FIND_THE_RIGHTJOB.
JOB_REQUIREMENTS
Hires in
Not specified
Employment Type
Not specified
Company Location
Not specified
Salary
Not specified
About Us:
ACE Money Transfer is a UK-based multinational company headquartered in Manchester, United Kingdom. ACE Money Transfer provides online remittance services to individuals in 28 countries across UK, Europe, Canada, and Australia enabling them to send money across border in over 100 countries.
Overview:
Ace Money Transfer is seeking a highly experienced and dynamic Cyber Security Manager to lead and mentor both our Offensive (Red Team) and Defensive (Blue Team) security teams. This critical role will be responsible for developing, implementing, and overseeing the organization's overall cybersecurity strategy, ensuring the protection of our assets and data against evolving threats. The ideal candidate will possess a strong technical background with hands-on experience in either offensive or defensive security, coupled with proven leadership abilities and a deep understanding of security best practices and compliance frameworks.
Responsibilities:
Lead, mentor, and manage both the Offensive Security and Defensive Security teams, fostering a collaborative and high-performing environment. This includes defining team objectives, assigning responsibilities, and facilitating professional growth.
Oversee and guide the planning and execution of penetration testing, vulnerability assessments, and red team exercises to identify and exploit weaknesses in applications, systems, and networks. Ensure actionable recommendations for remediation are provided and tracked.
Manage and enhance the organization's security monitoring, incident response, and threat intelligence capabilities. Ensure the effective detection, analysis, containment, eradication, and recovery from security incidents.
Oversee the selection, implementation, and management of a comprehensive suite of security tools and technologies used by both offensive and defensive teams (e.g., SIEM, EDR, vulnerability scanners, penetration testing frameworks). Ensure optimal utilization and integration of these tools.
Champion and enforce secure coding practices and security integration throughout the software development lifecycle, collaborating closely with development teams to build secure applications by design.
Lead and participate in threat modeling exercises for applications and infrastructure, identifying potential security risks and proposing effective security controls for both prevention and detection.
Develop and maintain a comprehensive vulnerability management program that spans both applications and infrastructure, overseeing the identification, tracking, prioritization, and remediation of security vulnerabilities identified through both offensive and defensive measures.
Collaborate with the incident response team and provide leadership in investigating and responding to security incidents, particularly those related to applications. Contribute to the development and refinement of incident response plans and playbooks.
Lead and guide security code reviews to analyze and assess the security posture of application code. Provide expert guidance on the design and implementation of secure application architectures, ensuring adherence to security-by-design principles.
Drive the implementation and maintenance of ISO 27001 and PCI DSS compliance frameworks across both application and infrastructure security domains. Ensure adherence to relevant security policies, standards, and regulations.
Develop and present clear and concise reports on the security posture of applications and infrastructure, including findings from offensive security activities and incident response efforts, to both technical and executive audiences.
Promote a strong security awareness culture within the organization, collaborating on the development and delivery of security training programs for both technical and non-technical staff.
Manage the cybersecurity budget for both offensive and defensive security initiatives, ensuring cost-effectiveness and optimal resource allocation.
Qualifications:
Offensive Security Tools & Techniques:
Penetration testing frameworks (e.g., Metasploit, Cobalt Strike), vulnerability scanners (e.g., Nessus, Burp Suite), and exploitation methodologies.
Defensive Security Tools & Techniques:
SIEM platforms (e.g., Splunk, ELK Stack, Sentinel), EDR solutions, intrusion detection/prevention systems (IDS/IPS), and threat intelligence platforms.
ACE Money Transfer Profile: https://acemoneytransfer.com/company-profile
Job Type: Full-time
Work Location: In person
Similar jobs
Viftech Solutions
Karachi, Pakistan
5 days ago
NUST
Islamabad, Pakistan
5 days ago
Nobility Medical Billing Services
Rawalpindi, Pakistan
5 days ago
Lake City Developers
Lahore, Pakistan
5 days ago
Octdaily
Karachi, Pakistan
5 days ago
MOBIZ
Karachi, Pakistan
5 days ago
Trillium Information Security Systems
Rawalpindi, Pakistan
5 days ago
© 2025 Qureos. All rights reserved.