Vulnerability & Risk Analyst
$21600 per hourManagement Solutions International MSI
Vulnerability & Risk Analyst
Job Title: Vulnerability and Risk Analyst
Domain: Technical Risk Management
Experience: 6+ Years
Location: Qatar
Job Summary
We are looking for a technically strong Vulnerability and Risk Analyst to identify, analyze, and manage cybersecurity vulnerabilities and technical risks across enterprise environments.
The ideal candidate should combine vulnerability management, risk assessment, data analysis, security tooling, OSINT, and moderate penetration testing capabilities, with a broad understanding of infrastructure, applications, and cloud environments.
Key Responsibilities
- Conduct vulnerability assessments and analyze technical security risks.
- Identify, assess, prioritize, and track vulnerabilities across enterprise environments.
- Apply established risk methodologies to evaluate and prioritize security risks.
- Work with vulnerability management tools to identify and monitor security weaknesses.
- Analyze vulnerability and security data to identify trends, patterns, and risk areas.
- Develop security reports, dashboards, and risk analysis using Excel, Python, and Power BI .
- Conduct OSINT activities to support vulnerability and risk assessments.
- Perform moderate-level penetration testing and technical security assessments.
- Analyze infrastructure, application, and cloud security risks.
- Provide technical recommendations for vulnerability remediation and risk reduction.
- Prepare clear and concise technical risk reports for stakeholders.
- Collaborate with cybersecurity, infrastructure, application, and cloud teams to address identified risks.
- Maintain vulnerability and risk documentation and track remediation progress.
Requirements
- 6+ years of relevant experience in cybersecurity, vulnerability management, technical risk, or a related field.
- Bachelor's degree in:
- Computer Science
- Mathematics
- Software Engineering
- Physics
- Data Science
- Or a related discipline.
- Strong knowledge of risk assessment methodologies .
- Hands-on experience with vulnerability assessment/management tools.
- Strong data analysis skills.
- Proficiency in:
- Microsoft Excel
- Python
- Power BI
- Experience with OSINT .
- Moderate penetration testing experience.
- Broad technical understanding of:
- IT infrastructure
- Applications
- Cloud environments
- Cybersecurity technologies
- Strong technical writing and reporting skills.
Preferred Certifications
Relevant certifications such as:
- CISSP
- CISM
- ISO 27001 Lead Auditor
- CCNP
- GEVA
- Offensive Security certifications
- Tenable certifications
- Rapid7 certifications
- QatarEnergy Qatarization is searching for an experienced professional responsible for independent assessments and project analyses in PEPS. The role requires strong leadership and a proven track record in the oil and gas sector, with a focus on delivering projects within...
- ...A GRC Senior Analyst / Specialist supports the governance, risk, and compliance framework to ensure alignment with national cyber regulations, security... ...security assessments and tracking remediation of vulnerabilities and control gaps. The position also works closely...
- ...EY – Digital Risk Consulting Senior Manager EY is the leading Big-4 professional services firm committed to ‘shape the future with confidence’. Fast pace of today’s business cycle as well as the rapid developments in business, operational and technological space...
- ...services provider in Doha, Qatar. Our client is seeking a Technical Analyst to support the ICT Infrastructure function by coordinating... ...infrastructure operations and projects, maintaining documentation, tracking risks and action items, preparing management reports and dashboards,...
- BAE Systems Strategic Aerospace Services WLL seeks a Cyber Security Governance, Risk & Compliance Specialist in Doha, Qatar. The role involves managing administrative tasks related to data compliance, assessing privacy risks, and implementing related procedures. Candidates...
- ...Overview Responsible for providing an independent and objective assessment/analysis of projects in PEPS. Identify challenges and risks and provide analysis and confidence that projects will deliver to their sanctioned commitments, schedule, and cost. Provide recommendation...
- ...evidences of compliance activities. -Coordinate with IT stakeholders, project managers, and business owners to facilitate vendor risk assessments, due diligence review and security requirements definition. Maintain third-party assessment documentation. Stay updated...
- ...lifecycle. The role ensures that all technology changes are implemented in a controlled, compliant, and business-aligned manner, minimizing risk while maximizing value. This position plays a critical role in maintaining operational stability and enabling continuous improvement...
- ...and investigations related to breaches/unauthorized access. Support regular and special reporting and analysis, including vulnerabilities, risks, control deficiencies, remediation strategies, and performance metrics. Configure and test cybersecurity technologies;...
- ...Malomatia is seeking an experienced Cloud Security Engineer / Analyst to join our Cybersecurity Practice. You will work with cloud, infrastructure... .... You will assess cloud architectures, identify security risks, implement best practices, and monitor cloud platforms to ensure...
$45000 per hour
...for JV Board meeting and present the annual budget to the JV Board Internal Controls: 10. Co-ordinate with departments to ensure Risk Control Matrix for ICOFR is up to date 11. Work with departments or consultant to ensure annual testing of operating effectiveness...- ...services provider in Doha, Qatar. Our client is seeking a Technical Analyst (Bilingual – Arabic & English) to support the service delivery... ..., reports, and status updates. - Track action items, risks, dependencies, and follow up with stakeholders to ensure timely...
- # Analyst – Workforce Planning ## Department Organization Development and HR Policy ## Division Workforce Planning and Organization... ...models, and workforce planning reports to identify trends, risks, and opportunities. * Analyze workforce movements, vacancies,...
- ...Job Purpose To identify, assess, and mitigate risks affecting the Road Operation & Maintenance (O&M) project’s performance, budget, and reputation, ensuring compliance with Ashghal, QatarEnergy, and international risk management standards (ISO 31000). The role addresses...
- ...Job Description We are currently looking for Business Analyst - Core Banking - Finastra EQUATION for our Qatar operations Education / Experience Requirements: • Bachelor’s degree in Finance/ Computer Science, MIS, Engineering, Business Administration or a related...
- ...Aerospace Services WLL | Full time Cyber Security Governance, Risk & Compliance (GRC) Specialist Manage daily administrative... ...and privacy principles. Familiarity with cyber threats and vulnerabilities. Knowledge of laws, policies, procedures, and governance...
- ...Manager to oversee regulatory adherence across local and international operations. You will monitor laws, develop policies, and lead risk assessment activities to protect the business. The role requires strong analytical, communication, and leadership skills, with 5–...
$27000 per hour
...Job Title: L3 SOC Analyst – Monitoring Department Location: Qatar Experience: 5–8+ Years Job Summary We are looking for an experienced L3 SOC Analyst to join our SOC Monitoring team. The ideal candidate will be responsible for advanced security monitoring, threat...- ...Role Overview You will help our clients evaluate and enhance their business; with a focus on managing the risk arising from ongoing technology developments and the resultant fast‑paced changes in their business and operational processes. To make that happen, you...
- Swan Global WLL in Doha is seeking an experienced cybersecurity professional to conduct periodic security assessments, drive remediation, and support continuity planning. You will coordinate with teams to enforce policies and oversee patching, with a focus on incident ...
- ...commercial, industrial, international assets. Monitor geopolitical and security incidents, threats, and internal and external security risks to then evaluate, analyse, and create risk advice and business intelligence disseminated to all levels of QatarEnergy, Joint...
- ...analytical skills and a Bachelor's degree in a related field. Responsibilities include leading security policies, assessing global security risks, and providing guidance on emergency responses. Excellent communication skills in English are essential for success in this role. #J...
- ...IBM Qatar Internship in Cybersecurity Strategy, Risk & Compliance supports client engagements in cybersecurity strategy, risk management, and governance, assisting consultants with research, documentation, assessments, and client-ready deliverables. You will contribute...
- ...dataclassification policies and submit periodic performance reports todecision-makers. Leadnational initiatives to assess cybersecurity risks resulting from improperclassification of sensitive data at the state level. Ensurealignment of different entities’ policies with...
- ...leading the Offensive red teaming activities on QatarEnergy’s IT/OT environments, by conducting threat hunting, penetration testing, Vulnerability scanning and security assurance activities. Provides oversight and technology guidance as well as managerial support as required...
- ...comprehensive HSE management systems, ensuring full regulatory compliance and a proactive safety culture across projects. You will drive risk mitigation, oversee incident investigations, and coordinate with EPC contractors and project teams, leveraging tools such as...
- ...Analyst Ibtechar is looking for a highly motivated and experienced Analyst to support our operations team across multiple upskilling... ...progress, consolidate outcomes, and capture lessons learned. Risk Management: Identify and document risks, issues, and...
- ...working with a national operator to source a Management System Analyst. This is a long-term contract role working on a residential basis... ...Planning and organising department HSE tours. Department Risk register preparations, review and updates. Legal Obligations...
- A global engineering firm is seeking a skilled Cost Control Engineer to manage project budgeting and cost systems. The role involves monitoring financial performance and ensuring compliance with corporate requirements. Candidates should possess a relevant bachelor's degree...
- ...confidentiality. Provide technical assistance in identifying, evaluating and developing systems and procedures across the group various business and support functions. Consult and coordinate with systems analysts and programmers to design and develop business systems....
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Vulnerability & Risk Analyst. Be the first to apply!

