Leos International is a leading real estate developer with a strong presence in Dubai. We are committed to delivering high quality developments and exceptional living experiences. As part of our ongoing growth, we are looking to hire an
IT: Cyber Security Specialist
to join our multidisciplinary design team in the
United Arab Emirates.
Key Responsibilities:
-
Vulnerability Assessment & Penetration Testing (VAPT)
-
Perform regular vulnerability scans and penetration testing for applications, servers, and networks.
-
Identify and prioritize vulnerabilities, create detailed reports, and coordinate remediation with IT teams.
-
Maintain and update VAPT tools and documentation.
-
Endpoint Detection & Response (EDR)
-
Deploy and manage EDR solutions (Microsoft Defender, CrowdStrike, Sentinel One, etc.).
-
Monitor and analyze endpoint alerts and take proactive response actions.
-
Develop EDR policies for detection, isolation, and remediation.
-
Implement and manage email protection systems (Defender for O365, Proofpoint, Mimecast).
-
Configure and maintain Data Loss Prevention (DLP) policies to prevent data leakage.
-
Conduct phishing simulations and employee awareness campaigns.
-
Threat Intelligence & Incident Response
-
Collect and analyze cyber threat intelligence to anticipate and prevent attacks.
-
Investigate and respond to incidents — perform root-cause analysis and reporting.
-
Develop incident response plans and maintain playbooks.
-
Network & Infrastructure Security
-
Configure and monitor firewalls, IDS/IPS, VPNs, and network segmentation.
-
Conduct security reviews of network architecture and cloud environments.
-
Ensure logging, monitoring, and alerting through SIEM tools (e.g., Azure Sentinel, Splunk).
-
Application & Cloud Security
-
Conduct application security assessments and review code for OWASP vulnerabilities.
-
Implement secure SDLC practices in coordination with development teams.
-
Manage cloud security posture across Azure / AWS (IAM, WAF, encryption, MFA).
-
Governance, Risk & Compliance (GRC)
-
Implement and maintain compliance with ISO 27001, NIST, and internal policies.
-
Maintain risk registers and conduct regular risk assessments.
-
Support audits, policy creation, and cybersecurity awareness training.
Requirements:
-
SIEM Tools: Microsoft Sentinel, Splunk, QRadar
-
EDR: Microsoft Defender, CrowdStrike, Carbon Black
-
VAPT Tools: Nessus, Burp Suite, Nmap, Metasploit
-
Firewalls: Fortinet, Cisco
-
DLP & Email Security: Microsoft DLP, Proofpoint, Mimecast
-
Cloud Security: Azure Security Center, AWS Security Hub
-
Frameworks: NIST, ISO 27001, MITRE ATT&CK
Key Competencies:
-
Strong interpersonal and relationship-building skills.
-
Results-driven with a proactive attitude.
-
High sense of ownership and accountability.
-
Ability to manage multiple priorities under tight deadlines.