★ About Tabby Information Security Engineer – VAPT
Tabby Information Security Engineer – VAPT Saudi Arabia is a fantastic opportunity for skilled professionals aiming to strengthen their careers in cybersecurity within a fast-paced Fintech environment. This role focuses on enhancing Tabby’s security posture by performing advanced operations, implementing robust security measures, and leading critical projects across the organization. Candidates will leverage expertise in cloud security, penetration testing, endpoint protection, and infrastructure security to safeguard Tabby’s systems against evolving threats.
Working in collaboration with engineering, product, and DevOps teams, the Information Security Engineer will prioritize security features, resolve vulnerabilities, and train staff in security awareness. Ideal applicants are passionate about cybersecurity, possess technical skills, and thrive in a culturally diverse environment. With exposure to dynamic application security testing (DAST & SAST), cloud platforms like GCP, AWS, and OCI, and tools such as Terraform, Kubernetes, and GitLab, this role ensures a significant professional impact. The position also emphasizes automation in incident response, threat intelligence monitoring, and continuous improvement of security controls.
★ Table of Contents
-
✔ Job Overview
-
✔ Job Categories
-
✔ Primary Responsibilities by Role
-
✔ Why Work at Tabby
-
✔ Candidate Eligibility Criteria
-
✔ How to Apply
-
✔ Frequently Asked Questions (FAQs)
-
✔ Final Thoughts
✔ Job Overview
-
Company Name: Tabby
-
Vacancy Position: Information Security Engineer – VAPT
-
Location: Saudi Arabia
-
Apply Before / Interview Date: Apply Immediately
-
Employment Type: Full Time
-
Required Experience: 2-3 Years in Information Security & Cybersecurity Roles
This position at Tabby provides a career-defining opportunity for professionals to advance in cybersecurity. The role combines operational responsibilities with project implementation, emphasizing cloud security, penetration testing, endpoint protection, and security awareness initiatives.
Candidates will work cross-functionally to safeguard systems and improve security infrastructure, making a tangible impact on the organization.
✔ Job Categories

-
Cloud Security
-
Penetration Testing
-
Information Security Monitoring
-
Endpoint Protection
-
Infrastructure Security
-
Security Awareness & Training
-
DevOps Security Collaboration
➤ Primary Responsibilities by Role
-
Conduct Dynamic Application Security Testing (DAST) and Static Application Security Testing (SAST) for Web, Mobile, and API applications.
-
Plan and execute Infrastructure Vulnerability Assessment and Penetration Testing on servers, switches, and IT systems.
-
Implement and manage enterprise-level Anti-Virus (AV) solutions for endpoint protection.
-
Review corporate IT infrastructure for security compliance including firewall rules, backup & disaster recovery, and DLP controls.
-
Collaborate with engineering and DevOps teams to prioritize security bugs and features, ensuring timely mitigation.
-
Conduct security awareness exercises, including phishing simulations, to strengthen employee resilience.
-
Automate and enhance incident response procedures, develop playbooks, and monitor threats.
-
Research and implement detection rules across multiple cybersecurity tools.
-
Maintain knowledge of online technologies, payment systems, microservices, REST APIs, and cloud platforms (AWS, GCP, OCI).
-
Provide technical training and guidance to internal teams to promote security best practices.
Check new openings announced this month
✔ Why Work at Tabby
-
Work with a leading Fintech company driving innovation in Saudi Arabia.
-
Gain hands-on experience with cloud security, penetration testing, and endpoint protection tools.
-
Collaborate with cross-functional and culturally diverse teams.
-
Opportunities to develop professionally in cybersecurity with challenging projects.
-
Exposure to the latest technologies, including Kubernetes, Terraform, GitLab, and CI/CD security pipelines.
-
Competitive compensation and benefits package.
-
Participate in building a robust cybersecurity culture in a fast-growing organization.
★ Candidate Eligibility Criteria
-
Bachelor’s degree in Information Technology, Computer Science, Software Engineering, or related field.
-
2-3 years of experience in cybersecurity, security engineering, or related fields.
-
Knowledge of cloud security, penetration testing, and infrastructure security best practices.
-
Familiarity with tools like Terraform, GitLab, Kubernetes, CI/CD pipelines, and endpoint protection solutions.
-
Understanding of programming and scripting languages such as Bash and Python.
-
Security certifications are advantageous, e.g., CEH, CompTIA Security+.
-
Excellent communication, influencing, and stakeholder management skills.
-
Experience in training and awareness programs.
-
Ability to work effectively in a fast-paced, culturally diverse environment.
➤ How to Apply
To apply for the Tabby Information Security Engineer – VAPT Saudi Arabia role, candidates should carefully review the responsibilities and eligibility criteria and ensure they meet the requirements. Focus on highlighting relevant experience in cloud security, penetration testing, and endpoint protection in your application. Prepare to demonstrate your technical skills, problem-solving abilities, and experience working with cross-functional teams.
Apply Here: Tabby Careers
Candidates are encouraged to apply immediately as positions may be filled quickly. No direct contact details are required for application. Selected candidates will be contacted for interview scheduling.
◆ Frequently Asked Questions (FAQs)
-
What is the main role of an Information Security Engineer at Tabby?
The engineer ensures Tabby’s IT infrastructure is secure, performs penetration testing, implements endpoint protection, and collaborates across teams to manage security risks. -
Which certifications are beneficial for this role?
Certifications like CEH (Certified Ethical Hacker), CompTIA Security+, or other recognized security qualifications are advantageous. -
Is cloud security knowledge required?
Yes, experience with GCP, AWS, OCI, Terraform, and Kubernetes security is highly recommended. -
What experience is required to apply?
Candidates should have 2-3 years of experience in cybersecurity, security engineering, or related technical roles. -
Is this a remote or onsite position?
This role is onsite in Saudi Arabia at Tabby’s facilities. -
What technical skills are expected?
Applicants should be skilled in penetration testing, DAST/SAST, scripting (Python, Bash), CI/CD security, endpoint protection, and monitoring threats. -
How can I apply for the role?
Submit your application via the Tabby Careers portal. Ensure your resume highlights relevant skills and experience in cybersecurity.
★ Final Thoughts
The Tabby Information Security Engineer – VAPT Saudi Arabia role is a prime opportunity for cybersecurity professionals seeking to make a significant impact in a dynamic Fintech environment. With responsibilities ranging from cloud security and penetration testing to incident response and employee awareness training, this position offers comprehensive exposure to the latest security technologies and best practices. The role emphasizes proactive threat detection, automation of security processes, and collaboration across multiple teams, ensuring that the candidate contributes meaningfully to Tabby’s secure technology infrastructure.
Joining Tabby allows professionals to work in a challenging yet rewarding environment, where technical skills and problem-solving abilities are highly valued. With exposure to tools like Terraform, GitLab, Kubernetes, and cloud platforms such as AWS, GCP, and OCI, candidates gain critical hands-on experience in modern cybersecurity operations. This position is ideal for those looking to advance their careers while making a tangible impact on organizational security, all within the thriving technology and Fintech sector in Saudi Arabia.