Senior Information Security Risk Analyst

4 weeks ago


Doha, Qatar قطر للطاقة Full time

**Company**
QatarEnergy is an integrated national oil corporation that stands at theforefront of efforts for the long term sustainable

development,utilization and monetization of oil and gas resources in the State ofQatar.In its efforts to become one of the

best national energy companies inthe world, QatarEnergy's activities and those of its subsidiaries andjoint ventures,

encompass the entire spectrum of the oil and gas valuechain locally, regionally, and internationally.They include the

exploration, refining and production, marketing, andsale of oil and gas, liquefied natural gas (LNG), natural gas

liquids(NGL), gas to liquids (GTL) products, refined products, petrochemicals,fertilizers, steel and aluminum. As an

integrated corporation,QatarEnergy's activities also include marketing and sale of oil and gasand other various

products.QatarEnergy's operations and activities are conducted at various onshorelocations, including Doha, Dukhan and

the Mesaieed and Ras LaffanIndustrial Cities; and at various offshore areas, such as offshore oilfields production stations,

drilling platforms, Halul oil export island,and the North Field, which is the largest single non-associated gasreservoir in the

world covering an area of 6,000 square kilometers. Theutilization of this field’s massive reserves has become a
primarynational goal to continue the development and prosperity of the country.QatarEnergy pays the utmost attention to

the health and safety of itsemployees, contractors, visitors and the local communities where itoperates. From drilling to

construction, operations to decommissioning,QatarEnergy's health, safety and environment policy forms an integralpart of

the corporation’s daily business and long term planning.QatarEnergy is committed to contribute to a better future by
meetingtoday’s economic needs, while safeguarding our environment and resourcesfor generations to come. Thriving on
innovation and excellence,QatarEnergy is bound to the highest levels of sustainable human, socio-economic, and

environmental development in Qatar and beyond.

**Department**
INFORMATION SECURITY

INFORMATION & COMMUNICATION TECHNOLOGY

**Primary purpose of job**
The Senior Information Security Risk Analyst is tasked with enhancing the information security posture of QatarEnergy in

both IT and OT environments by assessing and managing cyber and information security risks. He/She actively participates

in projects during all phases of implementation and operation, provides expert technical and procedural direction to identify

and manage cyber and information security risks, and monitors progress of activities to manage and report identified risks.

**Experience & Skills**:
- 10+ years of relevant professional experience
- Experience with large ICS & ICT environments in the Energy sector, preferably in Oil & Gas
- Knowledge of information security capabilities and requirements analysis
- Perform periodic risk management activities in IT and OT during the phases of project lifecycle, communicate risks and

mitigation actions to stakeholders, and support the business in defining cyber and information security requirements
- Identify critical information systems and supporting systems for business processes and projects
- Evaluate effectiveness of existing information security controls
- Propose cost effective information security controls for the remediation of risk
- Manage information security risk register, including the development of risks acceptance reports, and communicate risks

to the business as required
- Maintain security controls framework in compliance with state law, international standards and best practices
- Define and evaluate metrics for reporting information security control effectiveness
- Communicate the urgency and severity of complex risk scenarios in simple, effective language
- Excellent written and verbal business communication skills

**Education**:

- Bachelor degree in information security, computer science, or systems engineering.- Professional certifications related to Information security (e.g., ISO27001, ISO27005, CISSP, GICSP, CISA, GIAC, CEH,

etc.)



  • Doha, Qatar Robert Walters Full time

    Information Security Cloud Analyst – Duties Config/Scheduling of vulnerability scans within vulnerability management programmeMonitor/Prioritise/Remediation of identified vulnerabilitiesOrganise penetration tests with 3rd party providers and remediate vulnerabilities on risk basisInvestigate and resolution of InfoSec incidents, requests and...


  • Doha, Baladīyat ad Dawḩah, Qatar Qatar Petroleum Full time

    Job SummaryInformation Security Monitoring Analyst is an alert management analyst, responsible for monitoring, analysing and responding to information and operational security alerts triggered by Security Information and Event Management (SIEM) and Threat intelligence feeds. Primary responsibilities detect anomaly and potential security threats, filtering...


  • Doha, Baladīyat ad Dawḩah, Qatar Malomatia Full time

    Job SummaryThe Senior SOC analyst will be responsible of analyzing and investigating security related logs against security threats and defined IoC's. HE/She will conduct Threat hunting activities to identify security threats and IoC's and recommend action plan to minimize the impact of the threat. Develop and write reports that analyze the Threat and IoC's...


  • Doha, Baladīyat ad Dawḩah, Qatar Amiri Flight Full time

    Job SummaryFlight Security Officers are sufficiently trained and qualified to conduct all aspects of their role. As a Security Training and Risk/Threat Analyst your overall responsibilities will be continuous monitoring of global events and assessment of how they may impact on the security risk to our operations.Qualification & ExperiencePost-Secondary...


  • Doha, Qatar Amiri Flight Full time

    Job SummaryFlight Security Officers are sufficiently trained and qualified to conduct all aspects of their role. As a Security Training and Risk/Threat Analyst your overall responsibilities will be continuous monitoring of global events and assessment of how they may impact on the security risk to our operations.Qualification & Experience Post-Secondary...

  • Senior Analyst

    1 month ago


    Doha, Qatar Malomatia Full time

    Job SummaryThe Senior SOC analyst will be responsible of analyzing and investigating security related logs against security threats and defined IoC’s. HE/She will conduct Threat hunting activities to identify security threats and IoC’s and recommend action plan to minimize the impact of the threat. Develop and write reports that analyze the Threat and...

  • Senior Analyst

    2 hours ago


    Doha, Qatar Gadget Express Full time

    Job SummaryThe Senior SOC analyst will be responsible of analyzing and investigating security related logs against security threats and defined IoC's. HE/She will conduct Threat hunting activities to identify security threats and IoC's and recommend action plan to minimize the impact of the threat.Develop and write reports that analyze the Threat and IoC's...


  • Doha, Qatar Talent Pal Full time

    Job Summary and PurposeDrive a strong and robust Information Security Management System (ISMS) in the organization through threat/vulnerability detection security scanning penetration testing security monitoring vulnerability mitigations threat mitigations identifying IT/OT security risks and other related information security activities. Ensure adherence to...


  • Doha, Qatar Qatar Airways Full time

    Main Duties: Security Risk and Threat: - Continuously monitor the ongoing security and political situation worldwide and assess the impact of these events on the security risk to Amiri Flight operations. - Analyse the impact of Qatar’s foreign policy and international relations on the security of Amiri Flight operations. - Identify locations where...


  • Doha, Qatar Talent Pal Full time

    **Job Summary and Purpose**: Drive a strong and robust Information Security Management System (ISMS) in the organization through threat/vulnerability detection, security scanning, penetration testing, security monitoring, vulnerability mitigations, threat mitigations, identifying IT/OT security risks and other related information security activities. Ensure...


  • Doha, Qatar Qatar Petroleum Full time

    Job SummaryLead Information Security projects and report regularly on their progress. Coordinate and provide expert technical support by integrating Cyber & Information Security requirements into ICT projects, OT and Infrastructure projects, and review and validate the effective implementation of Cyber & Information Securityrequirements into project...


  • Doha, Baladīyat ad Dawḩah, Qatar Qatar Petroleum Full time

    Job SummaryLead Information Security projects and report regularly on their progress. Coordinate and provide expert technical support by integrating Cyber & Information Security requirements into ICT projects, OT and Infrastructure projects, and review and validate the effective implementation of Cyber & Information Securityrequirements into project...


  • Doha, Qatar qatar petroleum doha Full time

    Responsiblity:Monitor computer networks for security issues.Investigate security breaches and other cybersecurity incidents.Install security measures and operate software to protect systems and information infrastructure, including firewalls and data encryption programs.Document security breaches and assess the damage they cause.Work with the security team...


  • Doha, Qatar Talent Pal Full time

    JobSummary andPurposeDrivea strong and robust Information Security Management System (ISMS)in the organization through threat/vulnerability detection securityscanning penetration testing security monitoring vulnerabilitymitigations threat mitigations identifying IT/OT security risks andother related information securityactivities. Ensure adherenceto the...

  • IT GRC Analyst

    3 weeks ago


    Doha, Qatar K20S Kinetic Technologies Private Limited Full time

    Job Description: IT GRC AnalystPosition Overview:We are seeking an experienced IT GRC (Governance Risk and Compliance) Analyst to join our team. The ideal candidate should have extensive knowledge and handson experience in managing IT governance frameworks risk assessment methodologies and compliance standards. The role involves collaborating with...


  • Doha, Qatar AMIRinsurance Full time

    Job Summary Flight Security Officers are sufficiently trained and qualified to conduct all aspects of their role. As a Security Training and Risk/Threat Analyst your overall responsibilities will be continuous monitoring of global events and assessment of how they may impact on the security risk to our operations. Qualification & Experience •...


  • Doha, Qatar Robert Walters Full time

    What They're Looking For From The Candidate Excellent communication skills, attention to detail and growth mindset.Take ownership, demonstrate a sense of urgency, and ensure accuracy and quality.The ability to translate Information Security risks into the business language to support and drive informed decision making.A passion for compliance and...


  • Doha, Qatar qatar petroleum doha Full time

    Responsiblity:Monitorcomputer networks for securityissues.Investigate security breaches and othercybersecurity incidents.Install securitymeasures and operate software to protect systems and informationinfrastructure, including firewalls and data encryptionprograms.Document security breaches and assessthe damage they cause.Work with the securityteam to...


  • Doha, Qatar Robert Walters Full time

    Requirements For The Role✔ 7+ years of experience in Information Security✔ Develop and monitor a strategic, comprehensive enterprise information /cyber security risk management program to ensure protection of digital anddata assets✔ Implement and lead the strategy for managing and reporting securityincidents and oversee investigations of reported...


  • Doha, Qatar Robert Walters Full time

    Requirements For TheRole✔ 7+ years of experiencein Information Security✔ Develop and monitora strategic, comprehensive enterprise information/cyber security risk management program toensure protection of digital anddataassets✔ Implement and lead the strategy formanaging and reporting securityincidents andoversee investigations of reported...