Job Description

Location: Abu Dhabi, UAE

About Us

A leading UAE-based consumer technology company, building the digital infrastructure of everyday life with a focus on AI-powered fintech, communication, and digital services.

Guided by our philosophy, the Blueprint of Simplicity, we design technology around real human behavior, connecting people, enabling financial access, and making everyday experiences effortless.

Our flagship platform, botim, is the region’s most trusted fintech communication platform, combining secure VoIP with action-based AI and everyday money tools. Through botim money, we provide financial services that serve both individuals and SMEs, making payments, transfers, and credit simpler and more accessible. Today, the platform serves 150M+ users worldwide.

Our lending finance engine, Quantix, powers fast, regulated credit across the ecosystem, including innovative products such as CashNow for instant access.

From calls to credit, from daily services to big ambitions, we are rethinking how the region stays connected and financially included.

Role Summary

We are seeking a hands-on Cybersecurity Engineer with deep expertise in offensive security, secrets management, and secure platform engineering.

This role focuses on advanced technical execution, including:

  • Azure infrastructure security
  • Enterprise-grade Key & Secrets Management (PAM / HSM / Key Vault)
  • SOC operation
  • Red/Blue team operations
  • DevSecOps security integration
  • Infrastructure & application-level resilience (DR / security validation)

The ideal candidate is a technical expert, capable of designing and implementing security controls, validating them through adversarial testing, and integrating them into modern cloud-native environments.

Responsibilities

  • Azure Infrastructure Security

Hands-on hardening of Azure tenants — Entra ID (Azure AD), Conditional Access, Defender for Cloud, NSGs, Private Link, Key Vault, Policy & Blueprints, Landing Zone reference architectures, and CIS/Microsoft Cloud Security Benchmark alignment.

  • Key & Secrets Management

Design and operate enterprise key lifecycle — Azure Key Vault / Managed HSM, BYOK/HYOK, certificate lifecycle, rotation, envelope encryption, and integration with PKI and application secrets stores.

  • Privileged Access Management (PAM)

Implement and administer PAM platforms (e.g., CyberArk, BeyondTrust, PAM360 or equivalent) — vault design, session isolation/recording, JIT/JEA, credential rotation, and Tier-0 protection for hybrid identities.

  • VAPT — Web & APIs

Lead and execute vulnerability assessments and penetration tests on web applications and REST/GraphQL APIs aligned to OWASP Top 10, ASVS and API Security Top 10; use Burp Suite Pro, ZAP, Nuclei, and produce risk-rated, developer-actionable reports.

  • DevSecOps

Embed security across CI/CD (Azure DevOps / GitHub Actions / GitLab) — SAST, DAST, SCA, IaC scanning (Terraform/Bicep), container & image scanning, secrets detection, and policy-as-code (OPA / Azure Policy).

  • SOC — Microsoft Sentinel

Operate Microsoft Sentinel end-to-end — data connectors, KQL hunting, analytics & UEBA rules, watchlists, SOAR playbooks (Logic Apps), incident triage, MITRE ATT&CK mapping, and threat intelligence integration.

Required Qualifications & Experience

  • Education: Bachelor's degree in Computer Science, Information Security, Engineering or a closely related discipline.
  • Experience: 5 – 8 years of hands-on experience in cybersecurity engineering or security operations roles within enterprise or service-provider environments.
  • Cloud: Demonstrable, production-grade experience securing Microsoft Azure workloads (multi-subscription, hybrid identity, networking).
  • Offensive Skills: Proven track record of delivering web and API penetration tests with formal reporting to enterprise stakeholders.
  • SOC: Working experience with Microsoft Sentinel and Microsoft Defender XDR, including KQL, analytics rule authoring, and Logic Apps automation.
  • Tooling: Practical exposure to PAM (CyberArk / BeyondTrust / PAM360), Key Vault / HSM, Burp Suite Pro, CI/CD security scanners, and IaC tools.


Job Details

Role Level: Not Applicable Work Type: Full-Time
Country: United Arab Emirates City: Abu Dhabi
Company Website: http://astratech.ae Job Function: Information Technology (IT)
Company Industry/
Sector:
Financial Services

What We Offer


About the Company

Searching, interviewing and hiring are all part of the professional life. The TALENTMATE Portal idea is to fill and help professionals doing one of them by bringing together the requisites under One Roof. Whether you're hunting for your Next Job Opportunity or Looking for Potential Employers, we're here to lend you a Helping Hand.

Report

Disclaimer: talentmate.com is only a platform to bring jobseekers & employers together. Applicants are advised to research the bonafides of the prospective employer independently. We do NOT endorse any requests for money payments and strictly advice against sharing personal or bank related information. We also recommend you visit Security Advice for more information. If you suspect any fraud or malpractice, email us at abuse@talentmate.com.


Recent Jobs
View More Jobs
Talentmate Instagram Talentmate Facebook Talentmate YouTube Talentmate LinkedIn