SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Tabby, a $4.5B-valued FinTech operating across the GCC region, is seeking a Senior Manager of Information Security to lead and shape the company's information security function across strategic and technical domains. You will lead a team of security professionals and own key security programmes spanning cloud security, security architecture, application security, vulnerability management, threat detection, and incident response.
Key responsibilities include:
- Lead and contribute hands-on to security architecture and technical security reviews across cloud, infrastructure, and product initiatives
- Design and implement security controls across GCP and AWS, including IAM, CSPM, and cloud-native security
- Drive and contribute to Secure SDLC/DevSecOps, including SAST, DAST, SCA, and container security
- Lead vulnerability management and actively participate in penetration testing, VAPT, and red/purple team engagements
- Design and improve threat detection, SIEM use cases, and security monitoring
- Lead and participate in complex security incident investigations and response
- Drive endpoint, infrastructure, network, and firewall security initiatives
- Automate security processes and develop security tooling where needed
- Establish technical standards, security best practices, and operating procedures
- Manage, mentor, and develop a team of security engineers and analysts
- Work closely with Engineering, Infrastructure, Product, IT, Legal, and Compliance teams to embed security across the organization
Tabby is the largest and fastest-growing FinTech in the GCC region, with over 17 million users and $10 billion in annual transaction volume. The company was founded in 2019, has raised over $1 billion in funding, and partners with 40,000+ global brands including Amazon, Noon, IKEA, and SHEIN.
Requirements:
- 5+ years of experience in Information Security or Cybersecurity, with at least 2 years in a technical leadership or senior individual contributor role
- Prior people management or team leadership experience strongly preferred
- Deep expertise across Cloud Security, Security Architecture, VAPT, AppSec/DevSecOps, and Defensive Security
- Experience leading security programmes and managing cross-functional initiatives
- Strong knowledge of GCP/AWS, IAM, CSPM, SIEM, EDR/XDR, and vulnerability management
- Strong understanding of penetration testing, red/purple teaming, threat hunting, and incident response
- Experience with SAST, DAST, SCA, and container security within CI/CD environments
- Strong understanding of security architecture, threat modelling, and enterprise security controls
- Experience working within a regulated FinTech or banking environment
- Knowledge of CBUAE, UAE PDPL, PCI-DSS, ISO 27001, and SOC 2
- Proven people leadership, stakeholder management, and strategic decision-making skills
- CISSP/CISM and OSCP or equivalent certifications preferred/required depending on final hiring criteria