{bc}
linkedin

Cyber Security Specialist

Hamdan Bin Mohammed Smart University
Dubai, UAE
Full-time
Mid-Senior
Onsite
Discovered 1 weeks ago
Penetration testingVulnerability assessment and managementSecurity monitoring and incident responseWeb application and API securityNetwork and enterprise infrastructure securityOWASP Top 10
Free

Job Fit Check

Base Career helps you apply smarter for this job.

?%
Ready to Scan

Key skills for this role

Penetration testingVulnerability assessment and managementSecurity monitoring and incident response
Smart Apply

Full Job Posting

Job Purpose

Provide hands-on cybersecurity expertise across penetration testing, security monitoring, vulnerability management, and cybersecurity governance.

Work with enterprise infrastructure, SIEM platforms, cloud environments, servers, Active Directory, and web applications.

Key Responsibilities

  • Conduct penetration tests and security assessments across applications, APIs, networks, servers, Active Directory, and enterprise systems.
  • Identify vulnerabilities, assess risk and exploitability, and recommend practical remediation.
  • Perform manual testing against OWASP Top 10 and OWASP API Security Top 10 risks.
  • Monitor and investigate security events and alerts through SIEM platforms.
  • Support incident investigation, response, containment, remediation, and post-incident improvements.
  • Develop and tune SIEM alerts, detection rules, dashboards, and monitoring use cases.
  • Coordinate vulnerability remediation with infrastructure and development teams.
  • Review Azure and AWS security controls and configurations.
  • Strengthen Active Directory and Entra ID security, including privileged access and authentication controls.
  • Support protective technologies, security reviews, governance, risk assessments, compliance, and audits.

Required and Preferred Experience

  • Hands-on enterprise cybersecurity experience implementing, administering, or improving technical security controls.
  • Professional experience in penetration testing and vulnerability assessment.
  • Strong understanding of web application, API, network, operating system, and enterprise security.
  • Experience with Burp Suite, Nmap, Metasploit, or equivalent penetration testing tools.
  • Experience with SIEM and security monitoring platforms such as Wazuh, Microsoft Sentinel, Splunk, or similar.
  • Experience investigating cybersecurity alerts and security incidents.
  • Experience with Azure and/or AWS security, including cloud identity, network, workload, and logging security.
  • Strong knowledge of Windows, Linux, TCP/IP, networking, authentication, and enterprise infrastructure.
  • Good knowledge of cybersecurity governance, risk management, policies, standards, and compliance.
  • Good knowledge of Active Directory and identity security concepts.
  • UAE government, semi-government, higher education, or regulated-organization experience is highly desirable.

Qualifications and Certifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Computer Engineering, or a related field.
  • OSCP, OSWE, or OSEP certification is strongly preferred.
  • Hack The Box certifications such as CPTS, CWES, CBBH, CDSA, CWEE, CAPE, or COAE are a strong advantage.
  • Additional cloud, Microsoft, incident response, penetration testing, infrastructure security, or governance certifications are beneficial.

Strong Advantages

  • Web development knowledge covering applications, APIs, databases, authentication, sessions, and backend services.
  • Familiarity with Python, PHP, JavaScript, .NET, Java, Flask, Django, Node.js, or similar technologies.
  • Windows or Linux server administration, including hardening, logging, permissions, and troubleshooting.
  • Active Directory penetration testing or security assessment experience.
  • Experience with Entra ID, Conditional Access, Privileged Identity Management, Defender, Sentinel, and Intune.
  • Cloud security assessment and configuration review experience.
  • Scripting or automation with PowerShell, Python, Bash, or similar technologies.

Key Competencies

Strong technical and analytical problem-solving skills.

Ability to think from both attacker and defender perspectives.

Ability to investigate technical issues independently.

Clear technical documentation and reporting skills.

Ability to communicate cybersecurity risks to technical and non-technical stakeholders.

Strong professional ethics, confidentiality, and attention to detail.

Apply for this job in 1 click

Skip the repetitive application forms

Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.

Sarah M.James T.Maya R.

Trusted by over 500,000 job seekers on Base Career

Start Free Today

More from this employer

More jobs at Hamdan Bin Mohammed Smart University