Derq

Derq

Derq is a Dubai-based MIT spinoff that leverages AI, machine learning, and V2X technologies to eliminate road accidents and save lives. Their award-winning platform provides real-time analytics, alerts to connected vehicles, and infrastructure, making ...

Road & Rail
11-50
Founded 2016

Description

  • Secure the end-to-end platform, from Linux-based edge devices in the field to cloud infrastructure, APIs, and data pipelines.
  • Identify, assess, and remediate security risks across applications, backend services, and deployed devices.
  • Conduct threat modeling across edge-to-cloud data flows, including video, sensor data, and metadata pipelines.
  • Harden edge devices through OS security, SSH access controls, credential management, and patching practices.
  • Secure cloud environments, including IAM, network security, encryption, secrets management, and logging.
  • Support secure design and architecture reviews for new features and deployments.
  • Implement and improve CI/CD security, vulnerability scanning, and security monitoring practices.
  • Monitor and respond to security incidents, including compromised devices or unauthorized access, and lead post-incident reviews.
  • Define and improve security policies, standards, and controls aligned with engineering needs.
  • Support compliance efforts such as ISO 27001, SOC 2, and customer security reviews.
  • Work closely with Engineering and Product to embed security into development and delivery processes.
  • Contribute to internal security awareness, documentation, and best practices.

Requirements

  • 6 to 8+ years of experience in security engineering, application security, cloud security, or infrastructure security.
  • Hands-on experience securing production systems, not only compliance or audit work.
  • Strong knowledge of Linux security, hardening, access controls, and patching.
  • Strong understanding of web application security, including OWASP Top 10.
  • Experience securing cloud platforms, preferably AWS, including IAM, networking, encryption, logging, and secrets management.
  • Experience with CI/CD security, vulnerability scanning, monitoring, and incident response.
  • Ability to threat model edge-to-cloud systems, APIs, data pipelines, and deployed devices.
  • Comfort working closely with Product and Engineering to explain risks and drive fixes.
  • Scripting or automation skills, such as Python or Bash.
  • Experience with SOC 2, ISO 27001, or similar frameworks.
  • Experience in IoT, ITS, smart mobility, embedded systems, or data-heavy platforms is a strong plus.
  • Open to relocation to the UAE after probation, subject to UAE immigration approval.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Saviynt IAM Specialist

The Missing Link 51-250 Internet Software & Services

The Missing Link is seeking a Security Engineer - Saviynt to support large enterprise identity governance initiatives, design and deliver Saviynt-based solutions, and strengthen its growing cyber security practice.

Active Directory Azure Cybersecurity JavaScript PowerShell REST API SAP SQL
7 hours, 11 minutes ago

AI Security Architect (REMOTE - United States)

EnableComp 251-1K Insurance

EnableComp is seeking a remote AI Security Architect to secure and govern its AI and machine learning initiatives within its healthcare revenue cycle management environment.

Azure Cybersecurity HIPAA LLM Machine Learning
7 hours, 26 minutes ago

Senior Infrastructure Security Engineer

Dropbox 1K-5K Internet Software & Services

Dropbox is hiring a Security Engineer to secure its AI and agentic infrastructure while helping protect products and users across cloud and on-prem environments.

Bash CI/CD CrowdStrike Go Java Kubernetes Linux LLM Node.js OAuth OpenID Connect OWASP Python Ruby Rust SIEM
7 hours, 26 minutes ago

Staff, Security Engineer

Fullscript 251-1K Health Care Providers & Services

Fullscript is hiring a Staff Security Engineer to lead hands-on security engineering across its healthcare technology platform, shaping secure product development and protecting systems that support practitioners and patients.

AWS GitHub GitLab GraphQL JavaScript Node.js Penetration Testing Ruby on Rails
7 hours, 56 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers