368,530open jobs
9,432companies
50,439added this week
Browse all
Location
In office (Amman)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Since 2007, we've been driven by one mission: to simplify life. Over the years, we've expanded our reach across many cultures and geographies, ultimately recognizing that people share core needs- from access to trusted digital services to clean water and stable power. Guided by our diverse perspectives and foundational pillars; empathy, science, strategy, and technology, we create experiences that empower communities and connect people to what matters most.

Role Overview

The Cybersecurity Engineer is a senior technical role responsible for implementing and evolving Avertra's IT security framework across our cloud-native infrastructure and application landscape. You will protect the organization's systems, data, and operations while maintaining continuous compliance with industry and regulatory standards.

Key Responsibilities

Threat Detection & Incident Response

  • Conduct continuous network monitoring and intrusion detection using IDS/IPS, SIEM, NAC, HBSS, and vulnerability management tooling.
  • Correlate activity across networks, applications, and systems to identify unauthorized access patterns, trends, and emerging attack vectors.
  • Triage and document security alerts; produce formal incident reports with actionable remediation steps.
  • Research emerging threats and CVEs; assess applicability and risk to the organization.

Vulnerability & Configuration Management

  • Plan, execute, and manage enterprise vulnerability scans across cloud infrastructure, containers, and application layers.
  • Identify and resolve false positives; perform compensating controls analysis and validate control efficacy.
  • Enforce configuration and hardening standards across compute, networking, and application environments.
  • Produce vulnerability, configuration, and coverage metrics to demonstrate assessment coverage and remediation effectiveness.

Security Engineering & Controls

  • Implement and maintain security controls across cloud infrastructure, identity management, and application layers.
  • Integrate security tooling into development and deployment pipelines to enable a secure-by-default engineering culture.
  • Recommend and implement security controls and corrective actions to mitigate technical and business risk.
  • Develop and enforce security standards across systems, software, and networking components.

Compliance & Governance (SOC 1/2 · PCI DSS)

  • Act as the primary point of contact for SOC 1, SOC 2, and PCI DSS audit engagements.
  • Design and maintain compliance controls, gather evidence, and drive audit readiness across all trust service criteria.
  • Scope and segment the PCI Cardholder Data Environment (CDE) and ensure appropriate network segmentation.
  • Manage audit trails, access reviews, change management procedures, and data classification policies.
  • Establish and govern the IT risk and compliance framework; manage third-party and vendor risk.
  • Recommend improvements to the Information Security Program, reporting findings to the Information Security Officer.

Reporting & Policy

  • Generate executive-ready reports on assessment findings and summarize to facilitate remediation across teams.
  • Manage and maintain security policies and procedures organization-wide.
  • Perform periodic security and compliance-related reviews and audits.

Skills

Experience & Education

  • 5-8 years of experience in IT Security, Controls, or Auditing
  • Bachelor's degree in Computer Science, Information Technology, or a related field

Technical Skills

  • Threat analysis: malicious activity identification, TTPs, attacker behavior analysis
  • Network & protocol security: TCP/IP, UDP, IPSEC, HTTP/S, DNS, TLS - vulnerabilities and remediation
  • Security engineering: cryptography, authentication protocols, PKI, application and API security
  • Cloud security: Azure Defender, Entra ID / RBAC, Private Endpoints, WAF, DDoS Protection, Key Vault
  • Container & Kubernetes security: image scanning, RBAC, Pod Security Standards, network policies, runtime protection
  • DevSecOps: CI/CD pipeline security integration, IaC scanning, secrets scanning and management
  • SIEM & monitoring: Azure Sentinel or equivalent - alert tuning, playbooks, log aggregation
  • Application security: OWASP Top 10, SAST/DAST tooling (Snyk, SonarQube, OWASP ZAP), dependency and supply-chain security
  • Compliance tooling: SOC 2 evidence management platforms, PCI DSS scoping and controls

Professional Skills

  • Strong analytical and risk-based decision-making capability
  • Ability to translate technical risk into business language for executives and auditors
  • Influencing skills - ability to drive a secure-by-default culture across engineering and operations teams
  • Excellent written and spoken English; skilled at producing clear technical documentation and reports
  • Customer-focused mindset with a commitment to high-quality, timely outcomes
  • Proficient with Microsoft Office (Word, Excel, PowerPoint)
  • Strong multi-tasking and remote collaboration capabilities

Work Details

  • Schedule: Monday - Friday, 10:00 AM - 7:00 PM (or as agreed with supervisor - will be hybrid based on demand)
  • Travel: Up to 15%

Preferred Certifications

  • ISO/IEC 27001 Lead Implementer or Auditor
  • Certified Ethical Hacker (CEH) or OSCP
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500)
  • CISSP, CISM, or CompTIA Security+
  • PCI Internal Security Assessor (ISA) or PCIP
  • Experience with GRC/continuous compliance platforms (Vanta, Drata, Tugboat Logic)
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,530 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Amman
$220k – $325k per year • Remote/Hybrid • Full-Time • 15+ years exp • New York
DevOps
AWS
Azure
CI/CD
GCP
Kubernetes
Platform Engineering
Cybersecurity
Threat Modeling
Apply
$21k – $57k per year (Estimated) • Remote/Hybrid • Full-Time • 6+ years exp • Bachelor's Degree • Noida
C#
SQL
TypeScript
JavaScript
C#
.NET
Frontend
Angular
DevOps
Azure
Azure DevOps
CI/CD
Git
TeamCity
Apply
$16k – $42k per year (Estimated) • Remote/Hybrid • Full-Time • 3+ years exp • Bachelor's Degree • Noida
C#
SQL
TypeScript
JavaScript
C#
.NET
Frontend
Angular
DevOps
Azure
Azure DevOps
CI/CD
Git
TeamCity
Apply
$21k – $57k per year (Estimated) • Remote/Hybrid • Full-Time • 8+ years exp • Bachelor's Degree • Noida
C#
SQL
TypeScript
JavaScript
C#
.NET
Frontend
Angular
DevOps
Azure
Azure DevOps
CI/CD
Git
TeamCity
Apply
$16k – $42k per year (Estimated) • Remote/Hybrid • Full-Time • 3+ years exp • Bachelor's Degree • Noida
C#
SQL
TypeScript
JavaScript
C#
.NET
Frontend
Angular
DevOps
Azure
Azure DevOps
CI/CD
Git
TeamCity
Apply
Security Engineer 1 month ago
Remote/Hybrid • Full-Time • 4+ years exp • Bachelor's Degree • Amman
TypeScript
DevOps
Azure
Azure AKS
Azure DevOps
CI/CD
Kubernetes
SLI/SLO/SLA
Cybersecurity
CodeQL
DefectDojo
Falco
Microsoft Defender for Cloud
Microsoft Entra ID
Microsoft Sentinel
OWASP Top 10
OWASP ZAP
PCI DSS
Semgrep
SOC 2
Threat Modeling
Wazuh
Apply
Sr. DevOps Engineer 1 month ago
In office • Full-Time • 5+ years exp • Bachelor's Degree • Amman
Bash
PowerShell
Python
DevOps
Ansible
AWS
Azure
Azure DevOps
CI/CD
CloudFormation
Docker
GCP
GitLab CI
Grafana
Helm
Istio
Jenkins
Kubernetes
New Relic
OpenShift
Prometheus
Puppet
Terraform
Travis CI
GitLab
Apply
In office • Full-Time • 3+ years exp • Bachelor's Degree • Amman
JavaScript
TypeScript
Node JS
Node JS
Prisma
Sequelize
Frontend
React.js
DevOps
CI/CD
Apply
Remote • Full-Time • 5+ years exp • Nairobi • Amman
Apply
In office • Full-Time • 10+ years exp • Bachelor's Degree • Amman
C#
SQL
TypeScript
JavaScript
C#
ASP.NET Core
Frontend
Angular
DevOps
Azure
Apply
Remote • Full-Time • 4+ years exp • Bachelor's Degree • Amman
C#
C++
Go
Java
Kotlin
DevOps
AWS
Azure
Docker
GCP
Kubernetes
Apply
In office • 6+ years exp • Amman
C#
SQL
TypeScript
JavaScript
C#
ASP.NET Core
Entity Framework Core
Frontend
Angular
Sass
DevOps
Git
Rest API
Apply
In office • Full-Time • 2+ years exp • Bachelor's Degree • Amman
Design
AutoCAD
Apply
See all jobs
This is one of many
368,530 more open roles from verified company boards, updated every day.