Job PurposeAt Emirates, we believe in connecting the world to and through our global hub in Dubai and in constantly innovating to ensure our customers ‘Fly Better’. Emirates Group IT thrives on the dynamic nature of technology. Being pioneers in aviation innovation, were always at the forefront, pus
JSfirm
Cybersecurity Assurance Officer
Job Description:
Job Purpose

At Emirates, we believe in connecting the world to and through our global hub in Dubai and in constantly innovating to ensure our customers ‘Fly Better’. Emirates Group IT thrives on the dynamic nature of technology. Being pioneers in aviation innovation, were always at the forefront, pushing boundaries. Were on the lookout for exceptional IT professionals to fortify our position as leaders in the industry. Embark on a journey with the world’s largest international airline and become a vital part of our cutting-edge information and technology team as Cybersecurity Assurance Officer.

Join our CyberSecurity team where we ensure a world class CyberSecurity organisation based on the key principles of People, Process and Technology underpinned with executive endorsement of a multi-year strategy to continuously improve and develop. The team protects our digital assets by monitoring for threats, responding to incidents, managing vulnerabilities, and ensuring compliance with security policies and regulations. If you are passionate about CyberSecurity, we invite you to apply to play a crucial role in shaping the future of our technology initiatives at Emirates Group.

As a Cybersecurity Assurance Officer in the Cyber Assurance team, you will develop, implement, lead and continuously improve the security verification and testing processes consisting of but not limited to risk assessments, compliance reviews, vulnerability assessments and penetration tests based on industry best practices and as defined by the assurance. Collaborate with the team in developing the assurance program on an ongoing basis to incorporate industry best practices and offensive and defensive attack techniques.


In this role you will:

  • Deliver in-depth automated and manual discovery of security vulnerabilities in web applications, mobile applications, web services and client server application and associated infrastructure
  • Perform a thorough verification of the vulnerabilities found during the assessment and associated risk as per risk assessment framework. Support in building defence in depth controls in web & mobile applications.
  • Provide necessary knowledge transfer of the vulnerabilities found during the assessments to the software engineering teams by means of meetings, walkthroughs, technical discussions etc. for implementing appropriate security fixes.
  • Monitor identified security vulnerabilities throughout their life cycle from identification to resolution to verification and closure.
  • Participate in red teaming complex environments with up-to-date knowledge on exploitation and help blue team to build use cases for stronger defence.
  • Participate in evolving the assurance program on an ongoing basis to incorporate industry best practices, newer offensive and defensive attack techniques
  • Collaborate with development teams on improving security by offering design reviews, threat modelling, awareness, training, new tooling and expert review
  • Create tools, script, and automation to make the vulnerability discovery and vulnerability management process more consistent and efficient.
Qualification

To be considered for the role, you must meet the below requirements:

  • Degree or Honours (12+3 or equivalent) Information Technology or relevant.
  • 3+ Years of experience information security with related industry recognised certification such as CISSP, CISA, CISM, GIAC certification, CEH, etc.
  • Deep technical knowledge of OWASP TOP 10 issues for both Application & Mobile
  • Deep technical knowledge of network and infrastructure security testing
  • Technical aptitude to test Web Services, API’s, business logic issues, cloud specific issues etc.
  • Adaptive to newer attack vectors & technologies and its applicability
  • Proficient in using & implementing open source and commercial tools for application, mobile & thick client security testing
  • Experience in reviewing source code for varied programming languages
  • Deep technical knowledge of browser security controls such SOP, CSP, XFO, HSTS, etc.
  • Knowledge of reviewing mobile & web-based security design, implementation & review.
Leadership Role: NoSalary & benefits

Join us in Dubai and enjoy an attractive tax-free salary and travel benefits that are exclusive to our industry, including discounts on flights and hotels stays around the world. Find out what it’s like to live and work in our fast-paced, cosmopolitan home city in the Dubai Lifestyle section of our website www.emirates.com/careers

Company Details
Emirates Airlines
P.O. Box 686
Dubai, Dubayy United Arab Emirates, International . International
www.emirates.com
103 Open Jobs Available
With a fleet of more than 230 aircraft, we currently fly to over 140 destinations in more than 80 countries around the world, and our network is expanding constantly. Over 1,500 Emirates flights depart Dubai each week on their way to destinations on six...

Benefits:
TBD

Supported Manufacturers:
Airbus, Boeing

Supported Models:
A380, 777
(Job and company information not to be copied, shared, scraped, or otherwise disseminated/distributed without explicit consent of JSfirm, LLC)
Job Info
Location
Dubai, Dubayy, United Arab Emirates
Type
Permanent
Company Details
Emirates Airlines
P.O. Box 686
Dubai, Dubayy United Arab Emirates, International . International
www.emirates.com
103 Open Jobs Available
With a fleet of more than 230 aircraft, we currently fly to over 140 destinations in more than 80 countries around the world, and our network is expanding constantly. Over 1,500 Emirates flights depart Dubai each week on their way to destinations on six...

Benefits:
TBD

Supported Manufacturers:
Airbus, Boeing

Supported Models:
A380, 777

JSfirm, LLC

Roanoke, TX

jobs@jsfirm.com

JSfirm LLC, Privacy Policy

All rights reserved. 2001-2025 JSfirm