The company is seeking a talented and enthusiastic Vulnerability Management Specialist (VM). The VM Specialist is responsible for the delivery and governance of Vulnerability and Compliance Management services to the company Customers. This role involves support and alignment with pre-sales activities, direct engagement with customers alongside the company Sales Team, onboarding of customers, service delivery, operational management, and handling escalations.
Ready to apply for roles like this?
Unlock the company name and direct application link. Subscribers get instant access to fresh jobs across Dubai, Abu Dhabi and Riyadh, many with visa support.
Unlock employer & apply directly
Responsibilities:
- Manage parallel activities and competing priorities.
- Ensure smooth delivery of company services, specifically the vulnerability management service.
- Monitor and improve processes for high-quality execution in line with committed SLAs and obligations.
- Maintain regular communication with customers and chair/drive regular customer meetings as necessary.
- Provide guidance to customers on security maturity, good practices, and current threats.
- Maintain effective knowledge management practices within the function.
- Develop and enhance the vulnerability management service, including fine-tuning of services, processes, and capabilities.
- Provide inputs to senior leadership regarding service development to enhance services and offerings.
- Represent the company at customer engagements and present content at conferences and events as requested.
- Contribute to threat advisories, based on the latest vulnerabilities and threats.
- Lead and coordinate vulnerability remediation with customers.
- Create reports, dashboards, and metrics for SOC operations and present to senior management.
- Revise and develop processes to strengthen the current SOC framework, review policies, and highlight challenges in managing SLAs.
Qualifications & Skills:
- Degree in Computer Science, Information Systems, Electrical Engineering, or a closely related field.
- Minimum of 5 years of experience in the information security field, with direct experience in managing Vulnerability Assessment and Compliance functions.
- Hands-on experience with Vulnerability and Threat assessment, prioritization, aggregation, validation, and reporting, preferably in an MSSP environment.
- Hands-on experience with specific security technologies such as Tenable Nessus/SC/IO, QualysGuard, and Rapid7 Nexpose.
- Experience leading and working in the UAE is highly desirable.
- Active interest in Cyber Security, vulnerability management, network, and systems security.
- In-depth knowledge of security concepts such as cyber-attacks, techniques, vulnerabilities and exploitation methods, risk management, incident management, and threat modeling.
- Knowledge of cyber security architecture practices, controls, and risks.
- Understanding of Information Security standards and frameworks (e.g., ISO27001, MITRE ATT&CK, and Cyber kill chain).
- Proficiency in network security, end-point security, and threat detection systems.
- Strong knowledge of Cyber security best practices, common attack types, and detection/prevention methods.
- Ability to guide, mentor, assist, and develop individuals/teams.
- Proficiency in preparing reports, dashboards, and documentation.
- Ability to handle high-pressure situations with key stakeholders.
- Good analytical, problem-solving, and interpersonal skills.
- Proficient in Business English, both written and verbal.
Language Requirements: Proficiency in Business English is necessary.
Benefits:
- Health insurance with a leading global provider for medical insurance.
- Opportunities for career progression and growth through challenging projects.
- Employee engagement and wellness campaigns throughout the year.
- Excellent learning and development opportunities.
- Inclusive and diverse working environment.
- Flexible/Hybrid working conditions.
- Open-door policy.
The company is the cybersecurity arm of e& enterprise (formerly Etisalat Digital), offering strategic consultancy and tailored information security services to enterprise businesses and governments across the Middle East. Since 2004, the company has positioned itself as a trusted IT security advisor, remaining vendor-agnostic and focused on cybersecurity. With best-of-breed technologies and expertly qualified service delivery teams, the company strengthens cyber defenses and safeguards business operations.