Cyber Security

Senior Cyber Security Engineer

Cairo
Work Type: Full Time
At Thndr we believe that investing should be easy and accessible to everyone. We started our journey to democratize investment in the region by removing commissions, account opening minimums, and launching an intuitive platform with a focus on education. This way investing opportunities can be attainable to all, no matter their income level or expertise.

Thndr is an investment platform that aims to democratize access to investing for everyday individuals in MENA. For the people who use Thndr, our app represents a seamless way for them to achieve financial independence and growth, without the need to have prior financial knowledge or access to huge capital.

The company was formed to primarily address 2 problems: 1) Existing products are not relevant and 2) Financial literacy is low. We’re looking to solve this by focusing on education, offering a seamless and intuitive product, removing barriers and building an investment supermarket.

We launched in Egypt in late 2020 and currently allow our users to learn, connect & invest in the Egyptian Exchange, Egyptian mutual funds and the US Stock Market.

The journey ahead will be long and painful - it’s not everyday that you solve a basic societal necessity and at the same time change cultural norms. But the reward will be priceless. In our short journey we’ve validated this, as illustrated by these key figures:
  • 96% of our investors are investing for the 1st time through Thndr.
  • 54% come from outside of capital cities and have previously had limited access to financial institutions.
  • 86% of new stock market investors in Egypt during 2022 came through Thndr.
  • #1 platform in terms of local trades with 25% of EGX trades happening through Thndr.
We recently raised our Series A and our next steps as a company include the following:
  • Continuing to focus on building the infrastructure. Sadly, existing solutions are outdated and don’t cater to scalable business.
  • Expanding beyond Egypt and into the rest of MENA. We’d like to extend our impact to all Arabic speakers.
  • Adding more products for people to invest in. To be relevant, we believe that we need to cater to all walks of life.
We’re still in the very early stages of our story, but we know for a fact that we won’t stop until everyone in MENA has equally opportunity to generate and grow their wealth in an ethical manner.

What You'll Do

  • Work closely with the product and engineering teams to review new features and suggest new features that improve security.
  • Drive S-SDLC in our cycles and review security acceptance criteria and threat modeling.
  • Guide and train the team to cover security checks and security best practices.
  • Perform pre-deployment and post-deployment security penetration tests.
  • Plan and execute regular web, mobile, and cloud security assessments and pen tests.
  • Work closely with the Infrastructure teams to identify security issues through red teaming activities.
  • Define, implement, and monitor infrastructure security measures.
  • Contribute to the security roadmap & backlog.
  • Assess security tools and integrate tools as needed.
  • Incident response and research.
  • Follow new security news, trends tools, and incidents and drive needed changes.
  • Support in managing our Bug-bounty program and security channels.
  • Conduct vulnerability research against company assets.
  • Work on understanding and improving our security logging and monitoring solutions.
  • Coordinate company-wide response to security incidents till remediation.
  • Vulnerability management for production/staging environments
  • Product and infrastructure security.
  • Actively mentor members of the security team.

What You'll Need

  • Bachelor's degree in Computer Science, Software Engineering, or a related field (or equivalent work experience).
  • Minimum 5 years of experience performing Application and/or infrastructure penetration testing experience above and beyond running automated tools.
  • Highly experienced in performing security code reviews; Python experience is a plus.
  • Solid understanding of cloud platforms (AWS, Azure, or GCP) and containerization technologies (Docker, Kubernetes), serverless / lambda as a plus.
  • Solid understanding of software development principles, software testing methodologies, and version control systems (e.g., Git).
  • Hands-on experience implementing security policies in various environments (servers, storage, networks, security, virtualization, systems monitoring, and management).

  • Strong communication skills and the ability to effectively articulate technical concepts to technical and non-technical stakeholders.

At Thndr, we’re looking for people invigorated by our mission, not just those who simply check off all the boxes. We’re looking for people that are hungry to become agents of change and that understand the huge responsibility associated with dealing with people’s money.

Submit Your Application

You have successfully applied
  • You have errors in applying