Senior Specialist – Information Security Operations Management
Abu Dhabi Emirate, United Arab Emirates · Full Time
Be the first to apply
- Experience
- 10+ yrs
- Salary
- —
- Openings
- 1
- Posted
- 4 days ago
- Work mode
- In office
- Education
- Bachelor's degree in Cybersecurity or related field
- Resume
- Required to apply
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
Job Overview
Take ownership of comprehensive enterprise security technologies encompassing data protection, privileged access management, endpoint extended detection and response (XDR), deception technologies, and network threat detection and prevention systems. This position requires managing platform administration, engineering security policies, monitoring system health, supporting incidents, tuning configurations, integrating security solutions, and ensuring continual control enhancements. The role also includes providing backup support for database activity and API security monitoring.
Key Responsibilities
- Oversee daily administration and lifecycle management of designated information security systems.
- Design, deploy, evaluate, and optimize policies related to data loss prevention, information protection, access controls, endpoint security, threat detection, and network defenses.
- Continuously monitor platform availability, health of agents and sensors, policy deployments, event ingestion, integration statuses, capacities, and licensing requirements.
- Conduct thorough investigations of security alerts and operational issues; coordinate containment, recovery, escalation, and root-cause analyses.
- Manage privileged access processes including account setup, credential management, session monitoring, periodic access reviews, and emergency access protocols.
- Ensure endpoint and XDR system coverage; verify telemetry data integrity, analyze events, and coordinate response activities as authorized.
- Operate and fine-tune deception, intrusion detection, and intrusion prevention controls including policy adjustments and exception handling.
- Integrate telemetry data with security information and event management (SIEM), IT service management (ITSM), and approved monitoring or case-management solutions.
- Lead technology changes by assessing impact, conducting testing, securing approvals, implementing modifications, planning rollbacks, and validating results.
- Maintain thorough documentation such as standard operating procedures (SOPs), runbooks, architecture diagrams, system baselines, inventories, access control matrices, and recovery methods.
- Generate operational reports detailing coverage, system availability, incidents, exceptions, risk assessments, backlog statuses, and remediation updates.
- Support audit processes, risk evaluations, and closure of identified technological issues.
- Mentor and guide support engineers, ensuring effective knowledge transfer and readiness for backup duties.
- Provide primary backup support for monitoring database activity and API security systems.
Qualifications and Experience
- Over ten years of experience in information security, security engineering, or security operations roles.
- Extensive hands-on expertise in at least two core domains such as data loss prevention/information protection, privileged access management, endpoint security/XDR, deception technologies, or intrusion detection/prevention systems; familiarity with other domains is desirable.
- Skilled in designing and calibrating policies, classifiers, detection mechanisms, thresholds, exceptions, and incident response procedures.
- Proficient with security integrations, API usage, event forwarding, SIEM, ITSM, and incident management workflows.
- Strong knowledge of least privilege principles, data classification standards, endpoint telemetry, and network security controls.
- Effective troubleshooting capabilities for platform components including connectors, agents, sensors, policies, and event ingestion.
- Excellent documentation, reporting, stakeholder communication, and mentoring competencies.
Education and Certifications
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a close related field.
- Preferred professional certifications in information security, security management, or audit disciplines.
- Advantageous certifications focusing on data protection, privileged access management, endpoint/XDR, or network security.
- IT service management certification considered a beneficial asset.
Success Criteria
- Information security platforms are reliably supported, consistently available, properly integrated, and demonstrably effective.
- Identification and resolution tracking of coverage gaps and malfunctioning components.
- Policy adjustments are thoroughly tested, authorized, documented, and confirmed effective.
- Improved quality of security alerts via evidence-based tuning processes.
- All documentation, backup access provisions, and knowledge transfer records comply with audit readiness standards.
Minimum education
Bachelor's Degree