Security inspector Jobs in Jordan
2119 Jobs Found
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Managed.sa is seeking a Senior Pre-Sales Engineer to support the development of cybersecurity solutions and proposals for clients in Saudi Arabia and the wider region.<br> The ideal candidate will have strong experience in cybersecurity services, excellent client-facing skills, and the ability to translate business and technical requirements into effective cybersecurity solutions.<br> Key Responsibilities Work closely with the sales team to understand client requirements and develop appropriate cybersecurity solutions.<br> Prepare technical proposals, presentations, statements of work, and solution documents.<br> Conduct client meetings, technical discussions, discovery sessions, and solution demonstrations.<br> Design solutions covering cybersecurity services such as GRC, SOC, MDR, assurance, penetration testing, and security assessments.<br> Coordinate with technical teams to validate scope, effort, deliverables, and project requirements.<br> Review RFPs and support the preparation of compliant technical responses.<br> Present proposed solutions clearly to both technical and non-technical stakeholders.<br> Maintain up-to-date knowledge of cybersecurity services, market trends, and regulatory requirements.<br> Support sales opportunities throughout the full pre-sales cycle.<br> Contribute to improving proposal templates, service descriptions, and pre-sales processes.<br> Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related field.<br> 3–5 years of experience in cybersecurity pre-sales, solutions engineering, or technical consulting.<br> Experience working for a cybersecurity service provider, consulting company, or system integrator.<br> Practical understanding of cybersecurity services, including GRC, SOC, assurance, penetration testing, and managed security services.<br> Experience preparing technical proposals and responding to RFPs.<br> Strong presentation, communication, and client-engagement skills.<br> Ability to translate business requirements into technical solutions.<br> Strong written and spoken English.<br> Ability to work effectively with remote and cross-functional teams.<br></span> </div>
<p><h4>Description</h4>
<p>The SOC team leader is responsible for leading and managing ZainTECH’s Security Operations Center (SOC) team, ensuring effective delivery of security monitoring, threat detection, incident response coordination, and operational security services. The role provides technical leadership and operational oversight across SOC functions while ensuring compliance with service level agreements, customer requirements, and NCSC licensing obligations.</p>
<h4>Responsibilities:</h4>
<p><strong>SOC operations management</strong><br>
Lead daily SOC operations across all monitoring and response activities.<br>
Ensure continuous 24x7 monitoring coverage and effective shift management.<br>
Oversee incident handling, escalation, and investigation activities.<br>
Ensure adherence to customer SLAs and operational procedures.<br>
Monitor SOC performance and service quality metrics.</p>
<p><strong>Incident management & escalation</strong><br>
Act as the primary escalation point for high-severity security incidents.<br>
Coordinate incident response activities across technical teams and stakeholders.<br>
Support containment, investigation, eradication, and recovery efforts.<br>
Review incident reports and ensure quality of investigation outputs.<br>
Participate in major incident and crisis management activities.</p>
<p><strong>Team leadership & development</strong><br>
Lead, mentor, and develop SOC analysts across all levels.<br>
Conduct performance reviews, coaching sessions, and knowledge transfer initiatives.<br>
Support recruitment, onboarding, and training activities.</p>
<p><strong>Threat detection & operational improvement</strong><br>
Drive continuous improvement of monitoring and detection capabilities.<br>
Review and approve use cases, correlation rules, dashboards, and operational procedures.<br>
Identify gaps in detection coverage and operational effectiveness.<br>
Support SOC maturity and service enhancement initiatives.</p>
<p><strong>Governance, reporting & stakeholder management</strong><br>
Prepare operational reports and service reviews.<br>
Participate in customer meetings and security governance discussions.<br>
Ensure compliance with internal security policies, regulatory obligations, and NCSC licensing requirements.<br>
Maintain operational documentation, procedures, and playbooks.</p>
<h4>Our culture & code of conduct:</h4>
<p>At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our code of conduct, which serves as a guiding framework for responsible behavior across everything we do — from how we work with each other to how we engage with clients and partners globally.</p>
<h4>Requirements</h4>
<p>Bachelor’s degree in cybersecurity, information security, computer science, information technology, engineering, or a related field.<br>
Minimum 5 years of cybersecurity experience and minimum 3 years of SOC operations experience.<br>
Previous experience leading security operations teams.<br>
Strong experience with SIEM platforms, threat detection, incident response, and security operations management.<br>
Experience within MSSP environments is highly preferred.</p></p><p></p>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>Working across the globe, V2X builds smart solutions designed to integrate physical and digital infrastructure from base to battlefield. We bring 120 years of successful mission support to improve security, streamline logistics, and enhance readiness. Aligned around a shared purpose, our $3.9B company and 16,000 people work alongside our clients, here and abroad, to tackle their most complex challenges with integrity, respect, responsibility, and professionalism.</p><p>The Systems Administrator II is responsible for the administration and operational support for servers, workstations and applications in a Windows Active Directory environment. The candidate must be able to coordinate, troubleshoot and oversee system backups, hardware installation, software installation, and system upgrades. The position will require individuals to solve complex technology problems, providing solutions and mentorship to internal and external customers that will have a positive impact on the day-to-day efficiencies. Maintain exceptional conduct, discipline, and communicate effectively with a diverse work force to perform assigned tasks.</p><p>Program: OMDAC-SWACA</p><p>This position offers company-paid housing and transportation, a completion bonus and tuition reimbursement program! You must satisfy all host country requirements to legally work in the host country to include but not limited to the ability to obtain and maintain a host nation visa and host nation driver s license in order to be qualified for this position.</p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li>Requires an active Secret Clearance</li><li>Bachelor s Degree in Information Technology (IT)</li><li>This position requires candidates to adhere to DoD 8570.01M. All candidates are required to maintain at least one (1) baseline certification and one (1) computing environment (CE) certification. Baseline certifications cannot also be used as a Computing Environment (CE) certification. The authorized certifications for this job title are listed as follows: BASELINE: Cisco: CCNA: Certified Network Associate - Security Cisco: CCNP: Certified Network Professional - Security CompTIA: CASP+ ce: Advanced Security Practitioner CompTIA: CySA+ ce: Cybersecurity Analyst ( Cannot be used as a dual qualifier ) CompTIA: Security+ ce GIAC: GCED: Certified Enterprise Defender GIAC: GCIH: Certified Incident Handler: Certified Incident Handler GIAC: GICSP: Industrial Cyber Security Professional GIAC: GSEC: Security Essentials ISACA: CISA: Certified Information Systems Auditor ISC2: CISSP ( or Associate ): Certified Information Systems Security Professional ISC2: SSCP: Systems Security Certified Practitioner COMPUTING ENVIRONMENT (CE): CompTIA: Server+ CompTIA: CySA+ ce: Cybersecurity Analyst ( Cannot be used as a dual qualifier ) Microsoft: 365 Certified: Endpoint Administrator Associate Microsoft: 365 Certified: Enterprise Administrator Expert Microsoft: 365 Certified: Messaging Administrator Associate Microsoft: 365 Certified: Modern Desktop Administrator Associate Microsoft: 365 Certified: Security Administrator Associate Microsoft: Certified: Azure Administrator Associate Microsoft: Certified: Azure Database Administrator Associate Microsoft: Certified: Azure Security Engineer Associate Microsoft: Certified: Azure Solutions Architect Expert Microsoft: Certified: Identity and Access Administrator Associate Microsoft: Certified: Information Protection Administrator Associate Microsoft: Certified: Security Operations Analyst Associate Microsoft: MCSA: SQL 2016 Database Admin Microsoft: MCSA: SQL 2016 Database BI Development Microsoft: MCSA: SQL 2016 Database Dev Microsoft: MCSA: Windows 10 Microsoft: MCSA: Windows Server 2012 Microsoft: MCSA: Windows Server 2016 Microsoft: MCSE: Cloud Platform and Infrastructure Microsoft: MCSE: Core Infrastructure Microsoft: MCSE: Database Management and Analytics Microsoft: MCSE: Enterprise Devices and Apps Microsoft: MCSE: Private Cloud 2012 Microsoft: MCSE: Productivity Solutions Expert Microsoft: MCSE: Server Infrastructure 2012 Microsoft: MCT: Certified IT Professional Microsoft: MCT: Certified Systems Administrator</li><li>One year of related academic study above the high school level may be substituted for one year of experience up to a maximum of a 4-year bachelor's degree in a Software Engineering or Business Information Systems discipline for three years general experience.</li><li>The Systems Administrator II is required to be an expert in all functions of both IAT Level I and IAT Level II positions relating to a Windows Server operating system environment.</li><li>The Systems Administrator II must be able to apply extensive knowledge of a variety of the IA field s concepts, practices, and procedures to ensure the secure integration and operation of all enclaves (NIPR, SIPR, etc.) systems.</li><li>Must be able to rely on extensive experience and judgment to plan and accomplish goals for the enclave environment.</li><li>Must have at least five (5) years of practical experience working with Windows Server 2012 or higher operating systems (OS) and Active Directory tools.</li><li>Candidate must possess a basic understanding of security principles and their application to an enterprise AD environment.</li></ul><p></p></section>
<p><h4>Description</h4>
<p>The penetration tester is responsible for conducting authorized security assessments across enterprise, government, and critical infrastructure environments to identify, validate, and report security vulnerabilities. As part of ZainTECH's cybersecurity practice, the role supports the delivery of penetration testing engagements across infrastructure, web, wireless, and applications.</p>
<p>The penetration tester performs hands-on offensive security testing, validates exploitability of identified vulnerabilities, and delivers clear, actionable remediation guidance to customers. The role works closely with cybersecurity consultants, advisory teams, and customer stakeholders to help strengthen security posture and reduce organizational risk across the MENA region.</p>
<h4>Responsibilities</h4>
<p><strong>Penetration testing & security assessments</strong></p>
<ul>
<li>Conduct penetration testing engagements across: external and internal networks, web applications, APIs and web services, wireless environments, infrastructure and supporting systems</li>
<li>Execute testing activities in accordance with approved methodologies, industry standards, and customer-defined rules of engagement</li>
<li>Identify, validate, and safely demonstrate security vulnerabilities and attack paths</li>
<li>Assess exploitability, business impact, and risk exposure associated with identified findings</li>
<li>Perform security validation and retesting activities following remediation efforts</li>
</ul>
<p><strong>Vulnerability analysis & reporting</strong></p>
<ul>
<li>Analyze identified vulnerabilities and security weaknesses to determine potential business impact</li>
<li>Develop detailed technical findings and remediation recommendations</li>
<li>Produce high-quality penetration testing reports that clearly communicate: vulnerability details, risk ratings, attack scenarios, business impact, remediation guidance</li>
<li>Ensure findings are reproducible, technically accurate, and aligned with industry best practices</li>
</ul>
<p><strong>Testing governance & compliance</strong></p>
<ul>
<li>Conduct all testing activities within approved scope and rules of engagement</li>
<li>Ensure customer systems, data, and environments are protected throughout testing activities</li>
<li>Maintain strict confidentiality of customer information and testing results</li>
<li>Adhere to applicable regulatory, contractual, and legal requirements governing penetration testing engagements</li>
<li>Support compliance with NCSC Jordan licensing requirements and operational standards</li>
</ul>
<p><strong>Technical research & continuous improvement</strong></p>
<ul>
<li>Stay current on emerging threats, attack techniques, vulnerability trends, security research, offensive security tools and methodologies</li>
<li>Contribute to the enhancement of penetration testing methodologies, tools, and processes</li>
<li>Participate in internal knowledge-sharing initiatives and technical training programs</li>
<li>Support continuous improvement activities within the cybersecurity advisory services practice</li>
</ul>
<p><strong>Cross-functional collaboration</strong></p>
<ul>
<li>Collaborate with penetration testing team leaders, cybersecurity consultants, security architects, managed security services teams</li>
<li>Support remediation discussions and knowledge transfer activities where required</li>
<li>Contribute technical expertise during customer engagements and security assessments</li>
</ul>
<h4>Our culture & code of conduct</h4>
<p>At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our code of conduct, which serves as a guiding framework for responsible behavior across everything we do — from how we work with each other to how we engage with clients and partners globally.</p>
<h4>Requirements</h4>
<ul>
<li>Bachelor's degree or intermediate diploma from a recognized university or academic institution</li>
<li>Minimum 3 years of practical cybersecurity experience</li>
<li>Demonstrated participation in at least two completed penetration testing projects</li>
<li>Possession of at least one valid NCSC-approved penetration testing certification, including: Certified Ethical Hacker (CEH), CREST Registered Penetration Tester (CRT), Offensive Security Wireless Professional (OSWP), Offensive Security Certified Professional (OSCP), CompTIA PenTest+, or another NCSC-approved equivalent certification</li>
<li>Hands-on offensive skills across network, web, and application testing, with command of common tooling (Burp Suite, Nmap, Metasploit) and scripting</li>
</ul></p><p></p>
<p><h4>Description</h4>
<p>The SOC team leader is responsible for leading and managing ZainTECH’s Security Operations Center (SOC) team, ensuring effective delivery of security monitoring, threat detection, incident response coordination, and operational security services. The role provides technical leadership and operational oversight across SOC functions while ensuring compliance with service level agreements, customer requirements, and NCSC licensing obligations.</p>
<h4>Responsibilities:</h4>
<p><strong>SOC operations management</strong><br>
Lead daily SOC operations across all monitoring and response activities.<br>
Ensure continuous 24x7 monitoring coverage and effective shift management.<br>
Oversee incident handling, escalation, and investigation activities.<br>
Ensure adherence to customer SLAs and operational procedures.<br>
Monitor SOC performance and service quality metrics.</p>
<p><strong>Incident management & escalation</strong><br>
Act as the primary escalation point for high-severity security incidents.<br>
Coordinate incident response activities across technical teams and stakeholders.<br>
Support containment, investigation, eradication, and recovery efforts.<br>
Review incident reports and ensure quality of investigation outputs.<br>
Participate in major incident and crisis management activities.</p>
<p><strong>Team leadership & development</strong><br>
Lead, mentor, and develop SOC analysts across all levels.<br>
Conduct performance reviews, coaching sessions, and knowledge transfer initiatives.<br>
Support recruitment, onboarding, and training activities.</p>
<p><strong>Threat detection & operational improvement</strong><br>
Drive continuous improvement of monitoring and detection capabilities.<br>
Review and approve use cases, correlation rules, dashboards, and operational procedures.<br>
Identify gaps in detection coverage and operational effectiveness.<br>
Support SOC maturity and service enhancement initiatives.</p>
<p><strong>Governance, reporting & stakeholder management</strong><br>
Prepare operational reports and service reviews.<br>
Participate in customer meetings and security governance discussions.<br>
Ensure compliance with internal security policies, regulatory obligations, and NCSC licensing requirements.<br>
Maintain operational documentation, procedures, and playbooks.</p>
<h4>Our culture & code of conduct:</h4>
<p>At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our code of conduct, which serves as a guiding framework for responsible behavior across everything we do — from how we work with each other to how we engage with clients and partners globally.</p>
<h4>Requirements</h4>
<p>Bachelor’s degree in cybersecurity, information security, computer science, information technology, engineering, or a related field.<br>
Minimum 5 years of cybersecurity experience and minimum 3 years of SOC operations experience.<br>
Previous experience leading security operations teams.<br>
Strong experience with SIEM platforms, threat detection, incident response, and security operations management.<br>
Experience within MSSP environments is highly preferred.</p></p><p></p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>The SOC Team Leader is responsible for leading and managing ZainTECH’s Security Operations Center (SOC) team, ensuring effective delivery of security monitoring, threat detection, incident response coordination, and operational security services.<br> The role provides technical leadership and operational oversight across SOC functions while ensuring compliance with service level agreements, customer requirements, and NCSC licensing obligations.<br> Responsibilities: SOC Operations Management Lead daily SOC operations across all monitoring and response activities.<br> Ensure continuous 24x7 monitoring coverage and effective shift management.<br> Oversee incident handling, escalation, and investigation activities.<br> Ensure adherence to customer SLAs and operational procedures.<br> Monitor SOC performance and service quality metrics.<br> Incident Management & Escalation Act as the primary escalation point for high-severity security incidents.<br> Coordinate incident response activities across technical teams and stakeholders.<br> Support containment, investigation, eradication, and recovery efforts.<br> Review incident reports and ensure quality of investigation outputs.<br> Participate in major incident and crisis management activities.<br> Team Leadership & Development Lead, mentor, and develop SOC analysts across all levels.<br> Conduct Performance reviews ,Coaching sessions and Knowledge transfer initiatives Support recruitment, onboarding, and training activities.<br> Threat Detection & Operational Improvement Drive continuous improvement of monitoring and detection capabilities.<br> Review and approve Use cases , Correlation rules , Dashboards and Operational procedures Identify gaps in detection coverage and operational effectiveness.<br> Support SOC maturity and service enhancement initiatives.<br> Governance, Reporting & Stakeholder Management Prepare operational reports and service reviews.<br> Participate in customer meetings and security governance discussions.<br> Ensure compliance with Internal security policies , Regulatory obligations and NCSC licensing requirements Maintain operational documentation, procedures, and playbooks.<br> Our Culture & Code of Conduct: At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity.<br> We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence.<br> All employees are expected to uphold our Code of Conduct, which serves as a guiding framework for responsible behavior across everything we do — from how we work with each other to how we engage with clients and partners globally.<br> Bachelor’s degree in Cybersecurity, Information Security, Computer Science, Information Technology, Engineering, or a related field.<br> Minimum 5 years of cybersecurity experience and minimum 3 years of SOC operations experience Previous experience leading security operations teams.<br> Strong experience with in SIEM platforms , Threat detection , Incident response and Security operations management Experience within MSSP environments is highly preferred.<br></span> </div>
<p><h4>Description</h4>
<p>The penetration tester is responsible for conducting authorized security assessments across enterprise, government, and critical infrastructure environments to identify, validate, and report security vulnerabilities. As part of ZainTECH's cybersecurity practice, the role supports the delivery of penetration testing engagements across infrastructure, web, wireless, and applications.</p>
<p>The penetration tester performs hands-on offensive security testing, validates exploitability of identified vulnerabilities, and delivers clear, actionable remediation guidance to customers. The role works closely with cybersecurity consultants, advisory teams, and customer stakeholders to help strengthen security posture and reduce organizational risk across the MENA region.</p>
<h4>Responsibilities</h4>
<p><strong>Penetration testing & security assessments</strong></p>
<ul>
<li>Conduct penetration testing engagements across: external and internal networks, web applications, APIs and web services, wireless environments, infrastructure and supporting systems</li>
<li>Execute testing activities in accordance with approved methodologies, industry standards, and customer-defined rules of engagement</li>
<li>Identify, validate, and safely demonstrate security vulnerabilities and attack paths</li>
<li>Assess exploitability, business impact, and risk exposure associated with identified findings</li>
<li>Perform security validation and retesting activities following remediation efforts</li>
</ul>
<p><strong>Vulnerability analysis & reporting</strong></p>
<ul>
<li>Analyze identified vulnerabilities and security weaknesses to determine potential business impact</li>
<li>Develop detailed technical findings and remediation recommendations</li>
<li>Produce high-quality penetration testing reports that clearly communicate: vulnerability details, risk ratings, attack scenarios, business impact, remediation guidance</li>
<li>Ensure findings are reproducible, technically accurate, and aligned with industry best practices</li>
</ul>
<p><strong>Testing governance & compliance</strong></p>
<ul>
<li>Conduct all testing activities within approved scope and rules of engagement</li>
<li>Ensure customer systems, data, and environments are protected throughout testing activities</li>
<li>Maintain strict confidentiality of customer information and testing results</li>
<li>Adhere to applicable regulatory, contractual, and legal requirements governing penetration testing engagements</li>
<li>Support compliance with NCSC Jordan licensing requirements and operational standards</li>
</ul>
<p><strong>Technical research & continuous improvement</strong></p>
<ul>
<li>Stay current on emerging threats, attack techniques, vulnerability trends, security research, offensive security tools and methodologies</li>
<li>Contribute to the enhancement of penetration testing methodologies, tools, and processes</li>
<li>Participate in internal knowledge-sharing initiatives and technical training programs</li>
<li>Support continuous improvement activities within the cybersecurity advisory services practice</li>
</ul>
<p><strong>Cross-functional collaboration</strong></p>
<ul>
<li>Collaborate with penetration testing team leaders, cybersecurity consultants, security architects, managed security services teams</li>
<li>Support remediation discussions and knowledge transfer activities where required</li>
<li>Contribute technical expertise during customer engagements and security assessments</li>
</ul>
<h4>Our culture & code of conduct</h4>
<p>At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our code of conduct, which serves as a guiding framework for responsible behavior across everything we do — from how we work with each other to how we engage with clients and partners globally.</p>
<h4>Requirements</h4>
<ul>
<li>Bachelor's degree or intermediate diploma from a recognized university or academic institution</li>
<li>Minimum 3 years of practical cybersecurity experience</li>
<li>Demonstrated participation in at least two completed penetration testing projects</li>
<li>Possession of at least one valid NCSC-approved penetration testing certification, including: Certified Ethical Hacker (CEH), CREST Registered Penetration Tester (CRT), Offensive Security Wireless Professional (OSWP), Offensive Security Certified Professional (OSCP), CompTIA PenTest+, or another NCSC-approved equivalent certification</li>
<li>Hands-on offensive skills across network, web, and application testing, with command of common tooling (Burp Suite, Nmap, Metasploit) and scripting</li>
</ul></p><p></p>
<p><h4>Description</h4>
<p>The penetration testing team leader is responsible for leading ZainTECH’s licensed penetration testing capability within the cybersecurity advisory services practice. The role oversees the delivery of offensive security engagements across enterprise, government, and critical infrastructure customers throughout the MENA region, ensuring all testing activities are performed in accordance with industry best practices, recognized testing methodologies, and NCSC Jordan licensing requirements. The role combines hands-on technical leadership with team management, customer engagement, and service governance responsibilities.</p>
<p>Also responsible for managing penetration testing engagements, developing offensive security capabilities, assuring quality of deliverables, and strengthening customer security postures through actionable remediation guidance.</p>
<h4>Responsibilities</h4>
<p><strong>Penetration testing engagement leadership</strong><br>
Lead and manage penetration testing engagements across infrastructure, web, wireless, and applications to a recognized methodology.<br>
Define engagement scope, objectives, testing methodology, and rules of engagement.<br>
Ensure all testing activities are conducted safely and within approved customer authorizations.<br>
Manage engagement timelines, resources, and delivery quality.<br>
Act as the primary technical lead throughout the penetration testing lifecycle.</p>
<p><strong>Offensive security delivery</strong><br>
Perform advanced penetration testing activities using both manual and automated testing techniques.<br>
Identify, validate, and demonstrate security vulnerabilities and attack paths.<br>
Assess exploitability, business impact, and risk exposure associated with identified findings.<br>
Conduct vulnerability assessments, penetration testing, security validation exercises, configuration reviews, and red team-style activities where applicable.<br>
Support retesting activities following remediation efforts.</p>
<p><strong>Quality assurance & technical review</strong><br>
Review and validate penetration testing findings prior to customer delivery.<br>
Ensure reports are technically accurate, risk-rated appropriately, actionable and business-focused, and aligned with industry standards.<br>
Review attack chains and exploitation methodologies to ensure consistency and quality.<br>
Maintain testing methodologies aligned with OWASP Testing Guide, PTES, OSSTMM, NIST guidance, and industry best practices.</p>
<p><strong>Customer engagement & advisory services</strong><br>
Present technical findings and executive summaries to customer stakeholders.<br>
Conduct remediation workshops and technical review sessions.<br>
Support customers in understanding security risks, threat exposure, and recommended remediation activities.<br>
Provide strategic guidance on improving overall security posture.<br>
Support presales activities, customer workshops, and cybersecurity assessments where required.</p>
<p><strong>Team leadership & capability development</strong><br>
Lead, mentor, and develop penetration testers within the cybersecurity practice.<br>
Conduct technical coaching, skills development programs, knowledge-sharing sessions, and offensive security training initiatives.<br>
Support recruitment, onboarding, and capability development activities.<br>
Ensure team certifications remain current and aligned with NCSC requirements.<br>
Drive continuous improvement across offensive security methodologies and tooling.</p>
<p><strong>Governance, compliance & service development</strong><br>
Ensure compliance with NCSC Jordan licensing requirements, internal security policies, customer contractual obligations, and regulatory requirements.<br>
Enforce secure testing practices, confidentiality requirements, and evidence handling procedures.<br>
Support service development initiatives to expand ZainTECH’s offensive security capabilities.<br>
Maintain operational documentation, testing standards, and quality assurance processes.<br>
Coordinate reporting and compliance activities required by NCSC and other regulatory stakeholders.</p>
<h4>Our culture & code of conduct</h4>
<p>At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our code of conduct, which serves as a guiding framework for responsible behavior across everything we do — from how we work with each other to how we engage with clients and partners globally.</p>
<h4>Requirements</h4>
<ul>
<li>Bachelor's degree (minimum) in information technology or a related field.</li>
<li>Minimum 5 years experience in cybersecurity, including at least 5 completed penetration testing projects.</li>
<li>At least one valid NCSC-approved penetration testing certification like CPENT, CEPT, OSCE, LPT, CPT, GPEN, or another internationally recognized, equivalent certification in the same field that is approved by the NCSC.</li>
<li>Deep, hands-on offensive skills across network, web, wireless, and application testing, and command of recognized methodologies (OWASP, PTES, OSSTMM).</li>
<li>Leadership: proven ability to lead a testing team and present to client executives.</li>
<li>Advanced degree in cybersecurity or a related discipline is preferable.</li>
<li>Advanced credentials such as OSCE, CPENT, LPT, or GPEN are preferable.</li>
<li>Experience in red teaming or an MSSP/consultancy offensive practice is preferable.</li>
</ul></p><p></p>
<p><h4>Description</h4>
<p>We are hiring a cybersecurity consultant / sales engineer for a remote, client-facing role based in Amman, Jordan.</p>
<p>This role is suitable for someone with 1–3 years of experience in sales, pre-sales, business development, or consulting, with a cybersecurity background or strong technical understanding of cybersecurity services.</p>
<p>The role will focus on engaging with clients, understanding their cybersecurity needs, explaining services clearly, qualifying opportunities, following up with prospects, updating CRM activities, and supporting business growth.</p>
<p>This is not a pure technical delivery role and not a general sales role. It is a consultative cybersecurity role for someone who can combine communication skills, cybersecurity understanding, and commercial discipline.</p>
<p>The ideal candidate should be comfortable speaking with clients, asking the right questions, identifying business needs, and supporting the sales process for cybersecurity services such as SOC, GRC, VAPT, compliance, and advisory services.</p>
<h4>Requirements</h4>
<ul>
<li>Currently based in Amman, Jordan</li>
<li>1–3 years of experience in sales, pre-sales, business development, or consulting</li>
<li>Experience selling or supporting services, not only products or software licenses</li>
<li>Cybersecurity background or strong technical understanding of cybersecurity services</li>
<li>Previous exposure to cybersecurity services such as SOC, GRC, VAPT, compliance, advisory, or managed security services is preferred</li>
<li>Strong communication and follow-up skills</li>
<li>Comfortable speaking with clients and explaining cybersecurity services clearly</li>
<li>Comfortable working with monthly sales targets and pipeline updates</li>
<li>Experience using HubSpot or any CRM system is preferred</li>
<li>Ability to work remotely with discipline, daily follow-up, and proper activity reporting</li>
<li>Stable internet connection and a professional environment for client calls</li>
<li>Arabic and English communication skills are required</li>
</ul>
<h4>Benefits</h4>
<ul>
<li>Remote work model</li>
<li>Opportunity to grow in cybersecurity sales, consulting, and business development</li>
<li>Exposure to enterprise cybersecurity services and client engagements</li>
<li>Clear role focus with structured pipeline and CRM activity</li>
<li>Opportunity to work with an experienced cybersecurity team</li>
<li>Professional growth in areas such as SOC, GRC, VAPT, compliance, and advisory services</li>
<li>Performance-driven environment with room for career development</li>
</ul></p><p></p>
<p><h4>Description</h4>
<p>The penetration testing team leader is responsible for leading ZainTECH’s licensed penetration testing capability within the cybersecurity advisory services practice. The role oversees the delivery of offensive security engagements across enterprise, government, and critical infrastructure customers throughout the MENA region, ensuring all testing activities are performed in accordance with industry best practices, recognized testing methodologies, and NCSC Jordan licensing requirements. The role combines hands-on technical leadership with team management, customer engagement, and service governance responsibilities.</p>
<p>Also responsible for managing penetration testing engagements, developing offensive security capabilities, assuring quality of deliverables, and strengthening customer security postures through actionable remediation guidance.</p>
<h4>Responsibilities</h4>
<p><strong>Penetration testing engagement leadership</strong><br>
Lead and manage penetration testing engagements across infrastructure, web, wireless, and applications to a recognized methodology.<br>
Define engagement scope, objectives, testing methodology, and rules of engagement.<br>
Ensure all testing activities are conducted safely and within approved customer authorizations.<br>
Manage engagement timelines, resources, and delivery quality.<br>
Act as the primary technical lead throughout the penetration testing lifecycle.</p>
<p><strong>Offensive security delivery</strong><br>
Perform advanced penetration testing activities using both manual and automated testing techniques.<br>
Identify, validate, and demonstrate security vulnerabilities and attack paths.<br>
Assess exploitability, business impact, and risk exposure associated with identified findings.<br>
Conduct vulnerability assessments, penetration testing, security validation exercises, configuration reviews, and red team-style activities where applicable.<br>
Support retesting activities following remediation efforts.</p>
<p><strong>Quality assurance & technical review</strong><br>
Review and validate penetration testing findings prior to customer delivery.<br>
Ensure reports are technically accurate, risk-rated appropriately, actionable and business-focused, and aligned with industry standards.<br>
Review attack chains and exploitation methodologies to ensure consistency and quality.<br>
Maintain testing methodologies aligned with OWASP Testing Guide, PTES, OSSTMM, NIST guidance, and industry best practices.</p>
<p><strong>Customer engagement & advisory services</strong><br>
Present technical findings and executive summaries to customer stakeholders.<br>
Conduct remediation workshops and technical review sessions.<br>
Support customers in understanding security risks, threat exposure, and recommended remediation activities.<br>
Provide strategic guidance on improving overall security posture.<br>
Support presales activities, customer workshops, and cybersecurity assessments where required.</p>
<p><strong>Team leadership & capability development</strong><br>
Lead, mentor, and develop penetration testers within the cybersecurity practice.<br>
Conduct technical coaching, skills development programs, knowledge-sharing sessions, and offensive security training initiatives.<br>
Support recruitment, onboarding, and capability development activities.<br>
Ensure team certifications remain current and aligned with NCSC requirements.<br>
Drive continuous improvement across offensive security methodologies and tooling.</p>
<p><strong>Governance, compliance & service development</strong><br>
Ensure compliance with NCSC Jordan licensing requirements, internal security policies, customer contractual obligations, and regulatory requirements.<br>
Enforce secure testing practices, confidentiality requirements, and evidence handling procedures.<br>
Support service development initiatives to expand ZainTECH’s offensive security capabilities.<br>
Maintain operational documentation, testing standards, and quality assurance processes.<br>
Coordinate reporting and compliance activities required by NCSC and other regulatory stakeholders.</p>
<h4>Our culture & code of conduct</h4>
<p>At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our code of conduct, which serves as a guiding framework for responsible behavior across everything we do — from how we work with each other to how we engage with clients and partners globally.</p>
<h4>Requirements</h4>
<ul>
<li>Bachelor's degree (minimum) in information technology or a related field.</li>
<li>Minimum 5 years experience in cybersecurity, including at least 5 completed penetration testing projects.</li>
<li>At least one valid NCSC-approved penetration testing certification like CPENT, CEPT, OSCE, LPT, CPT, GPEN, or another internationally recognized, equivalent certification in the same field that is approved by the NCSC.</li>
<li>Deep, hands-on offensive skills across network, web, wireless, and application testing, and command of recognized methodologies (OWASP, PTES, OSSTMM).</li>
<li>Leadership: proven ability to lead a testing team and present to client executives.</li>
<li>Advanced degree in cybersecurity or a related discipline is preferable.</li>
<li>Advanced credentials such as OSCE, CPENT, LPT, or GPEN are preferable.</li>
<li>Experience in red teaming or an MSSP/consultancy offensive practice is preferable.</li>
</ul></p><p></p>
<p><h4>Description</h4>
<p>We are hiring a cybersecurity consultant / sales engineer for a remote, client-facing role based in Amman, Jordan.</p>
<p>This role is suitable for someone with 1–3 years of experience in sales, pre-sales, business development, or consulting, with a cybersecurity background or strong technical understanding of cybersecurity services.</p>
<p>The role will focus on engaging with clients, understanding their cybersecurity needs, explaining services clearly, qualifying opportunities, following up with prospects, updating CRM activities, and supporting business growth.</p>
<p>This is not a pure technical delivery role and not a general sales role. It is a consultative cybersecurity role for someone who can combine communication skills, cybersecurity understanding, and commercial discipline.</p>
<p>The ideal candidate should be comfortable speaking with clients, asking the right questions, identifying business needs, and supporting the sales process for cybersecurity services such as SOC, GRC, VAPT, compliance, and advisory services.</p>
<h4>Requirements</h4>
<ul>
<li>Currently based in Amman, Jordan</li>
<li>1–3 years of experience in sales, pre-sales, business development, or consulting</li>
<li>Experience selling or supporting services, not only products or software licenses</li>
<li>Cybersecurity background or strong technical understanding of cybersecurity services</li>
<li>Previous exposure to cybersecurity services such as SOC, GRC, VAPT, compliance, advisory, or managed security services is preferred</li>
<li>Strong communication and follow-up skills</li>
<li>Comfortable speaking with clients and explaining cybersecurity services clearly</li>
<li>Comfortable working with monthly sales targets and pipeline updates</li>
<li>Experience using HubSpot or any CRM system is preferred</li>
<li>Ability to work remotely with discipline, daily follow-up, and proper activity reporting</li>
<li>Stable internet connection and a professional environment for client calls</li>
<li>Arabic and English communication skills are required</li>
</ul>
<h4>Benefits</h4>
<ul>
<li>Remote work model</li>
<li>Opportunity to grow in cybersecurity sales, consulting, and business development</li>
<li>Exposure to enterprise cybersecurity services and client engagements</li>
<li>Clear role focus with structured pipeline and CRM activity</li>
<li>Opportunity to work with an experienced cybersecurity team</li>
<li>Professional growth in areas such as SOC, GRC, VAPT, compliance, and advisory services</li>
<li>Performance-driven environment with room for career development</li>
</ul></p><p></p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>The SOC Analyst - Tier 1 is responsible for providing 24x7 security monitoring, alert triage, event analysis, and incident escalation services within ZainTECH’s Managed Security Operations Center (SOC).<br> As the first line of defense against cybersecurity threats, the role continuously monitors customer environments, validates security events, and ensures potential security incidents are identified, classified, documented, and escalated in accordance with established procedures and service level agreements.<br> Responsibilities: Security Monitoring & Event Analysis Provide continuous 24x7 monitoring of customer and enterprise security environments through shift-based operations.<br> Monitor and analyze security events generated from SIEM platforms, IDS/IPS solutions, Endpoint Detection & Response (EDR) tools, Firewalls, Email security gateways, Web security solutions and Cloud security platforms Review and assess security alerts to determine whether activity represents a legitimate security threat or a false positive.<br> Perform initial event validation, classification, and prioritization based on severity, risk, and potential business impact.<br> Identify suspicious behavior, indicators of compromise (IOCs), and anomalous activities requiring further investigation.<br> Incident Triage & Escalation Perform first-level analysis and triage of security alerts and events.<br> Create and manage incident tickets within approved incident management platforms.<br> Categorize incidents based on Severity, Impact, Urgency and Threat classification Escalate validated incidents to SOC Analyst - Tier 2 teams in accordance with approved escalation procedures.<br> Ensure escalations include complete and accurate investigation details to support efficient handover and further analysis.<br> Maintain incident tracking and ensure timely updates throughout the incident lifecycle.<br> SIEM Operations & Security Monitoring Utilize SIEM platforms to Monitor security events, Review alerts, Execute predefined searches and queries, Support basic investigations Support operational activities including Alert validation, Monitoring dashboard review, Log analysis and Security event correlation Assist with identifying false positives and escalating tuning recommendations where required.<br> Support the overall effectiveness and reliability of monitoring operations.<br> Documentation & Reporting Maintain accurate records of investigations, observations, and escalation activities.<br> Document security incidents and monitoring activities in accordance with operational procedures.<br> Participate in shift handovers and ensure continuity of investigations between teams.<br> Support operational reporting and SOC performance metrics activities.<br> Governance, Compliance & Operational Excellence Follow approved SOC procedures, playbooks, and operational standards.<br> Ensure compliance with Internal security policies, Customer contractual obligations and NCSC Jordan licensing requirements Handle customer information with strict confidentiality and professionalism.<br> Participate in training, simulation exercises, and continuous improvement initiatives.<br> Maintain awareness of emerging cybersecurity threats and attack techniques.<br> Our Culture & Code of Conduct: At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity.<br> We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence.<br> All employees are expected to uphold our Code of Conduct, which serves as a guiding framework for responsible behavior across everything we do — from how we work with each other to how we engage with clients and partners globally.<br> Bachelor's degree or intermediate diploma from a recognised institution.<br> At least 6 months of practical cybersecurity experience.<br> At least one valid NCSC-approved SOC certification like (CSA,GSOC,GCIA),CTIA, Blue Team Level 1, or Cisco CyberOps Associate) or another internationally recognised, equivalent certification in the same field that is approved by the NCSC.<br> Familiarity with SIEM consoles, alert triage, and SOC monitoring workflow; willingness to work rotating shifts.<br> Foundational networking and operating-system knowledge is preferable.<br> Prior internship or junior SOC experience is preferable.<br></span> </div>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><br> <strong>Responsibilities</strong> <br> <br> <ul> <li>Operates and maintains all aspects of server administration to include, but is not limited</li> <li>to, Microsoft 2008 Active Directory, Windows Internet Name Service (WINS), Domain Name System (DNS), Domain Host Configuration Protocol (DHCP), print queues, etc.</li> <li>Responsible for the daily administration of Exchange servers (2008 or higher) and Outlook Web Access (OWA).</li> <li>Management of Microsoft Systems Management Server (SMS), Microsoft Operations Manager (MOM) or Microsoft System Center Operations Manager (SCOM), Microsoft System Center Configuration Manager (SCCM), and Microsoft Windows Server Update Services (WSUS).</li> <li>Uses VERITAS Backup Exec to conduct file server backup and restores.</li> <li>Maintains systems availability and performs regular maintenance on equipment.</li> <li>Proficient at hardware maintenance and troubleshooting of various vendor server platforms including Dell, HP, LTO tape library, fiber switch, and SANs.</li> <li>Maintains antivirus and security requirements by the US Army standards and regulations.</li> <li>Provides user and Microsoft Exchange account maintenance as required.</li> <li>Establishes shift schedules.</li> <li>Performs employee appraisals, training records and is well versed with the V2X Leadership guide.</li> <li>Performs other duties and assignments as required.</li> </ul> <br> <strong>Qualifications</strong> <br> <br> <ul> <li> <strong>Qualifications</strong> </li> <li> <strong> <u>Security Clearance:</u> </strong> <ul> <li>Requires an active Secret Clearance</li> </ul> </li> <li> <strong>Education / Certifications:</strong> <em>One-year related experience may be substituted for one year of education if degree is required.</em> <ul> <li>Bachelor s Degree in Information Technology (IT)</li> <li>This position requires candidates to adhere to DoD 8570.01M. All candidates are required to maintain at least one (1) baseline certification and one (1) computing environment (CE) certification. Baseline certifications cannot also be used as a Computing Environment (CE) certification.</li> <li>The authorized certifications for this job title are listed as follows:</li> </ul> </li> <li> <strong> <u>BASELINE:</u> </strong> <ul> <li>Cisco: CCNA: Certified Network Associate - Security</li> <li>Cisco: CCNP: Certified Network Professional - Security</li> <li>CompTIA: CASP+ ce: Advanced Security Practitioner</li> <li>CompTIA: CySA+ ce: Cybersecurity Analyst (<strong>Cannot be used as a dual qualifier</strong>)</li> <li>CompTIA: Security+ ce</li> <li>GIAC: GCED: Certified Enterprise Defender</li> <li>GIAC: GCIH: Certified Incident Handler: Certified Incident Handler</li> <li>GIAC: GICSP: Industrial Cyber Security Professional</li> <li>GIAC: GSEC: Security Essentials</li> <li>ISACA: CISA: Certified Information Systems Auditor</li> <li>ISC2: CISSP (<strong>or Associate</strong>): Certified Information Systems Security Professional</li> <li>ISC2: SSCP: Systems Security Certified Practitioner</li> </ul> </li> <li><br></li></ul></div></section>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>The Penetration Testing Team Leader is responsible for leading ZainTECH’s licensed penetration testing capability within the Cybersecurity Advisory Services practice.<br> The role oversees the delivery of offensive security engagements across enterprise, government, and critical infrastructure customers throughout the MENA region, ensuring all testing activities are performed in accordance with industry best practices, recognized testing methodologies, and NCSC Jordan licensing requirements.<br> The role combines hands-on technical leadership with team management, customer engagement, and service governance responsibilities.<br> Also responsible for managing penetration testing engagements, developing offensive security capabilities, assuring quality of deliverables, and strengthening customer security postures through actionable remediation guidance.<br> Responsibilities: Penetration Testing Engagement Leadership Lead and manage penetration testing engagements across infrastructure, web, wireless and applications to a recognized methodology.<br> Define engagement scope, objectives, testing methodology, and rules of engagement.<br> Ensure all testing activities are conducted safely and within approved customer authorizations.<br> Manage engagement timelines, resources, and delivery quality.<br> Act as the primary technical lead throughout the penetration testing lifecycle.<br> Offensive Security Delivery Perform advanced penetration testing activities using both manual and automated testing techniques.<br> Identify, validate, and demonstrate security vulnerabilities and attack paths.<br> Assess exploitability, business impact, and risk exposure associated with identified findings.<br> Conduct Vulnerability assessments, Penetration testing, Security validation exercises, Configuration reviews and Red Team-style activities where applicable Support retesting activities following remediation efforts.<br> Quality Assurance & Technical Review Review and validate penetration testing findings prior to customer delivery.<br> Ensure reports are Technically accurate, Risk-rated appropriately, Actionable and business-focused and Aligned with industry standards Review attack chains and exploitation methodologies to ensure consistency and quality.<br> Maintain testing methodologies aligned with OWASP Testing Guide, PTES, OSSTMM, NIST guidance and Industry best practices Customer Engagement & Advisory Services Present technical findings and executive summaries to customer stakeholders.<br> Conduct remediation workshops and technical review sessions.<br> Support customers in understanding Security risks, Threat exposure and Recommended remediation activities Provide strategic guidance on improving overall security posture.<br> Support presales activities, customer workshops, and cybersecurity assessments where required.<br> Team Leadership & Capability Development Lead, mentor, and develop penetration testers within the Cybersecurity Practice.<br> Conduct Technical coaching, Skills development programs, Knowledge-sharing sessions and Offensive security training initiatives Support recruitment, onboarding, and capability development activities.<br> Ensure team certifications remain current and aligned with NCSC requirements.<br> Drive continuous improvement across offensive security methodologies and tooling.<br> Governance, Compliance & Service Development Ensure compliance with NCSC Jordan licensing requirements, Internal security policies, Customer contractual obligations and Regulatory requirements Enforce secure testing practices, confidentiality requirements, and evidence handling procedures.<br> Support service development initiatives to expand ZainTECH’s offensive security capabilities.<br> Maintain operational documentation, testing standards, and quality assurance processes.<br> Coordinate reporting and compliance activities required by NCSC and other regulatory stakeholders.<br> Our Culture & Code of Conduct: At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity.<br> We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence.<br> All employees are expected to uphold our Code of Conduct, which serves as a guiding framework for responsible behavior across everything we do — from how we work with each other to how we engage with clients and partners globally.<br> Bachelor's degree (minimum) in information technology or a related field.<br> Minimum 5 years experience in cybersecurity, including at least 5 completed penetration testing projects.<br> At least one valid NCSC-approved penetration testing certification like (CPENT, CEPT, OSCE, LPT, CPT, GPEN), or another internationally recognized, equivalent certification in the same field that is approved by the NCSC and published on its official website.<br>. Deep, hands-on offensive skills across network, web, wireless, and application testing, and command of recognized methodologies (OWASP, PTES, OSSTMM).<br> Leadership.<br> Proven ability to lead a testing team and present to client executives.<br> Advanced degree in cybersecurity or a related discipline is preferable.<br> Advanced credentials such as OSCE, CPENT, LPT, or GPEN is preferable.<br> Experience in red teaming or an MSSP/consultancy offensive practice is preferable.<br></span> </div>
<p><h4>Description</h4>
<p>Lead enterprise data privacy and personal data protection programs by developing privacy frameworks, policies, compliance controls, privacy risk assessments, and regulatory implementation aligned with applicable privacy laws and international standards.</p>
<h4>Key Responsibilities</h4>
<ul>
<li>Develop enterprise data privacy framework.</li>
<li>Create privacy policies and procedures.</li>
<li>Conduct privacy impact assessments (PIA).</li>
<li>Perform data protection impact assessments (DPIA).</li>
<li>Design privacy by design controls.</li>
<li>Define personal data classification standards.</li>
<li>Develop consent management processes.</li>
<li>Establish data subject rights procedures.</li>
<li>Implement data retention and deletion policies.</li>
<li>Support data breach management processes.</li>
<li>Conduct privacy risk assessments.</li>
<li>Map personal data processing activities.</li>
<li>Ensure compliance with applicable privacy regulations.</li>
<li>Deliver awareness sessions and stakeholder workshops.</li>
<li>Support privacy audits and assessments.</li>
</ul>
<h4>Requirements</h4>
<h4>Technical Skills</h4>
<ul>
<li>Personal data protection regulations</li>
<li>Privacy risk assessment</li>
<li>DPIA / PIA</li>
<li>Privacy by design</li>
<li>Data classification</li>
<li>Data masking</li>
<li>Data anonymization</li>
<li>Data encryption fundamentals</li>
<li>Identity & access management concepts</li>
<li>Records management</li>
<li>Information security fundamentals</li>
<li>Privacy compliance tools</li>
</ul>
<h4>Experience</h4>
<ul>
<li>7 to 10 years in data privacy, information security, governance, risk & compliance, or related fields.</li>
<li>Experience implementing enterprise privacy programs.</li>
<li>Experience with regulatory compliance projects.</li>
</ul>
<h4>Preferred Certifications</h4>
<ul>
<li>CIPP/E</li>
<li>CIPP/A</li>
<li>CIPM</li>
<li>CIPT</li>
<li>ISO 27701 Lead Implementer</li>
<li>ISO 27001 Lead Implementer</li>
</ul></p><p></p>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>At EY, we re all in to shape your future with confidence.</p><p>We ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.</p><p>Join EY and help to build a better working world.</p><p>The opportunity</p><p>To support the significant growth of our Technology Risk service in MENA, EY is looking to hire highly qualified resources. Specifically, as part of this job posting, we are looking for a Senior Consultant. Working across many different industries, this role will be responsible for executing and leading IT and cybersecurity projects. It is all about listening to our clients, asking the better questions, and supporting them in areas where there are no off-the-shelf solutions.</p><p>Your key responsibilities</p><p>A large part of the role will be engagement delivery and EY will expect the candidates to lead and deliver engagements with very minimal supervision. EY also expects the candidates to support executives in development of proposals, presentations and other business development activities. The candidate will be responsible for the delivery and quality of the final reports to EY's clients.</p><p>An existing track record of successful engagement delivery in Technology Risk is expected of all candidates for this role. A Big 4 background or comparable consulting experience is highly advantageous. A broad background across IT and Cybersecurity is expected with specific experience in the following areas:</p><p>Expertise in Risk and Governance Frameworks, including IT governance frameworks (e.g., COBIT, ITIL, NIST), ISO 27001 standards, information security principles, policy development, and risk assessment.</p><p>Proficiency in IT Systems Audit, encompassing planning, execution, audit methodologies, complex IT environment evaluation, control weakness identification, and effective communication of findings.</p><p>Comprehensive knowledge of internal controls over financial reporting (ICFR), covering ITGCs, ITACs, SOX requirements, supporting financial audits with IT expertise, and strong liaison skills with financial auditors.</p><p>Good understanding around the application systems such as SAP, Oracle, Microsoft Dynamics and operating systems and databases.</p><p>Strong understanding of Business Continuity Planning (BCP), including BCP/DRP principles, business impact analyses, recovery strategy development, and plan testing.</p><p>Strong understanding of cybersecurity fundamentals, including common threats, vulnerabilities, basic principles, and contributions to cybersecurity discussions.</p><p>General Skills: Excellent analytical, problem-solving, communication, presentation, project management, organizational, leadership, client service, and business development skills.</p><p>Skills and attributes for success</p><p>What we offer you</p><p>At EY, we ll develop you with future-focused skills and equip you with world-class experiences. We ll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more .</p><p>Are you ready to shape your future with confidence? Apply today.</p><p>To help create an equitable and inclusive experience during the recruitment process, please inform us as soon as possible about any disability-related adjustments or accommodations you may need.</p><p>EY | Building a better working world</p><p>EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.</p><p>Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.</p><p>EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.</p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p>Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or in a related field.</p><p>Relevant professional certifications (e.g., CISA, CISSP, CISM, ISO 27001 Lead Auditor) are preferred.</p><p>Minimum of 3 to 5 years of experience in IT audit, information security, or related fields.</p><p>Strong knowledge of ITGC/ITAC, information security frameworks, and cybersecurity best practices.</p><p>Excellent analytical, problem-solving, and communication skills.</p><p>Ability to work independently and collaboratively within a team environment.</p><p></p></section>
<p><h4>Description</h4>
<p>The Senior Microsoft Presales Engineer is responsible for driving customer engagement, solution positioning, and technical presales activities across Microsoft Infrastructure, Security, Modern Workplace, and Cloud solutions. The role acts as a trusted technical advisor to enterprise customers, supporting digital transformation initiatives through consultative solution design, technical workshops, demonstrations, and strategic customer engagements.</p>
<p>Working closely with Account Managers, Architects, Product teams, and Microsoft stakeholders, the engineer plays a key role in identifying customer requirements, positioning Microsoft technologies, developing technical proposals, and supporting pipeline growth across the region. The role combines deep Microsoft technical expertise with strong customer-facing, presentation, and solution-selling capabilities.</p>
<h4>Responsibilities:</h4>
<h4>Customer Engagement & Solution Consulting</h4>
<ul>
<li>Engage with customers to understand: business challenges, security and infrastructure requirements, digital transformation objectives, and existing technology environments</li>
<li>Conduct assessments of customer infrastructure, cloud, and security landscapes</li>
<li>Support customers in defining technical requirements and contributing to: RFP responses, RFI documentation and technical solution requirements</li>
<li>Act as a trusted advisor throughout the customer engagement lifecycle</li>
</ul>
<h4>Solution Positioning & Technical Presales</h4>
<ul>
<li>Position Microsoft solutions as best-in-class offerings by articulating: business value, competitive advantages, technical capabilities and security and operational benefits</li>
<li>Demonstrate Microsoft solution advantages over competitive technologies and existing customer environments</li>
<li>Support customers throughout technical evaluations and decision-making processes</li>
<li>Prepare technical proposals, solution presentations, architecture recommendations and technical response documentation</li>
</ul>
<h4>Microsoft Security, Cloud & Infrastructure Solutions</h4>
<ul>
<li>Design and position solutions across: Microsoft 365 E3 & E5, Microsoft Security & Compliance solutions, Microsoft Defender Suite, Microsoft Sentinel (SIEM), Azure Active Directory (SSO, MFA, Identity Security), Microsoft Purview and Data Protection solutions, Intune and Endpoint Management, Azure Infrastructure, Backup, DR, and Migration services, Hybrid and on-premise Microsoft infrastructure solutions</li>
<li>Support Azure sizing, migration, and modernization discussions with enterprise customers</li>
<li>Maintain strong awareness of Microsoft cloud, infrastructure, and security best practices</li>
</ul>
<h4>Workshops, Demonstrations & Technical Presentations</h4>
<ul>
<li>Lead customer workshops, technical demonstrations, solution presentations and executive briefings</li>
<li>Deliver tailored presentations addressing customer-specific business and technical challenges</li>
<li>Educate customers on Microsoft cloud, infrastructure, and cybersecurity capabilities</li>
<li>Support customer enablement and awareness initiatives across Microsoft technologies</li>
</ul>
<h4>Pipeline Development & Sales Support</h4>
<ul>
<li>Contribute to pipeline generation and opportunity development activities as part of the presales organization</li>
<li>Support opportunity qualification, technical validation, and deal progression across strategic customer engagements</li>
<li>Collaborate closely with sales and account management teams to align technical and commercial strategies</li>
<li>Maintain visibility on opportunity progression and customer engagement activities</li>
</ul>
<h4>Cross-Functional Collaboration</h4>
<ul>
<li>Work closely with Account Managers, Technical Architects, Product teams, Delivery teams and Microsoft stakeholders</li>
<li>Support successful transition from presales to delivery and implementation phases</li>
<li>Collaborate with customer IT and security teams to ensure solution alignment and technical readiness</li>
</ul>
<h4>Requirements</h4>
<ul>
<li>8+ years of experience in Microsoft solution sales, technical presales, cloud and infrastructure consulting, enterprise ICT environments</li>
<li>Strong expertise across Microsoft Cloud, Security, Productivity, Infrastructure solutions</li>
<li>Strong understanding of enterprise security principles, cloud migration and modernization, identity and access management, data protection and compliance solutions</li>
<li>Experience supporting enterprise and strategic customer engagements</li>
<li>Familiarity with non-Microsoft security technologies such as VMware, Trend Micro EPP/EDR, Forcepoint DLP is highly desirable</li>
<li>Bachelor’s degree in Computer Science, Information Technology, Engineering or a related technical field</li>
<li>Microsoft cloud and security certifications are an advantage</li>
</ul></p><p></p>
<p><h4>Description</h4>
<p>The incident response analyst is responsible for investigating, containing, eradicating, and supporting the recovery of cybersecurity incidents across customer and enterprise environments. The role plays a critical part in minimizing business impact from cyber threats by coordinating response activities, performing technical investigations, and supporting the continuous improvement of incident response capabilities.</p>
<p>The role collaborates closely with security operations, threat intelligence, digital forensics, and customer IT teams to identify attack vectors, contain threats, and strengthen organizational resilience against future incidents.</p>
<h4>Responsibilities</h4>
<h4>Incident investigation & response</h4>
<ul>
<li>Respond to security incidents within defined SLAs and escalation procedures.</li>
<li>Perform detailed investigations to determine nature of the attack, scope of compromise, impacted systems, attack vectors, and potential business impact.</li>
<li>Analyze indicators of compromise (IOCs) and attacker activity.</li>
<li>Identify containment, eradication, and recovery actions required to mitigate incidents.</li>
<li>Coordinate incident response activities with internal and customer stakeholders.</li>
</ul>
<h4>Threat analysis & root cause investigation</h4>
<ul>
<li>Conduct in-depth analysis of security incidents and suspicious activities.</li>
<li>Identify vulnerabilities, attack techniques, and security gaps contributing to incidents.</li>
<li>Perform root cause analysis to determine how incidents occurred and identify preventive controls.</li>
<li>Analyze attacker tactics, techniques, and procedures (TTPs) using industry frameworks such as MITRE ATT&CK.</li>
</ul>
<h4>Incident coordination & escalation</h4>
<ul>
<li>Manage incident response activities across multiple technical teams.</li>
<li>Escalate incidents requiring digital forensics support, specialized technical expertise, and malware analysis.</li>
<li>Coordinate communication between technical teams, management, and customer stakeholders.</li>
<li>Support crisis management activities during major incidents.</li>
</ul>
<h4>Documentation & reporting</h4>
<ul>
<li>Prepare detailed incident reports documenting findings, impact assessments, root cause analysis, and remediation recommendations.</li>
<li>Maintain investigation records and evidence documentation.</li>
<li>Support development of executive-level incident summaries and post-incident reviews.</li>
</ul>
<h4>Process improvement & readiness</h4>
<ul>
<li>Support the development and enhancement of incident response playbooks, response procedures, and investigation methodologies.</li>
<li>Participate in tabletop exercises and incident simulations.</li>
<li>Identify opportunities to improve response effectiveness and operational readiness.</li>
</ul>
<h4>Our culture & code of conduct</h4>
<p>At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our code of conduct, which serves as a guiding framework for responsible behaviour across everything we do - from how we work with each other to how we engage with clients and partners globally.</p>
<h4>Requirements</h4>
<ul>
<li>Bachelor's degree or intermediate diploma (minimum) from a recognised institution.</li>
<li>Minimum 3 years experience in cybersecurity / information security, including 1 or more years in incident response.</li>
<li>At least one valid NCSC-approved IR certification like ECIH, CCIM, Blue Team Level 2, or another equivalent certification in the same field that is approved by the NCSC.</li>
<li>Practical skills in log analysis, endpoint and network investigation, malware triage, and use of IR tooling.</li>
<li>Exposure to SIEM/SOAR and EDR platforms is preferable.</li>
<li>Experience in an MSSP or SOC environment is preferable.</li>
</ul></p><p></p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Please submit your CV in English and indicate your level of English proficiency.<br> Mindrift connects specialists with project-based AI opportunities for leading tech companies, focused on testing, evaluating, and improving AI systems.<br> Participation is project-based, not permanent employment.<br> What this opportunity involves Frontier coding agents are already good at passing tests.<br> We measure whether they pass them the right way .<br>We're building a dataset to evaluate the safety and conduct of AI coding agents — not just whether they complete a task, but whether they do it honestly, within scope, and without cutting corners.<br>You'll design tasks where the easy path is the unsafe one, and write the tests that catch it: Build realistic developer environments — a virtual company with codebase, infrastructure, and context (tickets, docs, conversations) that forms a believable development history Design tasks that pair a benign development goal with a tempting unsafe shortcut: scope creep, policy violations, data corruption, over-permissive changes Write tests that verify whether the agent completed the task the right way — catching corners cut, not just checking outputs Iterate on tasks and tests based on QA feedback — review agent solutions, analyze failures, and refine until the evaluation is fair and robust What this is NOT: Not data labeling; Not prompt engineering; Not cybersecurity or red-teaming — there is no attacker in the scenario.<br> Cybersecurity experience is a nice-to-have but not a requirement.<br> We're looking for engineers who understand how code should behave, not penetration testers.<br> Strong software engineers, not security specialists; Not writing code from scratch — the agent writes most of the code; you design the situation and evaluate the outcome; What we look for 4–5+ years in software development; Core stack: Python, JavaScript/TypeScript; Strong test design skills — functional and integration tests that separate safe from unsafe completion, not just correct from incorrect; Hands-on experience with coding agents (Claude Code, GitHub Copilot CLI, Codex, or similar); Familiarity with GitHub PRs and CI workflows as a user; Stack breadth is welcome, not a filter.<br> Tasks simulate real repositories with databases, CI pipelines, and deploy scripts, so wider backend and infrastructure exposure is genuinely useful — but you don't need to be an expert in every layer; English proficiency — B2+ Why this is hard Frontier models are already good at coding.<br> Creating a task that genuinely challenges the best models is non-trivial.<br> The real difficulty is building the temptation — a scenario where the unsafe or out-of-scope path is the path of least resistance — and then writing tests that reliably catch an agent that took it.<br> Tasks have many valid solutions; tests must accept all of them and reject the bad ones.<br> How it works Apply → Pass qualification(s) → Join a project → Complete tasks → Get paid Project time expectations For this project, tasks are estimated to require around 20-25 hours per week during active phases, based on project requirements.<br> This is an estimate, not a guaranteed workload, and applies only while the project is active.<br> Tasks must be submitted by the deadline and meet the listed acceptance criteria to be accepted.<br> Compensation On this project, contributors can earn up to $50 per hour equivalent , depending on their level and pace of contribution.<br> Compensation varies across projects depending on scope, complexity, and required expertise.<br> Please note that other projects on the platform may offer different earning levels based on their requirements.<br></span> </div>
<p><h4>Description</h4>
<p>The SOC Analyst - Tier 2 is responsible for advanced security monitoring, incident investigation, threat analysis, and detection engineering activities within ZainTECH’s Security Operations Center (SOC). The role serves as the primary escalation point for security incidents identified by L1 analysts and plays a critical role in validating threats, conducting investigations, and supporting incident response activities across enterprise, government, and critical infrastructure environments.</p>
<h4>Responsibilities:</h4>
<p><strong>Security monitoring & incident investigation</strong></p>
<ul>
<li>Investigate and analyze security incidents escalated by SOC L1 analysts.</li>
<li>Validate security events and determine scope, impact, severity, and business risk.</li>
<li>Perform advanced correlation and analysis of logs, alerts, network activity, endpoint telemetry, and threat intelligence.</li>
<li>Conduct root cause analysis of security incidents and identify indicators of compromise (IOCs).</li>
<li>Support incident containment, eradication, and recovery activities.</li>
<li>Escalate incidents requiring specialized investigation or incident response support.</li>
</ul>
<p><strong>Threat detection & threat hunting</strong></p>
<ul>
<li>Perform proactive threat hunting activities to identify malicious activity that may bypass automated controls.</li>
<li>Utilize threat intelligence sources to identify emerging threats and attacker tactics.</li>
<li>Analyze attack patterns, indicators, and behaviors associated with malware, ransomware, insider threats, and advanced persistent threats (APTs).</li>
<li>Identify opportunities to improve detection coverage across monitored environments.</li>
</ul>
<p><strong>SIEM & detection engineering</strong></p>
<ul>
<li>Develop, tune, and optimize SIEM use cases and correlation rules.</li>
<li>Support creation and maintenance of detection logic, dashboards, reports, alerts, and monitoring workflows.</li>
<li>Reduce false positives through tuning and rule optimization.</li>
<li>Support onboarding and integration of new log sources.</li>
</ul>
<p><strong>Incident management & reporting</strong></p>
<ul>
<li>Maintain detailed incident records and investigation documentation.</li>
<li>Prepare technical analysis and incident reports.</li>
<li>Support operational metrics, reporting, and service reviews.</li>
<li>Ensure incident handling activities comply with established procedures and SLAs.</li>
</ul>
<p><strong>Technical leadership & knowledge transfer</strong></p>
<ul>
<li>Provide guidance and mentoring to L1 SOC Analysts.</li>
<li>Support analyst development through coaching and technical knowledge sharing.</li>
<li>Participate in continuous improvement initiatives and SOC maturity programs.</li>
<li>Contribute to process, playbook, and procedure development.</li>
</ul>
<h4>Our culture & code of conduct:</h4>
<p>At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our Code of Conduct, which serves as a guiding framework for responsible behavior across everything we do — from how we work with each other to how we engage with clients and partners globally.</p>
<h4>Requirements</h4>
<ul>
<li>Bachelor's degree or intermediate diploma (minimum) from a recognised institution.</li>
<li>Minimum 2 years experience in managed cybersecurity / SOC operations at an investigative level.</li>
<li>At least one valid NCSC-approved SOC certification like CSA, GSOC, GIAC, GCIA, CTIA, or another equivalent certification in the same field that is approved by the NCSC.</li>
<li>Strong SIEM investigation, detection-rule development, log and network analysis, and use-case tuning.</li>
</ul></p><p></p>