We are looking for experienced Cybersecurity Consultants / Senior Consultants to join our team in Kuwait. The role will involve working on cybersecurity risk, compliance, assessment, and audit engagements across critical infrastructure sectors, including banking, telecom, and government.
The level of appointment will be determined based on the candidate’s experience and technical capabilities.
Key Responsibilities:
- Security Risk & GRC: Support the development and implementation of cybersecurity risk management frameworks aligned with global standards such as ISO 27001 and NIST CSF, as well as local regulatory requirements, including Kuwait NCSA and CBK guidelines.
- Security Assessment & Audit: Conduct cybersecurity audits, control assessments, and maturity assessments across infrastructure, applications, cloud environments, and third parties (TPRA).
- Technical Security Assessments: Perform and/or review Vulnerability Assessments (VA), Penetration Testing (PT), and secure configuration reviews across operating systems, databases, networks, and cloud environments.
- Cyber Resilience: Support cybersecurity strategy, governance, business continuity, and cyber resilience initiatives, including BCP exercises and DR testing.
- Client Engagement: Work closely with client stakeholders to identify cybersecurity risks, develop practical recommendations, prepare reports, and support remediation activities.
- Project Delivery: Manage assigned workstreams and deliverables across multiple cybersecurity engagements while maintaining quality and timelines.
- Business Development Support: Contribute to proposals, tenders, RFP responses, and other cybersecurity practice development activities.
Required Qualifications & Experience:
- Bachelor’s or Master’s degree in Cybersecurity, Information Technology, Computer Science, Information Security, or a related field.
- 3–6 years of relevant experience in cybersecurity consulting, advisory, risk, compliance, assessment, or audit.
- Good understanding of cybersecurity frameworks and standards such as ISO 27001, NIST CSF, and related security controls.
- Exposure to cybersecurity risk assessments, GRC, security audits, VA/PT, TPRA, cloud security, BCP, and DR is preferred.
- Knowledge of Kuwait NCSA requirements and/or CBK cybersecurity guidelines would be an advantage.
- Strong analytical, report-writing, communication, and client-facing skills.
- Relevant professional certifications such as CISA, CISSP, CISM, CRISC, ISO 27001, CEH, OSCP, or equivalent would be an advantage.