|
||||||||||||||||||
الوصف الوظيفي Our Client a reputable IT Company is hiring for their Dubai operations: Cloud Security Engineer Location: Dubai Job Description 1. Organisation Unit Purpose (why does the unit exist? What are the results the unit is expected to deliver?) The unit’s primary purpose is to Design, Engineer & eventually Embed practical & balanced cyber / information security principles/patterns/controls into all products and platforms. Conduct security assessments, gap analysis, provide remediation to the relevant squads / stakeholders. 2. Job Purpose (Why does the job exist? What is the unique contribution made by the job holder?) Primary/General Job Purpose: • Encourage ‘Shift Left’ Mindset – Proactively embed security requirements, by influencing implementation of security & privacy patterns from the start of the development cycle • Implement via Influence – Influence stakeholders such as Product Owners, Solution Architects, Developers, Testers, Engineers & others to include security patterns into features, epics and stories in order to build secure, innovative & superior digital products for customers and employees • Assessments – Perform security assessment and perform gap analysis to provide appropriate remediations to the teams for implementing the fixes. Key Skills – Application Security, Security Code review, API security, Platform security, IAST, SAST, DAST, Infrastructure security and Cloud Security – MS Azure • Tools and Technologies – Expertise in Azure Security Center and Azure Policies, Burp Suite, Nessus, Checkmarx, Kubernetes, Docker, Jenkins, GitHub, OpenShift and good knowledge about microservice architecture and pipeline driven security. المهارات 3 Technical Requirements Application Security Assessment Skillset 1. Web Application Security 2. Security Code Review 3. Azure and AWS Cloud Security 4. Azure Virtual Desktop- AVD Security Review 5. Mobile App testing (Android & iOS) 6. Container Review 7. Infrastructure Review 8. WAF rules review Azure Security Experience with following Components: 1. Azure Security Center 2. Azure AD RBAC 3. Privileged Identity Management 4. Conditional Access Policies 5. Azure Advance Threat Protection 6. Azure Information Protection and HYOK 7. Enterprise mobility with Intune MAM and MDM Policies 8. Office365 ATP and Mail-flow 9. Microsoft cloud threat intelligence 10. Microsoft Cloud Application Security – CASB setup and monitoring 11. Windows Defender ATP 12. Policy configuration for Onedrive, Sharepoint, Outlook, Teams and Office Pro Plus 13. Azure AD Hybrid Join and Password Hash Sync 14. Customer Lockbox and advanced compliance policies in Azure cloud تفاصيل الوظيفة https://www.bayt.com/ar/uae/jobs/cloud-security-engineer-4560157/?from_job_search=/ar/jobs/?filters%5Bjb_location_country_iso%5D%5B0%5D=ae&filters%5Bjb_location_country_iso%5D%5B1%5D=kw&filters%5Bjb_location_country_iso%5D%5B2%5D=qa&filters%5Bjb_location_country_iso%5D%5B3%5D=sa&jobId=4553701&options%5Bjb_is_external_job%5D%5B0%5D=1&page=6 |
||||||||||||||||||