VAM Systems
Senior Offensive Security Consultant - Banking
VAM SystemsQatar13 days ago
Full-timeInformation Technology
Job Description

We are currently looking Senior Offensive Security Consultant for our Qatar operations with the following terms & conditions.

Required Qualifications and Experience:

  • University graduate in Computer Science subject
  • Strong understanding of offensive security concepts and frameworks, including MITRE ATT&CK, vulnerability exploitation, DevSecOps and OWASP top ten projects.
  • Experience managing or integrating SAST, DAST, attack simulation, and container security tools into CI/CD platforms (e.g., Jenkins, GitLab CI, Azure DevOps)
  • Awareness of current breach and attack simulation platforms and AI-driven CI/CD pen testing solutions and their use cases (e.g., Cytix, SafeBreach, AttackIQ, Cymulate).
  • Strong knowledge of container and kubernetes security
  • Ability to work independently and manage multiple priorities in a fast-paced environment.
  • Excellent verbal and written communication skills.
  • Proven work experience in the UK, US, or Europe

Key Responsibilities:

Security Tool Management & Integration

  • Own the deployment, configuration, and maintenance of:
    • Static Application Security Testing (SAST) tools
    • Dynamic Application Security Testing (DAST) tools
    • Breach and Attack Simulation (BAS) tools
    • Container Security Solutions (e.g., image scanning, runtime protection)
  • Integrate security tools into CI/CD pipelines to enable automated and continuous security validation.
  • Monitor tool performance, ensure scalability, and optimize configurations for accuracy and efficiency.
  • Security Strategy & Enablement

Preferred Qualifications and Experience:

  • Certifications such as OSCP, CRTO, OSCE, or equivalent.
  • Experience of streamlining SDLC processes and workflows using AI techniques and approaches
  • Experience with cloud platforms (AWS, Azure, GCP) and their native security services.

Framework & Boundaries:

  • Group’s overall strategic plan.
  • Applicable policies and procedures.
  • Delegated authorities as per the delegation of authority structure.
  • Instructions of the Head of Cyber Risk Assessments and Group Chief Information Security Officer

Joining time frame: 2 weeks (maximum 1 month)

Key Skills

Ranked by relevance