Cyber Security Specialist
by Anghami in Cybersecurity
The Cyber Security Specialist is responsible for safeguarding OSN’s digital assets, OTT platforms, content delivery infrastructure, broadcast environments, cloud platforms, enterprise applications, and corporate systems against evolving cyber threats. The role combines proactive security engineering, advanced threat detection, security monitoring, incident response, digital forensics, cloud security, application security, vulnerability management, governance, compliance, and continuous security improvement across both cloud and on-premises environments. The position leads the complete security incident lifecycle including detection, triage, containment, eradication, recovery, lessons learned, and executive reporting while acting as the primary Tier 2/Tier 3 SOC escalation point. Responsibilities include developing incident response playbooks aligned with NIST CSF and ISO 27035, conducting forensic investigations, coordinating with MSSPs, threat intelligence providers, and UAE CIRT, designing advanced SIEM detections using Microsoft Sentinel and Splunk, implementing threat hunting using MITRE ATT&CK, monitoring indicators of compromise (IoCs) and indicators of attack (IoAs), producing executive threat intelligence briefings, administering Microsoft Sentinel, Splunk, DLP, PAM, WAF, vulnerability management platforms including Tenable and Qualys, managing Microsoft Defender XDR, CrowdStrike, SentinelOne, Azure Security Centre, Microsoft Defender for Cloud, AWS Security Hub, GuardDuty, CSPM solutions, Zero Trust architectures, infrastructure-as-code security using Terraform and ARM templates, DevSecOps integration into CI/CD pipelines, vulnerability discovery, CVSS-based prioritization, penetration testing, red team exercises, API security, OWASP Top 10 compliance, SAST and DAST assessments using Checkmarx, Veracode and Burp Suite Pro, secure SDLC implementation, Python, PowerShell and Bash automation, OTT platform protection, Digital Rights Management including Widevine, PlayReady and FairPlay, anti-piracy controls, CDN protection, satellite broadcast security, regulatory compliance with UAE PDPL, NESA, ISO 27001, ISO 27002, SOC 2, CIS Controls v8, security audits, governance, policy management, risk reporting and ongoing collaboration with engineering, DevOps, infrastructure and business teams to maintain resilient, compliant and secure enterprise operations.