SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior Manager Information Security

Tabby - Dubai, United Arab Emirates - In-office

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Tabby is a fintech platform that enables flexible payment solutions, allowing shoppers to split purchases with no interest or fees. The company serves over 17 million users and partners with 40,000+ global brands including Amazon, Noon, IKEA, and SHEIN. Tabby processes over $10 billion in annual transaction volume and is valued at $4.5 billion. You will lead Tabby's information security function, managing a team of security professionals and owning strategic and technical security programmes. This is a hands-on leadership role combining people management with direct technical contribution. Key responsibilities include: - Lead security architecture and technical security reviews across cloud, infrastructure, and product initiatives - Design and implement security controls across GCP and AWS, including IAM, CSPM, and cloud-native security - Drive Secure SDLC and DevSecOps initiatives, including SAST, DAST, SCA, and container security - Lead vulnerability management, penetration testing, VAPT, and red/purple team engagements - Design and improve threat detection, SIEM use cases, and security monitoring - Lead complex security incident investigations and response - Drive endpoint, infrastructure, network, and firewall security initiatives - Automate security processes and develop security tooling - Establish technical standards, security best practices, and operating procedures - Manage, mentor, and develop a team of security engineers and analysts - Collaborate with Engineering, Infrastructure, Product, IT, Legal, and Compliance teams Requirements: - 5+ years of experience in Information Security or Cybersecurity, with at least 2 years in a technical leadership or senior individual contributor role - Prior people management or team leadership experience strongly preferred - Deep expertise across Cloud Security, Security Architecture, VAPT, AppSec/DevSecOps, and Defensive Security - Experience leading security programmes and managing cross-functional initiatives - Strong knowledge of GCP/AWS, IAM, CSPM, SIEM, EDR/XDR, and vulnerability management - Strong understanding of penetration testing, red/purple teaming, threat hunting, and incident response - Experience with SAST, DAST, SCA, and container security within CI/CD environments - Strong understanding of security architecture, threat modelling, and enterprise security controls - Experience working within a regulated FinTech or banking environment - Knowledge of CBUAE, UAE PDPL, PCI-DSS, ISO 27001, and SOC 2 - Proven people leadership, stakeholder management, and strategic decision-making skills - CISSP/CISM and OSCP or equivalent certifications preferred/required

Similar roles