Qureos

FIND_THE_RIGHTJOB.

Principal Threat Emulation Engineer

JOB_REQUIREMENTS

Hires in

Not specified

Employment Type

Not specified

Company Location

Not specified

Salary

Not specified

Join our CyberSecurity team where we ensure a world class CyberSecurity organisation based on the key principles of People, Process and Technology underpinned with executive endorsement of a multi-year strategy to continuously improve and develop. The team protects our digital assets by monitoring for threats, responding to incidents, managing vulnerabilities, and ensuring compliance with security policies and regulations. If you are passionate about CyberSecurity, we invite you to apply to play a crucial role in shaping the future of our technology initiatives at Emirates Group.

As a Principal Threat Emulation Engineer, you will lead the organisation s adversary emulation function by designing and executing a strategic, multi-year roadmap for intelligence-led simulations of real-world cyber threats targeting critical assets. Develop and deliver a structured program to assess and improve the organisation s ability to detect, prevent, and respond to threats by operating Breach and Attack Simulation (BAS) platforms, conducting targeted exercises, and governing the remediation of identified vulnerabilities. Collaborate with Cybersecurity Operations, Incident Response, Threat Intelligence, and Security Engineering teams to address systemic weaknesses and align simulation outcomes with long-term resilience strategies.

In this role you will:

  • Define and execute a strategic, multi-year adversary emulation roadmap to validate and enhance the organization s security posture against relevant threat actors. Align adversary emulation outcomes with security architecture, technology investment decisions, and organizational resilience objectives.
  • Design, implement, and operate Breach and Attack Simulation (BAS) platforms to emulate tactics, techniques, and procedures (TTPs) and integrate results with security information and event management (SIEM) systems.
  • Conduct targeted simulation exercises to test detection, prevention, and response capabilities across technology, process, and personnel.
  • Oversee the governance process for remediation of vulnerabilities identified through internal and third-party assessments, ensuring closure within agreed timelines.
  • Produce and deliver clear, risk-focused reports on simulation outcomes to technical teams, senior management, and governance bodies.
  • Collaborate with Cybersecurity Operations Centre (SOC), Incident Response, Threat Intelligence, and Security Engineering teams to validate and optimise detection logic, incident playbooks, and control effectiveness.
  • Establish and maintain strong relationships with key internal and external stakeholders to ensure alignment, transparency, and strategic impact of adversary emulation activities.
  • Mentor and develop team expertise in adversary tradecraft and detection engineering, while engaging senior stakeholders to translate technical findings into business-focused insights, shape security investment priorities, and align outcomes with the organisation s long-term resilience strategy.

© 2025 Qureos. All rights reserved.