{bc}

Senior Cybersecurity Expert

Astra TechAbu Dhabi, UAE4 weeks agoSenior
Seniorother

Skills

cybersecurityinformation securitynetwork security

About This Role

About Us

A leading UAE-based consumer technology company, building the digital infrastructure of everyday life with a focus on AI-powered fintech, communication, and digital services.

Guided by our philosophy, the Blueprint of Simplicity, we design technology around real human behavior, connecting people, enabling financial access, and making everyday experiences effortless.

Our flagship platform, botim, is the region’s most trusted fintech communication platform, combining secure VoIP with action-based AI and everyday money tools.

Through botim money, we provide financial services that serve both individuals and SMEs, making payments, transfers, and credit simpler and more accessible.

Today, the platform serves 150M+ users worldwide.

Our lending finance engine, Quantix, powers fast, regulated credit across the ecosystem, including innovative products such as CashNow for instant access.

From calls to credit, from daily services to big ambitions, we are rethinking how the region stays connected and financially included.

Role Summary

  • We are seeking a hands-on Senior Cybersecurity Engineer with deep expertise in offensive security, secrets management, and secure platform engineering.
  • This Role Focuses On Advanced Technical Execution, Including
  • Red/Blue team operations
  • Enterprise-grade Key & Secrets Management (PAM / HSM / Key Vault)
  • DevSecOps security integration
  • Infrastructure & application-level resilience (DR / security validation)
  • The ideal candidate is a technical expert, capable of designing and implementing security controls, validating them through adversarial testing, and integrating them into modern cloud-native environments.

• Offensive Security & Adversarial Simulation

  • Conduct Red Team operations, including:
  • Initial access, lateral movement, privilege escalation
  • Active Directory attack paths and identity compromise
  • Support and enhance Blue Team detection capabilities
  • Perform attack simulation & purple teaming to validate detection and response
  • Develop custom attack scripts/tools for advanced scenarios

• Secrets & Key Management (Core Focus)

  • Design and implement enterprise-grade secrets management architecture, including:

• PAM (Privileged Access Management)

  • Cloud Key Management (Azure Key Vault / AWS KMS)
  • HSM-backed key protection
  • Define and enforce:
  • Key lifecycle management (generation, rotation, revocation)
  • Secure storage and usage of credentials, API keys, certificates
  • Integrate secrets management into applications and CI/CD pipelines
  • Identify and eliminate hardcoded secrets / credential leakage risks

• DevSecOps & Secure Engineering

  • Integrate security into CI/CD pipelines:
  • SAST, DAST, SCA, IaC scanning
  • Implement policy-as-code and automated security gates
  • Secure container and artifact pipelines (e.g., Docker, Kubernetes, registries)
  • Work closely with engineering teams to embed security controls by design

• Infrastructure Security & DR Validation

  • Design and execute Disaster Recovery (DR) and Resilience Testing, including:
  • Infrastructure-level DR (cloud / network / identity)
  • Application-level failover and recovery validation
  • Validate security controls under failure scenarios
  • Identify weaknesses in backup, recovery, and high availability design

• Security Assessment & Architecture Review

  • Perform deep technical assessments:
  • Cloud security (Azure / AWS)
  • Network and system architecture
  • Identity and access management
  • Data protection mechanisms
  • Provide actionable remediation guidance based on real attack paths

• Security Research & Continuous Improvement

  • Track emerging threats, vulnerabilities, and exploitation techniques
  • Conduct internal research on:
  • Attack techniques
  • Detection evasion
  • Cloud-native attack vectors
  • Produce technical documentation, advisories, and internal knowledge sharing

Technical Requirements

  • Offensive Security
  • Strong experience in:
  • Web vulnerabilities (SQLi, XSS, SSRF, RCE, IDOR)
  • System/network penetration (Windows/Linux)
  • Active Directory attacks (Kerberos abuse, delegation, etc.)
  • Familiar with tools:

• Burp Suite, Metasploit, Nmap, Nessus

  • Cobalt Strike (or equivalent) – preferred

• Secrets & Cryptography (Critical)

  • Hands-on experience with:
  • PAM solutions

• Azure Key Vault / AWS KMS

  • HSM-based key protection
  • Understanding of:
  • Cryptographic key lifecycle
  • Certificate management (TLS/mTLS)
  • Secure key usage patterns in applications
  • DevSecOps
  • Experience integrating:
  • SAST / DAST / SCA tools
  • CI/CD pipelines (Azure DevOps, GitHub Actions, Jenkins)
  • Familiar with:
  • Container security (Docker / Kubernetes)
  • IaC security (Terraform, ARM, etc.)

• Programming / Scripting

  • Proficiency in at least one:
  • Python / Go / JavaScript / Bash
  • Ability to develop security tools or automation scripts

Qualification Requirements

  • Bachelor’s degree or above in Computer Science, Information Security, or related field
  • 5+ years of hands-on cybersecurity engineering experience
  • Strong experience in penetration testing, red teaming, or security engineering
  • Familiar with security frameworks:

• Owasp, Nist, Iso 27001

  • Experience in regulated environments (PCI-DSS, NESA) is a plus

Preferred Certifications

  • OSCP (highly preferred)
  • CEH
  • Security+
  • CISA (optional, not core)

Key Characteristics (Important)

  • Strong hands-on technical depth, not just advisory
  • Ability to break and build systems
  • Security engineering mindset (not compliance-driven)
  • Able to work independently on complex technical problems

Your resume, rewritten for this exact role.

Sign up free — Base Career tailors your CV to this job description in 60 seconds.

01 / 05

Resume Tailored to This Job

Resume Tailored to This Job

Your keywords, structure, and story — rewritten to match this exact role and pass ATS filters.

Get My Free Resume

Free · No card · 60 seconds

02 / 05

Cover Letter for This Role, Done

Cover Letter for This Role, Done

Job-specific cover letters written in Gulf professional tone — ready in seconds, not hours.

Get My Cover Letter

Free · No card · 60 seconds

03 / 05

See How Well You Fit This Role

See How Well You Fit This Role

AI match score with clear reasons — know your fit before investing time in the application.

Check My Fit Score

Free · No card · 60 seconds

04 / 05

Apply in One Click

Apply in One Click

Autofill any application form on Workday, LinkedIn, Bayt, Greenhouse — with your tailored content.

Start Applying Faster

Free · No card · 60 seconds

05 / 05

Track It. Follow Up at the Right Time.

Track It. Follow Up at the Right Time.

Visual pipeline for every application with AI-timed follow-up reminders so nothing slips.

Track My Applications

Free · No card · 60 seconds

Similar Jobs

Senior CyberSecurity Technical Engineer - F5 WAF

TALENTMATE · Dubai

Mid-Seniorfulltime

Job Description Job Purpose At Emirates, we believe in connecting the world, to and through, our global hub in Dubai, and in constantly innovating to ensure our customers ‘Fly Better’. Emirates Group IT thrives on the dy

Skills

cybersecurityinformation securitynetwork security

Senior CyberSecurity Technical Engineer - F5 WAF

Emirates · Dubai

Mid-Seniorfulltime

Job Purpose At Emirates, we believe in connecting the world, to and through, our global hub in Dubai, and in constantly innovating to ensure our customers ‘Fly Better’. Emirates Group IT thrives on the dynamic nature of

Skills

GitSEMVAT

Senior CyberSecurity Technical Engineer - Aviation Environments

TALENTMATE · Dubai

Mid-Seniorfulltime

Job Description Job Purpose At Emirates, we believe in connecting the world to and through our global hub in Dubai and in constantly innovating to ensure our customers Fly Better. Emirates Group IT thrives on the dynamic

Skills

cybersecurityinformation securitynetwork security

Senior CyberSecurity Technical Engineer - Privilege Access Management

Emirates · Dubai

Mid-Seniorfulltime

Job Purpose At Emirates, we believe in connecting the world to and through our global hub in Dubai and in constantly innovating to ensure our customers Fly Better. Emirates Group IT thrives on the dynamic nature of techn

Skills

GitSEMVAT

Senior CyberSecurity Technical Engineer - Aviation Environments

Emirates · Dubai

Mid-Seniorfulltime

Job Purpose At Emirates, we believe in connecting the world to and through our global hub in Dubai and in constantly innovating to ensure our customers Fly Better. Emirates Group IT thrives on the dynamic nature of techn

Skills

GitSEMVAT

Senior CyberSecurity Technical Engineer - CPS/OT

Emirates · Dubai

Mid-Seniorfulltime

Job Purpose At Emirates, we believe in connecting the world to and through our global hub in Dubai and in constantly innovating to ensure our customers Fly Better. Emirates Group IT thrives on the dynamic nature of techn

Skills

GitSEMVAT

Senior Cybersecurity Technical Engineer - Microsegmentation/Workload Security

Emirates · Dubai

Mid-Seniorfulltime

Job Purpose At Emirates, we believe in connecting the world to and through our global hub in Dubai and in constantly innovating to ensure our customers Fly Better. Emirates Group IT thrives on the dynamic nature of techn

Skills

GitSEMVAT

Senior Cybersecurity Technical Engineer - Zscaler

Emirates · Dubai

Mid-Seniorfulltime

Job Purpose At Emirates, we believe in connecting the world to and through our global hub in Dubai and in constantly innovating to ensure our customers Fly Better. Emirates Group IT thrives on the dynamic nature of techn

Skills

GitSEMVAT

Senior Cybersecurity Leader

OMNIYAT · Dubai

Mid-Seniorfulltime

We are seeking a seasoned Senior Cybersecurity Leader to build, mature, and evolve the organisation’s cybersecurity function. This role oversees strategy, governance, architecture, security intelligence, and operational

Skills

cybersecurityinformation securitynetwork security

2.2K+

Cover Letters & Follow-ups

1.8K+

Resumes Tailored

190.5K+

Jobs Tracked

Trusted by professionals at

PwC//
Emaar//
KPMG//
Noon//
Amazon AWS//
Talabat//
Deloitte//
Emirates//
Careem//
Aramex//
McKinsey//
Property Finder//
Majid Al Futtaim//
Chalhoub Group//
PwC//
Emaar//
KPMG//
Noon//
Amazon AWS//
Talabat//
Deloitte//
Emirates//
Careem//
Aramex//
McKinsey//
Property Finder//
Majid Al Futtaim//
Chalhoub Group//
AI Job Platform

Stop applying blindly. Start getting hired.

Base Career automates the hardest parts of job searching — apply smarter, not harder.

AI Resume in 60s

Your resume rewritten for this exact role using the job description as the brief.

ATS-Optimized

Get past automated screening filters with the right keywords matched to each job.

Application Tracker

Track every job, follow-up, and interview in one visual kanban board.

Free plan · No credit card required