Talent.com
Security Operations Officer – Security Assessment & Assurance Specialist
Security Operations Officer – Security Assessment & Assurance SpecialistBlack & Grey HR • Doha, DA, qa
Security Operations Officer – Security Assessment & Assurance Specialist

Security Operations Officer – Security Assessment & Assurance Specialist

Black & Grey HR • Doha, DA, qa
2 منذ أيام
نوع الوظيفة
  • Quick Apply
الوصف الوظيفي

Job Description

Black & Grey HR is recruiting for an established technology solutions and services provider in Doha, Qatar. Our client is seeking an experienced Security Operations Officer – Security Assessment & Assurance Specialist who will play a critical role in evaluating, strengthening, and assuring the security posture across IT, OT, and cloud environments. This role focuses on configuration assessments, vulnerability management, penetration testing, and security assurance programs—ensuring the organization maintains strong cyber resilience during both mega events and routine operations. Arabic proficiency is mandatory.

Key Responsibilities

Security Configuration Assessment (IT & OT)

  • Conduct detailed configuration assessments of IT and OT systems based on CIS Benchmarks, NIST guidelines, and internal security standards.
  • Review firewall rulesets to ensure least privilege, segmentation, and policy compliance.
  • Assess network devices (routers, switches, load balancers, SASE / SSE gateways) for secure configurations.
  • Validate OS hardening, patch compliance, and baseline configurations across servers and endpoints.
  • Evaluate Network Access Control (NAC) deployments for coverage, enforcement, and effectiveness.
  • Review SASE / SSE implementations to ensure secure access, data protection, and consistent policy application.
  • Recommend hardening measures to reduce attack surface and enhance operational resilience.

Technical Risk Identification

  • Identify security risks across IT, OT, and cloud assets through technical assessments and analytics.
  • Conduct and coordinate penetration testing for cloud workloads, web applications, APIs, and internal systems.
  • Perform security assessments of Kubernetes and containerized environments (GKE, AKS).
  • Map findings from vulnerability scans, pen tests, and configuration reviews to operational and business impacts.
  • Execute red team and adversary simulation exercises to evaluate detection and response maturity.
  • Contribute to risk documentation, validation, and reporting for leadership visibility.
  • Vulnerability Remediation Management

  • Track and manage vulnerabilities across IT, OT, and cloud environments.
  • Prioritize remediation based on risk severity, exploitability, and business impact.
  • Collaborate with infrastructure, application, and OT teams to ensure timely remediation and validation.
  • Maintain dashboards and executive reports showing vulnerability trends and remediation KPIs.
  • Security Assurance

  • Develop, implement, and oversee security assurance programs across IT, OT, and cloud domains.
  • Track and report KPIs and KRIs to measure program maturity and effectiveness.
  • Conduct periodic control reviews and baseline validations to ensure adherence to risk mitigation strategies.
  • Identify gaps or deviations and drive corrective actions in coordination with relevant stakeholders.
  • Requirements

    Qualifications & Experience

  • 8+ years of hands-on experience in security assessment, penetration testing, or security assurance.
  • Bilingual proficiency in Arabic (Mandatory).
  • Strong background in manual and automated penetration testing, including red team / adversary simulations.
  • Deep understanding of configuration benchmarks, security hardening, and risk assessment methodologies.
  • Technical expertise in GCP and Azure environments.
  • Experience with firewall rule auditing, network device configuration assessments, OS hardening, and OT / ICS system assessments.
  • Proficiency with industry-standard tools : Burp Suite, Metasploit, Nmap, Nessus, Qualys, Wireshark.
  • Experience with cloud-native security platforms (GCP Security Command Center, Azure Defender, Prisma Cloud / CNAPP).
  • Familiar with regulatory frameworks : ISO 27001, NIST CSF, IEC 62443, Qatar NIA, QCSF.
  • Strong analytical, communication, and reporting skills.
  • Education

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field (or equivalent experience).
  • Certifications (Preferred)

  • CISSP
  • OSCP, OSEP, OSCE
  • CRISC
  • CCSK
  • CRTE
  • Cloud Certifications (GCP Professional Cloud Security Engineer, Azure Security Engineer Associate)
  • GICSP (preferred for OT / ICS)
  • Required Skillset

  • In-depth knowledge of security assurance frameworks and vulnerability management processes.
  • Expertise in firewall auditing, network segmentation, and Zero Trust architecture.
  • Strong experience in manual / automated penetration testing and red team exercises.
  • Proficiency in cloud security controls, Kubernetes / container security, and IaC security validation.
  • Strong understanding of OT / ICS security principles and architecture.
  • Experience with threat modeling, control validation, and risk reporting.
  • Ability to translate complex technical findings into clear business risk language.
  • Excellent reporting and presentation skills for both technical and executive audiences.
  • Benefits

  • Competitive Salary + Benefits Package
  • Requirements

    Key Responsibilities Security Configuration Assessment (IT & OT) - Conduct detailed configuration assessments of IT and OT systems based on CIS Benchmarks, NIST guidelines, and internal security standards. - Review firewall rulesets to ensure least privilege, segmentation, and policy compliance. - Assess network devices (routers, switches, load balancers, SASE / SSE gateways) for secure configurations. - Validate OS hardening, patch compliance, and baseline configurations across servers and endpoints. - Evaluate Network Access Control (NAC) deployments for coverage, enforcement, and effectiveness. - Review SASE / SSE implementations to ensure secure access, data protection, and consistent policy application. - Recommend hardening measures to reduce attack surface and enhance operational resilience. Technical Risk Identification - Identify security risks across IT, OT, and cloud assets through technical assessments and analytics. - Conduct and coordinate penetration testing for cloud workloads, web applications, APIs, and internal systems. - Perform security assessments of Kubernetes and containerized environments (GKE, AKS). - Map findings from vulnerability scans, pen tests, and configuration reviews to operational and business impacts. - Execute red team and adversary simulation exercises to evaluate detection and response maturity. - Contribute to risk documentation, validation, and reporting for leadership visibility. Vulnerability Remediation Management - Track and manage vulnerabilities across IT, OT, and cloud environments. - Prioritize remediation based on risk severity, exploitability, and business impact. - Collaborate with infrastructure, application, and OT teams to ensure timely remediation and validation. - Maintain dashboards and executive reports showing vulnerability trends and remediation KPIs. Security Assurance - Develop, implement, and oversee security assurance programs across IT, OT, and cloud domains. - Track and report KPIs and KRIs to measure program maturity and effectiveness. - Conduct periodic control reviews and baseline validations to ensure adherence to risk mitigation strategies. - Identify gaps or deviations and drive corrective actions in coordination with relevant stakeholders.

    إنشاء تنبيه وظيفي لهذا البحث

    Security Officer • Doha, DA, qa

    الوظائف ذات الصلة
    SAFETY ANALYST

    SAFETY ANALYST

    Qatar Energy • Doha, Doha, Qatar
    Execute corporate level HSE Incident Investigation & Learning activities including all.Ensures that QatarEnergy HSE Incident Investigation & Learning is in line with QatarEnergy's.HSE Policies, Sen...أظهر المزيد
    آخر تحديث: 16 منذ ساعات • عَرْضٌ مُرَوَّجٌ له • جديد!
    Offshore Operations Excellence Leader | Barrier & Safety

    Offshore Operations Excellence Leader | Barrier & Safety

    Qatar Energy LNG • Doha, Ad-Dawhah, Qatar
    A leading energy company in Doha is seeking an experienced professional to develop and implement Operations Excellence programs, ensuring continuous improvement and sustainability.Ideal candidates ...أظهر المزيد
    آخر تحديث: 16 منذ ساعات • عَرْضٌ مُرَوَّجٌ له • جديد!
    Strategic Head of Information Security & SOC

    Strategic Head of Information Security & SOC

    Starlink Qatar • Doha, Ad-Dawhah, Qatar
    A leading technology firm is seeking a Head of Information Security to lead the Security Operations Center (SOC) in Doha, Qatar. This role involves developing and optimizing security frameworks and ...أظهر المزيد
    آخر تحديث: 16 منذ ساعات • عَرْضٌ مُرَوَّجٌ له • جديد!
    Security Operations Officer – Data Security Specialist

    Security Operations Officer – Data Security Specialist

    Black & Grey HR • Doha, DA, qa
    Quick Apply
    Black & Grey HR is recruiting for an established technology solutions and services provider in Doha, Qatar.Our client is seeking an experienced. Security Operations Officer – Data Security Speci...أظهر المزيد
    آخر تحديث: 2 منذ أيام
    Security Operations Officer - IAM Specialist

    Security Operations Officer - IAM Specialist

    Black & Grey HR • Doha, DA, qa
    Quick Apply
    Black & Grey HR is recruiting for an established technology solutions and services provider in Doha, Qatar.Our client is seeking an experienced Security Operations Officer – IAM Specialist who ...أظهر المزيد
    آخر تحديث: 2 منذ أيام
    Security Operations Lead — Incident Response & Threat Hunting

    Security Operations Lead — Incident Response & Threat Hunting

    Starlink Qatar • Doha, Ad-Dawhah, Qatar
    A leading technology firm is seeking a Security Operations Officer in Doha.The role focuses on enhancing security operations, monitoring alerts, and conducting threat analysis.Candidates should hav...أظهر المزيد
    آخر تحديث: 2 منذ أيام • عَرْضٌ مُرَوَّجٌ له
    Security Ops Engineer - Cloud, NAC & SOC Expert

    Security Ops Engineer - Cloud, NAC & SOC Expert

    BSL • Doha, Ad-Dawhah, Qatar
    A cybersecurity firm in Qatar is seeking a Security Operations Specialist to oversee their cybersecurity operations.This role involves implementing security controls, managing alerts from the SOC, ...أظهر المزيد
    آخر تحديث: 8 منذ أيام • عَرْضٌ مُرَوَّجٌ له
    Cyber Security Manager

    Cyber Security Manager

    KPMG in Qatar • Doha, Ad-Dawhah, Qatar
    KPMG has had a presence in Qatar for nearly 47 years.We opened for business in Qatar in 1977 and are now one of the largest and most prestigious professional services firms in the country.KPMG in Q...أظهر المزيد
    آخر تحديث: منذ يوم واحد • عَرْضٌ مُرَوَّجٌ له
    Cyber Security Engineer

    Cyber Security Engineer

    Groupe GISMIC • Doha, Doha, Qatar
    QUALIFICATIONS & EXPERIENCE REQUIRED : .Qualification : Engineering degree in Electrical and Electronic / Instrument and control engineering or similar. Experience : 10-15 years’ experience as ICSS and P...أظهر المزيد
    آخر تحديث: 16 منذ ساعات • عَرْضٌ مُرَوَّجٌ له • جديد!
    Security Operations Officer

    Security Operations Officer

    Starlink Qatar • Doha, Ad-Dawhah, Qatar
    We are seeking a highly skilled Security Operations Officer to join our dynamic team.In this critical role, you will execute and enhance our security operations, focusing on protecting our informat...أظهر المزيد
    آخر تحديث: 2 منذ أيام • عَرْضٌ مُرَوَّجٌ له
    Elite SOC Analyst — Threat Detection & Incident Response

    Elite SOC Analyst — Threat Detection & Incident Response

    BSL • Doha, Ad-Dawhah, Qatar
    A cybersecurity firm in Doha is seeking a Security Operations Center Analyst to monitor systems and investigate security incidents. The ideal candidate has 3–5 years of experience in alert handling ...أظهر المزيد
    آخر تحديث: 3 منذ أيام • عَرْضٌ مُرَوَّجٌ له
    SOC Analyst

    SOC Analyst

    BSL • Doha, Ad-Dawhah, Qatar
    Security Operations Center Analyst.Get notified about new Security Operations Center Analyst jobs in.Continuously monitor systems, networks, and logs for threats using SIEM tools.Investigate, conta...أظهر المزيد
    آخر تحديث: 3 منذ أيام • عَرْضٌ مُرَوَّجٌ له
    Operations Excellence Lead

    Operations Excellence Lead

    Qatargas • Doha, Ad-Dawhah, Qatar
    Develop and ensure consistent implementation of QatarEnergy LNG Operations Excellence (OE) programs in all assigned areas. Monitor and evaluate OE programs to ensure their sustainability and continu...أظهر المزيد
    آخر تحديث: 16 منذ ساعات • عَرْضٌ مُرَوَّجٌ له • جديد!
    Head of Information Security (Network Security)

    Head of Information Security (Network Security)

    Starlink Qatar • Doha, Ad-Dawhah, Qatar
    Head of Information Security (Network Security).Head of Information Security (Network Security).We are seeking a visionary Head of Information Security to lead our network security strategy, archit...أظهر المزيد
    آخر تحديث: منذ يوم واحد • عَرْضٌ مُرَوَّجٌ له
    Operations Excellence Lead : Safety & Process Optimization

    Operations Excellence Lead : Safety & Process Optimization

    Qatargas • Doha, Ad-Dawhah, Qatar
    A leading energy company in Doha is seeking an Operations Excellence Lead to develop and implement industry-leading Operational Excellence programs. The ideal candidate will ensure the sustainabilit...أظهر المزيد
    آخر تحديث: 16 منذ ساعات • عَرْضٌ مُرَوَّجٌ له • جديد!
    Head of Network Security & Strategy

    Head of Network Security & Strategy

    Starlink Qatar • Doha, Ad-Dawhah, Qatar
    A leading technology firm in Doha is seeking a visionary Head of Information Security to lead their network security strategy and operations. The role involves developing strong security frameworks ...أظهر المزيد
    آخر تحديث: منذ يوم واحد • عَرْضٌ مُرَوَّجٌ له
    Lead of Ops and Eng Applications

    Lead of Ops and Eng Applications

    Qatar Energy LNG • Doha, Doha, Qatar
    Lead OPS and ENG Applications team to achieve desired outcomes, resolve complex problems, work under broad direction and is fully accountable for meeting allocated objectives and establishes milest...أظهر المزيد
    آخر تحديث: 16 منذ ساعات • عَرْضٌ مُرَوَّجٌ له • جديد!
    Head of Information Security (Security Operations)

    Head of Information Security (Security Operations)

    Starlink Qatar • Doha, Ad-Dawhah, Qatar
    Head of Information Security (Security Operations).We are seeking a strategic and experienced Head of Information Security to lead our Security Operations Center (SOC). In this critical role, you wi...أظهر المزيد
    آخر تحديث: 16 منذ ساعات • عَرْضٌ مُرَوَّجٌ له • جديد!