (e.g., ISO 27001 LA, CISA)
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p><span><span>As the Head of Information Security at Mashreq Bank Egypt, your mission is to take ownership of Information Security in Mashreq’s Egypt. You will architect and spearhead the execution of a future-proof Information Security agenda, safeguarding the bank's digital assets and driving enterprise-wide security</span></span><span><span>resilience in close collaboration with the Group Head of Information Security and in alignment with the overarching Group Information Security strategy.</span></span></p><br><br> </div>
<p><h4>Position summary</h4>
<p>Patrol all areas of the property; assist guests with room access. Monitor closed circuit televisions, perimeter alarm system, duress alarms, and fire life safety system. Lock property entrances when required. Conduct daily physical hazard inspections. Respond to accidents, contact EMS or administer first aid/CPR as required. Assist guests/employees during emergency situations. Notify appropriate individuals in the event of accidents, attacks, or other incidents. Defuse guest/employee disturbances. Call for outside assistance if necessary. Complete incident reports to document all security/loss prevention related incidents. Handle all interruptions and complaints. Resolve safety hazard situations. Escort any unwelcome persons from the property without interrupting the orderly flow of property operation. Report to scenes of vehicle accidents/thefts. Call for assistance using proper code responses. Complete a loss prevention shift summary/daily activity report. Maintain confidentiality of all security/loss prevention and property reports/documents; release information only to authorized individuals. Conduct investigations and gather evidence. Conduct interviews with relevant parties.</p>
<p>Follow</p><p></p>
<p><h4>Position summary</h4>
<p>Patrol all areas of the property; assist guests with room access. Monitor closed circuit televisions, perimeter alarm system, duress alarms, and fire life safety system. Lock property entrances when required. Conduct daily physical hazard inspections. Respond to accidents, contact EMS or administer first aid/CPR as required. Assist guests/employees during emergency situations. Notify appropriate individuals in the event of accidents, attacks, or other incidents. Defuse guest/employee disturbances. Call for outside assistance if necessary. Complete incident reports to document all security/loss prevention related incidents. Handle all interruptions and complaints. Resolve safety hazard situations. Escort any unwelcome persons from the property without interrupting the orderly flow of property operation. Report to scenes of vehicle accidents/thefts. Call for assistance using proper code responses. Complete a loss prevention shift summary/daily activity report. Maintain confidentiality of all security/loss prevention and property reports/documents; release information only to authorized individuals. Conduct investigations and gather evidence. Conduct interviews with relevant parties.</p>
<p></p><p></p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
Information Security & Risk Manager1. Job Details<p><strong>Position Title:</strong> Information Security & Risk Manager<br><strong>Department:</strong> Technology Services / IT<br><strong>Reports To:</strong> Information Security / CTO<br><strong>Employment Type:</strong> Permanent<br><strong>Location:</strong> Maadi, Degla – On-site<br><strong>Grade:</strong> As per organizational structure<br><strong>Direct Reports:</strong> As per approved organizational structure</p><br>2. Job Purpose<p>The Information Security & Risk Manager is responsible for leading the organization’s Information Security and Cyber Risk function. The role will design, implement, and maintain the cybersecurity program, manage enterprise information security risks, ensure compliance with applicable Saudi regulatory and industry requirements, and promote a strong security-aware culture across the organization.</p><br><p>The role provides strategic and operational leadership across <strong>Information Security Governance, Risk & Compliance (GRC), Security Operations, Incident Response, Data Protection, and Security Awareness</strong>.</p><br>3. Key Accountabilities & Deliverables<p>The role will be accountable for the development, implementation, and continuous improvement of:</p><br><ul><li>Information Security Strategy and Cybersecurity Roadmap</li><li>Information Security policies, standards, procedures, and guidelines</li><li>Information Security Management System (ISMS)</li><li>Enterprise IT and Cybersecurity Risk Register</li><li>Information Security Risk Assessment Reports</li><li>Risk Treatment and Remediation Plans</li><li>Security Compliance Reports, including ISO 27001 and applicable regulatory requirements</li><li>Cybersecurity Control Framework and Control Effectiveness Reports</li><li>Vulnerability Assessment and Penetration Testing (VAPT) Reports</li><li>Cybersecurity Incident Reports and Root Cause Analysis (RCA)</li><li>Security Monitoring and Threat Dashboards</li><li>Cybersecurity KPI and KRI Dashboards</li><li>Identity and Access Management (IAM) Policies, Models, and Access Matrices</li><li>Data Classification and Data Protection Framework</li><li>Internal and External Audit Reports and Evidence Repository</li><li>Audit Findings and Remediation Tracking</li><li>Business Continuity and Disaster Recovery (BCP/DR) Security Alignment</li><li>Security Awareness and Training Programs and Reports</li><li>Regulatory Assessments, submissions, and compliance evidence</li></ul>4. Key ResponsibilitiesA. Information Security Strategy & Governance<ul><li>Define, develop, and execute the organization’s Information Security Strategy and cybersecurity roadmap.</li><li>Own and continuously improve the Information Security Management System (ISMS).</li><li>Develop and maintain information security policies, standards, procedures, and guidelines.</li><li>Establish effective cybersecurity governance frameworks aligned with business objectives.</li><li>Provide regular reporting on cybersecurity posture, risk exposure, compliance, and security program performance to the CTO and executive leadership.</li><li>Establish and monitor security KPIs, KRIs, and performance metrics.</li><li>Ensure information security requirements are incorporated into technology initiatives, projects, and business processes.</li></ul>B. Information Security Risk Management<ul><li>Lead regular information security and cybersecurity risk assessments across the organization.</li><li>Own and maintain the enterprise IT and cybersecurity risk register.</li><li>Identify, assess, prioritize, and communicate information security risks.</li><li>Develop and manage risk treatment plans and ensure remediation activities are tracked through to closure.</li><li>Work closely with business units, IT, and other stakeholders to establish appropriate risk mitigation strategies.</li><li>Translate technical cybersecurity risks into business impact and communicate them effectively to senior management.</li><li>Monitor the organization’s overall cyber risk profile and provide recommendations for risk reduction.</li></ul>C. Security Operations & SOC<ul><li>Oversee Security Operations Centre (SOC) activities, including SOC Analysts and Security Engineers.</li><li>Ensure effective security monitoring, threat detection, investigation, and response capabilities.</li><li>Oversee SIEM operations and security monitoring platforms such as Microsoft Sentinel, Splunk, or equivalent technologies.</li><li>Establish and monitor security incident management processes.</li><li>Review security alerts, incidents, trends, and threat intelligence.</li><li>Ensure appropriate escalation and response mechanisms are in place for critical security events.</li><li>Monitor and improve the effectiveness of security controls and operational processes.</li></ul>D. Cybersecurity Incident Response<ul><li>Lead the organization’s cybersecurity incident response capability.</li><li>Ensure effective detection, containment, eradication, recovery, and post-incident activities.</li><li>Develop, maintain, and continuously improve the Cybersecurity Incident Response Plan (CIRP).</li><li>Conduct regular incident response exercises and simulations.</li><li>Lead investigations into significant security incidents and ensure Root Cause Analysis (RCA) is completed.</li><li>Track corrective and preventive actions resulting from security incidents.</li><li>Ensure lessons learned are incorporated into security controls and processes.</li></ul>E. Governance, Risk & Compliance<ul><li>Lead Information Security Governance, Risk, and Compliance (GRC) activities.</li><li>Ensure compliance with applicable regulatory and industry requirements, including:<ul><li>National Cybersecurity Authority (NCA) requirements</li><li>Saudi Personal Data Protection Law (PDPL)</li><li>National Data Management Office (NDMO) requirements, where applicable</li><li>ISO/IEC 27001</li><li>Other applicable cybersecurity and data protection regulations</li></ul></li><li>Coordinate internal and external security audits and assessments.</li><li>Manage audit evidence collection and maintain an organized security evidence repository.</li><li>Track audit findings, remediation plans, and closure status.</li><li>Prepare management and regulatory compliance reports.</li><li>Support regulatory assessments, reviews, and submissions as required.</li></ul>F. Data Protection & Privacy<ul><li>Establish and maintain data protection and information classification frameworks.</li><li>Ensure appropriate security controls are implemented for sensitive and personal data.</li><li>Work with relevant stakeholders to support compliance with PDPL and applicable data protection requirements.</li><li>Establish appropriate data access, handling, retention, and protection controls.</li><li>Support privacy and data protection risk assessments where required.</li></ul>G. Vulnerability & Security Testing<ul><li>Oversee vulnerability management activities across IT environments.</li><li>Coordinate Vulnerability Assessments and Penetration Testing (VAPT).</li><li>Review vulnerability and penetration testing reports.</li><li>Ensure security vulnerabilities are appropriately prioritized based on business risk.</li><li>Track remediation activities and validate closure of critical and high-risk vulnerabilities.</li><li>Ensure security testing is incorporated into relevant technology projects and systems.</li></ul>H. Identity & Access Management<ul><li>Establish and maintain IAM policies, standards, and access control frameworks.</li><li>Ensure appropriate access governance and segregation of duties.</li><li>Review privileged access and high-risk accounts.</li><li>Support periodic user access reviews and access recertification.</li><li>Ensure access controls align with business requirements and security policies.</li></ul>I. Security Awareness & Culture<ul><li>Develop and implement an organization-wide security awareness program.</li><li>Lead cybersecurity awareness campaigns and security training.</li><li>Implement phishing simulation and social engineering awareness programs.</li><li>Monitor employee security awareness performance and identify improvement areas.</li><li>Promote a strong cybersecurity culture across all business functions.</li></ul>J. Business Continuity & Disaster Recovery<ul><li>Ensure cybersecurity requirements are incorporated into Business Continuity and Disaster Recovery plans.</li><li>Participate in BCP/DR risk assessments and exercises.</li><li>Ensure critical systems have appropriate security, recovery, and resilience controls.</li><li>Support testing and continuous improvement of security-related recovery procedures.</li></ul>5. Qualifications & ExperienceMinimum Qualifications<ul><li>Bachelor’s degree in <strong>Information Technology, Computer Science, Cybersecurity, Information Security</strong>, or a related discipline.</li><li><strong>CISSP or CISM certification – Mandatory.</strong></li><li>ISO/IEC 27001 Lead Implementer or Lead Auditor certification preferred.</li><li>NCA-related cybersecurity accreditation or certification is preferred.</li></ul>Minimum Experience<ul><li><strong>8–10 years of professional experience in Information Security / Cybersecurity.</strong></li><li>At least <strong>3 years of experience in a cybersecurity or information security management/leadership role.</strong></li><li>Proven experience managing enterprise cybersecurity programs and security teams.</li><li>Proven experience in GRC, risk management, security operations, and incident response.</li><li>Proven experience working with regulatory compliance, audits, and cybersecurity frameworks.</li></ul>6. Technical & Professional Skills<p>The successful candidate should demonstrate:</p><br><ul><li>Strong knowledge of cybersecurity frameworks, standards, and best practices.</li><li>Deep understanding of <strong>NCA, PDPL, NDMO, ISO 27001</strong>, and applicable data protection requirements.</li><li>Strong expertise in Governance, Risk, and Compliance (GRC).</li><li>Experience with SOC operations and SIEM platforms such as <strong>Microsoft Sentinel, Splunk</strong>, or equivalent.</li><li>Strong understanding of vulnerability management and penetration testing.</li><li>Strong knowledge of Incident Response and Cybersecurity Incident Response Plans (CIRP).</li><li>Strong understanding of IAM and access governance.</li><li>Knowledge of data protection, data classification, and data governance.</li><li>Strong understanding of secure architecture and security controls.</li><li>Ability to develop and monitor cybersecurity KPIs and KRIs.</li><li>Strong audit and regulatory assessment experience.</li><li>Ability to assess and communicate cybersecurity risks in terms of business impact.</li><li>Strong strategic thinking and high-level decision-making capability.</li><li>Excellent leadership and people-management skills.</li><li>Ability to manage cross-functional teams and stakeholders under pressure.</li><li>Strong communication, presentation, and reporting skills.</li><li><strong>Bilingual proficiency in Arabic and English.</strong></li></ul>7. Leadership Competencies<ul><li>Strategic Thinking</li><li>Cybersecurity Leadership</li><li>Risk-Based Decision Making</li><li>Stakeholder Management</li><li>Executive Communication</li><li>Team Leadership & Development</li><li>Problem Solving</li><li>Crisis and Incident Management</li><li>Governance & Accountability</li><li>Continuous Improvement</li><li>Business Acumen</li><li>Change Management</li></ul>Special Requirements<ul><li>Ability to work effectively in a fast-paced and dynamic environment.</li><li>Ability to manage cybersecurity incidents and critical security situations.</li><li>Willingness to participate in security incident response and escalation activities when required.</li><li>Strong confidentiality and professional integrity.</li><li>Ability to work collaboratively with executive leadership, IT, business functions, auditors, and regulatory stakeholders.</li></ul> </div>
<p><h4>Company description</h4>
<p>Join a hotel that is a member of the Accor network, whose group brings together more than 45 brands, 5,500 hotels, 10,000 restaurants and lifestyle destinations. Here, we believe in you and what you bring to the table. There are many opportunities for development and advancement. Every gesture, every smile, every action, contributes to creating a positive and memorable impact for our customers, our colleagues and also for our planet. Together, we embody the vision of responsible hospitality.</p>
<p>Take the opportunity to become a Heartistu00ae and let your heart guide you in this world where life beats faster.</p>
<h4>Job description</h4>
<p><strong>Security officer</strong></p>
<p>Guardian and protector. You ensure the safety and wellbeing of your fellow employees, guests and visitors. You are attentive, efficient and committed, and will ensure your property remains a safe, enjoyable workplace and travel destination.</p>
<h4>What is in it for you:</h4>
<ul>
<li>Employee benefit card offering discounted rates in Accor worldwide</li>
<li>Learning programs through our Academies</li>
<li>Opportunity to develop your talent and grow within your property and across the world</li>
<li>Ability to make a difference through our Corporate Social Responsibility activities, like Planet 21</li>
</ul>
<h4>What you will be doing:</h4>
<ul>
<li>Ensure the overall safety and security of the guests, employees and property premises</li>
<li>Investigate and report any violations to law/property policy, occurrences of accidents, complaints, criminal activity and crisis situations</li>
<li>Conduct regular floor patrols, cash counts and crowd control</li>
<li>Assist guests regarding hotel facilities in an informative and helpful way</li>
</ul>
<h4>Qualifications</h4>
<p>Your experience and skills include:</p>
<ul>
<li>Relevant security experience is an asset</li>
<li>Strong interpersonal and problem solving abilities</li>
<li>Highly responsible and reliable</li>
</ul>
<h4>Additional information</h4>
<p><strong>Our commitment to diversity & inclusion:</strong></p>
<p>We are an inclusive company and our ambition is to attract, recruit and promote diverse talent.</p></p><p></p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Information Security & Risk Manager1.<br> Job Details Position Title: Information Security & Risk Manager Department: Technology Services / IT Reports To: Information Security / CTO Employment Type: Permanent Location: Maadi, Degla – On-site Grade: As per organizational structure Direct Reports: As per approved organizational structure 2.<br> Job Purpose The Information Security & Risk Manager is responsible for leading the organization’s Information Security and Cyber Risk function.<br> The role will design, implement, and maintain the cybersecurity program, manage enterprise information security risks, ensure compliance with applicable Saudi regulatory and industry requirements, and promote a strong security-aware culture across the organization.<br> The role provides strategic and operational leadership across Information Security Governance, Risk & Compliance (GRC), Security Operations, Incident Response, Data Protection, and Security Awareness .<br> 3. Key Accountabilities & Deliverables The role will be accountable for the development, implementation, and continuous improvement of: Information Security Strategy and Cybersecurity Roadmap Information Security policies, standards, procedures, and guidelines Information Security Management System (ISMS) Enterprise IT and Cybersecurity Risk Register Information Security Risk Assessment Reports Risk Treatment and Remediation Plans Security Compliance Reports, including ISO 27001 and applicable regulatory requirements Cybersecurity Control Framework and Control Effectiveness Reports Vulnerability Assessment and Penetration Testing (VAPT) Reports Cybersecurity Incident Reports and Root Cause Analysis (RCA) Security Monitoring and Threat Dashboards Cybersecurity KPI and KRI Dashboards Identity and Access Management (IAM) Policies, Models, and Access Matrices Data Classification and Data Protection Framework Internal and External Audit Reports and Evidence Repository Audit Findings and Remediation Tracking Business Continuity and Disaster Recovery (BCP/DR) Security Alignment Security Awareness and Training Programs and Reports Regulatory Assessments, submissions, and compliance evidence 4.<br> Key ResponsibilitiesA.<br> Information Security Strategy & Governance Define, develop, and execute the organization’s Information Security Strategy and cybersecurity roadmap.<br> Own and continuously improve the Information Security Management System (ISMS).<br> Develop and maintain information security policies, standards, procedures, and guidelines.<br> Establish effective cybersecurity governance frameworks aligned with business objectives.<br> Provide regular reporting on cybersecurity posture, risk exposure, compliance, and security program performance to the CTO and executive leadership.<br> Establish and monitor security KPIs, KRIs, and performance metrics.<br> Ensure information security requirements are incorporated into technology initiatives, projects, and business processes.<br> B. Information Security Risk Management Lead regular information security and cybersecurity risk assessments across the organization.<br> Own and maintain the enterprise IT and cybersecurity risk register.<br> Identify, assess, prioritize, and communicate information security risks.<br> Develop and manage risk treatment plans and ensure remediation activities are tracked through to closure.<br> Work closely with business units, IT, and other stakeholders to establish appropriate risk mitigation strategies.<br> Translate technical cybersecurity risks into business impact and communicate them effectively to senior management.<br> Monitor the organization’s overall cyber risk profile and provide recommendations for risk reduction.<br> C. Security Operations & SOC Oversee Security Operations Centre (SOC) activities, including SOC Analysts and Security Engineers.<br> Ensure effective security monitoring, threat detection, investigation, and response capabilities.<br> Oversee SIEM operations and security monitoring platforms such as Microsoft Sentinel, Splunk, or equivalent technologies.<br> Establish and monitor security incident management processes.<br> Review security alerts, incidents, trends, and threat intelligence.<br> Ensure appropriate escalation and response mechanisms are in place for critical security events.<br> Monitor and improve the effectiveness of security controls and operational processes.<br> D. Cybersecurity Incident Response Lead the organization’s cybersecurity incident response capability.<br> Ensure effective detection, containment, eradication, recovery, and post-incident activities.<br> Develop, maintain, and continuously improve the Cybersecurity Incident Response Plan (CIRP).<br> Conduct regular incident response exercises and simulations.<br> Lead investigations into significant security incidents and ensure Root Cause Analysis (RCA) is completed.<br> Track corrective and preventive actions resulting from security incidents.<br> Ensure lessons learned are incorporated into security controls and processes.<br> E. Governance, Risk & Compliance Lead Information Security Governance, Risk, and Compliance (GRC) activities.<br> Ensure compliance with applicable regulatory and industry requirements, including: National Cybersecurity Authority (NCA) requirements Saudi Personal Data Protection Law (PDPL) National Data Management Office (NDMO) requirements, where applicable ISO/IEC 27001 Other applicable cybersecurity and data protection regulations Coordinate internal and external security audits and assessments.<br> Manage audit evidence collection and maintain an organized security evidence repository.<br> Track audit findings, remediation plans, and closure status.<br> Prepare management and regulatory compliance reports.<br> Support regulatory assessments, reviews, and submissions as required.<br> F. Data Protection & Privacy Establish and maintain data protection and information classification frameworks.<br> Ensure appropriate security controls are implemented for sensitive and personal data.<br> Work with relevant stakeholders to support compliance with PDPL and applicable data protection requirements.<br> Establish appropriate data access, handling, retention, and protection controls.<br> Support privacy and data protection risk assessments where required.<br> G. Vulnerability & Security Testing Oversee vulnerability management activities across IT environments.<br> Coordinate Vulnerability Assessments and Penetration Testing (VAPT).<br> Review vulnerability and penetration testing reports.<br> Ensure security vulnerabilities are appropriately prioritized based on business risk.<br> Track remediation activities and validate closure of critical and high-risk vulnerabilities.<br> Ensure security testing is incorporated into relevant technology projects and systems.<br> H. Identity & Access Management Establish and maintain IAM policies, standards, and access control frameworks.<br> Ensure appropriate access governance and segregation of duties.<br> Review privileged access and high-risk accounts.<br> Support periodic user access reviews and access recertification.<br> Ensure access controls align with business requirements and security policies.<br> I. Security Awareness & Culture Develop and implement an organization-wide security awareness program.<br> Lead cybersecurity awareness campaigns and security training.<br> Implement phishing simulation and social engineering awareness programs.<br> Monitor employee security awareness performance and identify improvement areas.<br> Promote a strong cybersecurity culture across all business functions.<br> J. Business Continuity & Disaster Recovery Ensure cybersecurity requirements are incorporated into Business Continuity and Disaster Recovery plans.<br> Participate in BCP/DR risk assessments and exercises.<br> Ensure critical systems have appropriate security, recovery, and resilience controls.<br> Support testing and continuous improvement of security-related recovery procedures.<br> 5. Qualifications & ExperienceMinimum Qualifications Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, Information Security , or a related discipline.<br> CISSP or CISM certification – Mandatory.<br> ISO/IEC 27001 Lead Implementer or Lead Auditor certification preferred.<br> NCA-related cybersecurity accreditation or certification is preferred.<br> Minimum Experience 8–10 years of professional experience in Information Security / Cybersecurity.<br> At least 3 years of experience in a cybersecurity or information security management/leadership role.<br> Proven experience managing enterprise cybersecurity programs and security teams.<br> Proven experience in GRC, risk management, security operations, and incident response.<br> Proven experience working with regulatory compliance, audits, and cybersecurity frameworks.<br> 6. Technical & Professional Skills The successful candidate should demonstrate: Strong knowledge of cybersecurity frameworks, standards, and best practices.<br> Deep understanding of NCA, PDPL, NDMO, ISO 27001 , and applicable data protection requirements.<br> Strong expertise in Governance, Risk, and Compliance (GRC).<br> Experience with SOC operations and SIEM platforms such as Microsoft Sentinel, Splunk , or equivalent.<br> Strong understanding of vulnerability management and penetration testing.<br> Strong knowledge of Incident Response and Cybersecurity Incident Response Plans (CIRP).<br> Strong understanding of IAM and access governance.<br> Knowledge of data protection, data classification, and data governance.<br> Strong understanding of secure architecture and security controls.<br> Ability to develop and monitor cybersecurity KPIs and KRIs.<br> Strong audit and regulatory assessment experience.<br> Ability to assess and communicate cybersecurity risks in terms of business impact.<br> Strong strategic thinking and high-level decision-making capability.<br> Excellent leadership and people-management skills.<br> Ability to manage cross-functional teams and stakeholders under pressure.<br> Strong communication, presentation, and reporting skills.<br> Bilingual proficiency in Arabic and English.<br> 7. Leadership Competencies Strategic Thinking Cybersecurity Leadership Risk-Based Decision Making Stakeholder Management Executive Communication Team Leadership & Development Problem Solving Crisis and Incident Management Governance & Accountability Continuous Improvement Business Acumen Change Management Special Requirements Ability to work effectively in a fast-paced and dynamic environment.<br> Ability to manage cybersecurity incidents and critical security situations.<br> Willingness to participate in security incident response and escalation activities when required.<br> Strong confidentiality and professional integrity.<br> Ability to work collaboratively with executive leadership, IT, business functions, auditors, and regulatory stakeholders.<br></span> </div>
JOB PURPOSE<br>Responsible for implementing and maintaining HDBank information security systems and technologies.<br>Job Responsibilities:<br>Maintain IT security controls documentation. Recognize the security gaps and prepare an action plan. Open support tickets and resolve issue. Responsible for information security projects and makes sure they meet information security objectives. Responsible for providing security during the development stages of software systems, networks and data centers. Develop plans to safeguard computer files against unauthorized modification, destruction or disclosure Perform vulnerability assessments and remediation actions<br>Job Qualifications: <br>Bachelor's Engineering or Computer Science Minimum 3+ years of IT and relevant security experience
We are looking for a Dev Sec Ops Security Engineer to integrate security practices throughout the software development lifecycle and ensure secure delivery of digital banking services. Key Responsibilities Implement security controls within CI/CD pipelines. Manage SAST, DAST, and security scanning solutions. Conduct vulnerability assessments. Support cloud and container security. Collaborate with engineering teams on secure coding practices. Required Qualifications4+ years cybersecurity experience. Dev Sec Ops implementation experience. Cloud security expertise. OWASP and application security knowledge.
<p><h4>Job description</h4>
<p>Directs Secure by Design (SbD) assessments across multiple projects simultaneously to ensure process abidance and thorough security integration.<br>
Leads the development of SbD principles and controls to align organizational design practices with risk appetite and security frameworks.<br>
Chairs security architecture governance forums to review high-risk designs and approve necessary exceptions or enhancements.<br>
Evaluates new service proposals and existing systems to identify architectural weaknesses and support cost-effective risk treatment decisions.<br>
Establishes a continuous remediation program for existing services to identify and prioritize the closure of security design gaps.<br>
Collaborates with engineering and DevOps teams throughout the SDLC to integrate security patterns and ensure remediation plans are actionable.<br>
Defines and evolves secure design standards and reference architectures to maintain alignment with ISO 27001, NIST, and PCI DSS requirements.<br>
Communicates security expectations and residual risk exposures to technical and non-technical stakeholders to drive informed business decisions.<br>
Produces comprehensive reporting on design-related vulnerability trends to provide leadership with visibility into the security design posture.<br>
Mentors architecture and engineering teams on secure design best practices to promote security adoption within Agile and DevOps environments.</p>
<h4>Skills description</h4>
<p><strong>Interpersonal skills</strong></p>
<ul>
<li>Demonstrated leadership in steering cross-functional teams and influencing without direct authority.</li>
<li>Effective coach and mentor for teams in adopting secure-by-design principles.</li>
<li>Strong risk analysis, problem-solving and decision-making skills.</li>
<li>Excellent communication skills to articulate complex security topics to varied audiences.</li>
<li>Proven ability to build trust and collaborate with stakeholders across business and technology domains.</li>
</ul>
<p><strong>Technical skills</strong></p>
<ul>
<li>Deep understanding of security principles, secure architecture patterns, secure network design, threat modelling techniques, and system design.</li>
<li>Knowledge of modern technology stacks including cloud platforms, APIs, microservices, identity and access management, and secure development practices.</li>
<li>Experience managing security initiatives at scale, including tracking delivery, dependencies and risk mitigation outcomes.</li>
<li>Capability to assess complex architectures and distil clear, actionable security recommendations.</li>
<li>Ability to translate business strategy into a security design roadmap and priorities.</li>
<li>Strong understanding of evolving threat landscapes and emerging technologies.</li>
<li>Professional certifications such as CISSP, CCSP, SABSA, TOGAF, or relevant cloud security/architecture certifications.</li>
</ul>
<p><strong>Professional experience</strong></p>
<ul>
<li>10+ years of experience in cybersecurity or secure architecture roles, including significant experience with security design and remediation.</li>
</ul>
<p><strong>Management experience</strong></p>
<ul>
<li>5+ years</li>
</ul>
<p><strong>Educational background</strong></p>
<ul>
<li>Bachelor’s degree in Cyber Security, Computer Science, Information Technology or related field.</li>
<li>Relevant certifications may include:
<ul>
<li>CISSP – Certified Information Systems Security Professional</li>
<li>CISM – Certified Information Security Manager</li>
<li>CRISC – Certified in Risk and Information Systems Control</li>
<li>CISA – Certified Information Systems Auditor</li>
<li>ISO 27001 Lead Implementer or Lead Auditor</li>
</ul>
</li>
</ul></p><p></p>
<p><h4>Position summary</h4>
<p>Patrol all areas of the property; assist guests with room access. Monitor closed circuit televisions, perimeter alarm system, duress alarms, and fire life safety system. Lock property entrances when required. Conduct daily physical hazard inspections. Respond to accidents, contact EMS or administer first aid/CPR as required. Assist guests/employees during emergency situations. Notify appropriate individuals in the event of accidents, attacks, or other incidents. Defuse guest/employee disturbances. Call for outside assistance if necessary. Complete incident reports to document all security/loss prevention related incidents. Handle all interruptions and complaints. Resolve safety hazard situations. Escort any unwelcome persons from the property without interrupting the orderly flow of property operation. Report to scenes of vehicle accidents/thefts. Call for assistance using proper code responses. Complete a loss prevention shift summary/daily activity report. Maintain confidentiality of all security/loss prevention and property reports/documents; release information only to authorized individuals. Conduct investigations and gather evidence. Conduct interviews with relevant parties.</p>
<p>Follow</p><p></p>