CPX

Senior Specialist – Information Security Operations Management

CPX

Abu Dhabi Emirate, United Arab Emirates · Full Time

Be the first to apply

Experience
10+ yrs
Salary
—
Openings
1
Posted
4 days ago
Work mode
In office
Education
Bachelor's degree in Cybersecurity or related field
Resume
Required to apply

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

Job Overview

Take ownership of comprehensive enterprise security technologies encompassing data protection, privileged access management, endpoint extended detection and response (XDR), deception technologies, and network threat detection and prevention systems. This position requires managing platform administration, engineering security policies, monitoring system health, supporting incidents, tuning configurations, integrating security solutions, and ensuring continual control enhancements. The role also includes providing backup support for database activity and API security monitoring.

Key Responsibilities

  • Oversee daily administration and lifecycle management of designated information security systems.
  • Design, deploy, evaluate, and optimize policies related to data loss prevention, information protection, access controls, endpoint security, threat detection, and network defenses.
  • Continuously monitor platform availability, health of agents and sensors, policy deployments, event ingestion, integration statuses, capacities, and licensing requirements.
  • Conduct thorough investigations of security alerts and operational issues; coordinate containment, recovery, escalation, and root-cause analyses.
  • Manage privileged access processes including account setup, credential management, session monitoring, periodic access reviews, and emergency access protocols.
  • Ensure endpoint and XDR system coverage; verify telemetry data integrity, analyze events, and coordinate response activities as authorized.
  • Operate and fine-tune deception, intrusion detection, and intrusion prevention controls including policy adjustments and exception handling.
  • Integrate telemetry data with security information and event management (SIEM), IT service management (ITSM), and approved monitoring or case-management solutions.
  • Lead technology changes by assessing impact, conducting testing, securing approvals, implementing modifications, planning rollbacks, and validating results.
  • Maintain thorough documentation such as standard operating procedures (SOPs), runbooks, architecture diagrams, system baselines, inventories, access control matrices, and recovery methods.
  • Generate operational reports detailing coverage, system availability, incidents, exceptions, risk assessments, backlog statuses, and remediation updates.
  • Support audit processes, risk evaluations, and closure of identified technological issues.
  • Mentor and guide support engineers, ensuring effective knowledge transfer and readiness for backup duties.
  • Provide primary backup support for monitoring database activity and API security systems.

Qualifications and Experience

  • Over ten years of experience in information security, security engineering, or security operations roles.
  • Extensive hands-on expertise in at least two core domains such as data loss prevention/information protection, privileged access management, endpoint security/XDR, deception technologies, or intrusion detection/prevention systems; familiarity with other domains is desirable.
  • Skilled in designing and calibrating policies, classifiers, detection mechanisms, thresholds, exceptions, and incident response procedures.
  • Proficient with security integrations, API usage, event forwarding, SIEM, ITSM, and incident management workflows.
  • Strong knowledge of least privilege principles, data classification standards, endpoint telemetry, and network security controls.
  • Effective troubleshooting capabilities for platform components including connectors, agents, sensors, policies, and event ingestion.
  • Excellent documentation, reporting, stakeholder communication, and mentoring competencies.

Education and Certifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a close related field.
  • Preferred professional certifications in information security, security management, or audit disciplines.
  • Advantageous certifications focusing on data protection, privileged access management, endpoint/XDR, or network security.
  • IT service management certification considered a beneficial asset.

Success Criteria

  • Information security platforms are reliably supported, consistently available, properly integrated, and demonstrably effective.
  • Identification and resolution tracking of coverage gaps and malfunctioning components.
  • Policy adjustments are thoroughly tested, authorized, documented, and confirmed effective.
  • Improved quality of security alerts via evidence-based tuning processes.
  • All documentation, backup access provisions, and knowledge transfer records comply with audit readiness standards.

Minimum education

Bachelor's Degree

How they work

Problem Solving Leadership Initiative Relationship Building

Leave it if you'd like a reply — we won't use it for anything else.

Click to browse, drag & drop, or paste a screenshot

PNG, JPG, GIF, MP4, WebM, MOV · Max 20MB each · Up to 5 files

🤖
Online · instant AI help
Broxer