Security inspector Jobs - Amman Jordan
890 Jobs Found
<p><h4>Description</h4>
<p>COGNNA is a fast-growing cybersecurity startup revolutionizing how businesses manage their security operations. Our innovative SaaS platform provides organizations with the tools to detect, prevent, and respond to cyber threats with ease. Headquartered in Riyadh, Saudi Arabia, COGNNA is on a mission to empower businesses locally and internationally to build resilient and cost-effective cybersecurity operations.</p>
<p>We are looking for a highly skilled Senior Technical Support Engineer to serve as the ultimate escalation point for our clients' technical issues. In this role, you will focus entirely on ensuring the seamless agent deployment, functionality efficiency, and health of our platform. You will troubleshoot complex system environments, lead agent installations, and conduct client training sessions.</p>
<h4>Key responsibilities</h4>
<ul>
<li><strong>Advanced technical troubleshooting:</strong> Act as the Tier 2/Escalation point for complex technical issues, diagnosing and resolving deep-rooted system, network, and software problems for our clients.</li>
<li><strong>Agent installation & management:</strong> Guide clients through, and directly execute, the deployment and configuration of software agents (e.g., EDR, monitoring tools) across diverse enterprise environments (Windows, Linux, Kubernetes, etc.).</li>
<li><strong>Client training & onboarding:</strong> Design and deliver comprehensive technical training sessions to ensure clients are fully equipped to utilize and maintain our solutions.</li>
<li><strong>Escalation & communication management:</strong> Lead communications with key client stakeholders (including technical champions) during high-priority technical roadblocks, translating complex issues into clear, actionable updates.</li>
<li><strong>Knowledge & process improvement:</strong> Author detailed knowledge base (KB) articles and standard operating procedures (SOPs) to streamline future installations and troubleshooting steps.</li>
<li><strong>Team mentorship:</strong> Coach and guide junior support staff on advanced troubleshooting techniques and client management.</li>
</ul>
<h4>Requirements</h4>
<ul>
<li>5+ years in enterprise technical support, field engineering, or a highly technical, customer-facing B2B SaaS role.</li>
<li>Strong skills in managing and fixing major enterprise operating systems, especially Windows, Linux, and macOS.</li>
<li>Strong understanding of public cloud platforms (AWS, Azure, or GCP) to support and fix software setups in cloud and hybrid environments.</li>
<li>Strong understanding of network setups and protocols, including TCP/IP, DNS, ICMP, and firewalls, with the ability to use network tools to fix connectivity and installation blocks.</li>
<li>Skilled in PowerShell and Shell scripting (Bash) to automate troubleshooting and handle large-scale software deployments.</li>
<li>Good general understanding of cybersecurity products (like EDR, SIEM, or XDR) only from an installation, system compatibility, and setup standpoint.</li>
<li>Great ability to break down deployment failures, read complex log files, and copy complex client environments in a test lab.</li>
<li>Strong verbal and written communication skills, with the professionalism needed to deliver training and lead important talks during onsite client visits.</li>
</ul>
<h4>Benefits</h4>
<ul>
<li>Competitive package – salary, equity options, and saving plan</li>
<li>Flexible & remote – work from anywhere with an outcomes-first culture</li>
<li>Team of experts – work with designers, engineers, and security professionals solving real-world problems</li>
<li>Growth-focused – your ideas ship, your voice counts, your growth matters</li>
<li>Global impact – build products that protect critical systems and data</li>
</ul></p><p></p>
<p><h4>Position summary</h4>
<p>Patrol all areas of the property; assist guests with room access. Monitor closed circuit televisions, perimeter alarm system, duress alarms, and fire life safety system. Lock property entrances when required. Conduct daily physical hazard inspections. Respond to accidents, contact EMS or administer first aid/CPR as required. Assist guests/employees during emergency situations. Notify appropriate individuals in the event of accidents, attacks, or other incidents. Defuse guest/employee disturbances. Call for outside assistance if necessary. Complete incident reports to document all security/loss prevention related incidents. Handle all interruptions and complaints. Resolve safety hazard situations. Escort any unwelcome persons from the property without interrupting the orderly flow of property operation. Report to scenes of vehicle accidents/thefts. Call for assistance using proper code responses. Complete a loss prevention shift summary/daily activity report. Maintain confidentiality of all security/loss prevention and property reports/documents; release information only to authorized individuals. Conduct investigations and gather evidence. Conduct interviews with relevant parties.</p>
<p>Follow</p><p></p>
<p><h4>Position summary</h4>
<p>Patrol all areas of the property; assist guests with room access. Monitor closed circuit televisions, perimeter alarm system, duress alarms, and fire life safety system. Lock property entrances when required. Conduct daily physical hazard inspections. Respond to accidents, contact EMS or administer first aid/CPR as required. Assist guests/employees during emergency situations. Notify appropriate individuals in the event of accidents, attacks, or other incidents. Defuse guest/employee disturbances. Call for outside assistance if necessary. Complete incident reports to document all security/loss prevention related incidents. Handle all interruptions and complaints. Resolve safety hazard situations. Escort any unwelcome persons from the property without interrupting the orderly flow of property operation. Report to scenes of vehicle accidents/thefts. Call for assistance using proper code responses. Complete a loss prevention shift summary/daily activity report. Maintain confidentiality of all security/loss prevention and property reports/documents; release information only to authorized individuals. Conduct investigations and gather evidence. Conduct interviews with relevant parties.</p>
<p>Follow</p><p></p>
<p><h4>Position summary</h4>
<p>Patrol all areas of the property; assist guests with room access. Monitor closed circuit televisions, perimeter alarm system, duress alarms, and fire life safety system. Lock property entrances when required. Conduct daily physical hazard inspections. Respond to accidents, contact EMS or administer first aid/CPR as required. Assist guests/employees during emergency situations. Notify appropriate individuals in the event of accidents, attacks, or other incidents. Defuse guest/employee disturbances. Call for outside assistance if necessary. Complete incident reports to document all security/loss prevention related incidents. Handle all interruptions and complaints. Resolve safety hazard situations. Escort any unwelcome persons from the property without interrupting the orderly flow of property operation. Report to scenes of vehicle accidents/thefts. Call for assistance using proper code responses. Complete a loss prevention shift summary/daily activity report. Maintain confidentiality of all security/loss prevention and property reports/documents; release information only to authorized individuals. Conduct investigations and gather evidence. Conduct interviews with relevant parties.</p>
<p>Follow</p><p></p>
<p><h4>Position summary</h4>
<p>Patrol all areas of the property; assist guests with room access. Monitor closed circuit televisions, perimeter alarm system, duress alarms, and fire life safety system. Lock property entrances when required. Conduct daily physical hazard inspections. Respond to accidents, contact EMS or administer first aid/CPR as required. Assist guests/employees during emergency situations. Notify appropriate individuals in the event of accidents, attacks, or other incidents. Defuse guest/employee disturbances. Call for outside assistance if necessary. Complete incident reports to document all security/loss prevention related incidents. Handle all interruptions and complaints. Resolve safety hazard situations. Escort any unwelcome persons from the property without interrupting the orderly flow of property operation. Report to scenes of vehicle accidents/thefts. Call for assistance using proper code responses. Complete a loss prevention shift summary/daily activity report. Maintain confidentiality of all security/loss prevention and property reports/documents; release information only to authorized individuals. Conduct investigations and gather evidence. Conduct interviews with relevant parties.</p>
<p>Follow</p><p></p>
<p><h4>Position summary</h4>
<p>Patrol all areas of the property; assist guests with room access. Monitor closed circuit televisions, perimeter alarm system, duress alarms, and fire life safety system. Lock property entrances when required. Conduct daily physical hazard inspections. Respond to accidents, contact EMS or administer first aid/CPR as required. Assist guests/employees during emergency situations. Notify appropriate individuals in the event of accidents, attacks, or other incidents. Defuse guest/employee disturbances. Call for outside assistance if necessary. Complete incident reports to document all security/loss prevention related incidents. Handle all interruptions and complaints. Resolve safety hazard situations. Escort any unwelcome persons from the property without interrupting the orderly flow of property operation. Report to scenes of vehicle accidents/thefts. Call for assistance using proper code responses. Complete a loss prevention shift summary/daily activity report. Maintain confidentiality of all security/loss prevention and property reports/documents; release information only to authorized individuals. Conduct investigations and gather evidence. Conduct interviews with relevant parties.</p>
<p>Follow</p><p></p>
<p><h4>Position summary</h4>
<p>Patrol all areas of the property; assist guests with room access. Monitor closed circuit televisions, perimeter alarm system, duress alarms, and fire life safety system. Lock property entrances when required. Conduct daily physical hazard inspections. Respond to accidents, contact EMS or administer first aid/CPR as required. Assist guests/employees during emergency situations. Notify appropriate individuals in the event of accidents, attacks, or other incidents. Defuse guest/employee disturbances. Call for outside assistance if necessary. Complete incident reports to document all security/loss prevention related incidents. Handle all interruptions and complaints. Resolve safety hazard situations. Escort any unwelcome persons from the property without interrupting the orderly flow of property operation. Report to scenes of vehicle accidents/thefts. Call for assistance using proper code responses. Complete a loss prevention shift summary/daily activity report. Maintain confidentiality of all security/loss prevention and property reports/documents; release information only to authorized individuals. Conduct investigations and gather evidence. Conduct interviews with relevant parties.</p>
<p>Follow</p><p></p>
<p><h4>Position summary</h4>
<p>Patrol all areas of the property; assist guests with room access. Monitor closed circuit televisions, perimeter alarm system, duress alarms, and fire life safety system. Lock property entrances when required. Conduct daily physical hazard inspections. Respond to accidents, contact EMS or administer first aid/CPR as required. Assist guests and employees during emergency situations. Notify appropriate individuals in the event of accidents, attacks, or other incidents. Defuse guest and employee disturbances. Call for outside assistance if necessary. Complete incident reports to document all security and loss prevention related incidents. Handle all interruptions and complaints. Resolve safety hazard situations. Escort any unwelcome persons from the property without interrupting the orderly flow of property operation. Report to scenes of vehicle accidents or thefts. Call for assistance using proper code responses. Complete a loss prevention shift summary and daily activity report. Maintain confidentiality of all security, loss prevention, and property reports and documents; release information only to authorized individuals. Conduct investigations and gather evidence. Conduct interviews with relevant parties.</p>
<p></p><p></p>
<p><h4>Position summary</h4>
<p>Patrol all areas of the property; assist guests with room access. Monitor closed circuit televisions, perimeter alarm system, duress alarms, and fire life safety system. Lock property entrances when required. Conduct daily physical hazard inspections. Respond to accidents, contact EMS or administer first aid/CPR as required. Assist guests and employees during emergency situations. Notify appropriate individuals in the event of accidents, attacks, or other incidents. Defuse guest and employee disturbances. Call for outside assistance if necessary. Complete incident reports to document all security and loss prevention related incidents. Handle all interruptions and complaints. Resolve safety hazard situations. Escort any unwelcome persons from the property without interrupting the orderly flow of property operation. Report to scenes of vehicle accidents or thefts. Call for assistance using proper code responses. Complete a loss prevention shift summary and daily activity report. Maintain confidentiality of all security, loss prevention, and property reports and documents; release information only to authorized individuals. Conduct investigations and gather evidence. Conduct interviews with relevant parties.</p>
<p></p><p></p>
<p><h4>Position summary</h4>
<p>Patrol all areas of the property; assist guests with room access. Monitor closed circuit televisions, perimeter alarm system, duress alarms, and fire life safety system. Lock property entrances when required. Conduct daily physical hazard inspections. Respond to accidents, contact EMS or administer first aid/CPR as required. Assist guests/employees during emergency situations. Notify appropriate individuals in the event of accidents, attacks, or other incidents. Defuse guest/employee disturbances. Call for outside assistance if necessary. Complete incident reports to document all security/loss prevention related incidents. Handle all interruptions and complaints. Resolve safety hazard situations. Escort any unwelcome persons from the property without interrupting the orderly flow of property operation. Report to scenes of vehicle accidents/thefts. Call for assistance using proper code responses. Complete a loss prevention shift summary/daily activity report. Maintain confidentiality of all security/loss prevention and property reports/documents; release information only to authorized individuals. Conduct investigations and gather evidence. Conduct interviews with relevant parties.</p>
<p></p><p></p>
<p><h4>Description</h4>
<p>COGNNA is a fast-growing cybersecurity startup revolutionizing how businesses manage their security operations. Our innovative SaaS platform provides organizations with the tools to detect, prevent, and respond to cyber threats with ease. Headquartered in Riyadh, Saudi Arabia, COGNNA is on a mission to empower businesses locally and internationally to build resilient and cost-effective cybersecurity operations.</p>
<p>We are looking for a highly skilled Senior Technical Support Engineer to serve as the ultimate escalation point for our clients' technical issues. In this role, you will focus entirely on ensuring the seamless agent deployment, functionality efficiency, and health of our platform. You will troubleshoot complex system environments, lead agent installations, and conduct client training sessions.</p>
<h4>Key responsibilities</h4>
<ul>
<li><strong>Advanced technical troubleshooting:</strong> Act as the Tier 2/Escalation point for complex technical issues, diagnosing and resolving deep-rooted system, network, and software problems for our clients.</li>
<li><strong>Agent installation & management:</strong> Guide clients through, and directly execute, the deployment and configuration of software agents (e.g., EDR, monitoring tools) across diverse enterprise environments (Windows, Linux, Kubernetes, etc.).</li>
<li><strong>Client training & onboarding:</strong> Design and deliver comprehensive technical training sessions to ensure clients are fully equipped to utilize and maintain our solutions.</li>
<li><strong>Escalation & communication management:</strong> Lead communications with key client stakeholders (including technical champions) during high-priority technical roadblocks, translating complex issues into clear, actionable updates.</li>
<li><strong>Knowledge & process improvement:</strong> Author detailed knowledge base (KB) articles and standard operating procedures (SOPs) to streamline future installations and troubleshooting steps.</li>
<li><strong>Team mentorship:</strong> Coach and guide junior support staff on advanced troubleshooting techniques and client management.</li>
</ul>
<h4>Requirements</h4>
<ul>
<li>5+ years in enterprise technical support, field engineering, or a highly technical, customer-facing B2B SaaS role.</li>
<li>Strong skills in managing and fixing major enterprise operating systems, especially Windows, Linux, and macOS.</li>
<li>Strong understanding of public cloud platforms (AWS, Azure, or GCP) to support and fix software setups in cloud and hybrid environments.</li>
<li>Strong understanding of network setups and protocols, including TCP/IP, DNS, ICMP, and firewalls, with the ability to use network tools to fix connectivity and installation blocks.</li>
<li>Skilled in PowerShell and Shell scripting (Bash) to automate troubleshooting and handle large-scale software deployments.</li>
<li>Good general understanding of cybersecurity products (like EDR, SIEM, or XDR) only from an installation, system compatibility, and setup standpoint.</li>
<li>Great ability to break down deployment failures, read complex log files, and copy complex client environments in a test lab.</li>
<li>Strong verbal and written communication skills, with the professionalism needed to deliver training and lead important talks during onsite client visits.</li>
</ul>
<h4>Benefits</h4>
<ul>
<li>Competitive package – salary, equity options, and saving plan</li>
<li>Flexible & remote – work from anywhere with an outcomes-first culture</li>
<li>Team of experts – work with designers, engineers, and security professionals solving real-world problems</li>
<li>Growth-focused – your ideas ship, your voice counts, your growth matters</li>
<li>Global impact – build products that protect critical systems and data</li>
</ul></p><p></p>
<p><h4>Description</h4>
<p>The Senior Microsoft Presales Engineer is responsible for driving customer engagement, solution positioning, and technical presales activities across Microsoft Infrastructure, Security, Modern Workplace, and Cloud solutions. The role acts as a trusted technical advisor to enterprise customers, supporting digital transformation initiatives through consultative solution design, technical workshops, demonstrations, and strategic customer engagements.</p>
<p>Working closely with Account Managers, Architects, Product teams, and Microsoft stakeholders, the engineer plays a key role in identifying customer requirements, positioning Microsoft technologies, developing technical proposals, and supporting pipeline growth across the region. The role combines deep Microsoft technical expertise with strong customer-facing, presentation, and solution-selling capabilities.</p>
<h4>Responsibilities:</h4>
<h4>Customer Engagement & Solution Consulting</h4>
<ul>
<li>Engage with customers to understand: business challenges, security and infrastructure requirements, digital transformation objectives, and existing technology environments</li>
<li>Conduct assessments of customer infrastructure, cloud, and security landscapes</li>
<li>Support customers in defining technical requirements and contributing to: RFP responses, RFI documentation and technical solution requirements</li>
<li>Act as a trusted advisor throughout the customer engagement lifecycle</li>
</ul>
<h4>Solution Positioning & Technical Presales</h4>
<ul>
<li>Position Microsoft solutions as best-in-class offerings by articulating: business value, competitive advantages, technical capabilities and security and operational benefits</li>
<li>Demonstrate Microsoft solution advantages over competitive technologies and existing customer environments</li>
<li>Support customers throughout technical evaluations and decision-making processes</li>
<li>Prepare technical proposals, solution presentations, architecture recommendations and technical response documentation</li>
</ul>
<h4>Microsoft Security, Cloud & Infrastructure Solutions</h4>
<ul>
<li>Design and position solutions across: Microsoft 365 E3 & E5, Microsoft Security & Compliance solutions, Microsoft Defender Suite, Microsoft Sentinel (SIEM), Azure Active Directory (SSO, MFA, Identity Security), Microsoft Purview and Data Protection solutions, Intune and Endpoint Management, Azure Infrastructure, Backup, DR, and Migration services, Hybrid and on-premise Microsoft infrastructure solutions</li>
<li>Support Azure sizing, migration, and modernization discussions with enterprise customers</li>
<li>Maintain strong awareness of Microsoft cloud, infrastructure, and security best practices</li>
</ul>
<h4>Workshops, Demonstrations & Technical Presentations</h4>
<ul>
<li>Lead customer workshops, technical demonstrations, solution presentations and executive briefings</li>
<li>Deliver tailored presentations addressing customer-specific business and technical challenges</li>
<li>Educate customers on Microsoft cloud, infrastructure, and cybersecurity capabilities</li>
<li>Support customer enablement and awareness initiatives across Microsoft technologies</li>
</ul>
<h4>Pipeline Development & Sales Support</h4>
<ul>
<li>Contribute to pipeline generation and opportunity development activities as part of the presales organization</li>
<li>Support opportunity qualification, technical validation, and deal progression across strategic customer engagements</li>
<li>Collaborate closely with sales and account management teams to align technical and commercial strategies</li>
<li>Maintain visibility on opportunity progression and customer engagement activities</li>
</ul>
<h4>Cross-Functional Collaboration</h4>
<ul>
<li>Work closely with Account Managers, Technical Architects, Product teams, Delivery teams and Microsoft stakeholders</li>
<li>Support successful transition from presales to delivery and implementation phases</li>
<li>Collaborate with customer IT and security teams to ensure solution alignment and technical readiness</li>
</ul>
<h4>Requirements</h4>
<ul>
<li>8+ years of experience in Microsoft solution sales, technical presales, cloud and infrastructure consulting, enterprise ICT environments</li>
<li>Strong expertise across Microsoft Cloud, Security, Productivity, Infrastructure solutions</li>
<li>Strong understanding of enterprise security principles, cloud migration and modernization, identity and access management, data protection and compliance solutions</li>
<li>Experience supporting enterprise and strategic customer engagements</li>
<li>Familiarity with non-Microsoft security technologies such as VMware, Trend Micro EPP/EDR, Forcepoint DLP is highly desirable</li>
<li>Bachelor’s degree in Computer Science, Information Technology, Engineering or a related technical field</li>
<li>Microsoft cloud and security certifications are an advantage</li>
</ul></p><p></p>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>The Incident Response Analyst is responsible for investigating, containing, eradicating, and supporting the recovery of cybersecurity incidents across customer and enterprise environments. The role plays a critical part in minimizing business impact from cyber threats by coordinating response activities, performing technical investigations, and supporting the continuous improvement of incident response capabilities. The role collaborates closely with Security Operations, Threat Intelligence, Digital Forensics, and customer IT teams to identify attack vectors, contain threats, and strengthen organizational resilience against future incidents. Responsibilities: Incident Investigation & Response Respond to security incidents within defined SLAs and escalation procedures. Perform detailed investigations to determine Nature of the attack, Scope of compromise, Impacted systems, Attack vectors and Potential business impact Analyze indicators of compromise (IOCs) and attacker activity. Identify containment, eradication, and recovery actions required to mitigate incidents. Coordinate incident response activities with internal and customer stakeholders. Threat Analysis & Root Cause Investigation Conduct in-depth analysis of security incidents and suspicious activities. Identify vulnerabilities, attack techniques, and security gaps contributing to incidents. Perform root cause analysis to determine how incidents occurred and identify preventive controls. Analyze attacker tactics, techniques, and procedures (TTPs) using industry frameworks such as MITRE ATT&CK. Incident Coordination & Escalation Manage incident response activities across multiple technical teams. Escalate incidents requiring Digital Forensics support, Specialized technical expertise and Malware analysis Coordinate communication between technical teams, management, and customer stakeholders. Support crisis management activities during major incidents. Documentation & Reporting Prepare detailed incident reports documenting Findings, Impact assessments, Root cause analysis and Remediation recommendations Maintain investigation records and evidence documentation. Support development of executive-level incident summaries and post-incident reviews. Process Improvement & Readiness Support the development and enhancement of Incident response playbooks, Response procedures and Investigation methodologies Participate in tabletop exercises and incident simulations. Identify opportunities to improve response effectiveness and operational readiness.</p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p>Bachelor's degree or intermediate diploma (minimum) from a recognised institution. Minimum 3 years experience in cybersecurity / information security, including 1 or more years in incident response. At least one valid NCSC-approved IR certification like (ECIH, CCIM, Blue Team Level 2) or another equivalent certification in the same field that is approved by the NCSC. Practical skills in log analysis, endpoint and network investigation, malware triage, and use of IR tooling. Exposure to SIEM/SOAR and EDR platforms is preferable. Experience in an MSSP or SOC environment is preferable.</p><p></p></section>
<p><h4>Description</h4>
<p>The incident response team leader is responsible for leading cybersecurity incident response activities, managing complex investigations, and overseeing the delivery of incident response services across customer and enterprise environments. The role provides technical leadership, operational oversight, and strategic direction for incident response engagements while ensuring effective coordination of resources during security incidents.</p>
<p>This role serves as the primary escalation point for major cybersecurity incidents and plays a key role in strengthening incident response readiness, improving operational maturity, and ensuring compliance with NCSC licensing requirements.</p>
<h4>Responsibilities</h4>
<p><strong>Incident response leadership</strong><br>
Lead cybersecurity incident response engagements from identification through recovery.<br>
Direct technical response teams during major security incidents, ransomware attacks, and data breaches.<br>
Coordinate containment, eradication, recovery, and remediation activities.<br>
Act as the primary incident commander during major incidents.</p>
<p><strong>Advanced incident investigation</strong><br>
Oversee complex investigations involving malware outbreaks, insider threats, targeted attacks, and data exfiltration incidents.<br>
Validate investigation findings and response recommendations.<br>
Provide technical leadership during high-severity incidents.<br>
Support digital forensics activities where required.</p>
<p><strong>Team management & development</strong><br>
Lead, mentor, and develop incident response analysts.<br>
Conduct technical coaching, performance management, skills development initiatives, and incident response readiness activities.<br>
Support recruitment and onboarding of new team members.<br>
Drive continuous capability development across the incident response function.</p>
<p><strong>Governance & stakeholder management</strong><br>
Serve as the primary customer-facing lead during major incidents.<br>
Provide executive briefings and incident status updates.<br>
Support regulatory, compliance, and reporting obligations.<br>
Ensure adherence to incident response policies, service level agreements, and NCSC operational requirements.</p>
<p><strong>Program development & continuous improvement</strong><br>
Develop and maintain incident response frameworks, playbooks, runbooks, and response procedures.<br>
Lead tabletop exercises and simulation activities.<br>
Conduct post-incident reviews and lessons learned sessions.<br>
Drive improvements to organizational cyber resilience and response capabilities.</p>
<h4>Our culture & code of conduct</h4>
<p>At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our code of conduct, which serves as a guiding framework for responsible behavior across everything we do—from how we work with each other to how we engage with clients and partners globally.</p>
<h4>Requirements</h4>
<ul>
<li>Bachelor's degree (minimum) in information technology or a related field.</li>
<li>Minimum 5 years in cybersecurity/information security, including 3 or more years specifically in incident response.</li>
<li>At least one valid NCSC-approved IR certification like ECIH, CCIM, Blue Team Level 2, or another equivalent certification in the same field that is approved by the NCSC.</li>
<li>Technical command: hands-on expertise in incident triage, forensics-aware investigation, containment, and recovery across endpoint, network, and cloud.</li>
<li>Leadership: proven ability to lead an analyst team under pressure and communicate clearly with clients and the NCSC.</li>
<li>Advanced degree in cybersecurity or a related discipline is preferable.</li>
<li>Additional credentials such as GCIH, GCFA, or vendor EDR/SOAR are preferable.</li>
<li>Experience in an MSSP, telco-affiliated SOC, or national CERT/CSIRT environment is preferable.</li>
</ul></p><p></p>
<p><h4>Description</h4>
<p>The incident response team leader is responsible for leading cybersecurity incident response activities, managing complex investigations, and overseeing the delivery of incident response services across customer and enterprise environments. The role provides technical leadership, operational oversight, and strategic direction for incident response engagements while ensuring effective coordination of resources during security incidents.</p>
<p>This role serves as the primary escalation point for major cybersecurity incidents and plays a key role in strengthening incident response readiness, improving operational maturity, and ensuring compliance with NCSC licensing requirements.</p>
<h4>Responsibilities</h4>
<p><strong>Incident response leadership</strong><br>
Lead cybersecurity incident response engagements from identification through recovery.<br>
Direct technical response teams during major security incidents, ransomware attacks, and data breaches.<br>
Coordinate containment, eradication, recovery, and remediation activities.<br>
Act as the primary incident commander during major incidents.</p>
<p><strong>Advanced incident investigation</strong><br>
Oversee complex investigations involving malware outbreaks, insider threats, targeted attacks, and data exfiltration incidents.<br>
Validate investigation findings and response recommendations.<br>
Provide technical leadership during high-severity incidents.<br>
Support digital forensics activities where required.</p>
<p><strong>Team management & development</strong><br>
Lead, mentor, and develop incident response analysts.<br>
Conduct technical coaching, performance management, skills development initiatives, and incident response readiness activities.<br>
Support recruitment and onboarding of new team members.<br>
Drive continuous capability development across the incident response function.</p>
<p><strong>Governance & stakeholder management</strong><br>
Serve as the primary customer-facing lead during major incidents.<br>
Provide executive briefings and incident status updates.<br>
Support regulatory, compliance, and reporting obligations.<br>
Ensure adherence to incident response policies, service level agreements, and NCSC operational requirements.</p>
<p><strong>Program development & continuous improvement</strong><br>
Develop and maintain incident response frameworks, playbooks, runbooks, and response procedures.<br>
Lead tabletop exercises and simulation activities.<br>
Conduct post-incident reviews and lessons learned sessions.<br>
Drive improvements to organizational cyber resilience and response capabilities.</p>
<h4>Our culture & code of conduct</h4>
<p>At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our code of conduct, which serves as a guiding framework for responsible behavior across everything we do—from how we work with each other to how we engage with clients and partners globally.</p>
<h4>Requirements</h4>
<ul>
<li>Bachelor's degree (minimum) in information technology or a related field.</li>
<li>Minimum 5 years in cybersecurity/information security, including 3 or more years specifically in incident response.</li>
<li>At least one valid NCSC-approved IR certification like ECIH, CCIM, Blue Team Level 2, or another equivalent certification in the same field that is approved by the NCSC.</li>
<li>Technical command: hands-on expertise in incident triage, forensics-aware investigation, containment, and recovery across endpoint, network, and cloud.</li>
<li>Leadership: proven ability to lead an analyst team under pressure and communicate clearly with clients and the NCSC.</li>
<li>Advanced degree in cybersecurity or a related discipline is preferable.</li>
<li>Additional credentials such as GCIH, GCFA, or vendor EDR/SOAR are preferable.</li>
<li>Experience in an MSSP, telco-affiliated SOC, or national CERT/CSIRT environment is preferable.</li>
</ul></p><p></p>
<p><h4>Description</h4>
<p>The digital forensics analyst is responsible for conducting forensic investigations, evidence acquisition, preservation, analysis, and reporting activities in support of cybersecurity incidents, legal investigations, regulatory requirements, and internal security matters. The role plays a critical part in identifying the source, scope, and impact of cyber incidents while ensuring the integrity and admissibility of digital evidence.</p>
<p>The role works closely with incident response teams, security operations, legal stakeholders, and customer representatives to investigate cyber incidents, collect forensic evidence, and provide technical findings that support decision-making, remediation, and potential legal proceedings.</p>
<h4>Responsibilities</h4>
<p><strong>Digital evidence acquisition & preservation</strong><br>
Perform forensic acquisition of digital evidence from workstations, servers, mobile devices, virtual environments, cloud platforms, and removable media.<br>
Ensure proper chain of custody procedures are followed throughout investigations.<br>
Preserve evidence integrity using approved forensic methodologies and tools.<br>
Conduct live and dead-box forensic acquisitions.<br>
Maintain forensic evidence repositories and documentation.</p>
<p><strong>Forensic investigation & analysis</strong><br>
Analyze digital evidence to identify unauthorized access, data theft, insider threats, malware activity, data destruction attempts, and policy violations.<br>
Examine file systems, registry artifacts, event logs, browser artifacts, user activity records, and network evidence.<br>
Conduct timeline analysis and event reconstruction activities.<br>
Support attribution efforts and attack path analysis where applicable.</p>
<p><strong>Reporting & documentation</strong><br>
Prepare detailed forensic reports documenting the methodology, findings, evidence collected, and conclusions.<br>
Present findings to technical and non-technical stakeholders.<br>
Maintain investigation records in accordance with regulatory and legal requirements.<br>
Support expert witness preparation activities where required.</p>
<p><strong>Research & continuous improvement</strong><br>
Maintain awareness of emerging attack techniques, anti-forensics methodologies, and digital investigation trends.<br>
Support the development of investigation procedures, forensic methodologies, and evidence handling standards.<br>
Participate in technical training and capability development initiatives.</p>
<h4>Our culture & code of conduct</h4>
<p>At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our code of conduct, which serves as a guiding framework for responsible behavior across everything we do—from how we work with each other to how we engage with clients and partners globally.</p>
<h4>Requirements</h4>
<ul>
<li>Bachelor's degree or intermediate diploma (minimum) from a recognised institution.</li>
<li>Minimum 2 years experience in cybersecurity, including at least 2 completed digital forensic investigations.</li>
<li>At least one valid NCSC-approved forensics certification like GCFE, GCFA, CHFI, or another equivalent certification in the same field that is approved by the NCSC.</li>
<li>Hands-on use of forensic tools and sound evidence-handling practice.</li>
<li>Exposure to mobile and cloud forensics is preferable.</li>
<li>Experience in an MSSP, lab, or law-enforcement forensic environment is preferable.</li>
</ul></p><p></p>
<p><h4>Description</h4>
<p>The digital forensics analyst is responsible for conducting forensic investigations, evidence acquisition, preservation, analysis, and reporting activities in support of cybersecurity incidents, legal investigations, regulatory requirements, and internal security matters. The role plays a critical part in identifying the source, scope, and impact of cyber incidents while ensuring the integrity and admissibility of digital evidence.</p>
<p>The role works closely with incident response teams, security operations, legal stakeholders, and customer representatives to investigate cyber incidents, collect forensic evidence, and provide technical findings that support decision-making, remediation, and potential legal proceedings.</p>
<h4>Responsibilities</h4>
<p><strong>Digital evidence acquisition & preservation</strong><br>
Perform forensic acquisition of digital evidence from workstations, servers, mobile devices, virtual environments, cloud platforms, and removable media.<br>
Ensure proper chain of custody procedures are followed throughout investigations.<br>
Preserve evidence integrity using approved forensic methodologies and tools.<br>
Conduct live and dead-box forensic acquisitions.<br>
Maintain forensic evidence repositories and documentation.</p>
<p><strong>Forensic investigation & analysis</strong><br>
Analyze digital evidence to identify unauthorized access, data theft, insider threats, malware activity, data destruction attempts, and policy violations.<br>
Examine file systems, registry artifacts, event logs, browser artifacts, user activity records, and network evidence.<br>
Conduct timeline analysis and event reconstruction activities.<br>
Support attribution efforts and attack path analysis where applicable.</p>
<p><strong>Reporting & documentation</strong><br>
Prepare detailed forensic reports documenting the methodology, findings, evidence collected, and conclusions.<br>
Present findings to technical and non-technical stakeholders.<br>
Maintain investigation records in accordance with regulatory and legal requirements.<br>
Support expert witness preparation activities where required.</p>
<p><strong>Research & continuous improvement</strong><br>
Maintain awareness of emerging attack techniques, anti-forensics methodologies, and digital investigation trends.<br>
Support the development of investigation procedures, forensic methodologies, and evidence handling standards.<br>
Participate in technical training and capability development initiatives.</p>
<h4>Our culture & code of conduct</h4>
<p>At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our code of conduct, which serves as a guiding framework for responsible behavior across everything we do—from how we work with each other to how we engage with clients and partners globally.</p>
<h4>Requirements</h4>
<ul>
<li>Bachelor's degree or intermediate diploma (minimum) from a recognised institution.</li>
<li>Minimum 2 years experience in cybersecurity, including at least 2 completed digital forensic investigations.</li>
<li>At least one valid NCSC-approved forensics certification like GCFE, GCFA, CHFI, or another equivalent certification in the same field that is approved by the NCSC.</li>
<li>Hands-on use of forensic tools and sound evidence-handling practice.</li>
<li>Exposure to mobile and cloud forensics is preferable.</li>
<li>Experience in an MSSP, lab, or law-enforcement forensic environment is preferable.</li>
</ul></p><p></p>
<p><h4>Description</h4>
<p>We're looking for Google Apigee Cloud expert with over 5 years of hands-on experience in designing, developing, and managing API solutions on Google Cloud Platform (GCP). The ideal candidate will be responsible for architecting secure, scalable, and high-performing API ecosystems using Apigee, while collaborating with cross-functional teams to enable seamless digital transformation.</p>
<h4>Key responsibilities:</h4>
<ul>
<li><strong>API design & development:</strong> Architect, design, and implement APIs using Apigee Edge/Apigee X, ensuring scalability and maintainability.</li>
<li><strong>API gateway management:</strong> Configure, deploy, and manage API proxies, policies, and traffic flows.</li>
<li><strong>Security & compliance:</strong> Implement OAuth, JWT, API keys, and other authentication/authorization mechanisms to secure APIs.</li>
<li><strong>Performance optimization:</strong> Monitor, analyze, and optimize API performance, latency, and throughput.</li>
<li><strong>Integration:</strong> Connect APIs with backend services, microservices, and third-party applications.</li>
<li><strong>Monitoring & analytics:</strong> Utilize Apigee analytics and logging tools to track API usage, detect anomalies, and improve reliability.</li>
<li><strong>Collaboration:</strong> Work closely with developers, architects, and DevOps teams to align API strategies with business goals.</li>
<li><strong>Documentation & best practices:</strong> Maintain clear API documentation, enforce governance, and promote API-first culture.</li>
</ul>
<h4>Requirements</h4>
<ul>
<li><strong>Experience:</strong> 5+ years of professional experience in API management, with at least 3 years focused on Apigee.</li>
<li><strong>Technical expertise:</strong> Strong knowledge of REST, SOAP, GraphQL, JSON, XML, and microservices architecture.</li>
<li><strong>Cloud knowledge:</strong> Proficiency in Google Cloud Platform (GCP) services such as Cloud Functions, Pub/Sub, BigQuery, and Kubernetes (GKE).</li>
<li><strong>Security:</strong> Deep understanding of API security standards, identity management, and compliance frameworks.</li>
<li><strong>DevOps & CI/CD:</strong> Hands-on experience with Jenkins, Git, Docker, and CI/CD pipelines for API deployment.</li>
<li><strong>Problem-solving:</strong> Strong analytical and troubleshooting skills with ability to resolve complex API issues.</li>
<li><strong>Communication:</strong> Excellent verbal and written communication skills to collaborate across teams and stakeholders.</li>
</ul></p><p></p>
<p><h4>Description</h4>
<p>We're looking for Google Apigee Cloud expert with over 5 years of hands-on experience in designing, developing, and managing API solutions on Google Cloud Platform (GCP). The ideal candidate will be responsible for architecting secure, scalable, and high-performing API ecosystems using Apigee, while collaborating with cross-functional teams to enable seamless digital transformation.</p>
<h4>Key responsibilities:</h4>
<ul>
<li><strong>API design & development:</strong> Architect, design, and implement APIs using Apigee Edge/Apigee X, ensuring scalability and maintainability.</li>
<li><strong>API gateway management:</strong> Configure, deploy, and manage API proxies, policies, and traffic flows.</li>
<li><strong>Security & compliance:</strong> Implement OAuth, JWT, API keys, and other authentication/authorization mechanisms to secure APIs.</li>
<li><strong>Performance optimization:</strong> Monitor, analyze, and optimize API performance, latency, and throughput.</li>
<li><strong>Integration:</strong> Connect APIs with backend services, microservices, and third-party applications.</li>
<li><strong>Monitoring & analytics:</strong> Utilize Apigee analytics and logging tools to track API usage, detect anomalies, and improve reliability.</li>
<li><strong>Collaboration:</strong> Work closely with developers, architects, and DevOps teams to align API strategies with business goals.</li>
<li><strong>Documentation & best practices:</strong> Maintain clear API documentation, enforce governance, and promote API-first culture.</li>
</ul>
<h4>Requirements</h4>
<ul>
<li><strong>Experience:</strong> 5+ years of professional experience in API management, with at least 3 years focused on Apigee.</li>
<li><strong>Technical expertise:</strong> Strong knowledge of REST, SOAP, GraphQL, JSON, XML, and microservices architecture.</li>
<li><strong>Cloud knowledge:</strong> Proficiency in Google Cloud Platform (GCP) services such as Cloud Functions, Pub/Sub, BigQuery, and Kubernetes (GKE).</li>
<li><strong>Security:</strong> Deep understanding of API security standards, identity management, and compliance frameworks.</li>
<li><strong>DevOps & CI/CD:</strong> Hands-on experience with Jenkins, Git, Docker, and CI/CD pipelines for API deployment.</li>
<li><strong>Problem-solving:</strong> Strong analytical and troubleshooting skills with ability to resolve complex API issues.</li>
<li><strong>Communication:</strong> Excellent verbal and written communication skills to collaborate across teams and stakeholders.</li>
</ul></p><p></p>
<p><h4>Description</h4>
<p>The SOC analyst - tier 1 is responsible for providing 24x7 security monitoring, alert triage, event analysis, and incident escalation services within ZainTECH’s managed security operations center (SOC). As the first line of defense against cybersecurity threats, the role continuously monitors customer environments, validates security events, and ensures potential security incidents are identified, classified, documented, and escalated in accordance with established procedures and service level agreements.</p>
<h4>Responsibilities:</h4>
<p><strong>Security monitoring & event analysis</strong></p>
<ul>
<li>Provide continuous 24x7 monitoring of customer and enterprise security environments through shift-based operations.</li>
<li>Monitor and analyze security events generated from SIEM platforms, IDS/IPS solutions, endpoint detection & response (EDR) tools, firewalls, email security gateways, web security solutions, and cloud security platforms.</li>
<li>Review and assess security alerts to determine whether activity represents a legitimate security threat or a false positive.</li>
<li>Perform initial event validation, classification, and prioritization based on severity, risk, and potential business impact.</li>
<li>Identify suspicious behavior, indicators of compromise (IOCs), and anomalous activities requiring further investigation.</li>
</ul>
<p><strong>Incident triage & escalation</strong></p>
<ul>
<li>Perform first-level analysis and triage of security alerts and events.</li>
<li>Create and manage incident tickets within approved incident management platforms.</li>
<li>Categorize incidents based on severity, impact, urgency, and threat classification.</li>
<li>Escalate validated incidents to SOC analyst - tier 2 teams in accordance with approved escalation procedures.</li>
<li>Ensure escalations include complete and accurate investigation details to support efficient handover and further analysis.</li>
<li>Maintain incident tracking and ensure timely updates throughout the incident lifecycle.</li>
</ul>
<p><strong>SIEM operations & security monitoring</strong></p>
<ul>
<li>Utilize SIEM platforms to monitor security events, review alerts, execute predefined searches and queries, support basic investigations.</li>
<li>Support operational activities including alert validation, monitoring dashboard review, log analysis, and security event correlation.</li>
<li>Assist with identifying false positives and escalating tuning recommendations where required.</li>
<li>Support the overall effectiveness and reliability of monitoring operations.</li>
</ul>
<p><strong>Documentation & reporting</strong></p>
<ul>
<li>Maintain accurate records of investigations, observations, and escalation activities.</li>
<li>Document security incidents and monitoring activities in accordance with operational procedures.</li>
<li>Participate in shift handovers and ensure continuity of investigations between teams.</li>
<li>Support operational reporting and SOC performance metrics activities.</li>
</ul>
<p><strong>Governance, compliance & operational excellence</strong></p>
<ul>
<li>Follow approved SOC procedures, playbooks, and operational standards.</li>
<li>Ensure compliance with internal security policies, customer contractual obligations, and NCSC Jordan licensing requirements.</li>
<li>Handle customer information with strict confidentiality and professionalism.</li>
<li>Participate in training, simulation exercises, and continuous improvement initiatives.</li>
<li>Maintain awareness of emerging cybersecurity threats and attack techniques.</li>
</ul>
<h4>Our culture & code of conduct:</h4>
<p>At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our code of conduct, which serves as a guiding framework for responsible behavior across everything we do — from how we work with each other to how we engage with clients and partners globally.</p>
<h4>Requirements</h4>
<ul>
<li>Bachelor's degree or intermediate diploma from a recognised institution.</li>
<li>At least 6 months of practical cybersecurity experience.</li>
<li>At least one valid NCSC-approved SOC certification like CSA, GSOC, GCIA, CTIA, Blue Team Level 1, or Cisco CyberOps Associate, or another internationally recognised, equivalent certification in the same field that is approved by the NCSC.</li>
<li>Familiarity with SIEM consoles, alert triage, and SOC monitoring workflow; willingness to work rotating shifts.</li>
<li>Foundational networking and operating-system knowledge is preferable.</li>
<li>Prior internship or junior SOC experience is preferable.</li>
</ul></p><p></p>