Lead Information Security (Defensive)
📣 Job Ad| Contract Type | Full-time | |
| Workplace type | On-site | |
| Location | Riyadh |
Job Description
About Tabby
Tabby is a FinTech company focused on reshaping financial interactions for shopping, earning, and saving. The platform serves over 17 million users, enabling them to manage spending and optimize their finances. Tabby's core offering allows customers to split payments online and in-store without interest or fees. Over 40,000 global brands and small businesses, including Amazon, Noon, IKEA, and SHEIN, utilize Tabby to facilitate flexible payments, driving growth and customer loyalty. Since its launch in 2019, Tabby has raised over $1 billion in funding and is currently valued at $ billion, generating over $10 billion in annual transaction volume for its partners. It is recognized as a leading and rapidly expanding FinTech in the GCC region.
The Opportunity
Tabby is seeking a Lead Cyber Security Engineer to join the Information Security team in Riyadh. This full-time role involves providing technical leadership in defensive security, managing a team of security engineers and analysts, and driving security initiatives across the organization.
Key Responsibilities
- Lead security architecture and design reviews for IT, cloud, and product initiatives.
- Drive cloud security efforts across GCP and AWS, including IAM, security posture management, and infrastructure security.
- Oversee the Secure SDLC / DevSecOps program, encompassing SAST, DAST, SCA, and container security.
- Lead vulnerability management, penetration testing, and red team engagements.
- Manage endpoint, infrastructure, and firewall security.
- Drive detection engineering, threat intelligence, and complex incident response.
- Develop and mentor a team of cybersecurity engineers and analysts.
- Collaborate with Engineering, IT, Compliance, and other teams to enhance Tabby’s overall security posture.
Required Qualifications and Experience
- 5-10 years of cybersecurity experience, including technical leadership or senior-level responsibilities.
- Strong experience in security architecture, cloud security, AppSec/DevSecOps, and vulnerability management.
- Hands-on understanding of offensive and defensive security, including penetration testing, red/purple teaming, and incident response.
- Experience with SIEM, EDR/XDR, CSPM, DLP, and vulnerability management platforms.
- Strong knowledge of GCP/AWS, IAM, Terraform, Kubernetes, and CI/CD security.
- Experience with SAST, DAST, SCA, and secure SDLC practices.
- Knowledge of SAMA CSF, NCA ECC, PCI-DSS, and ISO 27001.
- CISSP/CISM and OSCP or equivalent certifications are required.
Skills and Attributes
- Strong technical leadership abilities.
- Proven stakeholder management skills.
- Demonstrated capability in team development and mentorship.
Work Location
This position is based in Riyadh.
Requirements
- Requires 5-10 Years experience
Similar Jobs
You may also like
- Related Lead Information Security (Defensive) Opportunities
- Business Development Supervisor Jobs in Al Khobar
- Seller Jobs in Al Khobar
- Human Resources Clerk Jobs in Al Khobar
- Barista Jobs in Al Khobar
- Marketing Specialist Jobs in Al Khobar
- Other Job Fields in Riyadh
- Business Development Supervisor Jobs in Riyadh
- Seller Jobs in Riyadh
- Human Resources Clerk Jobs in Riyadh
- Secretary Jobs in Riyadh
- Barista Jobs in Riyadh
- Social Media Content Creator Jobs in Riyadh
- Marketing Specialist Jobs in Riyadh
- Sales Representative Jobs in Riyadh
- Clothes Seller Jobs in Riyadh
- Senior Accountant Jobs in Riyadh
- Explore Jobs Across Saudi Arabia
- Product Manager Jobs in Jeddah
- Administrative Specialist Jobs in Makkah
- Communications Networks Technician Jobs in Al Jubail
- Interior Design Engineer Jobs in Riyadh
- Electric Appliances Maintenance Technician Jobs in Riyadh
- Sports Coach Jobs in Jeddah
- Dentist Jobs in Sayhat
- Electrical Engineering Technician Jobs in Al Khobar
- Medical Devices Engineer Jobs in Jeddah
- Legal Secretary Jobs in Dammam
