Sr. GRC & Network Security Engineer - QATAR
--Rekruitec--
We are seeking experienced professionals who can balance technical network security expertise with strategic Governance, Risk, and Compliance (GRC) leadership. This role is split 50-50 between hands-on security engineering and GRC program management.
Responsibilities
- Develop, implement, and maintain the organization’s GRC framework, policies, and procedures.
- Conduct risk assessments, audits, and ensure compliance with regulatory standards (ISO 27001, NIST, GDPR, etc.).
- Prepare and manage compliance documentation, reports, and evidence for internal and external audits.
- Lead third-party risk assessments and vendor security reviews.
- Facilitate security awareness training and ensure organizational alignment with security policies.
- Configure, manage, and troubleshoot Palo Alto and Fortinet firewalls (on-premises and cloud-based).
- Implement and maintain WAF, Cisco ISE, IP Telephony, ASA, ESA, WSA, and DNS Security solutions.
- Monitor network security infrastructure to ensure optimal performance and threat mitigation.
- Conduct continuous security monitoring and incident response.
- Utilize Microsoft Defender, Sentinel, and M365 Security for threat detection and response.
- Perform regular security assessments, vulnerability scans, and penetration tests.
- Develop, implement, and maintain GRC frameworks, policies, and procedures.
- Ensure alignment with industry standards and regulatory requirements.
- Prepare and maintain risk assessment, compliance documentation, and audit reports.
- Lead security initiatives and projects from conception to implementation.
Must Have
- Bachelor Degree or Higher
- Extensive experience with Palo Alto & Fortinet firewalls (on-prem and cloud).
- Proficiency in WAF, Cisco ISE, IP Telephony, ASA, ESA, WSA, and DNS Security.
- Hands-on experience with Microsoft Defender, Sentinel, and M365 Security.
- Proven experience in Governance, Risk, and Compliance (GRC) documentation and alignment.
Nice to have
- Strong knowledge of security monitoring, incident response, and threat intelligence.
- Familiarity with industry standards (e.g., ISO 27001, NIST, GDPR).
- Excellent problem-solving and analytical abilities.
- Ability to work under pressure and manage multiple priorities.
- Relevant certifications (e.g., PCNSE, NSE, CISSP, CISM) are highly desirable.
What We Offer
Perks
A full-time position
Attractive salary package.
Benefits
Employment visa
Medical insurance (self)
Relocation
Support provided for outstation candidates.