Penetration Test Analyst
Primary Purpose of the Job
Responsible for leading the Offensive red teaming activities on Qatar Energy’s IT/OT environments, by conducting threat hunting, penetration testing, Vulnerability scanning and security assurance activities. Provides oversight and technology guidance as well as managerial support as required. Oversee the execution of incident management program and supervises and coordinates engineers and external consultants to design, build and manage Qatar Energy SOC Red team functions on Qatar Energy’s IT and OT cyber security mission critical operational expansion.
RequiredExperience and Skills
- Strong understanding of cyber incident management, malware management and vulnerability management processes.
- Solid knowledge on malware analysis, vulnerability assessment, forensic and memory analysis, and data analytics.
- Experience with large IC & ICT environments in the energy sector is a big plus.
- Advanced knowledge of networking fundamentals (TCP/IP, network layers, Ethernet, etc.), current threat landscape (threat actors, APT, cyber‑crime, etc.), penetration techniques and forensic techniques, protocol analysis (Wireshark, Netwitness, etc.), client‑server applications, multi‑tier web applications, and relational databases.
- Solid knowledge and experience with cloud technologies (Amazon, Azure, Google Cloud, IaaS, SaaS, etc.).
- Good knowledge of IT, including multiple operating systems and system administration skills (Windows, Unix).
- Solid understanding of IT governance and processes, such as ITIL, COBIT.
- Possession of industry certifications: ISACA, GCIA, SANS, ICSE2, EC‑Council, and relevant cyber security certifications such as CISSP, CISM, GCIH, GIAC, CEH, CEPT, OSCE, CHFI, GREM or equivalent advanced‑level security technology technical certifications.
- Must maintain professional demeanor in stressful situations.
Bachelor’s degree in information security, computer science, or systems engineering. 10+ years of technical experience in information security, system administration, or network engineering with at least 5 years of experience in information security.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).