وظائف مفتش أمن في الأردن
٢٠٠٢ وظائف شاغرة
<p><h4>Description</h4>
<p>The Network Engineer - Cisco Security is responsible for designing, implementing, and supporting enterprise network security solutions with a primary focus on Cisco Identity Services Engine (ISE) and Cisco Firepower technologies (FTD & FMC). The role involves managing network access control (NAC), authentication services, firewall policies, VPN solutions, and advanced threat protection to ensure secure and reliable enterprise infrastructure operations. The engineer works closely with network, infrastructure, and security teams to deploy and optimize security controls across wired, wireless, and remote access environments. Key responsibilities include configuring Cisco ISE for authentication, authorization, posture assessment, and device profiling, as well as administering Cisco Firepower firewalls, IPS, AMP, and URL filtering features.</p>
<p>The role also includes monitoring security infrastructure, troubleshooting complex network security issues, performing system upgrades, and responding to security incidents. Additionally, the engineer is responsible for maintaining security documentation, enforcing organizational security standards, and contributing to continuous improvement initiatives to strengthen the company’s overall security posture. The ideal candidate should possess strong hands-on experience with Cisco security technologies, enterprise networking concepts, and security best practices.</p>
<h4>Responsibilities:</h4>
<ul>
<li><strong>Cisco ISE (Identity Services Engine) Administration</strong></li>
<li>Design, deploy, and maintain Cisco ISE solutions for Network Access Control (NAC)</li>
<li>Configure and manage AAA services using:
<ul>
<li>802.1X</li>
<li>MAB</li>
<li>TACACS+</li>
</ul>
</li>
<li>Manage and support:
<ul>
<li>Guest access portals</li>
<li>BYOD onboarding</li>
<li>Posture assessment policies</li>
</ul>
</li>
<li>Integrate Cisco ISE with Active Directory and identity management systems</li>
<li>Troubleshoot authentication and authorization issues across wired and wireless environments</li>
<li>Define and enforce access control policies based on user roles, device profiling, and security posture</li>
<li><strong>Cisco Firepower (FTD & FMC) Management</strong></li>
<li>Manage Cisco Firepower (FTD & FMC) environments</li>
<li>Firewall policies</li>
<li>Site-to-site & remote access VPNs</li>
<li>Monitor security features like IPS, AMP, URL filtering</li>
<li>Perform upgrades, patching, and security monitoring</li>
<li><strong>Security Operations</strong></li>
<li>Monitor and troubleshoot network security issues</li>
<li>Support incident response and root cause analysis</li>
<li>Ensure infrastructure availability and compliance</li>
<li><strong>Documentation & Continuous Improvement</strong></li>
<li>Maintain documentation of security configurations, policies, and operational procedures</li>
<li>Contribute to the development of network security standards and best practices</li>
<li>Identify opportunities to improve security posture, operational efficiency, and infrastructure resilience</li>
</ul>
<h4>Requirements</h4>
<ul>
<li>Bachelor’s degree in Computer Science, Information Technology, or related field, or equivalent experience</li>
<li>3–5+ years of experience in network security or security engineering roles</li>
<li>Hands-on experience with Cisco ISE and Cisco Firepower (FTD & FMC) technologies</li>
<li>Experience supporting enterprise-scale network security environments and NAC solutions</li>
<li>Strong understanding of TCP/IP networking, VLANs, routing, switching, and security architectures</li>
<li>Experience with VPN technologies, firewall policy management, and security monitoring/log analysis</li>
<li>Knowledge of enterprise security best practices, access control frameworks, and incident troubleshooting</li>
</ul></p><p></p>
<p><h4>Description</h4>
<p>The Network Engineer - Cisco Security is responsible for designing, implementing, and supporting enterprise network security solutions with a primary focus on Cisco Identity Services Engine (ISE) and Cisco Firepower technologies (FTD & FMC). The role involves managing network access control (NAC), authentication services, firewall policies, VPN solutions, and advanced threat protection to ensure secure and reliable enterprise infrastructure operations. The engineer works closely with network, infrastructure, and security teams to deploy and optimize security controls across wired, wireless, and remote access environments. Key responsibilities include configuring Cisco ISE for authentication, authorization, posture assessment, and device profiling, as well as administering Cisco Firepower firewalls, IPS, AMP, and URL filtering features.</p>
<p>The role also includes monitoring security infrastructure, troubleshooting complex network security issues, performing system upgrades, and responding to security incidents. Additionally, the engineer is responsible for maintaining security documentation, enforcing organizational security standards, and contributing to continuous improvement initiatives to strengthen the company’s overall security posture. The ideal candidate should possess strong hands-on experience with Cisco security technologies, enterprise networking concepts, and security best practices.</p>
<h4>Responsibilities:</h4>
<ul>
<li><strong>Cisco ISE (Identity Services Engine) Administration</strong></li>
<li>Design, deploy, and maintain Cisco ISE solutions for Network Access Control (NAC)</li>
<li>Configure and manage AAA services using:
<ul>
<li>802.1X</li>
<li>MAB</li>
<li>TACACS+</li>
</ul>
</li>
<li>Manage and support:
<ul>
<li>Guest access portals</li>
<li>BYOD onboarding</li>
<li>Posture assessment policies</li>
</ul>
</li>
<li>Integrate Cisco ISE with Active Directory and identity management systems</li>
<li>Troubleshoot authentication and authorization issues across wired and wireless environments</li>
<li>Define and enforce access control policies based on user roles, device profiling, and security posture</li>
<li><strong>Cisco Firepower (FTD & FMC) Management</strong></li>
<li>Manage Cisco Firepower (FTD & FMC) environments</li>
<li>Firewall policies</li>
<li>Site-to-site & remote access VPNs</li>
<li>Monitor security features like IPS, AMP, URL filtering</li>
<li>Perform upgrades, patching, and security monitoring</li>
<li><strong>Security Operations</strong></li>
<li>Monitor and troubleshoot network security issues</li>
<li>Support incident response and root cause analysis</li>
<li>Ensure infrastructure availability and compliance</li>
<li><strong>Documentation & Continuous Improvement</strong></li>
<li>Maintain documentation of security configurations, policies, and operational procedures</li>
<li>Contribute to the development of network security standards and best practices</li>
<li>Identify opportunities to improve security posture, operational efficiency, and infrastructure resilience</li>
</ul>
<h4>Requirements</h4>
<ul>
<li>Bachelor’s degree in Computer Science, Information Technology, or related field, or equivalent experience</li>
<li>3–5+ years of experience in network security or security engineering roles</li>
<li>Hands-on experience with Cisco ISE and Cisco Firepower (FTD & FMC) technologies</li>
<li>Experience supporting enterprise-scale network security environments and NAC solutions</li>
<li>Strong understanding of TCP/IP networking, VLANs, routing, switching, and security architectures</li>
<li>Experience with VPN technologies, firewall policy management, and security monitoring/log analysis</li>
<li>Knowledge of enterprise security best practices, access control frameworks, and incident troubleshooting</li>
</ul></p><p></p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>We are seeking an experienced Team Lead – Network Security Operations with 10+ years of experience to lead the day-to-day operations of the Network Security team.<br> The ideal candidate will oversee network security infrastructure, ensure the availability and security of enterprise environments, and provide technical leadership while supporting operational excellence.<br> Key Responsibilities Lead and manage the Network Security Operations team.<br> Oversee daily network security operations and ensure service availability.<br> Manage and support enterprise network security infrastructure.<br> Monitor, investigate, and resolve network security incidents.<br> Ensure security policies, standards, and operational procedures are followed.<br> Coordinate with infrastructure, cybersecurity, and other IT teams.<br> Review and approve network security changes and configurations.<br> Prepare operational reports and maintain technical documentation.<br> Drive continuous improvement of network security operations.<br> Bachelor's degree in Computer Science, Information Technology, Cyber Security, or a related field.<br> 10+ years of experience in network security operations.<br> Experience leading technical teams in an enterprise environment.<br> Strong understanding of network security technologies and operations.<br> Experience managing security incidents and operational support.<br> Strong leadership, communication, and problem-solving skills.<br> Nice to Have Experience working in enterprise or large-scale environments.<br> Network security certifications.<br> Experience with ITIL or service management processes.<br></span> </div>
<p><h4>Description</h4>
<p>Bank of Jordan is on the lookout for a dedicated and knowledgeable Information Security Officer to join our dynamic team. As an Information Security Officer, you will be responsible for protecting our organization’s information assets and ensuring that our security protocols align with industry standards and regulatory requirements.</p>
<p>Your role is pivotal in establishing and maintaining a robust information security environment that safeguards sensitive data while fostering a culture of awareness and compliance among all employees at the bank.</p>
<h4>Responsibilities</h4>
<li>Monitor security events: Continuously monitor security alerts from various security tools, including SIEM (Security Information and Event Management), IDS/IPS, firewalls, and endpoint detection systems.</li>
<li>Incident response: Lead the investigation and triage of security incidents. Perform detailed analysis of security events, determine their severity, and coordinate an appropriate response to mitigate threats.</li>
<li>Threat intelligence: Stay updated on the latest threat intelligence and trends. Analyze emerging threats and contribute to the development of proactive defense strategies.</li>
<li>Advanced analysis: Perform deep-dive analysis of complex security incidents, conducting root cause analysis and providing actionable recommendations for resolution.</li>
<li>SOC leadership: Mentor and guide junior SOC analysts, ensuring the team follows best practices and continuously improves their skills.</li>
<li>Reporting: Prepare and deliver detailed reports on security incidents, trends, and activities to senior management. Provide executive-level summaries and recommendations.</li>
<li>Collaboration: Work closely with cross-functional teams, including IT, network security, and risk management, to develop and implement security measures.</li>
<li>Threat hunting: Proactively search for potential security threats and vulnerabilities across the organization’s network and endpoints.</li>
<li>Documentation and procedures: Maintain accurate documentation for security incidents, procedures, and processes. Regularly update the knowledge base to ensure continuity of operations and knowledge transfer within the team.</li>
<li>Security tool optimization: Assist in the tuning and optimization of security tools to improve detection accuracy and reduce false positives.</li>
<h4>Requirements</h4>
<li>Experience: 5+ years of experience in security operations or a related cybersecurity field, with at least 2 years in a senior or leadership role in a SOC.</li>
<li>Technical knowledge: Strong understanding of security technologies, including SIEM, firewalls, IDS/IPS, endpoint protection, and vulnerability management tools.</li>
<li>Incident response expertise: Demonstrated experience in responding to security incidents and conducting thorough investigations.</li>
<li>Threat intelligence & analysis: Proficiency in threat intelligence sources, analysis techniques, and utilizing intelligence to inform defensive strategies.</li>
<li>Security frameworks: Familiarity with industry standards and frameworks (e.g., NIST, ISO 27001, MITRE ATT&CK).</li>
<li>Certifications: Relevant certifications such as CISSP, CISM, CEH, GIAC, or CompTIA Security+ are highly desirable.</li>
<li>Strong analytical skills: Ability to analyze complex security incidents, interpret log data, and provide actionable insights.</li>
<li>Communication skills: Excellent written and verbal communication skills, with the ability to clearly explain complex security concepts to technical and non-technical stakeholders.</li>
<li>Attention to detail: Strong attention to detail and a proactive approach to identifying and mitigating threats.</li></p><p></p>
<p><h4>Description</h4>
<p>Bank of Jordan is on the lookout for a dedicated and knowledgeable Information Security Officer to join our dynamic team. As an Information Security Officer, you will be responsible for protecting our organization’s information assets and ensuring that our security protocols align with industry standards and regulatory requirements.</p>
<p>Your role is pivotal in establishing and maintaining a robust information security environment that safeguards sensitive data while fostering a culture of awareness and compliance among all employees at the bank.</p>
<h4>Responsibilities</h4>
<li>Monitor security events: Continuously monitor security alerts from various security tools, including SIEM (Security Information and Event Management), IDS/IPS, firewalls, and endpoint detection systems.</li>
<li>Incident response: Lead the investigation and triage of security incidents. Perform detailed analysis of security events, determine their severity, and coordinate an appropriate response to mitigate threats.</li>
<li>Threat intelligence: Stay updated on the latest threat intelligence and trends. Analyze emerging threats and contribute to the development of proactive defense strategies.</li>
<li>Advanced analysis: Perform deep-dive analysis of complex security incidents, conducting root cause analysis and providing actionable recommendations for resolution.</li>
<li>SOC leadership: Mentor and guide junior SOC analysts, ensuring the team follows best practices and continuously improves their skills.</li>
<li>Reporting: Prepare and deliver detailed reports on security incidents, trends, and activities to senior management. Provide executive-level summaries and recommendations.</li>
<li>Collaboration: Work closely with cross-functional teams, including IT, network security, and risk management, to develop and implement security measures.</li>
<li>Threat hunting: Proactively search for potential security threats and vulnerabilities across the organization’s network and endpoints.</li>
<li>Documentation and procedures: Maintain accurate documentation for security incidents, procedures, and processes. Regularly update the knowledge base to ensure continuity of operations and knowledge transfer within the team.</li>
<li>Security tool optimization: Assist in the tuning and optimization of security tools to improve detection accuracy and reduce false positives.</li>
<h4>Requirements</h4>
<li>Experience: 5+ years of experience in security operations or a related cybersecurity field, with at least 2 years in a senior or leadership role in a SOC.</li>
<li>Technical knowledge: Strong understanding of security technologies, including SIEM, firewalls, IDS/IPS, endpoint protection, and vulnerability management tools.</li>
<li>Incident response expertise: Demonstrated experience in responding to security incidents and conducting thorough investigations.</li>
<li>Threat intelligence & analysis: Proficiency in threat intelligence sources, analysis techniques, and utilizing intelligence to inform defensive strategies.</li>
<li>Security frameworks: Familiarity with industry standards and frameworks (e.g., NIST, ISO 27001, MITRE ATT&CK).</li>
<li>Certifications: Relevant certifications such as CISSP, CISM, CEH, GIAC, or CompTIA Security+ are highly desirable.</li>
<li>Strong analytical skills: Ability to analyze complex security incidents, interpret log data, and provide actionable insights.</li>
<li>Communication skills: Excellent written and verbal communication skills, with the ability to clearly explain complex security concepts to technical and non-technical stakeholders.</li>
<li>Attention to detail: Strong attention to detail and a proactive approach to identifying and mitigating threats.</li></p><p></p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>We are looking for an L1 SOC Analyst with 1–3 years of experience to monitor security events, identify potential threats, and support the Security Operations Center (SOC) in responding to security incidents.<br> The ideal candidate should have a good understanding of cybersecurity fundamentals and security monitoring.<br> Key Responsibilities Monitor security alerts and events using SOC monitoring tools.<br> Perform initial analysis and triage of security incidents.<br> Escalate suspicious activities to higher-level SOC analysts when required.<br> Investigate security alerts and document findings.<br> Monitor system and network logs for potential security threats.<br> Follow incident response procedures and SOC playbooks.<br> Maintain accurate documentation of security events and incidents.<br> Work closely with the cybersecurity team to support daily SOC operations.<br> Bachelor's degree in Computer Science, Cyber Security, Information Technology, or a related field.<br> 1–3 years of experience in a Security Operations Center (SOC) or cybersecurity role.<br> Basic understanding of cybersecurity concepts and security monitoring.<br> Familiarity with security incidents, threats, and vulnerabilities.<br> Strong analytical and problem-solving skills.<br> Good communication and teamwork skills.<br> Willingness to work in a 24/7 shift environment if required.<br> Nice to Have Knowledge of SIEM tools.<br> Familiarity with Windows, Linux, and networking fundamentals.<br> Certifications such as Security+, CEH, or SC-200 are an advantage.<br></span> </div>
<p>We are growing our engineering team and are looking for a technically strong Engineering Manager to lead one of our delivery teams. This is a delivery-focused leadership role: your job is to turn a cross-functional roadmap into shipped, high-quality software on a predictable cadence, while providing the technical insight and guidance needed to keep delivery pragmatic, reliable, and well-executed. The team has two clear areas of ownership. First, the Hotels domain, the guest-facing and hotel-operations features that serve our enterprise hotel customers, from in-room and on-property ordering through to stay-management and guest-services capabilities. Second, third-party integrations such as POS's (Point of Sale), PMS (Property Management System), payment gateways, and loyalty connections that the Hotels business depends on, where you own the technical relationship end-to-end. You own the throughput, quality, and getting integration-heavy work delivered efficiently. This role reports to the Engineering Director.</p><p>Your mission</p><p>You own the delivery health of your squad end-to-end. You take a mixed backlog of integration, platform, and product work and ship it predictably, at high quality, with the dependencies managed and the risks surfaced early.</p><p>Key responsibilities</p><ul><li>Manage a team of full stack engineers, actively drive their growth, performance, and engagement. Mobile engineers are a possibility as well.</li><li>Turn quarterly roadmaps into a realistic delivery plan, track progress, and report status with metrics against company goals.</li><li>Run tight agile processes and continuously improve them based on delivery metrics.</li><li>Manage dependencies across different domains, with external integration partners, escalating and resolving blockers early (e.g. with POS systems etc.).</li><li>Review RFCs and technical proposals, providing feedback on design, scalability, security, and integration risk, and helping the team converge on sound decisions before things enter a delivery commitment.</li><li>Lead technical discussions with third-party integration partners, translating between partner APIs and constraints and wi-Q's architecture, and owning the technical feasibility view in those conversations.</li><li>Improve engineering process and delivery metrics (for example cycle time, deployment frequency, change-failure rate, and defect escape rate), and use them to drive decisions.</li><li>Uphold security and compliance obligations relevant to the team's work (e.g. PCI DSS etc.), embedding them into how the squad builds rather than treating them as an afterthought.</li><li>Draft and track team OKRs and engineering KPIs (e.g. DORA); when the team is off track, show what is being done about it.</li><li>Coordinate across Product, Customer Success, DevOps, and the Foodics counterparts to deliver shared goals.</li></ul><p>What success looks like (first 6-12 months)</p><ul><li>The team has a predictable delivery cadence, with sprint and quarterly commitments met at a consistent and improving hit rate.</li><li>Cross-team and third-party dependencies are visible and managed early, so the squad is rarely blocked and rarely blocks others.</li><li>Release quality is measurably higher: fewer escaped defects and a faster, safer path from merge to production.</li><li>Delivery from the team contributes directly to improving TTV for new customer go-lives and to protecting NRR through platform stability.</li><li>The team is fully staffed, ramped, and retained, with a clear working model and a healthy engagement signal.</li><li>Product, Commercial, and Customer Success stakeholders trust the team's estimates, status, and risk flags.</li></ul><p>Your skills</p><ul><li>Demonstrated experience managing a team of software engineers, with a track record of delivering on commitments predictably.</li><li>Strong command of agile and lean delivery practices (sprints, kanban, estimation, refinement) and the maturity to adapt process to context rather than apply it dogmatically.</li><li>Proven ability to manage dependencies and coordinate delivery across multiple teams and external partners.</li><li>Technically strong: able to review RFCs and technical proposals critically, reason about architecture, scalability, and integration risk, scope engineering spikes, and hold your own in technical discussions with engineers and third-party partners.</li><li>Fluency with delivery and quality metrics, and the discipline to lead with data over anecdote.</li><li>Excellent written and verbal communication in English; able to lead with the conclusion, be concise, and be specific about blockers and decisions needed.</li><li>Ability to translate technical concepts into easily digestible language for non-technical business stakeholders.</li><li>Experience operating in multi-market or multi-region environments, ideally with distributed and remote teams.</li><li>Comfortable in a fast-moving scale-up where priorities shift and ambiguity is normal.</li></ul><p>Nice-to-haves</p><ul><li>Experience in B2B SaaS with high-volume B2C traffic patterns.</li><li>Background in hospitality-tech, food and beverage, payments, or last-mile delivery.</li><li>Working knowledge of our stack: Google Cloud Platform (GCP), Kubernetes, GitHub, PHP/Symfony, NodeJS, Typescript, and a mobile stack (Capacitor, Ionic, or React Native).</li><li>Familiarity with integrating third-party systems (POS, PMS, payment gateways, delivery aggregators) and the reliability challenges they bring.</li><li>Experience hiring and scaling engineering teams in the MENA region.</li><li>BSc or MSc degree (or equivalent experience).</li></ul><p>What we offer</p><ul><li>Curated career progression planning with formal yearly reviews and informal check-ins along the way.</li><li>Encouragement to grow into a Feature Development Lead.</li><li>A competitive salary.</li><li>Ample time to learn new concepts - including paid development and business-related conferences.</li><li>Fully remote working, no commuting expenses.</li><li>Flexible work hours. We'll need you around for a 10am stand-up; otherwise you work as and when it suits you.</li><li>25 days holiday (plus bank holidays), with an additional day per year of service.</li><li>Regular all-company socials and quarterly team socials.</li><li>A team that genuinely likes learning and shipping together.</li></ul><p><strong>Desired Candidate Profile</strong></p><ul><li>Demonstrated experience managing a team of software engineers, with a track record of delivering on commitments predictably.</li><li>Strong command of agile and lean delivery practices (sprints, kanban, estimation, refinement) and the maturity to adapt process to context rather than apply it dogmatically.</li><li>Proven ability to manage dependencies and coordinate delivery across multiple teams and external partners.</li><li>Technically strong: able to review RFCs and technical proposals critically, reason about architecture, scalability, and integration risk, scope engineering spikes, and hold your own in technical discussions with engineers and third-party partners.</li><li>Fluency with delivery and quality metrics, and the discipline to lead with data over anecdote.</li><li>Excellent written and verbal communication in English; able to lead with the conclusion, be concise, and be specific about blockers and decisions needed.</li><li>Ability to translate technical concepts into easily digestible language for non-technical business stakeholders.</li><li>Experience operating in multi-market or multi-region environments, ideally with distributed and remote teams.</li><li>Comfortable in a fast-moving scale-up where priorities shift and ambiguity is normal.</li><li>Experience in B2B SaaS with high-volume B2C traffic patterns.</li><li>Background in hospitality-tech, food and beverage, payments, or last-mile delivery.</li><li>Working knowledge of our stack: Google Cloud Platform (GCP), Kubernetes, GitHub, PHP/Symfony, NodeJS, Typescript, and a mobile stack (Capacitor, Ionic, or React Native).</li><li>Familiarity with integrating third-party systems (POS, PMS, payment gateways, delivery aggregators) and the reliability challenges they bring.</li><li>Experience hiring and scaling engineering teams in the MENA region.</li><li>BSc or MSc degree (or equivalent experience).</li></ul>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>The Specialist Security Engineer Fortinet Solutions is responsible for designing, implementing, optimizing, and supporting advanced Fortinet-based cybersecurity solutions across enterprise, service provider, and data center environments. The role serves as a technical subject matter expert for Fortinet technologies, providing architecture design, deployment leadership, troubleshooting, migration support, and operational excellence across customer environments. Working within ZainTECH s Cybersecurity Practice, the Specialist Security Engineer will lead the delivery of secure, scalable, and resilient security solutions covering network security, SD-WAN, SASE, Zero Trust architectures, privileged access management, web application security, and security monitoring platforms. The role collaborates closely with customers, presales teams, project delivery teams, and technology partners to ensure successful implementation and ongoing optimization of Fortinet security solutions.</p><p>Responsibilities:</p><ul><li><strong>Security Architecture & Solution Design</strong><ul><li>Design and implement enterprise and data center security architectures utilizing Fortinet technologies.</li><li>Develop secure, scalable, and highly available security solutions aligned with customer business and security requirements.</li><li>Design and architect, High Availability (HA) deployments, Advanced SD-WAN solutions, Secure Access Service Edge (SASE) architectures, Zero Trust Network Access (ZTNA) environments, Network segmentation and micro-segmentation strategies</li><li>Conduct security assessments and provide recommendations aligned with cybersecurity best practices and industry standards.</li><li>Develop High-Level Designs (HLDs), Low-Level Designs (LLDs), Migration and implementation plans, technical architecture documentation</li></ul></li><li><strong>Fortinet Solution Deployment & Integration</strong><ul><li>Lead the installation, configuration, migration, and optimization of Fortinet solutions including: FortiGate FortiManager FortiAnalyzer FortiSwitch FortiAP FortiWeb FortiADC FortiPAM FortiProxy FortiDLP FortiSIEM FortiSASE FortiAppSec</li><li>Integrate Fortinet platforms with: Active Directory LDAP RADIUS TACACS+ Identity Providers (IdPs) Multi-Factor Authentication (MFA) platforms SIEM and Syslog solutions AWS and Microsoft Azure environments Third-party security solutions</li><li>Ensure successful migration and interoperability between legacy and modern security infrastructures.</li></ul></li><li><strong>Security Operations & Technical Support</strong><ul><li>Provide advanced L2, L3, and escalation support for enterprise customers.</li><li>Troubleshoot complex: Security incidents Firewall issues Routing and connectivity problems VPN-related issues Authentication and access control challenges</li><li>Conduct root cause analysis and provide recommendations to prevent recurrence.</li><li>Monitor solution performance and ensure high service availability.</li><li>Maintain configuration backups, disaster recovery plans, and operational documentation.</li><li>Support customers during critical incidents and major service disruptions.</li></ul></li><li><strong>Network Security & Advanced Security Technologies</strong><ul><li>Configure, manage, and optimize: Security Policies Application Control Intrusion Prevention Systems (IPS) Web Filtering Anti-Malware Services Data Loss Prevention (DLP) Proxy Services Privileged Access Management (PAM) Security Event Monitoring and Correlation</li><li>Deploy and support: Psec VPN SSL VPN Remote Internet Access (RIA) Direct Internet Access (DIA) Site-to-Site VPNs Hub-and-Spoke VPN Architectures</li><li>Implement Zero Trust and SASE security models to enhance customer security posture.</li></ul></li><li><strong>Project Delivery & Customer Engagement</strong><ul><li>Lead implementation, migration, upgrade, and optimization projects.</li><li>Coordinate activities with Customers,Vendors, Project Managers, internal delivery teams</li><li>Produce technical implementation documentation, Acceptance reports, As-built documentation, Operational handover documentation</li><li>Conduct customer knowledge transfer sessions and technical workshops.</li><li>Support presales teams during solution presentations, technical discussions, and proof-of-concept activities.</li></ul></li><li><strong>Continuous Improvement & Technical Leadership</strong><ul><li>Stay current with emerging cybersecurity threats, Fortinet product developments, and industry best practices.</li><li>Participate in technical enablement and knowledge-sharing initiatives.</li><li>Support the development of technical standards, implementation methodologies, and operational procedures.</li><li>Contribute to service improvement initiatives across the Cybersecurity Practice.</li></ul></li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li>Bachelor's degree in Computer Engineering, Computer Science, Information Security, Information Technology, or a related field, with a minimum of 5 years of experience in cybersecurity and network security engineering.</li><li>Proven hands-on expertise in designing, implementing, and supporting Fortinet security solutions, including FortiGate, FortiManager, FortiAnalyzer, SD-WAN, SASE, FortiWeb, FortiADC, FortiPAM, FortiProxy, FortiDLP, and FortiSIEM.</li><li>Strong knowledge of network security architecture and infrastructure design, with expertise in TCP/IP, Routing & Switching, BGP, OSPF, VLANs, NAT, Traffic Shaping, and Policy-Based Routing.</li><li>Advanced troubleshooting, analytical, and problem-solving skills, with experience supporting complex enterprise, managed services, or service provider environments.</li><li>Strong customer-facing communication, presentation, consulting, and technical advisory skills, with the ability to engage effectively with stakeholders across all levels.</li><li>Demonstrated technical leadership, mentoring capabilities, and experience managing project delivery while coordinating with multiple stakeholders.</li><li>Solid understanding of security operations, incident response processes, and managed security services, including exposure to Zero Trust and cloud security architectures.</li><li>Experience working with virtualization and cloud platforms such as VMware ESXi, Hyper-V, AWS, and Microsoft Azure, preferably within large-scale enterprise or multi-site environments.</li><li>Strong documentation, reporting, and operational governance skills, with the ability to perform effectively in high-pressure environments and participate in critical incident response activities when required.</li><li>Relevant certifications such as FCP, FCSS, NSE 4/5/6/7, CCNA, CCNP Security, FortiSASE, and AWS/Azure Security certifications, along with a commitment to continuous learning and professional development.</li></ul><p></p></section>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>Responsibilities</p> <p>JOB SUMMARY </p> <p > </p> <p >The Cybersecurity and Digital Trust Analyst is a hands-on security operations role at the heart of KEO's cloud-first, Microsoft-centric security posture. This is not a passive monitoring role the Analyst actively hunts threats, analyses security events, responds to incidents, and drives measurable improvement in KEO's security resilience across all platforms and geographies. Operating within and continuously strengthening KEO's zero-trust architecture, CSPM framework, and Digital Trust governance model, the role embeds a security-first culture across the organization and contributes to AI-driven security operations as part of KEO's ongoing digital transformation.</p> <p > </p> <p >KEY TASKS AND RESPONSIBILITIES</p> <p >Security Operations & Threat Detection</p> <ul > <li>Operate and continuously tune Microsoft Sentinel (SIEM), building and refining detection rules, KQL analytics queries, and automated SOAR response playbooks to ensure real-time threat visibility, rapid incident triage, and reduced mean time to respond (MTTR) across cloud, endpoint, identity, and network layers.</li> <li>Conduct proactive threat hunting across KEO's Azure and Microsoft 365 environments, identifying indicators of compromise and attack patterns before they escalate.</li> </ul> <ul > <li>Produce regular security operations reports, threat intelligence summaries, and dashboard insights for IT leadership.</li> </ul> <p >Identity, Access & Zero-Trust Governance</p> <ul > <li>Administer and continuously improve KEO's identity and access management framework using Microsoft Entra ID, ensuring MFA enforcement, conditional access policies, privileged identity management (PIM), and zero-trust network architecture are correctly configured, monitored, and maintained.</li> <li>Apply and audit least-privilege, RBAC, and zero-trust principles across all systems and user populations, conducting regular access reviews, entitlement audits, and certification campaigns to identify and remediate excessive or inappropriate access.</li> </ul> <p >Cloud Security Posture Management (CSPM)</p> <ul > <li>Continuously assess KEO's cloud security posture using Microsoft Defender for Cloud, identifying and prioritizing misconfigurations, vulnerabilities, and compliance gaps, and driving timely remediation in collaboration with the platform engineering team.</li> </ul> <ul > <li>Maintain and improve secure configuration baselines for Microsoft Azure, Microsoft 365, SharePoint, and Autodesk Construction Cloud in line with CIS benchmarks and Microsoft security best practices, ensuring all certified digital platforms consistently meet their respective security and compliance standards.</li> </ul> <p >Vulnerability Management & Patch Compliance</p> <ul > <li>Operate KEO's vulnerability management programme using Microsoft Defender Vulnerability Management, identifying, assessing, and prioritizing vulnerabilities across endpoints, servers, and cloud workloads, and tracking patch compliance levels globally with escalation and coordinated remediation across platform and workplace teams.</li> </ul> <ul > <li>Perform regular security assessments of infrastructure, applications, and configurations, providing actionable remediation recommendations.</li> </ul> <p >Governance, Compliance & Audit Support</p> <ul > <li>Support independent audits of KEO's access control and governance frameworks, maintaining accurate security documentation including policies, standards, risk registers, and control evidence and contributing to the development and review of cybersecurity policies that reflect current threats and regulatory requirements. </li> <li>Support IT risk assessment activities and assist with the maintenance and testing of BCP and DR procedures from a security perspective.</li> </ul> <p >Collaboration & Stakeholder Engagement</p> <p >Work closely with platform engineering, digital workplace, and enterprise digital solutions teams to ensure security is embedded by design across all IT initiatives, acting as a trusted advisor to business stakeholders and participating in CAB meetings to provide security assessment and sign-off for technology changes.</p> <p > </p> <p > span>JOB-SPECIFIC COMPETENCIES /strong> /span> </p><span ><span > </span><ul > <li ><span >Strong analytical and investigative mindset - able to identify patterns, anomalies, and threats across large volumes of security telemetry.</span></li> <li ><span >Hands-on technical proficiency with Microsoft Sentinel, Microsoft Defender suite, Entra ID, and Azure security services.</span></li> <li ><span >Working knowledge of KQL (Kusto Query Language) for security analytics, threat hunting, and detection rule authoring.</span></li> <li ><span >Solid understanding of zero-trust architecture principles and their practical application in a cloud-first environment.</span></li> <li ><span >Proactive and self-motivated: takes initiative in identifying and addressing security gaps without waiting to be directed.</span></li> <li ><span >Detail-oriented and process-disciplined, with strong documentation habits and a commitment to evidence-based operations.</span></li> <li ><span >Collaborative team player who contributes to a positive, knowledge-sharing team culture.</span></li> <li ><span >Continuous learner: actively keeps pace with the evolving threat landscape, new attack techniques, and emerging security tooling.</span></li> </ul></span></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p>Typically, 3 5+ years of experience in a dedicated cybersecurity operations or information security role within an enterprise environment.</p> <ul> <li>Proven, hands-on experience with Microsoft Sentinel (SIEM), including detection rule creation, KQL query writing, and incident investigation workflows.</li> <li>Working experience with the Microsoft Defender suite (Defender for Endpoint, Defender for Cloud, Defender for Identity, Defender for Office 365).</li> <li>Demonstrated experience with Microsoft Entra ID (Azure AD), including conditional access, MFA administration, privileged identity management (PIM)</li> <li>Practical understanding of zero-trust architecture and its implementation in a cloud-first environment.</li> <li>Experience operating cloud security posture management (CSPM) tooling and remediating cloud security findings.</li> <li>Experience with vulnerability management programs and patch compliance tracking.</li> <li>Experience supporting governance, risk, and compliance activities, including audit evidence preparation.</li> <li>Familiarity with AI-driven security operations capabilities, threat intelligence platforms, and automated incident response (SOAR) workflows.</li> <li>Knowledge of relevant regulatory frameworks and security standards (e.g. ISO 27001, NIST CSF, CIS Controls) is highly desirable.</li> </ul><p></p></section>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>We are looking for an experienced Firewall Engineer with 10+ years of experience to design, implement, manage, and support enterprise firewall and network security solutions.<br> The ideal candidate will be responsible for maintaining secure network environments, implementing security policies, and ensuring the availability and performance of firewall infrastructure.<br> Key Responsibilities Configure, manage, and maintain enterprise firewall solutions.<br> Implement and enforce firewall security policies and access control rules.<br> Monitor firewall performance and troubleshoot security or connectivity issues.<br> Perform firewall upgrades, patches, and configuration changes.<br> Support network security operations and incident investigations.<br> Review and optimize firewall rules to ensure compliance and security best practices.<br> Collaborate with infrastructure and cybersecurity teams on security initiatives.<br> Maintain technical documentation and standard operating procedures.<br> Ensure firewall environments meet organizational security and compliance requirements.<br> Bachelor's degree in Computer Science, Information Technology, Cyber Security, or a related field.<br> 10+ years of experience in firewall and network security administration.<br> Strong understanding of enterprise firewall technologies.<br> Experience implementing and managing network security policies.<br> Good knowledge of network security principles and troubleshooting.<br> Strong analytical and problem-solving skills.<br> Good communication and teamwork skills.<br> Nice to Have Firewall vendor certifications.<br> Experience with enterprise network environments.<br> Knowledge of VPNs, NAT, and network segmentation.<br></span> </div>
<strong>Job Purpose</strong> <p></p> <p>The Senior Presales Engineer - Cybersecurity is responsible for driving end-to-end technical solutioning across enterprise security domains. This includes Network Security, Endpoint & Detection (EDR/NDR/MDR), Zero Trust Architectures (ZTNA), Data Security (DLP, Classification, Watermarking), Security Operations (SOC, SIEM, SOAR, Log Management, IR), Threat Intelligence, Identity & AD Governance, and Core Infrastructure Security (DNS, IPAM, DHCP). The role involves gathering technical and compliance requirements, designing comprehensive security architectures aligned with local regulatory frameworks (e.g., NCA, SAMA, PDPL), and partnering closely with Account Managers, top cybersecurity OEMs, and regional Value-Added Distributors (VADs) in Saudi Arabia to drive successful deal closures and maintain high customer satisfaction.</p> <p> <strong> <br>Skills<br> </strong>Presales, Cybersecurity, Saudi Arabia Market Relations (OEMs & VADs), Zero Trust (ZTNA), EDR, NDR, MDR, SOC, SOAR, Log Management, Incident Response (IR), Threat Intelligence, Data Loss Prevention (DLP), Data Classification, Watermarking, Application Whitelisting, Active Directory (AD) Audit, Database Security, Phishing Simulation, Security Awareness (LMS), Core Network Security (DNS, IPAM, DHCP Security), and Local Security Compliance (NCA/SAMA), with Minimum similar 5 Yrs of experience</p> <p> <strong> <br>Responsibilities</strong> </p> <ul> <li> <p>Work closely with the Sales team to provide full technical presales assistance in support of achieving aggressive regional sales targets.</p> </li> <li> <p>Illustrate the enterprise value, risk-reduction, and ROI of comprehensive cybersecurity solutions to prospects in a compelling manner.</p> </li> <li> <p>Align company capabilities (products, managed security services, SOC/MDR offerings, and consulting) with client business objectives, risk frameworks, and Saudi regulatory requirements (e.g., NCA ECC, SAMA CSF, PDPL).</p> </li> <li> <p>Lead and participate in the response to RFI/RFP/RFQ documents, bid coordination, prospect qualification, deep-dive discovery, technical demonstrations, and custom solution architectures.</p> </li> <li> <p>Promote and expand security opportunities within existing enterprise and government accounts in KSA.</p> </li> <li> <p>Design, execute, and oversee Proof-of-Concept (POC) activities, phishing simulations, and technical benchmarks to help sales close complex security deals.</p> </li> <li> <p>Maintain <strong>strong relationships with key cybersecurity Vendors (OEMs) and local Value-Added Distributors (VADs) in Saudi Arabia</strong> (e.g., Cyberknight, , StarLink, Ingram Micro KSA, Mindware, AlJammaz, Logicom, FVC, Gulf IT Network Distribution, exclusive networks<strong> </strong>etc.) for joint account planning, quote speed, and partner enablement.</p> </li> <li> <p>Collaborate closely with Product Managers and local VAD product leads to identify emerging threat trends, generate leads, and uncover new business opportunities.</p> </li> <li> <p>Act as a strong Solution Architect across market-leading cybersecurity OEMs and specialized domains:</p> <ul> <li> <p> <strong>Endpoint & Threat Detection:</strong> EDR, NDR, MDR, Incident Response (IR), Application Whitelisting.</p> </li> <li> <p> <strong>Zero Trust & Network Security:</strong> Zero Trust Network Access (ZTNA), Next-Gen Firewalls, DNS Security, IPAM Security, DHCP Security.</p> </li> <li> <p> <strong>Security Operations & Intelligence:</strong> SOC, SOAR, SIEM, Log Management, Threat Intelligence platforms.</p> </li> <li> <p> <strong>Data Protection & Privacy:</strong> Data Loss Prevention (DLP), Data Classification, Document Watermarking, Database Security.</p> </li> <li> <p> <strong>Identity, Access & Infrastructure Audit:</strong> Active Directory (AD) Auditing, Identity & Access Management (IAM), Privileged Access Management (PAM).</p> </li> <li> <p> <strong>Human Risk & Enablement:</strong> Security Awareness Platforms, Learning Management Systems (LMS), Phishing Simulation tools.</p> </li> </ul> </li> <li> <p>Deliver regular security product enablement, threat landscape updates, and solution training to internal sales teams.</p> </li> <li> <p>Participate in commercial, licensing, and deal-registration discussions with cybersecurity OEMs and local VADs to secure special pricing (SPA/OIP) and optimal margins.</p> </li> <li> <p>Maintain regular engagement and strategic technical alignment with Saudi-based OEM Presales teams and Solution Architects.</p> </li> <li> <p>Liaise with local distributors for rapid bill-of-materials (BOM) validation, product availability, and prompt quote turnarounds.</p> </li> <li> <p>Build and nurture strong technical relationships with client CISOs, IT Security Leaders, and local ecosystem partners.</p> </li> <li> <p>Assist sales leaders in overcoming complex technical objections and closing strategic deals.</p> </li> <li> <p>Perform ongoing competitive analysis across the local security vendor landscape to position solutions effectively.</p> </li> </ul> <p> <strong>Key Qualifications</strong> </p> <ul> <li> <p>Deep technical and architecture knowledge across enterprise cybersecurity domains, Zero Trust models, and frameworks (e.g., NIST, ISO 27001, NCA ECC).</p> </li> <li> <p> <strong>Strong network and established professional relationships with local cybersecurity Vendors (OEMs) and VADs in Saudi Arabia.</strong> </p> </li> <li> <p>Strong analytical, risk-assessment, threat-modeling, and problem-solving skills.</p> </li> <li> <p>Comprehensive product and licensing knowledge across major cybersecurity OEMs and SecOps platforms.</p> </li> <li> <p>Consultative, value-based technical selling and advisory capabilities.</p> </li> <li> <p>Proven experience engaging with C-level stakeholders (CISOs, CIOs, IT Directors, Compliance Officers).</p> </li> </ul> <p> <strong>Educational Qualifications</strong> </p> <ul> <li> <p>Bachelor s Degree in Cybersecurity, Computer Science, Computer Engineering, or equivalent.</p> </li> </ul> <p> <strong>Certifications Required</strong> </p> <ul> <li> <p> <strong>Vendor-Specific Technical Certifications:</strong> Architecture or professional-level certifications from key security OEMs (e.g., Palo Alto PCNSE, Fortinet NSE, Check Point CCSE, CrowdStrike CCFA/CCFR, Splunk, etc.).</p> </li> <li> <p> <strong>Vendor-Agnostic/Domain Certifications:</strong> CISSP, CISM, CEH, or CompTIA Security+ are highly desirable.</p> </li> <li> <p> <strong>Cloud & Operations Certifications:</strong> CCSP, AWS Certified Security - Specialty, or Microsoft Certified: Cybersecurity Architect Expert will be a strong added advantage.</p> </li> </ul> <p><br></p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p><strong>About ASI</strong></p><br><p>Adam Smith International is a global advisory company that works locally to transform lives by making economies stronger, societies more stable, and governments more effective. We work on behalf of governments, foundations and companies that share our ambition to take on the big challenges facing the world. Our work is grounded in deep country experience and strong partnerships with governments, donors and the private sector.</p><br><p>Over the past three decades, ASI has delivered high-quality, impactful and innovative programmes that support inclusive and sustainable growth. We aim to help countries unlock economic opportunities, strengthen markets and institutions, and improve livelihoods at scale. We deliver a diverse global portfolio spanning economic policy and governance, public financial management, private sector development, trade and investment, infrastructure and climate-resilient growth. Our support ranges from strategy and analysis to long-term technical assistance and programme delivery.</p><br><p>ASI has built a strong presence in Jordan, through a current operational platform and a decade of programme delivery across security, governance, public financial management and climate-resilient infrastructure. Our experience working closely with government institutions, development partners and the private sector provides a strong foundation for supporting Jordan’s growth agenda.</p><br><p><strong>About the Jordan Growth and Prosperity Programme</strong></p><br><p>ASI is seeking candidates across a range of technical areas to deliver FCDO’s Jordan Growth and Prosperity Programme, a forthcoming economic and private sector development programme intended to strengthen Jordan’s economic resilience and enable job-rich growth. The programme is expected to support both the Government of Jordan and the private sector through two complementary areas of work:</p><br><p>· Macro-level advisory support to maintain macroeconomic stability, improve debt management, and reduce fiscal pressures; and</p><br><p>· Micro-level Market Systems Development (MSD) interventions in selected sectors to foster productive, inclusive private-sector-led growth. There will be a particular focus on enhancing trade and exports.</p><br><p><strong>Call for Experts</strong></p><br><p>ASI is building a diverse roster of core team members and technical experts to support the anticipated Jordan Growth and Prosperity Programme. We are seeking both Jordanian and international specialists who can provide advisory support across the programme’s macroeconomic reform and MSD components. Experts may be engaged during programme inception and implementation, subject to programme award and needs. We particularly welcome candidates with experience in Jordan, but will also consider experts from the Middle East and comparable economic development contexts.</p><br><p>We are seeking experts across the following technical areas. In your application, please clearly state what technical areas you are applying for.</p><br><br><p>· <strong>Market Systems Development: </strong>Experience designing and implementing MSD interventions that address systemic constraints, strengthen market functions, improve market access and linkages, promote value chain development, crowd in private sector investment, and deliver sustainable improvements in competitiveness, inclusion and productivity.</p><br><p>· <strong>SME Development, Entrepreneurship, and Business Growth: </strong>Experience supporting SMEs through business advisory services, incubation, innovation, productivity improvements, scaling strategies, investment readiness, and entrepreneurship ecosystems.</p><br><p>· <strong>Trade, Export Promotion and Investment:</strong> Experience supporting export competitiveness, trade facilitation, investment promotion, and linkages between domestic firms and international markets.</p><br><p>· <strong>Labour Markets, Employment and Decent Work:</strong> Experience analysing labour market challenges and designing interventions that promote job creation, workforce participation, skills development, productivity, and inclusive employment outcomes, particularly for women and young people.</p><br><p>· <strong>Macroeconomic Policy, Reform and Modelling: </strong>Experience supporting governments on macroeconomic policy design and implementation, economic reform programmes, growth strategies, economic resilience, and policy responses to fiscal and external shocks. Expertise in macroeconomic modelling, forecasting, scenario analysis, growth diagnostics, and economic impact assessment to inform policy decisions and reform priorities is highly desirable.</p><br><p>· <strong>Public Finance, Fiscal Policy and Debt Management: </strong>Experience strengthening public financial management systems, fiscal governance, tax policy and administration, domestic revenue mobilisation, debt sustainability, sovereign financing strategies, and fiscal risk management.</p><br><p>· <strong>Stakeholder Engagement and Political Economy:</strong> Experience working with business membership organisations, government counterparts, and other stakeholders to identify reform opportunities. Ability to conduct political economy analysis, manage political economy constraints, and build coalitions for economic change.</p><br><p>· <strong>Gender Equality and Social Inclusion:</strong> Experience integrating gender and inclusion considerations into economic growth, labour market, SME development, and market systems programmes to improve opportunities and outcomes for women, youth and other underserved groups.</p><br><p>· <strong>Monitoring and Evaluation:</strong> Experience designing and managing MEL systems for economic development, particularly for FCDO and comparable donors. Familiarity with MEL for MSD programmes and to inform adaptive management is highly desirable.</p><br><p>· <strong>Intervention Design and Project Delivery:</strong> Experience identifying opportunities for economic reform and market systems change, designing and managing portfolios of interventions, and overseeing implementation through effective programme management, stakeholder engagement, quality assurance, risk management and adaptive delivery. </p><br><p>We encourage women and members of traditionally marginalised and vulnerable groups to apply.</p><br><p>Applications will be assessed and contacted on a rolling basis depending on programme needs. Successful candidates will be kept on a roster and contacted periodically when opportunities arise. </p><br> </div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<strong>Overview</strong><br><p><span>KEO is a creative enterprise, where innovation is a way of life. We are uniquely resourced with end-to-end services to take clients from inspiration – through conceptualization – to realization of planning, design or project delivery in the built and natural environments. For over 60 years we’ve led with vision, contributing to many of the world’s most ambitious projects, iconic places, remarkable experiences and prosperous communities.</span><br><br><span>As a highly integrated and agile AEP/PMCM firm, KEO is recognized by ENR as one of the Top 225 International Design Firms and one of the Top 20 International PM/CM Firms. We are also ranked by World Architecture as the 51st largest global architecture firm and the #1 Firm in the Middle East Region in their 2024 WA100 Survey.</span><br><span>We invite you to join us. Why?</span><br><span>When you join KEO, you’ll discover more than just a job – you’ll find a supportive environment that fosters your professional development through internal global mobility and career development and does so within a culture that supports company-wide health and well-being through on-demand counselling services and regular workplace clinics. You will be invited to celebrate community events such as sports days, fun-runs, in-house sports teams and beach clean ups. In addition to your competitive package and benefits you will have access to a suite of policies that include hybrid working arrangements, individual athletic sponsorship, study assistance sponsorship, employee referral rewards.</span></p><br> <br><strong>Responsibilities</strong><br><p><span><strong><span>JOB SUMMARY</span></strong></span></p><br><p><span>The Cybersecurity and Digital Trust Analyst is a hands-on security operations role at the heart of KEO's cloud-first, Microsoft-centric security posture. This is not a passive monitoring role — the Analyst actively hunts threats, analyses security events, responds to incidents, and drives measurable improvement in KEO's security resilience across all platforms and geographies. Operating within and continuously strengthening KEO's zero-trust architecture, CSPM framework, and Digital Trust governance model, the role embeds a security-first culture across the organization and contributes to AI-driven security operations as part of KEO's ongoing digital transformation.</span></p><br><p><span>KEY TASKS AND RESPONSIBILITIES</span></p><br><p><span><strong>Security Operations & Threat Detection</strong></span></p><br><ul><li><span>Operate and continuously tune Microsoft Sentinel (SIEM), building and refining detection rules, KQL analytics queries, and automated SOAR response playbooks to ensure real-time threat visibility, rapid incident triage, and reduced mean time to respond (MTTR) across cloud, endpoint, identity, and network layers.</span></li><li><span>Conduct proactive threat hunting across KEO's Azure and Microsoft 365 environments, identifying indicators of compromise and attack patterns before they escalate.</span></li></ul><ul><li><span>Produce regular security operations reports, threat intelligence summaries, and dashboard insights for IT leadership.</span></li></ul><p><span><strong>Identity, Access & Zero-Trust Governance</strong></span></p><br><ul><li><span>Administer and continuously improve KEO's identity and access management framework using Microsoft Entra ID, ensuring MFA enforcement, conditional access policies, privileged identity management (PIM), and zero-trust network architecture are correctly configured, monitored, and maintained.</span></li><li><span>Apply and audit least-privilege, RBAC, and zero-trust principles across all systems and user populations, conducting regular access reviews, entitlement audits, and certification campaigns to identify and remediate excessive or inappropriate access.</span></li></ul><p><span><strong>Cloud Security Posture Management (CSPM)</strong></span></p><br><ul><li><span>Continuously assess KEO's cloud security posture using Microsoft Defender for Cloud, identifying and prioritizing misconfigurations, vulnerabilities, and compliance gaps, and driving timely remediation in collaboration with the platform engineering team.</span></li></ul><ul><li><span>Maintain and improve secure configuration baselines for Microsoft Azure, Microsoft 365, SharePoint, and Autodesk Construction Cloud in line with CIS benchmarks and Microsoft security best practices, ensuring all certified digital platforms consistently meet their respective security and compliance standards.</span></li></ul><p><span><strong>Vulnerability Management & Patch Compliance</strong></span></p><br><ul><li><span>Operate KEO's vulnerability management programme using Microsoft Defender Vulnerability Management, identifying, assessing, and prioritizing vulnerabilities across endpoints, servers, and cloud workloads, and tracking patch compliance levels globally with escalation and coordinated remediation across platform and workplace teams.</span></li></ul><ul><li><span>Perform regular security assessments of infrastructure, applications, and configurations, providing actionable remediation recommendations.</span></li></ul><p><span><strong>Governance, Compliance & Audit Support</strong></span></p><br><ul><li><span>Support independent audits of KEO's access control and governance frameworks, maintaining accurate security documentation — including policies, standards, risk registers, and control evidence — and contributing to the development and review of cybersecurity policies that reflect current threats and regulatory requirements. </span></li><li><span>Support IT risk assessment activities and assist with the maintenance and testing of BCP and DR procedures from a security perspective.</span></li></ul><p><span><strong>Collaboration & Stakeholder Engagement</strong></span></p><br><p><span>Work closely with platform engineering, digital workplace, and enterprise digital solutions teams to ensure security is embedded by design across all IT initiatives, acting as a trusted advisor to business stakeholders and participating in CAB meetings to provide security assessment and sign-off for technology changes.</span></p><br><p><span><strong><span>JOB-SPECIFIC COMPETENCIES</span></strong></span></p><br><ul><li><span>Strong analytical and investigative mindset - able to identify patterns, anomalies, and threats across large volumes of security telemetry.</span></li><li><span>Hands-on technical proficiency with Microsoft Sentinel, Microsoft Defender suite, Entra ID, and Azure security services.</span></li><li><span>Working knowledge of KQL (Kusto Query Language) for security analytics, threat hunting, and detection rule authoring.</span></li><li><span>Solid understanding of zero-trust architecture principles and their practical application in a cloud-first environment.</span></li><li><span>Proactive and self-motivated: takes initiative in identifying and addressing security gaps without waiting to be directed.</span></li><li><span>Detail-oriented and process-disciplined, with strong documentation habits and a commitment to evidence-based operations.</span></li><li><span>Collaborative team player who contributes to a positive, knowledge-sharing team culture.</span></li><li>Continuous learner: actively keeps pace with the evolving threat landscape, new attack techniques, and emerging security tooling.</li></ul> <br><strong>Qualifications</strong><br><ul><li><span>Typically, 3–5+ years of experience in a dedicated cybersecurity operations or information security role within an enterprise environment.</span></li><li><span>Proven, hands-on experience with Microsoft Sentinel (SIEM), including detection rule creation, KQL query writing, and incident investigation workflows.</span></li><li><span>Working experience with the Microsoft Defender suite (Defender for Endpoint, Defender for Cloud, Defender for Identity, Defender for Office 365).</span></li><li><span>Demonstrated experience with Microsoft Entra ID (Azure AD), including conditional access, MFA administration, privileged identity management (PIM)</span></li><li><span>Practical understanding of zero-trust architecture and its implementation in a cloud-first environment.</span></li><li><span>Experience operating cloud security posture management (CSPM) tooling and remediating cloud security findings.</span></li><li><span>Experience with vulnerability management programs and patch compliance tracking.</span></li><li><span>Experience supporting governance, risk, and compliance activities, including audit evidence preparation.</span></li><li><span>Familiarity with AI-driven security operations capabilities, threat intelligence platforms, and automated incident response (SOAR) workflows.</span></li><li><span>Knowledge of relevant regulatory frameworks and security standards (e.g. ISO 27001, NIST CSF, CIS Controls) is highly desirable.</span></li></ul> </div>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>The SOC Analyst - Tier 1 is responsible for providing 24x7 security monitoring, alert triage, event analysis, and incident escalation services within ZainTECH s Managed Security Operations Center (SOC). As the first line of defense against cybersecurity threats, the role continuously monitors customer environments, validates security events, and ensures potential security incidents are identified, classified, documented, and escalated in accordance with established procedures and service level agreements.</p><p>Responsibilities:</p><ul><li><strong>Security Monitoring & Event Analysis</strong></li><ul><li>Provide continuous 24x7 monitoring of customer and enterprise security environments through shift-based operations.</li><li>Monitor and analyze security events generated from SIEM platforms, IDS/IPS solutions, Endpoint Detection & Response (EDR) tools, Firewalls, Email security gateways, Web security solutions and Cloud security platforms</li><li>Review and assess security alerts to determine whether activity represents a legitimate security threat or a false positive.</li><li>Perform initial event validation, classification, and prioritization based on severity, risk, and potential business impact.</li><li>Identify suspicious behavior, indicators of compromise (IOCs), and anomalous activities requiring further investigation.</li></ul><li><strong>Incident Triage & Escalation</strong></li><ul><li>Perform first-level analysis and triage of security alerts and events.</li><li>Create and manage incident tickets within approved incident management platforms.</li><li>Categorize incidents based on Severity, Impact, Urgency and Threat classification</li><li>Escalate validated incidents to SOC Analyst - Tier 2 teams in accordance with approved escalation procedures.</li><li>Ensure escalations include complete and accurate investigation details to support efficient handover and further analysis.</li><li>Maintain incident tracking and ensure timely updates throughout the incident lifecycle.</li></ul><li><strong>SIEM Operations & Security Monitoring</strong></li><ul><li>Utilize SIEM platforms to Monitor security events, Review alerts, Execute predefined searches and queries, Support basic investigations</li><li>Support operational activities including Alert validation, Monitoring dashboard review, Log analysis and Security event correlation</li><li>Assist with identifying false positives and escalating tuning recommendations where required.</li><li>Support the overall effectiveness and reliability of monitoring operations.</li></ul><li><strong>Documentation & Reporting</strong></li><ul><li>Maintain accurate records of investigations, observations, and escalation activities.</li><li>Document security incidents and monitoring activities in accordance with operational procedures.</li><li>Participate in shift handovers and ensure continuity of investigations between teams.</li><li>Support operational reporting and SOC performance metrics activities.</li></ul><li><strong>Governance, Compliance & Operational Excellence</strong></li><ul><li>Follow approved SOC procedures, playbooks, and operational standards.</li><li>Ensure compliance with Internal security policies, Customer contractual obligations and NCSC Jordan licensing requirements</li><li>Handle customer information with strict confidentiality and professionalism.</li><li>Participate in training, simulation exercises, and continuous improvement initiatives.</li><li>Maintain awareness of emerging cybersecurity threats and attack techniques.</li></ul></ul><p>Our Culture & Code of Conduct:</p><p>At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our Code of Conduct, which serves as a guiding framework for responsible behavior across everything we do from how we work with each other to how we engage with clients and partners globally.</p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p>Bachelor's degree or intermediate diploma from a recognised institution.</p><p>At least 6 months of practical cybersecurity experience.</p><p>At least one valid NCSC-approved SOC certification like (CSA,GSOC,GCIA),CTIA, Blue Team Level 1, or Cisco CyberOps Associate) or another internationally recognised, equivalent certification in the same field that is approved by the NCSC.</p><p>Familiarity with SIEM consoles, alert triage, and SOC monitoring workflow; willingness to work rotating shifts.</p><p>Foundational networking and operating-system knowledge is preferable.</p><p>Prior internship or junior SOC experience is preferable.</p><p></p></section>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>The Penetration Tester is responsible for conducting authorized security assessments across enterprise, government, and critical infrastructure environments to identify, validate, and report security vulnerabilities. As part of ZainTECH's Cybersecurity practice, the role supports the delivery of penetration testing engagements across infrastructure, web, wireless and applications. The Penetration Tester performs hands-on offensive security testing, validates exploitability of identified vulnerabilities, and delivers clear, actionable remediation guidance to customers. The role works closely with cybersecurity consultants, advisory teams, and customer stakeholders to help strengthen security posture and reduce organizational risk across the MENA region.</p><p>Responsibilities:</p><p>Penetration Testing & Security Assessments</p><ul><li>Conduct penetration testing engagements across: External and internal networks, Web applications, APIs and web services, Wireless environments, Infrastructure and supporting systems</li><li>Execute testing activities in accordance with approved methodologies, industry standards, and customer-defined rules of engagement</li><li>Identify, validate, and safely demonstrate security vulnerabilities and attack paths</li><li>Assess exploitability, business impact, and risk exposure associated with identified findings</li><li>Perform security validation and retesting activities following remediation efforts</li></ul><p>Vulnerability Analysis & Reporting</p><ul><li>Analyze identified vulnerabilities and security weaknesses to determine potential business impact</li><li>Develop detailed technical findings and remediation recommendations</li><li>Produce high-quality penetration testing reports that clearly communicate: Vulnerability details, Risk ratings, Attack scenarios, Business impact, Remediation guidance</li><li>Ensure findings are reproducible, technically accurate, and aligned with industry best practices</li></ul><p>Testing Governance & Compliance</p><ul><li>Conduct all testing activities within approved scope and rules of engagement</li><li>Ensure customer systems, data, and environments are protected throughout testing activities</li><li>Maintain strict confidentiality of customer information and testing results</li><li>Adhere to applicable regulatory, contractual, and legal requirements governing penetration testing engagements</li><li>Support compliance with NCSC Jordan licensing requirements and operational standards</li></ul><p>Technical Research & Continuous Improvement</p><ul><li>Stay current on: Emerging threats, Attack techniques, Vulnerability trends, Security research, Offensive security tools and methodologies</li><li>Contribute to the enhancement of penetration testing methodologies, tools, and processes</li><li>Participate in internal knowledge-sharing initiatives and technical training programs</li><li>Support continuous improvement activities within the Cybersecurity Advisory Services practice</li></ul><p>Cross-Functional Collaboration</p><ul><li>Collaborate with: Penetration Testing Team Leaders, Cybersecurity Consultants, Security Architects, Managed Security Services teams</li><li>Support remediation discussions and knowledge transfer activities where required</li><li>Contribute technical expertise during customer engagements and security assessments</li></ul><p><br></p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p>Bachelor's degree or Intermediate Diploma from a recognized university or academic institution</p><p>Minimum 3 years of practical cybersecurity experience</p><p>Demonstrated participation in at least two completed penetration testing projects</p><p>Possession of at least one valid NCSC-approved penetration testing certification, including:</p><ul><li>Certified Ethical Hacker (CEH)</li><li>CREST Registered Penetration Tester (CRT)</li><li>Offensive Security Wireless Professional (OSWP)</li><li>Offensive Security Certified Professional (OSCP)</li><li>CompTIA PenTest+</li><li>or another NCSC-approved equivalent certification</li></ul><p>Hands-on offensive skills across network, web, and application testing, with command of common tooling (Burp Suite, Nmap, Metasploit) and scripting</p><p></p></section>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p><br>Summary:<br>We are looking for a Security Officer to maintain a safe and secure environment for our clients and employees. The Security Officer will be responsible for patrolling premises, monitoring surveillance equipment, checking building entrances, and responding to alarms as needed.<br><br>Job Responsibility:<br>- Ensure the security and safety of all personnel, visitors, and premises<br>- Patrol assigned areas to deter and detect signs of intrusion and ensure security of doors, windows, and gates<br>- Monitor surveillance cameras and alarms<br>- Respond to alarms and investigate disturbances<br>- Identify and report safety hazards<br>- Provide assistance to employees and visitors when needed<br>- Write reports of daily activities and incidents<br><br>Candidate Requirements:<br>- Proven experience as a Security Officer or similar role<br>- Knowledge of security operations and procedures<br>- Good communication skills<br>- Ability to operate surveillance systems and security equipment<br>- High school diploma or equivalent<br>- Certification as a Security Officer</p> </div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>The Senior Microsoft Presales Engineer is responsible for driving customer engagement, solution positioning, and technical presales activities across Microsoft Infrastructure, Security, Modern Workplace, and Cloud solutions.<br> The role acts as a trusted technical advisor to enterprise customers, supporting digital transformation initiatives through consultative solution design, technical workshops, demonstrations, and strategic customer engagements.<br> Working closely with Account Managers, Architects, Product teams, and Microsoft stakeholders, the engineer plays a key role in identifying customer requirements, positioning Microsoft technologies, developing technical proposals, and supporting pipeline growth across the region.<br> The role combines deep Microsoft technical expertise with strong customer-facing, presentation, and solution-selling capabilities.<br> Responsibilities: Customer Engagement & Solution Consulting Engage with customers to understand: Business challenges, Security and infrastructure requirements, Digital transformation objectives, and Existing technology environments Conduct assessments of customer infrastructure, cloud, and security landscapes Support customers in defining technical requirements and contributing to: RFP responses, RFI documentation and Technical solution requirements Act as a trusted advisor throughout the customer engagement lifecycle Solution Positioning & Technical Presales Position Microsoft solutions as best-in-class offerings by articulating: Business value, Competitive advantages, Technical capabilities and Security and operational benefits Demonstrate Microsoft solution advantages over competitive technologies and existing customer environments Support customers throughout technical evaluations and decision-making processes Prepare Technical proposals, Solution presentations, Architecture recommendations and Technical response documentation Microsoft Security, Cloud & Infrastructure Solutions Design and position solutions across: Microsoft 365 E3 & E5, Microsoft Security & Compliance solutions, Microsoft Defender Suite, Microsoft Sentinel (SIEM), Azure Active Directory (SSO, MFA, Identity Security), Microsoft Purview and Data Protection solutions, Intune and Endpoint Management, Azure Infrastructure, Backup, DR, and Migration services, Hybrid and on-premise Microsoft infrastructure solutions Support Azure sizing, migration, and modernization discussions with enterprise customers Maintain strong awareness of Microsoft cloud, infrastructure, and security best practices Workshops, Demonstrations & Technical Presentations Lead Customer workshops, Technical demonstrations, Solution presentations and Executive briefings Deliver tailored presentations addressing customer-specific business and technical challenges Educate customers on Microsoft cloud, infrastructure, and cybersecurity capabilities Support customer enablement and awareness initiatives across Microsoft technologies Pipeline Development & Sales Support Contribute to pipeline generation and opportunity development activities as part of the Presales organization Support opportunity qualification, technical validation, and deal progression across strategic customer engagements Collaborate closely with Sales and Account Management teams to align technical and commercial strategies Maintain visibility on opportunity progression and customer engagement activities Cross-Functional Collaboration Work closely with Account Managers, Technical Architects, Product teams, Delivery teams and Microsoft stakeholders Support successful transition from presales to delivery and implementation phases Collaborate with customer IT and security teams to ensure solution alignment and technical readiness 8+ years of experience in Microsoft solution sales, Technical presales, Cloud and infrastructure consulting, Enterprise ICT environments Strong expertise across Microsoft Cloud, Security, Productivity, Infrastructure solutions Strong understanding of Enterprise security principles, Cloud migration and modernization, Identity and access management, Data protection and compliance solutions Experience supporting enterprise and strategic customer engagements Familiarity with non-Microsoft security technologies such as VMware, Trend Micro EPP/EDR, Forcepoint DLP is highly desirable Bachelor’s degree in Computer Science, Information Technology, Engineering or a related technical field Microsoft cloud and security certifications are an advantage</span> </div>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>The Cybersecurity Consultant is responsible for delivering cybersecurity advisory, governance, risk, and compliance services across enterprise, government, and critical infrastructure customers throughout the MENA region. Operating within ZainTECH s Cybersecurity Advisory Services practice, the role helps organizations assess, strengthen, and mature their cybersecurity posture through strategic consulting engagements aligned with industry best practices, regulatory requirements, and business objectives. This role assess security maturity, identify gaps, develop cybersecurity roadmaps, and provide actionable recommendations that enhance resilience and reduce organizational risk. The role plays a key part in expanding ZainTECH s cybersecurity advisory capabilities while supporting opportunities that may transition into recurring managed security services.</p><p>Responsibilities:</p><ul><li>Cybersecurity Advisory & Consulting<ul><li>Lead and deliver cybersecurity consulting engagements across a broad range of industries and customer environments.</li><li>Provide strategic advisory services covering Cybersecurity strategy, Governance frameworks, Risk management, Compliance programs and Security transformation initiatives</li><li>Assess customer cybersecurity capabilities and provide recommendations aligned with business and regulatory requirements.</li><li>Support organizations in developing cybersecurity operating models and governance structures.</li></ul></li><li>Security Assessments & Gap Analysis<ul><li>Conduct cybersecurity maturity assessments against recognized standards and frameworks including ISO/IEC 27001, NIST Cybersecurity Framework (NIST CSF),CIS Critical Security Controls and Applicable regional cybersecurity regulations</li><li>Perform Gap assessments, Risk assessments, Control effectiveness reviews and Compliance assessments</li><li>Identify security weaknesses, process gaps, and governance deficiencies.</li><li>Develop prioritized remediation roadmaps aligned with organizational objectives.</li></ul></li><li>Governance, Risk & Compliance (GRC)<ul><li>Advise customers on the design and implementation of cybersecurity governance frameworks.</li><li>Support the development of Security policies, Standards, Procedures and Control frameworks</li><li>Facilitate cybersecurity risk management activities and risk workshops.</li><li>Assist customers with compliance readiness and regulatory alignment initiatives.</li><li>Provide recommendations for improving organizational security governance and oversight.</li></ul></li><li>Security Architecture & Control Advisory<ul><li>Review existing security controls and architecture designs.</li><li>Provide risk-based recommendations covering Identity and Access Management, Network Security, Endpoint Security, Cloud Security, Data Protection and Security Monitoring</li><li>Ensure recommendations are practical, scalable, and aligned with customer business requirements.</li><li>Support cybersecurity transformation and modernization programs.</li></ul></li><li>Client Engagement & Stakeholder Management<ul><li>Act as a trusted cybersecurity advisor to customer stakeholders.</li><li>Facilitate workshops, interviews, and assessment activities.</li><li>Present findings and recommendations to Executive leadership, Technology teams, Risk and compliance functions and Regulatory stakeholders</li><li>Build strong relationships with customer teams and maintain high levels of client satisfaction.</li></ul></li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li>Bachelor's degree in information technology or a related field.</li><li>Minimum 5 years of hands-on cybersecurity experience, with a track record of advisory or consulting delivery.</li><li>At least one valid NCSC-approved professional certification like (CISSP, CISM (Certified Information Security Manager), ISO/IEC 27001 Lead Implementer / Lead Auditor, or CISA , or another equivalent certification in the same field that is approved by the NCSC and published on its official website.</li><li>Working command of ISO/IEC 27001, NIST CSF, and applicable Jordanian and regional regulatory requirements.</li><li>Excellent written and verbal communication in English and Arabic, with the ability to present to executive and regulatory stakeholders.</li><li>Advanced degree (Master's or higher) in cybersecurity, information systems, or a related discipline is preferable.</li><li>Multiple certifications across governance, risk, and audit (for example holding more than one of CISSP, CISM, CISA, ISO 27001 LI/LA) is preferable.</li><li>Prior experience in a consultancy, system integrator, or telco-affiliated security practice serving regulated sectors is preferable.</li></ul><p></p></section>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>BACKGROUND The International Rescue Committee (IRC) responds to the world's worst humanitarian crises, helping to restore health, safety, education, economic wellbeing, and power to people devastated by conflict and disaster. Founded in 1933 at the call of Albert Einstein, the IRC is one of the world's largest international humanitarian non-governmental organizations (INGO), at work in more than 40 countries and 29 U.S. cities helping people to survive, reclaim control of their future and strengthen their communities. A force for humanity, IRC employees deliver lasting impact by restoring safety, dignity and hope to millions. If you're a solutions-driven, passionate change-maker, come join us in positively impacting the lives of millions of people world-wide for a better future. The Middle East, North Africa and Ukraine (MENAU) region includes seven Country Programs with more than 1200 full time employees. The Regional Safety and Security Coordinator (RSSC) supports the Regional Safety and Security Director to strengthen security risk management across the MENAU region. The RSSC will be engaged in providing strategic advise, operational support and capacity-building to enhance the safety and security of the IRC s programs, staff and assets. The RSSC works closely with the Country Programs, Regional Leadership and Headquarters to enhance systems, drive innovation and promote a culture of informed risk management.</p><p>RESPONSIBILITIES</p><p>Security Risk Management</p><ul><li>Oversee and validate compliance with the IRC s minimum standards for physical security across all existing and proposed program sites, offices, guest houses, warehouses and other contracted premises through site visits and reviewing assessments conducted by the Country Programs.</li><li>As requested, support the Country Programs to update Standard Operating Procedures and Contingency Plans ensuring consistency and contextual relevance.</li><li>Identify cross-country gaps and develop standardized tools, templates and guidance which can be implemented across the region.</li><li>Drive improvements in IRC security systems, tools and methodologies in coordination with Country, Regional and Global stakeholders.</li><li>Identify emerging threats and critical vulnerabilities across the region and recommend mitigation measures.</li><li>Strengthen data-driven security risk management across the region.</li><li>Support the responsible adoption of AI and innovate approaches to enhance security risk management and contextual analysis.</li><li>Represent the Regional Safety and Security Director in internal and external engagements as requested.</li><li>Deploy periodically to Country Programs for surge support, gap coverage and high-profile visits.</li><li>Act as a strategic thought partner to the Regional Safety and Security Director on regional risk trends, prioritization and resource allocation.</li></ul><p>Context Monitoring and Reporting</p><ul><li>Produce a regional daily situation report integrating inputs from Country Programs, analysis vendors, open-source monitoring and AI.</li><li>Lead the development and an annual regional security report including risk analysis, incident trends, successes, challenges and forward-looking priorities.</li><li>Monitor the overall quality of incident reports filed on the IRC s online reporting system and provide guidance to Country Programs on how to improve the timeliness and accuracy of the reporting.</li><li>Ensure that users in the MENAU region have the appropriate access rights to the IRC s online reporting system and regularly update the list of users.</li><li>Serve as a regional focal point for system functionality and access management issues for the IRC s online reporting system and follow-up as needed with Headquarters.</li><li>Conduct an annual analysis of reported security incidents to identify key trends and actionable insights to improve overall security risk management.</li><li>On a quarterly basis, ensure Country Programs submit required information online to assess compliance with the IRC s Security Minimum Standards. Once the submissions are completed, conduct analysis on the compliance results and share with the Regional Safety and Security Director (RSSD) with insights on key successes, challenges and support needs across the region.</li></ul><p>Learning and Development</p><ul><li>Support Country Programs to develop annual security learning and development plans aligned with operational risks.</li><li>Identify capacity gaps and design targeted training solutions tailored to the country and regional needs.</li><li>Deliver regional and country-level trainings, including Training of Trainers. Please note that you will need to achieve IRC s rigorous internal certification requirements before delivering trainings.</li><li>Deploy to Country Programs to support trainings and ensure the quality of delivery.</li><li>Liaise with the Global Learning and Development team to ensure that trainings in the MENAU region are compliant with IRC s standards.</li></ul><p>KEY WORKING RELATIONSHIPS</p><p>Position Reports To: Regional Safety & Security Director</p><p>Position Directly Supervises: None</p><p>Internal: Country Security Leads, Global Safety & Security Unit</p><p>External: Peer humanitarian agencies, security forums and training providers</p><p>JOB REQUIREMENTS</p><ul><li>Minimum experience of six years in safety and security risk management in humanitarian or high-risk environments.</li><li>Demonstrated experience working across multiple countries. Experience in MENAU region preferred.</li><li>Proven ability to operate at both strategic and operational levels.</li><li>Experience in training design and delivery in multiple contexts.</li><li>Ability to process large amounts of information and deliver impactful briefings and actionable insights.</li><li>Strong analytical skills with experience in security data analysis and reporting systems.</li><li>Excellent written and verbal communication skills.</li><li>Ability to build strong partnerships across diverse teams and stakeholders.</li><li>Ability to influence key stakeholders without formal authority.</li><li>Ability to deliver timely, high-quality results in high-pressure environments.</li><li>Ability to manage a varied workload with, at times, competing priorities and consistently meet deadlines.</li><li>Demonstrated experience in identifying and implementing creative solutions, including the use of technology and AI.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li>Minimum experience of six years in safety and security risk management in humanitarian or high-risk environments.</li><li>Demonstrated experience working across multiple countries. Experience in MENAU region preferred.</li><li>Proven ability to operate at both strategic and operational levels.</li><li>Experience in training design and delivery in multiple contexts.</li><li>Ability to process large amounts of information and deliver impactful briefings and actionable insights.</li><li>Strong analytical skills with experience in security data analysis and reporting systems.</li><li>Excellent written and verbal communication skills.</li><li>Ability to build strong partnerships across diverse teams and stakeholders.</li><li>Ability to influence key stakeholders without formal authority.</li><li>Ability to deliver timely, high-quality results in high-pressure environments.</li><li>Ability to manage a varied workload with, at times, competing priorities and consistently meet deadlines.</li><li>Demonstrated experience in identifying and implementing creative solutions, including the use of technology and AI.</li><li>Travel: Willingness and ability to deploy to field locations within the MENAU region on short notice.</li><li>Language: Fluency in written and spoken English. Arabic preferred.</li></ul><p></p></section>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>We are seeking an experienced Incident Response Lead to manage and coordinate cybersecurity incident response activities.<br> The ideal candidate will have hands-on experience in Digital Forensics and Incident Response (DFIR) , investigating security incidents, conducting root cause analysis, and leading containment, eradication, and recovery efforts in enterprise environments.<br> Key Responsibilities Lead the investigation and response to cybersecurity incidents.<br> Perform incident triage, analysis, containment, eradication, and recovery.<br> Conduct digital forensic investigations and root cause analysis.<br> Coordinate with SOC, Security Engineering, IT, and business teams during security incidents.<br> Develop and maintain incident response playbooks and procedures.<br> Analyze malware, phishing attacks, ransomware, and other cyber threats.<br> Prepare incident reports and provide recommendations to prevent future incidents.<br> Support threat hunting and continuous improvement of incident response capabilities.<br> Ensure compliance with organizational security policies and industry best practices.<br> 5–7 years of experience in Cybersecurity.<br> Hands-on experience in Incident Response and Digital Forensics (DFIR) .<br> Experience investigating security incidents in an enterprise environment.<br> Knowledge of malware analysis, ransomware, phishing, and threat detection.<br> Experience with SIEM, EDR, and security monitoring tools.<br> Strong understanding of Windows, Linux, networking, and security fundamentals.<br> Excellent analytical, troubleshooting, and communication skills.<br> Nice to Have Certifications such as GCFA, GCIH, GCFE, CHFI, CEH, CySA+, or Security+ .<br> Experience with cloud security incident response (Azure, AWS, or GCP).<br> Scripting experience (PowerShell or Python).<br></span> </div>