Role Purpose
The Principal Security Engineer provides technical leadership and strategic direction in cybersecurity engineering, ensuring the design and implementation of robust, scalable, and secure architectures for critical banking platforms.
This role is responsible for driving security-by-design principles, leading advanced security solution deployments, and ensuring all technology initiatives align with ADCB’s security frameworks, regulatory requirements, and risk management standards.
Key Responsibilities
1. Security Architecture & Design
- Lead the design of advanced security architectures for:
- Core banking platforms
- Digital and cloud-based systems
- Enterprise applications and infrastructure
- Define secure architecture patterns covering:
- Network and infrastructure security
- Application and API security
- Data protection and encryption
- Ensure alignment with enterprise architecture and security standards
2. Security Engineering & Implementation
- Lead implementation of enterprise security solutions, including:
- Encryption and data protection mechanisms
- Identity and access management (IAM) solutions
- Threat detection and monitoring capabilities
- Guide engineering teams in integrating security controls into systems and platforms
- Ensure secure configuration and deployment of security technologies
3. Technical Leadership & Advisory
- Provide hands-on technical guidance and mentorship to cybersecurity and engineering teams
- Define and promote best practices for secure design, development, and operations
- Review and approve security designs, architectures, and solutions across projects
- Act as a subject matter expert (SME) for complex security challenges
4. Risk Management & Compliance
- Ensure all solutions comply with:
- ADCB security standards and policies
- Regulatory requirements (e.g., central bank guidelines, ISO standards)
- Perform security risk assessments and threat modeling for new initiatives
- Drive proactive identification and mitigation of security risks
- Support audits and regulatory assessments with technical expertise
5. Vulnerability Management & Remediation Strategy
- Guide teams in identifying and remediating security vulnerabilities
- Establish frameworks for:
- Secure code reviews
- Penetration testing and validation
- Define remediation strategies and ensure timely closure of security findings
6. Threat Detection & Incident Support
- Support development and enhancement of:
- Threat detection capabilities
- Security monitoring frameworks
- Provide technical expertise during security incidents and investigations
- Assist in root cause analysis and implementation of preventive measures
7. Innovation & Continuous Improvement
- Evaluate emerging technologies and security trends
- Drive innovation in:
- Cloud security
- DevSecOps practices
- AI/ML security considerations
- Continuously improve security engineering practices and standards
Qualifications & Experience
Education
- Bachelor’s or Master’s degree in:
- Cybersecurity
- Computer Science
- Information Technology or related field
Experience
- 10+ years of experience in:
- Cybersecurity engineering
- Security architecture and solution design
- Proven experience in banking or highly regulated environments
- Strong background in enterprise security implementation and architecture
Certifications (Required / Preferred)
- CISSP (Certified Information Systems Security Professional) – mandatory
- OSCP (Offensive Security Certified Professional) – preferred
Technical Skills
- Deep expertise in:
- Security architecture design and implementation
- Identity & Access Management (IAM)
- Encryption and data protection technologies
- Strong knowledge of:
- Network and application security
- Threat detection and monitoring tools
- Experience with:
- Cloud security (AWS, Azure)
- DevSecOps practices and CI/CD security
- Familiarity with:
- Security frameworks (ISO 27001, NIST, etc.)
Leadership & Soft Skills
- Strong technical leadership and mentoring capabilities
- Excellent analytical and problem-solving skills
- Ability to communicate complex security concepts to diverse stakeholders
- Strong decision-making and risk management abilities
- Effective stakeholder engagement at senior levels
Key Competencies
- Security Architecture & Engineering
- Technical Leadership & Advisory
- Risk & Compliance Management
- Threat Detection & Response
- Secure Solution Design
- Strategic Security Planning
Ideal Candidate Profile
- Senior cybersecurity expert with deep architectural and engineering expertise
- Proven ability to design and implement secure systems at enterprise scale
- Strong understanding of banking security requirements and regulatory expectations
- Capable of leading technical teams and influencing security strategy
- Balanced strength across technical depth, governance, and leadership