About this role
6-month contract, with Immediate start in Doha, Qatar
Role Summary
Our client delivers offensive security services to enterprise and government clients across Qatar. The Project Manager owns delivery across a portfolio of concurrent VAPT engagements, sitting between the testing team and the client, and is accountable for engagements landing on time, in scope, and to a standard that holds up in front of a client executive committee. This is a hands-on delivery seat, not a governance or PMO reporting role. Reports to the Head of Cybersecurity.
Key responsibilities
- Coordinate VAPT engagements end to end across network, web application, cloud, and mobile scopes, from scoping and rules of engagement through to final report handover
- Act as primary client contact throughout the engagement lifecycle: kickoff, scope confirmation, progress reporting, escalation, and closeout
- Review findings with the testing team and translate technical vulnerabilities into business risk language that non-technical client stakeholders can act on
- Plan and allocate testing resource across concurrent engagements, monitor daily progress against testing windows, and clear dependencies before they cost delivery days
- Track remediation through to closure, schedule and coordinate re-testing, and maintain the status picture across all open findings
- Maintain engagement documentation, quality-check deliverables before release, and manage change requests and scope creep with clients directly
Required skills and qualifications
- Minimum 5 years of IT project management experience, including 2 to 3 years managing cybersecurity or VAPT delivery
- Working understanding of the OWASP Top 10, CVSS scoring methodology, network security fundamentals, and cloud infrastructure on AWS or Azure. You are not expected to test, but you must be able to challenge a finding and defend a severity rating
- Proven ability to run multiple concurrent engagements with competing deadlines
- Strong written reporting and executive-level verbal communication in English
- Familiarity with Qatari national information assurance requirements or regional cybersecurity compliance frameworks is a strong advantage
- PMP, PRINCE2, or CSM certification preferred. CEH, Security+, or equivalent security certification is an added advantage
- Currently resident in Qatar with a valid QID and NOC, available to commit to a full 6-month term at short notice