Lead Information Security (Defensive)
📣 Job Ad| Contract Type | Full-time | |
| Workplace type | On-site | |
| Location | Riyadh |
Job Description
About Tabby
Tabby is a FinTech company focused on reshaping financial interactions for shopping, earning, and saving. The platform serves over 17 million users, enabling them to manage spending and optimize their finances. Tabby's core offering allows customers to split payments online and in-store without interest or fees. Over 40,000 global brands and small businesses, including Amazon, Noon, IKEA, and SHEIN, utilize Tabby to facilitate flexible payments, driving growth and customer loyalty. Since its launch in 2019, Tabby has raised over $1 billion in funding and is currently valued at $ billion, generating over $10 billion in annual transaction volume for its partners. It is recognized as a leading and rapidly expanding FinTech in the GCC region.
The Opportunity
Tabby is seeking a Lead Cyber Security Engineer to join the Information Security team in Riyadh. This full-time role involves providing technical leadership in defensive security, managing a team of security engineers and analysts, and driving security initiatives across the organization.
Key Responsibilities
- Lead security architecture and design reviews for IT, cloud, and product initiatives.
- Drive cloud security efforts across GCP and AWS, including IAM, security posture management, and infrastructure security.
- Oversee the Secure SDLC / DevSecOps program, encompassing SAST, DAST, SCA, and container security.
- Lead vulnerability management, penetration testing, and red team engagements.
- Manage endpoint, infrastructure, and firewall security.
- Drive detection engineering, threat intelligence, and complex incident response.
- Develop and mentor a team of cybersecurity engineers and analysts.
- Collaborate with Engineering, IT, Compliance, and other teams to enhance Tabby’s overall security posture.
Required Qualifications and Experience
- 5-10 years of cybersecurity experience, including technical leadership or senior-level responsibilities.
- Strong experience in security architecture, cloud security, AppSec/DevSecOps, and vulnerability management.
- Hands-on understanding of offensive and defensive security, including penetration testing, red/purple teaming, and incident response.
- Experience with SIEM, EDR/XDR, CSPM, DLP, and vulnerability management platforms.
- Strong knowledge of GCP/AWS, IAM, Terraform, Kubernetes, and CI/CD security.
- Experience with SAST, DAST, SCA, and secure SDLC practices.
- Knowledge of SAMA CSF, NCA ECC, PCI-DSS, and ISO 27001.
- CISSP/CISM and OSCP or equivalent certifications are required.
Skills and Attributes
- Strong technical leadership abilities.
- Proven stakeholder management skills.
- Demonstrated capability in team development and mentorship.
Work Location
This position is based in Riyadh.
Requirements
- Requires 5-10 Years experience
Similar Jobs
You may also like
- Related Lead Information Security (Defensive) Opportunities
- Sales Representative Jobs in Jeddah
- Cashier Jobs in Jeddah
- Call Center Agent Jobs in Jeddah
- Project Manager Jobs in Jeddah
- Human Resources Officer Jobs in Jeddah
- Other Job Fields in Riyadh
- Sales Representative Jobs in Riyadh
- Cashier Jobs in Riyadh
- Call Center Agent Jobs in Riyadh
- Project Manager Jobs in Riyadh
- Physical Therapist Jobs in Riyadh
- Human Resources Officer Jobs in Riyadh
- Medical Sales Representative Jobs in Riyadh
- Electrician Jobs in Riyadh
- Business Development Manager Jobs in Riyadh
- Digital Marketing Specialist Jobs in Riyadh
- Explore Jobs Across Saudi Arabia
- Maintenance Manager Jobs in Makkah
- Mechanical Engineer Jobs in Dhahran
- Social Media Content Creator Jobs in Makkah
- Chef Jobs in Jeddah
- Nurse Specialist Jobs in An Nuayriyah
- Nurse Specialist Jobs in Al Bukayriyah
- General Services Controller Jobs in Unayzah
- Accounts Payable Accountant Jobs in Al Khobar
- Testing & Commissioning Engineer Jobs in Riyadh
- Speech Therapist Jobs in Al Majmaah
