دعم تشغيل اليومي ورصد وتحسين حل الوقاية من فقدان البيانات للمجموعة (DLP) عبر حركة البيانات، والبيانات في الراحة، والبيانات أثناء الاستخدام. إجراء مسوح اكتشاف البيانات، تحليل النتائج، وتنسيق تصنيف وإصلاح البيانات الحساسة (على سبيل المثال، CPR، جواز السفر، IBAN، وبيانات صاحب البطاقة). مراجعة والتحقيق في الانتهاكات لسياسات DLP و الرسائل الخارجية المحظورة، إدارة الاستثناءات، وتصعيد الحوادث المؤكدة وفقًا لإجراءات SOC وDLP. دعم تنفيذ وتكوين وصيانة وتعديل سياسات DLP وقواعد تصنيف/وضع العلامات لتحسين دقة الكشف وتقليل الإيجابيات الكاذبة. إعداد تقارير DLP وبيانات-عند-الراحة دورياً للإدارة ووحدات الأعمال، وتتبع أنشطة الإصلاح حتى اكتمالها. إجراء تحقق مستمر ومراجعات ضمان لتقييم تصميم وفاعلية ضوابط الأمن عبر النقاط النهائية، أمان البريد الإلكتروني، الشبكة، السحابة، Active Directory، SIEM، ومنصات حماية النقاط النهائية. إجراء مراجعات التكوين والوصول وفق معايير أساسية وآمنة ومعايير صناعية (مثل CBB، PCI DSS، SWIFT CSP، ISO 27001، وNIST CSF). دعم تمارين محاكاة الاختراق والهجوم (BAS) وتقييمات فاعلية الضوابط الأخرى، وتوثيق النتائج ومراقبة أنشطة الإصلاح. تسجيل وتتبع والمتابعة لIssues التأكيد على الضوابط السيبرانية مع أصحاب الضوابط حتى الإغلاق. تقييم مخاطر الأمن المرتبطة بالمشروعات وتغييرات النظام والمبادرات الجديدة، وتوصية الإجراءات التصحيحية قبل التنفيذ. تنسيق وأداء تقييمات الثغرات المجدولة، والفحوصات الأمنية، ومراجعات الامتثال وأنشطة تحقق الضوابط. دعم إدارة الثغرات بتحليل نتائج الفحص وتتبع جهود الإصلاح وضمان الحلول في الوقت المناسب للثغرات المكتشفة. المشاركة في تقييمات مخاطر الأمن السيبراني لتقييم المخاطر الناجمة عن الثغرات والتهديدات وضوابط الأمن غير الفعالة. دعم التدقيقات الداخلية والخارجية والتقييمات التنظيمية والتفتيشات الأمنية وفق المتطلبات التنظيمية والصناعية ذات الصلة (مثل CBB، PCI DSS، SWIFT CSP، RBI). توفير أدلة التدقيق والوثائق والدعم الفني للمراجعين، والمساعدة في الإغلاق في الوقت المناسب لنتائج التدقيق والملاحظات التنظيمية. التنسيق مع تكنولوجيا المعلومات ووحدات الأعمال والجهات الخارجية لدعم مبادرات الضمان السيبراني وحماية البيانات. تقديم توجيهات تقنية بشأن سياسات أمان المعلومات، وضوابط DLP، ومتطلبات ضمان الأمن السيبراني. دعم تطوير وصيانة وتحسين مستمر لسياسات أمان المعلومات والمعايير والإجراءات والإرشادات. تنفيذ ودعم مبادرات التوعية الأمنية وحماية البيانات بناءً على التهديدات الناشئة والمعايير ونتائج الضمان. الحفاظ على معرفة حديثة بممارسات الأمن السيبراني وحماية البيانات وأفضل الممارسات للضمان من خلال التعلم المستمر والتطوير المهني. أداء واجبات إضافية يُكلف بها مدير الخط أو كبير مسؤولي أمن المعلومات (CISO) بما يتوافق مع متطلبات العمل.
الملف الشخصي المثالي للمرشح
شهادة الدبلوم أو البكالوريوس في الأمن السيبراني، علوم الحاسب، تكنولوجيا المعلومات، أو تخصص ذي صلة.
خبرة 2–4 سنوات في أمن المعلومات، الأمن السيبراني، ضمان الأمن السيبراني، أو الحوكمة والحوكمة والامتثال (GRC).
تعرض عملي لتقنيات الوقاية من فقدان البيانات (DLP) وحلول التصنيف/الحماية للبيانات.
خبرة في إدارة الثغرات، تحقق ضوابط الأمان، وتقييم الامتثال.
معرفة عملية ببيئات ويندوز، Active Directory (AD)، Microsoft 365، ومنصات السحابة (Azure و/أو AWS).
معرفة بإطارات ومعايير الأمن المعترف بها مثل NIST CSF، ISO/IEC 27001، PCI DSS، SWIFT CSP، وMITRE ATT&CK.
شهادة Security+ (أو ما يعادلها من مستوى DoD 8570 المستوى II) مطلوبة.
شهادات مهنية مثل ISO/IEC 27001 Lead Implementer/Lead Auditor، Certified Ethical Hacker (CEH)، PCIP، أو ما يعادلها مطلوبة كأفضلية.
مهارات اتصال كتابية وشفوية قوية بالإنجليزية والعربية.
القدرة على إعداد تقارير مهنية، ووثائق تقنية، وأدلة تدقيق.
مهارات تحليلية قوية وحل مشكلات مع القدرة على اتخاذ قرارات مبنية على المخاطر وبناءة.
القدرة على الإبلاغ عن مخالفات سياسات الأمان وتوصياتها بشكل فعال مع الحفاظ على علاقات إيجابية مع الفرق المعنية.
فهم جيد لسياسات المنظمة والمتطلبات التنظيمية والاعتبارات القانونية المرتبطة بالأمن المعلوماتي وحماية البيانات.
Support the day-to-day operation, monitoring, and optimization of the Group Data Loss Prevention (DLP) solution across data-in-motion, data-at-rest, and data-in-use. Perform data discovery scans, analyse results, and coordinate the classification and remediation of sensitive data (e.g., CPR, passport, IBAN, and cardholder data). Review and investigate DLP policy violations and blocked outbound emails, manage exceptions, and escalate confirmed incidents in accordance with SOC and DLP procedures. Support the implementation, configuration, maintenance, and tuning of DLP policies and data classification/labelling rules to improve detection accuracy and reduce false positives. Prepare periodic DLP and Data-at-Rest reports for management and business units, and track remediation activities through to completion. Perform continuous validation and assurance reviews to assess the design and effectiveness of security controls across endpoints, email security, network, cloud, Active Directory, SIEM, and endpoint protection platforms. Conduct configuration and access reviews against secure baselines and industry standards (e.g., CBB, PCI DSS, SWIFT CSP, ISO 27001, and NIST CSF). Support Breach & Attack Simulation (BAS) exercises and other control effectiveness assessments, documenting findings and monitoring remediation activities. Record, track, and follow up on cyber control assurance issues with control owners until closure. Assess security risks associated with projects, system changes, and new initiatives, and recommend corrective actions prior to implementation. Coordinate and perform scheduled vulnerability assessments, security scans, compliance reviews, and control validation activities. Support vulnerability management by analysing scan results, tracking remediation efforts, and ensuring timely resolution of identified weaknesses. Participate in cyber risk assessments to evaluate risks arising from vulnerabilities, threats, and ineffective security controls. Support internal and external audits, regulatory assessments, and security inspections in accordance with applicable regulatory and industry requirements (e.g., CBB, PCI DSS, SWIFT CSP, RBI). Provide audit evidence, documentation, and technical support to auditors, and assist in the timely closure of audit findings and regulatory observations. Coordinate with IT, business units, and external stakeholders to support cyber assurance and data protection initiatives. Provide technical guidance on information security policies, DLP controls, and cyber assurance requirements. Support the development, maintenance, and continuous improvement of information security policies, standards, procedures, and guidelines. Deliver and support security awareness and data protection initiatives based on emerging threats, standards, and assurance findings. Maintain current knowledge of cyber security, data protection, and assurance best practices through continuous learning and professional development. Perform additional duties assigned by the Line Manager and/or Chief Information Security Officer (CISO) in line with business requirements.
Desired Candidate Profile
Diploma or Bachelor's degree in Cyber Security, Computer Science, Information Technology, or a related discipline.
2 – 4 years of experience in Information Security, Cyber Security, Cyber Assurance, or IT Governance, Risk & Compliance (GRC).
Hands-on exposure to Data Loss Prevention (DLP) technologies and data classification/protection solutions.
Experience with vulnerability management, security control validation, and compliance assessments.
Working knowledge of Windows environments, Active Directory (AD), Microsoft 365, and cloud platforms (Azure and/or AWS).
Familiarity with recognised security frameworks and standards such as NIST CSF, ISO/IEC 27001, PCI DSS, SWIFT CSP, and MITRE ATT&CK.
Security+ (or equivalent DoD 8570 Level II certification) is required.
Professional certifications such as ISO/IEC 27001 Lead Implementer/Lead Auditor, Certified Ethical Hacker (CEH), PCIP, or equivalent are preferred.
Strong written and verbal communication skills in English and Arabic.
Ability to prepare professional reports, technical documentation, and audit evidence.
Strong analytical and problem-solving skills with the ability to make objective, risk-based decisions.
Ability to communicate security policy violations and recommendations effectively while maintaining positive stakeholder relationships.
Good understanding of organizational policies, regulatory requirements, and legal considerations related to information security and data protection.