Morocco Hybrid Contract

CXG is hiring a Security Engineering Lead

About the Role

CXG is looking for a Security Engineering Lead to own and continuously improve our organization’s security posture across cloud platforms, enterprise systems, applications, AI solutions, and third-party services. This is a hands-on leadership role combining governance, engineering validation, automation, and client-facing security representation.

What You'll Do

  • Own and maintain the ISMS aligned with ISO 27001.
  • Manage risk assessment frameworks, policies, and security KPIs.
  • Ensure alignment with client security requirements and drive continuous maturity improvement.
  • Operate a structured vulnerability management program, conduct internal scans, and coordinate external penetration testing.
  • Validate remediation and track resolution progress, providing structured reporting on risk posture.
  • Define secure coding standards and security gates; implement SAST, DAST, and dependency scanning.
  • Integrate security into CI/CD pipelines and review high-risk features.
  • Define and validate cloud security baselines, reviewing IAM models, network segmentation, firewall, and WAF controls.
  • Ensure encryption, logging, monitoring, and least-privilege principles are in place.
  • Lead Microsoft 365, Defender, endpoint, and identity security governance.
  • Assess vendor security posture prior to adoption and maintain a vendor risk framework.
  • Respond to client security questionnaires and due diligence, supporting contract-level security discussions.
  • Assess security implications of new tools and AI platforms, defining guardrails for responsible AI and data usage.
  • Ensure secure-by-design technology adoption.
  • Maintain incident response plans and escalation procedures; coordinate security incidents across environments.
  • Lead post-incident reviews and corrective actions.
  • Promote security awareness and best practices, training teams on secure development and operations.
  • Continuously improve automation and controls.

Technical Stack

  • Microsoft 365
  • Microsoft Defender

Work Mode

This position offers a hybrid work arrangement.

CXG is an equal opportunity employer.

Required Skills
Microsoft 365DefenderSecurity EngineeringIncident ResponseThreat IntelligenceVulnerability ManagementCloud SecuritySecurity ArchitectureRisk AssessmentComplianceSecurity OperationsSIEMEndpoint SecurityIdentity and Access ManagementSecurity Leadership
Need to work legally in Thailand?

Work permits without the paperwork nightmare

Thai immigration rules are strict and easy to get wrong. SVBL handles the bureaucracy — correct visa type, proper documentation, timely submissions. You focus on your work.

Right visa type for your situation
Document preparation & submission
Deadline tracking & renewals
Direct liaison with immigration
Talk to an expert
10+ years experience
About company
CXG

A global business founded in 2006, operating across four continents in 70 countries with over 160 professionals. Offers strategic solutions that impact performance and elevate the customer experience for premium and luxury brands.

Visit website
Job Details
Category security
Posted a month ago