Cyber Security Specialist
Skills
About This Role
Job Description Under the coordination of the Cyber Security Manager, the Cyber Security Specialist is responsible to validate the engineering, implementation and operational security controls that protect GCGRA business applications and enterprise IT assets. This role places a strong emphasis on cyber defence operations, vulnerability management, security assessment, incident response and threat hunting, ensuring a resilient and proactive security posture across the organization.
The Specialist leads and supports the protection of Microsoft 365 SaaS cloud business services and other corporate environments, safeguarding the confidentiality, integrity, and availability of GCGRA assets. This includes implementing and monitoring solutions like advanced threat detection, Security Information Event Management (SIEM), hardening of systems and applications, and continuously evaluating security controls against evolving threats.
As a key contributor to Security Architecture & Engineering, and Cyber Security Operations Center (CSOC) functions, the role is responsible for monitoring, analyzing, and responding to security events, as well as identifying and remediating vulnerabilities across cloud and on-premise environments. The Specialist drives proactive defence strategies by leveraging threat intelligence, conducting security assessments and incident handling, and coordinating timely mitigation of risks in mission-critical environments.
Responsibilities Perimeter & Endpoint Security:
- Support the engineering, execute the deployment and harden GCGRA advanced security controls, including L7 firewalls, IPS, VPN, Endpoint Detection and Response (EDR/XDR) and Data Protection solutions.
Cyber Security Operations
- Security Monitoring & Detection: Operate and optimize SIEM/XDR/M365 security stack for continuous monitoring, alert triage, and investigation, ensuring log integrity, use case tuning, and reduced false positives. Incident Response & Threat Handling: Execute end-to-end incident response (detect, analyze, contain, eradicate, recover) supported by root cause analysis and standardized runbooks.
- Threat Hunting & Intelligence: Enhance detection through proactive threat hunting, use case refinement, and integration of global/regional threat intelligence.
- Cloud & Identity Security: Secure M365 and identity platforms by enforcing Conditional Access, monitoring anomalous activities, and aligning with Zero Trust principles.
- Security Automation & SOAR: Develop and maintain SOAR playbooks to automate response actions, improve consistency, and reduce mean time to respond (MTTR).
- Operational Coordination & Reporting: Collaborate with internal/external stakeholders, maintain operational documentation, and report on incidents, risks, and security posture.
- Security Leadership: Mentor and guide SOC analysts and engineers, fostering continuous improvement in detection and response capabilities.
SOC Design, Build, And Operations
- Lead the establishment and optimization of the Security Operations Center (SOC) function, including strategy design, team building, and automated response workflows.
Vulnerability Management & Security Posture
- Vulnerability Management (RBVM): Lead end-to-end vulnerability lifecycle (scanning, prioritization, remediation) using risk-based approaches to address critical and actively exploited vulnerabilities.
- Security Assessment & Hardening: Identify misconfigurations, shadow IT, and infrastructure weaknesses; drive remediation and system hardening across cloud and on-prem environments.
- Security Posture & Compliance: Continuously assess and improve security posture in alignment with international standards (e.g., NIST, ISO 27001) and regional regulations (e.g., NESA, SIA).
- Threat & Risk Assessment: Perform targeted risk assessments on critical assets and infrastructure, defining and tracking mitigation strategies.
- Tooling & Platforms: Utilize enterprise vulnerability management and security platforms (e.g., Qualys, Tenable, Microsoft Defender) to support continuous exposure management.
Security Architecture And Engineering
- Contribute to the design and engineering of advanced cybersecurity systems to protect M365 SaaS cloud and on-premise environments.
- Project Management: Support the execution of secure engineering and system upgrades, including risk assessments, and project scheduling.
Education QUALIFICATIONS
- Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field.
Experience
- 5–8 years of extensive technical experience in cybersecurity, with a focus on securing complex IT infrastructures, cyber defence and security operations.
Technical Skills
- Security Products: Proficient with M365 Security (Defender, Sentinel), endpoint protection & EDR/XDR (Defender, CrowdStrike) SIEM (Azure Sentinel, Splunk, or similar), and firewalls (Palo Alto Networks, Fortinet).
- Frameworks: Advanced knowledge of NIST, ISO 27001, CIS Controls, and UAE-specific regulatory requirements.
- Incident Response: familiar with Security Operations Centre technical controls, processes and procedures, able to manage and monitor security events and incidents in enterprise platforms.
- Threat Hunting: Proven experience in managing cybersecurity incidents and conducting threat hunting using advanced methodologies.
Certifications
- Offensive Security OSCP+ (PEN-200Penetration Testing with Kali Linux), OSEP (PEN-300: Evasion Techniques and Breaching Defenses)
- CEH (Certified Ethical Hacker).
- Microsoft Security Operations Analyst Associate (SC-200).
About Us The General Commercial Gaming Regulatory Authority (GCGRA) is the federal executive agency responsible for regulating and overseeing commercial gaming in the United Arab Emirates. We aim to drive sustainable growth by cultivating world-class commercial gaming operations and implementing efficient regulation, grounded in the principles of integrity, innovation, and responsible practices.
Established by Federal Law by Decree and headquartered in Abu Dhabi, the GCGRA is the executive authority that holds exclusive jurisdiction to regulate, license, and supervise all commercial gaming activities and facilities in the UAE.
Similar Jobs
Cyber Security - Freelance Trainer
Kaplan Middle East & North Africa · Abu Dhabi Emirate
Your opportunity Kaplan is a world leader in Professional Education and is currently experiencing rapid growth in the MENA region. In supporting this growth, we are seeking to hire an experienced freelance instructor and
Skills
Cyber Security Specialist - Appsec
Akkodis · Dubai
Scope: We are hiring a hands-on Application Security expert who owns security delivery within fixed-price SDLC projects. You will be accountable for what gets shipped, not just what gets documented. This role is not gove
Skills
Lead, Cyber Security Assurance - UAE National
TAQA Group · Abu Dhabi
Job Summary: To lead and deliver all aspects of Cyber assurance and vulnerability management (OT and IT) by analyzing, assessing and prioritizing daily threat assessment briefings, recommend remediation strategies for vu
Skills
Lead Engineer OT Cyber Security
TALENTMATE · Abu Dhabi
Job Description Job Description Wood is looking for an experienced Lead OT Cyber Security Engineer to advise on and design cyber security solutions for our customers. The engineer will be responsible for compliance with
Skills
Regional Head Of Infrastructure And Cyber Security
Millennium Hotels and Resorts MEA · Dubai
Job Description Shape the future of technology across 65 hotels in multiple countries ! We are seeking Regional Head of Infrastructure & Cyber Security to drive infrastructure modernization, cybersecurity governance, and
Skills
Cyber Security Consultant
SISL Global · Dubai
Job Title L2 SOC Technical Account Manager Role Summary We are seeking an experienced SOC Technical Account Manager to support the end customer. The ideal candidate will possess strong experience in Security Operations C
Skills
Senior Cyber Security Portfolio Assurance Analyst
The Emirates Group · Dubai
Provide independent assurance over cloud security controls, assess compliance with standards, and support secure adoption of Cloud ERP technologies.
Skills
Cyber Security Analyst - Emiratization & UAE Talent Development
Accenture Middle East · Abu Dhabi
About Accenture Accenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate r
Skills
Head of Cyber Security Operations Center - Shift A (NAWAH)
ENEC Operations · Abu Dhabi
Job Title: Head of Cyber Security Operations Center - Shift A (NAWAH) Posting Date: 4 May 2026 Requisition ID: 3397 Location: Barakah Posting Status: Active Recruitment Job Purpose Lead the Cyber Security Operations Cent
Skills
Stop applying blindly.
Start getting hired.
Base Career automates the hardest parts of job searching — apply smarter, not harder.
AI Resume in 60s
Your resume rewritten for this exact role using the job description as the brief.
ATS-Optimized
Get past automated screening filters with the right keywords matched to each job.
Application Tracker
Track every job, follow-up, and interview in one visual kanban board.
Free plan · No credit card required