وظائف افراد امن
٩٨١٨ وظائف شاغرة
<p>The Aviation Security Specialist supports the implementation, monitoring, and continuous improvement of aviation security measures in accordance with the Aircraft Operator Security Program (AOSP), applicable national regulations, and international aviation security standards. The role supports airport security permissions, audits, investigations, risk assessments, incident reviews, security documentation, crisis management activities, and coordination with internal departments, airport authorities, law enforcement agencies, and security service providers.</p><p><b>Key Responsibilities:</b></p><ul><li>Implement aviation security policies, procedures, and controls in accordance with the Aircraft Operator Security Program.</li><li>Coordinate the issuance and renewal of airport security permits for employees.</li><li>Liaise with airport security departments and relevant authorities regarding security access and operational requirements.</li><li>Conduct internal and external aviation security audits and inspections.</li><li>Prepare initial and final audit reports, including findings, corrective actions, and recommendations.</li><li>Monitor the implementation and closure of corrective and preventive actions.</li><li>Review security incidents submitted through the Safety and Security Reporting System.</li><li>Conduct or support aviation security investigations and prepare investigation reports.</li><li>Participate in aviation security risk assessments and recommend appropriate mitigation measures.</li><li>Support the development, review, and updating of security manuals, procedures, and departmental documentation.</li><li>Implement and monitor security policies and procedures at the company s headquarters and other facilities.</li><li>Participate in crisis management planning, exercises, and response activities.</li><li>Coordinate security-related meetings with internal departments, external authorities, and service providers.</li><li>Provide administrative and operational support to the Aviation Security function.</li><li>Maintain accurate, confidential, and audit-ready security records and reports.</li><li>Support compliance with requirements issued by GACA, airport authorities, law enforcement agencies, and other relevant regulatory bodies.</li></ul><p><strong>Desired Candidate Profile</strong></p><ul><li>Bachelor s degree in security management, Aviation Management, Criminal Justice, Business Administration, or a related field.</li><li>Minimum of 2 years of experience in aviation security, airport security, airline security, regulatory compliance, or a related security function.</li><li>Good knowledge of national and international aviation security regulations and standards.</li><li>Experience conducting security audits, inspections, investigations, or risk assessments.</li><li>Strong report-writing, analytical, and documentation skills.</li><li>Strong communication, coordination, and stakeholder management skills.</li><li>Ability to handle confidential and sensitive security information.</li><li>Good proficiency in Microsoft Office applications.</li><li>Proficiency in English and Arabic.</li></ul><p>Preferred Qualifications</p><ul><li>Aviation security training or certification recognized by GACA, ICAO, or an equivalent authority.</li><li>Experience working for an airline, airport operator, aviation services company, or regulatory authority.</li><li>Knowledge of the Aircraft Operator Security Program and aviation security quality-control requirements.</li><li>Experience with security incident-reporting systems and crisis management programs.</li><li>Experience coordinating with government authorities, airport security departments, or law enforcement agencies.</li></ul><p>Knowledge, Skills & Competencies</p><ul><li>Aviation Security</li><li>Aircraft Operator Security Program</li><li>Security Audits and Inspections</li><li>Security Investigations</li><li>Security Risk Assessment</li><li>Regulatory Compliance</li><li>Corrective Action Management</li><li>Security Incident Reporting</li><li>Crisis Management</li><li>Security Manuals and Procedures</li><li>Airport Security Permits</li><li>Report Writing</li><li>Stakeholder Coordination</li><li>Confidentiality and Integrity</li><li>Planning and Organization</li></ul>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p>Our operations network, known for our speed, accuracy, and exceptional service, delivers millions of packages and smiles to Amazon customers every day. To keep our operations network secure and assure operational continuity, we are looking for a hands-on and detail-oriented professional who wants to join our team as Security and Loss Prevention (SLP) Specialist. In this key role, you will deliver security as a service to our operational sites across the end-to-end supply chain to protect our people and prevent loss.<br>Key job responsibilities<br>• Support resilience of our business operations by contributing to emergency and crisis planning for sites within your area of responsibility<br>• Contribute to the identification of vulnerabilities (e.g., loss, associate experience, process improvement) and define appropriate mitigating actions while ensuring compliance with legal and ethical standards<br>• Serve as point of contact for and coordinate measures to manage risk with local management and external stakeholders (e.g., law enforcement agencies and industry associations) on all security-related matters<br>• Ensure compliance of your assigned sites with Amazon global security standards<br>A day in the life<br>As an SLP Specialist, you will join a team of Security and Loss Prevention professionals providing security as a service to business customers across multiple business units within a dedicated geographical area. You perform regular physical security audits and investigate policy violations, security-related incidents, and loss events. During your investigations, you collect information by monitoring systems and tools, analysing data reports, and conducting interviews. Your findings help to identify vulnerabilities in our processes, for which you contribute to the development of mitigating measures. You play a key role in maintaining the physical integrity of our sites by auditing and monitoring the health status of our systems and, jointly with subject matter experts and external suppliers, maintain their functionality. You interact on a daily basis with our external security service providers to ensure delivery of high-quality security services and a smooth customer experience. You also act as point of contact for multiple internal and external departments (e.g., legal, HR, security service providers, local law enforcement) and subject matter expert in Security and Loss Prevention-related matters. Finally, you deliver loss prevention-related education and awareness programs to other teams and liaise with various stakeholders on policy and procedure across all management levels.<br>About the team<br>Sitting within the Global Security Operations organization, Security and Loss Prevention supports the accomplishment of Amazons business targets and the strengthening of our brand by effectively protecting against relevant threats and by managing security and loss prevention risks that could:<br>• Put our associates and customers under jeopardy<br>• Disrupt the continuity of our business operations<br>• Inflict damage to our assets<br>• Have adverse impact on our brand reputation<br>Working in partnership with our stakeholders, we secure the Amazon supply chain end-to-end and promote security during business conversations. We do this by preventing security and loss prevention-related risks and vulnerabilities as early as possible, intervening in unfolding incidents to minimize any negative impact as well as thoroughly investigating security-related incidents to identify and remove root causes, preventing reoccurrence.<br>- Relevant security- or risk-related education or experience (e.g., security services, asset protection, loss prevention, risk management, inventory management, investigations, supply chain, auditing, compliance, or similar)<br>- Relevant experience working with the MS Office suite (Word, Excel, Outlook) in a professional environment<br>- Advanced proficiency in written and verbal Arabic<br>- Upper intermediate proficiency in written and verbal English<br>- Preferred qualifications are not required to apply for a position at Amazon. If you have all the basic qualifications above, we’d love to hear from you.<br>- A relevant degree, degree equivalent, or industry certification<br>- Relevant experience with physical security systems, investigation techniques, and/or management of contract security officers<br>- Relevant experience with retail, warehouse, distribution centre services, delivery service, or supply chain<br>- Relevant experience in working with data<br>- Driver’s license<br>Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.</p><br> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><ul ><li >Bachelor s degree in IT, Computer Science, or related field of Information Security/Technology.</li><li >GBA: Preferably not less than 3.5 5 or 2.5 4.</li><li >+5 years of experience in GRC, IT/Security operations, SOC role, or networking.</li><li >Knowledge of Microsoft Word, Project, Excel, Access, Visio.</li><li >Fluent in English language.</li><li >Teamwork, Critical thinking and problem-solving abilities, Capability to communicate and listen to needs from organizational stakeholders.</li><li >Positive attitude and commitment to work on projects and resolve technical problems.</li><li >Ability to multitask and manage multiple priorities and commitments concurrently.</li><li >Exceptional time-management skills and the ability to work under pressure.</li><li >The ability to work among teams and handle multiple projects.</li><li >Stay up to date on information technology trends and security standards.</li><li >Excellent business writing and technical documentation skills.</li><li >Technical Skill Knowledge of SIEM (Security Information and Event Management).</li><li >Familiar with SQL, C, C++, C#, Java, or PHP programming languages.</li><li >Should have expertise on TCP/IP, computer networking, routing, and switching.</li><li >Penetration and vulnerability testing.</li><li >Knowledge and hands-on experience of implementing and managing Firewall and Intrusion Detection/Prevention Systems.</li><li >Windows, UNIX, and Linux operating systems.</li><li >Network protocols and packet analysis tools.</li><li >Anti-virus and anti-malware.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li><br></li></ul><p></p></section>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Qiddiya Investment Company is looking for a highly experienced and innovative Senior Manager - Cybersecurity Security Architecture to join our forward-thinking team.<br> In this pivotal role, you will oversee the development and implementation of a comprehensive cybersecurity architecture framework designed to protect our digital and operational environments.<br> Your strategic leadership will be essential in integrating security into all levels of our organization, ensuring that security measures support our ambitious growth and innovation goals.<br> As a senior leader, you will play an instrumental role in shaping the security posture of Qiddiya by designing robust security architectures that align with industry best practices and regulatory standards.<br> Responsibilities Lead the design, development, and enhancement of the cybersecurity security architecture across all platforms and technologies.<br> Establish security design principles and standards that guide the implementation of secure systems and applications.<br> Conduct thorough assessments of existing security architectures and identify areas for improvement to mitigate risks.<br> Collaborate with cross-functional teams, including IT, engineering, and operations, to ensure that security architecture is implemented throughout the SDLC and operational phases.<br> Monitor advancements in cybersecurity technologies and integrate relevant solutions to enhance the security architecture.<br> Provide mentoring and leadership to team members and promote a culture of security awareness within the organization.<br> Develop and deliver presentations on cybersecurity architecture strategies to stakeholders and executive leadership.<br> Engage with external partners and vendors to assess potential security solutions and ensure alignment with architecture goals.<br> Comprehensive benefits package Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field; a master’s degree is preferred.<br> 10+ years of experience in cybersecurity, with a focus on security architecture and design.<br> Demonstrated expertise in developing enterprise-level cybersecurity architectures for complex IT environments.<br> In-depth knowledge of security frameworks, standards (e.<br>g., NIST, ISO 27001, CIS Controls), and best practices.<br> Strong analytical and problem-solving abilities, with a strategic and innovative mindset.<br> Excellent leadership, communication, and collaboration skills, able to work effectively with diverse teams and stakeholders.<br> Relevant certifications such as Certified Information Systems Security Professional (CISSP) or Certified Information Security Architect (CISA) are highly desirable.<br></span> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
Assistant Manager - Cybersecurity Security Architecture Qiddiya Investment Company
تكنولوجيا المعلومات
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>Qiddiya Investment Company is looking for a highly experienced and innovative Senior Manager - Cybersecurity Security Architecture to join our forward-thinking team. In this pivotal role, you will oversee the development and implementation of a comprehensive cybersecurity architecture framework designed to protect our digital and operational environments. Your strategic leadership will be essential in integrating security into all levels of our organization, ensuring that security measures support our ambitious growth and innovation goals. As a senior leader, you will play an instrumental role in shaping the security posture of Qiddiya by designing robust security architectures that align with industry best practices and regulatory standards.</p><p>Responsibilities</p><ul><li>Establish security design principles and standards that guide the implementation of secure systems and applications.</li><li>Conduct thorough assessments of existing security architectures and identify areas for improvement to mitigate risks.</li><li>Collaborate with cross-functional teams, including IT, engineering, and operations, to ensure that security architecture is implemented throughout the SDLC and operational phases.</li><li>Monitor advancements in cybersecurity technologies and integrate relevant solutions to enhance the security architecture.</li><li>Provide mentoring and leadership to team members and promote a culture of security awareness within the organization.</li><li>Develop and deliver presentations on cybersecurity architecture strategies to stakeholders and executive leadership.</li><li>Engage with external partners and vendors to assess potential security solutions and ensure alignment with architecture goals.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p>Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field; a master s degree is preferred. Demonstrated expertise in developing enterprise-level cybersecurity architectures for complex IT environments. In-depth knowledge of security frameworks, standards (e.g., NIST, ISO 27001, CIS Controls), and best practices. Strong analytical and problem-solving abilities, with a strategic and innovative mindset. Relevant certifications such as Certified Information Systems Security Professional (CISSP) or Certified Information Security Architect (CISA) are highly desirable.</p><p></p></section>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Cybersecurity Operations Expert responsible for supporting the first line of defense through the day-to-day execution, monitoring, and improvement of operational security controls across enterprise IT environments.<br> The role focuses on protecting systems, networks, endpoints, applications, and users by detecting threats, responding to security events, coordinating remediation activities, and maintaining effective cybersecurity operations.<br> Key responsibilities include continuous monitoring of security alerts and events, email security, and other operational security platforms, and ensuring timely containment and recovery actions.<br> The role also supports vulnerability management by tracking findings, coordinating remediation with infrastructure and application teams, and validating closure of identified risks.<br> The Cybersecurity Operations Expert works closely with IT operations, network, cloud, server, endpoint, and application teams to ensure security controls are implemented and functioning effectively as part of daily business and technology operations.<br> Responsibilities also include supporting identity and access security operations, reviewing privileged access activities, enforcing security baselines, maintaining playbooks and operational procedures, and contributing to security awareness from an operational perspective.<br> This position is part of the first line of defense and is therefore focused on operating and executing controls rather than performing independent oversight, policy governance, regulatory compliance assurance, or internal audit activities associated with the second or third lines of defense.<br> Rsponsibilities: Monitor and analyze cybersecurity alerts, events, and incidents.<br> Perform initial triage, investigation, containment support, and escalation of security incidents.<br> Support endpoint, network, cloud, and email security operations.<br> Coordinate vulnerability remediation with relevant technical teams.<br> Execute and maintain operational security controls and monitoring use cases.<br> Monitor and support security-related patching, platform upgrades, and operational technology refresh activities to ensure minimal security exposure and service disruption.<br> Support security activities during system, tool, and infrastructure migrations, including validation of controls, configuration reviews, and post-migration security checks.<br> Review and validate security integrations between cybersecurity tools, IT systems, cloud platforms, and third-party solutions to ensure proper logging, alerting, connectivity, and control effectiveness.<br> Support access control reviews, privileged access monitoring, and identity-related security operations.<br> Maintain incident response procedures, runbooks, and operational documentation.<br> Track remediation actions and follow up on risk reduction activities.<br> Contribute to continuous improvement of cybersecurity activities and processes.<br> Support business resilience by reducing operational cyber risk exposure.<br> Bachelor’s degree in Cybersecurity, Information Security, Computer Science, Information Technology, Engineering, or a related field.<br> 5+ years of experience in cybersecurity operations, security monitoring, incident response, vulnerability management, or security engineering functions.<br> Hands-on experience with enterprise security technologies, including SIEM, EDR/XDR, email security, identity and access management, network security, cloud security, and vulnerability management platforms.<br> Strong understanding of cybersecurity frameworks, attack techniques, threat detection methodologies, and security operations best practices.<br> Experience working in hybrid environments spanning on-premises infrastructure, cloud platforms, and third-party services.<br> Preferred Certifications Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM)</span> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>We are looking for an experienced Cybersecurity Specialist to join our team in Riyadh. The ideal candidate will have a strong background in cybersecurity, with experience in threat intelligence and hands-on exposure to Anomali. This role requires an analytical professional who can contribute to strengthening the organization's cybersecurity posture and support security operations.</p><p>Key Responsibilities</p><ul><li>Monitor and assess cybersecurity threats and emerging risks.</li><li>Support threat intelligence activities and provide actionable insights.</li><li>Collaborate with internal teams to improve the organization's security posture.</li><li>Analyze security incidents and contribute to investigations.</li><li>Prepare reports, documentation, and recommendations for stakeholders.</li><li>Ensure compliance with organizational security policies and industry best practices.</li><li>Participate in security awareness and continuous improvement initiatives.</li><li>Work closely with cross-functional teams to support cybersecurity objectives.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li>Minimum 4 years of experience in cybersecurity.</li><li>Experience in Cybersecurity Threat Intelligence .</li><li>Hands-on experience with Anomali .</li><li>GCTI and/or GREM certification is required.</li><li>Strong analytical and problem-solving skills.</li><li>Excellent communication and stakeholder management abilities.</li><li>Ability to work effectively in a collaborative team environment.</li></ul><p></p></section>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Qiddiya Investment Company is looking for a highly experienced and innovative Senior Manager - Cybersecurity Security Architecture to join our forward-thinking team.<br> In this pivotal role, you will oversee the development and implementation of a comprehensive cybersecurity architecture framework designed to protect our digital and operational environments.<br> Your strategic leadership will be essential in integrating security into all levels of our organization, ensuring that security measures support our ambitious growth and innovation goals.<br> As a senior leader, you will play an instrumental role in shaping the security posture of Qiddiya by designing robust security architectures that align with industry best practices and regulatory standards.<br> Responsibilities Establish security design principles and standards that guide the implementation of secure systems and applications.<br> Conduct thorough assessments of existing security architectures and identify areas for improvement to mitigate risks.<br> Collaborate with cross-functional teams, including IT, engineering, and operations, to ensure that security architecture is implemented throughout the SDLC and operational phases.<br> Monitor advancements in cybersecurity technologies and integrate relevant solutions to enhance the security architecture.<br> Provide mentoring and leadership to team members and promote a culture of security awareness within the organization.<br> Develop and deliver presentations on cybersecurity architecture strategies to stakeholders and executive leadership.<br> Engage with external partners and vendors to assess potential security solutions and ensure alignment with architecture goals.<br> Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field; a master’s degree is preferred.<br> Demonstrated expertise in developing enterprise-level cybersecurity architectures for complex IT environments.<br> In-depth knowledge of security frameworks, standards (e.<br>g., NIST, ISO 27001, CIS Controls), and best practices.<br> Strong analytical and problem-solving abilities, with a strategic and innovative mindset.<br> Relevant certifications such as Certified Information Systems Security Professional (CISSP) or Certified Information Security Architect (CISA) are highly desirable.<br></span> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>As Head of Security at Salla, you are the most senior security authority at Salla. You set the strategy, build the team, and own the controls that keep our platform, our people, and our merchants safe. You translate risk into business language for the executive team and the Board, and you make security a competitive advantage rather than a constraint. You will lead end to end across every security domain and represent Salla's security posture to auditors, regulators, partners, and customers. Please not that we are looking for Saudi Nationals only for this role.</p><p>Key Responsibilities</p><p>Security Strategy & Leadership</p><ul><li>Own and evolve the enterprise security strategy, roadmap, and operating model across cloud, network, endpoint, physical, and GRC, aligned to Salla's growth and public-listing readiness.</li><li>Act as the organization's principal security advisor; brief the executive team and the Board on cyber risk posture, investment priorities, and regulatory exposure.</li><li>Define and steward the security budget, headcount plan, and tooling portfolio; drive measurable return on security investment.</li><li>Establish security KPIs, OKRs, and a metrics-driven reporting cadence for leadership and audit committees.</li></ul><p>Cloud Security</p><ul><li>Lead cloud security across the platform, including landing-zone hardening, network segmentation, secrets management, and workload protection (AWS strongly preferred).</li><li>Govern Infrastructure-as-Code security, container and Kubernetes security (image scanning, admission control, runtime protection), and CI/CD pipeline integrity.</li><li>Drive Cloud Security Posture Management, workload protection, and continuous compliance against recognized cloud control frameworks and CIS benchmarks.</li><li>Partner with SRE and Platform Engineering to embed secure-by-default guardrails that protect velocity rather than slow it.</li></ul><p>Network Security</p><ul><li>Own network security architecture, including edge protection, DDoS mitigation, web application firewall, segmentation, and zero-trust network access.</li><li>Govern the CDN and edge security stack, bot management, rate limiting, and origin lockdown for high-traffic, merchant-facing services.</li><li>Oversee secure connectivity, private connectivity, VPN, and DNS security.</li></ul><p>Endpoint Security</p><ul><li>Lead endpoint protection across corporate and engineering fleets, including EDR/XDR, device hardening, mobile device management, and disk encryption.</li><li>Run a continuous vulnerability and patch management program with clear remediation SLAs.</li><li>Define and enforce endpoint baselines and data loss prevention controls.</li></ul><p>Physical & Facility Security</p><ul><li>Own physical security for Salla's offices and facilities in Makkah and other sites, including access control, CCTV, visitor management, and environmental controls.</li><li>Align physical and logical access policies; govern physical access to sensitive areas and equipment.</li><li>Coordinate with Facilities, HR, and local authorities on safety, badging, and on-site incident response.</li></ul><p>Identity & Access Management (Zero Trust)</p><ul><li>Lead IAM strategy across cloud and corporate systems, including single sign-on, multi-factor authentication, privileged access management, and least-privilege enforcement.</li><li>Automate joiner, mover, and leaver workflows and run periodic access recertification.</li><li>Advance the organization toward a mature zero-trust architecture.</li></ul><p>Security Operations & Incident Response</p><ul><li>Build and run the security operations capability, including SIEM, detection engineering, threat intelligence, and continuous monitoring.</li><li>Own the incident response lifecycle from preparation through detection, containment, eradication, recovery, and blameless post-incident review.</li><li>Lead tabletop exercises, red and purple teaming, and breach-readiness drills; maintain crisis-communication and breach-notification playbooks.</li></ul><p>Governance, Risk & Compliance (GRC)</p><ul><li>Own the GRC function and the enterprise risk register; run the risk assessment and treatment lifecycle.</li><li>Lead certification and audit programs spanning ISO/IEC 27001, SOC 2, and PCI DSS, with alignment to the NCA Essential Cybersecurity Controls and Cloud Cybersecurity Controls, and to the SAMA Cyber Security Framework where applicable.</li><li>Own data protection and privacy compliance under the Saudi Personal Data Protection Law and SDAIA requirements, including data inventories, processing agreements, and cross-border transfer controls.</li><li>Prepare Salla's security and IT-governance posture for Tadawul listing, including controls maturity, evidence collection, and auditor readiness.</li><li>Author, ratify, and maintain the full lifecycle of security policies, standards, and procedures.</li></ul><p>Third-Party & Vendor Risk</p><ul><li>Establish and run the third-party risk program, including security due diligence, contractual security terms, and continuous monitoring of critical suppliers.</li><li>Embed security requirements into procurement and vendor onboarding.</li></ul><p>Security Awareness & Culture</p><ul><li>Build a company-wide security awareness, training, and phishing-simulation program.</li><li>Champion a positive, blameless security culture in which security is a shared responsibility.</li></ul><p>Team Leadership & Organization Building</p><ul><li>Lead, mentor, and grow a multidisciplinary security organization spanning cloud security, SecOps, GRC, and physical security.</li><li>Set objectives, develop talent, and build the hiring plan to scale the function with the business.</li><li>Forge cross-functional partnerships with Engineering, SRE, IT, Legal, HR, and Finance.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li>12+ years in information and cyber security, including 5+ years in senior security leadership (Head of Security, Director, or CISO-track) at a SaaS, fintech, or e-commerce organization.</li><li>Demonstrated ownership of security across multiple domains: cloud, network, endpoint, physical, and GRC.</li><li>Deep hands-on and architectural knowledge of cloud security (AWS strongly preferred), including Kubernetes and modern CI/CD.</li><li>Proven track record building and operating security operations and incident response at scale.</li><li>Strong GRC experience across ISO 27001, PCI DSS, GDPR and Saudi regulatory frameworks (NCA ECC and CCC, PDPL and SDAIA; SAMA CSF a plus).</li><li>Experience leading audits and certifications, ideally including IPO or regulatory-readiness programs.</li><li>Excellent executive communication; able to translate technical risk into business and regulatory language for the Board.</li><li>Bachelor's degree in Computer Science, Engineering, Information Security, or a related field.</li><li>Willingness and eligibility to work on-site in Makkah, Saudi Arabia.</li></ul><p></p></section>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Design and maintain enterprise cybersecurity architecture frameworks and standards.<br> Review solution, infrastructure, cloud, and application architectures to ensure security requirements are embedded throughout the project lifecycle.<br> Define security architecture principles, patterns, and reference architectures.<br> Conduct architecture risk assessments and recommend appropriate security controls.<br> Collaborate with Enterprise Architecture, Infrastructure, Cloud, Network, and Application teams to integrate security-by-design principles.<br> Evaluate emerging technologies and recommend secure implementation approaches.<br> Support cloud security architecture across Azure, AWS, and/or Google Cloud environments.<br> Define requirements for Identity & Access Management (IAM), Zero Trust, network segmentation, encryption, and privileged access.<br> Ensure compliance with cybersecurity frameworks and regulatory requirements (NCA ECC, NIST CSF, ISO 27001, CIS Controls).<br> Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field.<br> Master's degree is preferred.<br> Minimum 3–4 years in Cybersecurity Architecture or Security Engineering.<br></span> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>Lead the day-to-day delivery of IT, network/infrastructure, OT, and application security operations across all ASO-managed platforms. Oversee Managed Service Partner (L1/L2) service delivery, ensuring effective platform governance, SLA compliance, operational efficiency, and continuous improvement.</p><p>Key Responsibilities</p><ul><li>Lead and manage the ASO team, including Senior Lead, Senior Specialist, and Security Specialist.</li><li>Oversee Managed Service Partner L1/L2 service delivery and SLA performance.</li><li>Govern platform administration and security tool configuration changes.</li><li>Oversee the Application Security program, including WAF governance, application vulnerability remediation, and coordination with the Cybersecurity Team.</li><li>Lead vulnerability management activities, including prioritization, tracking, and reporting.</li><li>Manage change management for all ASO-owned security platforms.</li><li>Oversee operational handover of new security tools and ensure service continuity.</li><li>Coordinate with the Security Lead on security incidents, escalations, and change approvals.</li><li>Prepare and present monthly operational and performance reports for leadership.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p>7+ years of cybersecurity experience, including 3+ years in a leadership role. Experience managing enterprise security operations and security platforms. Hands-on experience with security technologies such as firewalls, EDR, PAM, vulnerability management, and WAF. Experience managing Managed Security Service Providers (MSSPs) and SLA performance. Strong stakeholder management and operational governance skills. Professional certification such as CISSP or CISM preferred.</p><p></p></section>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>We are looking for an experienced Cybersecurity Specialist to join our team in Riyadh.<br> The ideal candidate will have a strong background in cybersecurity, with experience in threat intelligence and hands-on exposure to Anomali.<br> This role requires an analytical professional who can contribute to strengthening the organization's cybersecurity posture and support security operations.<br> Key Responsibilities Monitor and assess cybersecurity threats and emerging risks.<br> Support threat intelligence activities and provide actionable insights.<br> Collaborate with internal teams to improve the organization's security posture.<br> Analyze security incidents and contribute to investigations.<br> Prepare reports, documentation, and recommendations for stakeholders.<br> Ensure compliance with organizational security policies and industry best practices.<br> Participate in security awareness and continuous improvement initiatives.<br> Work closely with cross-functional teams to support cybersecurity objectives.<br> Minimum 4 years of experience in cybersecurity.<br> Experience in Cybersecurity Threat Intelligence .<br> Hands-on experience with Anomali .<br> GCTI and/or GREM certification is required.<br> Strong analytical and problem-solving skills.<br> Excellent communication and stakeholder management abilities.<br> Ability to work effectively in a collaborative team environment.<br></span> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Nationality">
<b>Nationality</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Nationality">
Saudi Arabia </div>
</div>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>Cybersecurity Operations Expert responsible for supporting the first line of defense through the day-to-day execution, monitoring, and improvement of operational security controls across enterprise IT environments. The role focuses on protecting systems, networks, endpoints, applications, and users by detecting threats, responding to security events, coordinating remediation activities, and maintaining effective cybersecurity operations. Key responsibilities include continuous monitoring of security alerts and events, email security, and other operational security platforms, and ensuring timely containment and recovery actions. The role also supports vulnerability management by tracking findings, coordinating remediation with infrastructure and application teams, and validating closure of identified risks. The Cybersecurity Operations Expert works closely with IT operations, network, cloud, server, endpoint, and application teams to ensure security controls are implemented and functioning effectively as part of daily business and technology operations. Responsibilities also include supporting identity and access security operations, reviewing privileged access activities, enforcing security baselines, maintaining playbooks and operational procedures, and contributing to security awareness from an operational perspective. This position is part of the first line of defense and is therefore focused on operating and executing controls rather than performing independent oversight, policy governance, regulatory compliance assurance, or internal audit activities associated with the second or third lines of defense.</p><p>Responsibilities:</p><ul><li>Monitor and analyze cybersecurity alerts, events, and incidents.</li><li>Perform initial triage, investigation, containment support, and escalation of security incidents.</li><li>Support endpoint, network, cloud, and email security operations.</li><li>Coordinate vulnerability remediation with relevant technical teams.</li><li>Execute and maintain operational security controls and monitoring use cases.</li><li>Monitor and support security-related patching, platform upgrades, and operational technology refresh activities to ensure minimal security exposure and service disruption.</li><li>Support security activities during system, tool, and infrastructure migrations, including validation of controls, configuration reviews, and post-migration security checks.</li><li>Review and validate security integrations between cybersecurity tools, IT systems, cloud platforms, and third-party solutions to ensure proper logging, alerting, connectivity, and control effectiveness.</li><li>Support access control reviews, privileged access monitoring, and identity-related security operations.</li><li>Maintain incident response procedures, runbooks, and operational documentation.</li><li>Track remediation actions and follow up on risk reduction activities.</li><li>Contribute to continuous improvement of cybersecurity activities and processes.</li><li>Support business resilience by reducing operational cyber risk exposure.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li>Bachelor s degree in Cybersecurity, Information Security, Computer Science, Information Technology, Engineering, or a related field.</li><li>5+ years of experience in cybersecurity operations, security monitoring, incident response, vulnerability management, or security engineering functions.</li><li>Hands-on experience with enterprise security technologies, including SIEM, EDR/XDR, email security, identity and access management, network security, cloud security, and vulnerability management platforms.</li><li>Strong understanding of cybersecurity frameworks, attack techniques, threat detection methodologies, and security operations best practices.</li><li>Experience working in hybrid environments spanning on-premises infrastructure, cloud platforms, and third-party services.</li><li>Preferred Certifications Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM)</li></ul><p></p></section>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>Design and maintain enterprise cybersecurity architecture frameworks and standards. Review solution, infrastructure, cloud, and application architectures to ensure security requirements are embedded throughout the project lifecycle. Define security architecture principles, patterns, and reference architectures. Conduct architecture risk assessments and recommend appropriate security controls. Collaborate with Enterprise Architecture, Infrastructure, Cloud, Network, and Application teams to integrate security-by-design principles. Evaluate emerging technologies and recommend secure implementation approaches. Support cloud security architecture across Azure, AWS, and/or Google Cloud environments. Define requirements for Identity & Access Management (IAM), Zero Trust, network segmentation, encryption, and privileged access. Ensure compliance with cybersecurity frameworks and regulatory requirements (NCA ECC, NIST CSF, ISO 27001, CIS Controls).</p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p>Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field. Master's degree is preferred. Minimum 3 4 years in Cybersecurity Architecture or Security Engineering.</p><p></p></section>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>The Cybersecurity GRC Consultant supports the design, implementation, and continuous improvement of cybersecurity governance, risk, and compliance initiatives. The role contributes to the development of governance frameworks, policies, operating models, and regulatory compliance activities while ensuring alignment with organizational objectives and Saudi cybersecurity regulations. The consultant works closely with senior consultants, architects, and client stakeholders to deliver high-quality governance artifacts and advisory services.</p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li>Bachelor's degree in Cybersecurity, Information Security, Information Technology, Computer Science, or a related discipline.</li><li>3 - 7 years of experience in Cybersecurity Governance, Risk & Compliance (GRC), Information Security, or Cybersecurity Consulting.</li><li>Experience in developing governance documentation, policies, standards, and cybersecurity frameworks.</li><li>Familiarity with cybersecurity governance operating models and organizational structures.</li><li>Experience supporting governance assessments, compliance initiatives, and regulatory audits.</li><li>Knowledge of Saudi cybersecurity regulations and international security standards.</li><li>Experience working within consulting, managed services, or large enterprise environments is preferred.</li></ul><p></p></section>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>The Cybersecurity GRC Consultant supports the design, implementation, and continuous improvement of cybersecurity governance, risk, and compliance initiatives. The role contributes to the development of governance frameworks, policies, operating models, and regulatory compliance activities while ensuring alignment with organizational objectives and Saudi cybersecurity regulations. The consultant works closely with senior consultants, architects, and client stakeholders to deliver high-quality governance artifacts and advisory services.</p><p><strong>Key Responsibilities</strong></p><ul><li>Support the development, implementation, and maintenance of the cybersecurity governance framework, including policies, standards, procedures, and guidelines.</li><li>Assist in designing and improving cybersecurity governance operating models, organizational structures, and RACI matrices.</li><li>Contribute to the development and maintenance of governance-related KPIs, KRIs, dashboards, and reporting mechanisms.</li><li>Perform governance maturity assessments, gap analyses, and benchmarking activities against industry best practices.</li><li>Prepare governance documentation, reports, presentations, and recommendations for client review.</li><li>Ensure governance deliverables align with Saudi regulatory requirements, including NCA ECC, CST (formerly CITC), SAMA Cybersecurity Framework, and relevant international standards such as ISO/IEC 27001 and NIST Cybersecurity Framework.</li><li>Support governance committees, working groups, and client workshops by preparing documentation, facilitating discussions, and tracking action items.</li><li>Collaborate with Risk Management, Compliance, Third-Party Risk Management (TPRM), Enterprise Architecture, and Security Operations teams to ensure governance activities are integrated across cybersecurity domains.</li><li>Assist in the review and quality assurance of governance documentation and project deliverables.</li><li>Monitor regulatory updates and industry trends to recommend improvements to governance practices.</li><li>Provide advisory support to clients on cybersecurity governance best practices and regulatory compliance requirements.</li><li>Contribute to knowledge sharing, documentation, and continuous improvement initiatives within the Cybersecurity GRC practice.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p><strong>Qualifications</strong></p><ul><li>Bachelor's degree in Cybersecurity, Information Security, Information Technology, Computer Science, or a related discipline.</li><li>3 - 7 years of experience in Cybersecurity Governance, Risk & Compliance (GRC), Information Security, or Cybersecurity Consulting.</li><li>Experience in developing governance documentation, policies, standards, and cybersecurity frameworks.</li><li>Familiarity with cybersecurity governance operating models and organizational structures.</li><li>Experience supporting governance assessments, compliance initiatives, and regulatory audits.</li><li>Knowledge of Saudi cybersecurity regulations and international security standards.</li><li>Experience working within consulting, managed services, or large enterprise environments is preferred.</li></ul><p></p></section>
<p>We are looking for a Senior Specialist Cybersecurity Production Support to join our team in Saudi Arabia. Job Overview: The Senior Specialist will be responsible for supporting and maintaining cybersecurity platforms, ensuring high availability, operational stability, and effective security monitoring across enterprise environments. Key Responsibilities: Provide production support for cybersecurity platforms including SIEM, SOAR, VPN, and security monitoring solutions. Monitor cybersecurity platforms, dashboards, alerts, and operational activities. Support Splunk SIEM use cases, log ingestion, correlation rules, and performance optimization. Manage and maintain SOAR workflows, playbooks, and automation processes. Support VPN infrastructure including secure remote access and site-to-site connectivity. Perform Incident, Problem, and Change Management activities following ITIL practices. Conduct Root Cause Analysis (RCA) for security incidents and platform issues. Support Cyber Incident Response activities including investigation and remediation. Participate in Disaster Recovery (DR) and Business Continuity Planning (BCP). Maintain security documentation, runbooks, SOPs, and operational reports. Collaborate with security teams, infrastructure teams, and vendors for issue resolution.</p><p><strong>Desired Candidate Profile</strong></p><p>Bachelor s degree in Cybersecurity, Information Security, Computer Science, or related field. 4 8 years of experience in cybersecurity production support within enterprise or financial environments. Hands-on experience with: SIEM platforms (Splunk Enterprise / Splunk ES preferred) SOAR platforms (Cortex XSOAR, Splunk SOAR, or similar) VPN technologies (IPSec / SSL VPN) Security monitoring and incident response Strong understanding of cybersecurity operations, threat detection, and log analysis. Experience with ITIL Incident, Problem, and Change Management. Knowledge of SAMA Cybersecurity Framework, NCA ECC, PDPL, and NDMO is preferred. Basic scripting knowledge (Python, PowerShell, or similar) is preferred.</p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p>Cybersecurity Operations Expert responsible for supporting the first line of defense through the day-to-day execution, monitoring, and improvement of operational security controls across enterprise IT environments. The role focuses on protecting systems, networks, endpoints, applications, and users by detecting threats, responding to security events, coordinating remediation activities, and maintaining effective cybersecurity operations.</p><br><p>Key responsibilities include continuous monitoring of security alerts and events, email security, and other operational security platforms, and ensuring timely containment and recovery actions. The role also supports vulnerability management by tracking findings, coordinating remediation with infrastructure and application teams, and validating closure of identified risks.</p><br><p>The Cybersecurity Operations Expert works closely with IT operations, network, cloud, server, endpoint, and application teams to ensure security controls are implemented and functioning effectively as part of daily business and technology operations. </p><br><p>Responsibilities also include supporting identity and access security operations, reviewing privileged access activities, enforcing security baselines, maintaining playbooks and operational procedures, and contributing to security awareness from an operational perspective.</p><br><p>This position is part of the first line of defense and is therefore focused on operating and executing controls rather than performing independent oversight, policy governance, regulatory compliance assurance, or internal audit activities associated with the second or third lines of defense.</p><br><p><u><strong>Rsponsibilities:</strong></u></p><br><ul><li>Monitor and analyze cybersecurity alerts, events, and incidents.</li><li>Perform initial triage, investigation, containment support, and escalation of security incidents.</li><li>Support endpoint, network, cloud, and email security operations.</li><li>Coordinate vulnerability remediation with relevant technical teams.</li><li>Execute and maintain operational security controls and monitoring use cases.</li><li>Monitor and support security-related patching, platform upgrades, and operational technology refresh activities to ensure minimal security exposure and service disruption.</li><li>Support security activities during system, tool, and infrastructure migrations, including validation of controls, configuration reviews, and post-migration security checks.</li><li>Review and validate security integrations between cybersecurity tools, IT systems, cloud platforms, and third-party solutions to ensure proper logging, alerting, connectivity, and control effectiveness.</li><li>Support access control reviews, privileged access monitoring, and identity-related security operations.</li><li>Maintain incident response procedures, runbooks, and operational documentation.</li><li>Track remediation actions and follow up on risk reduction activities.</li><li>Contribute to continuous improvement of cybersecurity activities and processes.</li><li>Support business resilience by reducing operational cyber risk exposure.</li></ul> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>As a Cybersecurity Access Control Specialist, you will be responsible for administering identity and access management (IAM) processes, ensuring users have appropriate access to systems and applications while maintaining compliance with cybersecurity policies and best practices. You will work closely with internal stakeholders, cybersecurity architects, and technology teams to strengthen access controls, reduce security risks, and improve the organization's overall security posture. Key Responsibilities Administer user accounts, system access, and network permissions. Manage Identity and Access Management (IAM) processes and solutions. Assess access controls to ensure compliance with organizational policies. Apply authentication, authorization, encryption, and access control principles to protect organizational assets. Create, maintain, and review network access control lists (ACLs). Support the development and implementation of IAM strategies. Collaborate with cybersecurity architects to improve identity and access management capabilities. Monitor privileged access and support Privileged Access Management (PAM) initiatives. Identify and remediate access-related security risks and control gaps. Ensure appropriate stakeholder involvement in cybersecurity access decisions. Support continuous monitoring of access control systems and user activities. Mentor colleagues on identity and access management best practices. Work with vendors and technology partners to support IAM solutions and implementations.</p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p>Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related field. Minimum one year of experience in Cybersecurity, Identity & Access Management (IAM), Information Security, or System Administration. Knowledge of Identity and Access Management (IAM) principles. Understanding of authentication, authorization, and access control models. Familiarity with Active Directory, Microsoft Entra ID (Azure AD), LDAP, or similar identity platforms is preferred. Understanding of Privileged Access Management (PAM) concepts is an advantage. Basic understanding of cybersecurity frameworks and security controls. Relevant cybersecurity certifications are preferred.</p><p>What We're Looking For</p><ul><li>Strong analytical and problem-solving skills.</li><li>Excellent attention to detail.</li><li>Good communication and stakeholder management skills.</li><li>Ability to work collaboratively across technical and business teams.</li><li>Strong organizational and planning abilities.</li><li>Passion for continuous learning and cybersecurity.</li></ul><p></p></section>
Cybersecurity Administrator<br>Job Overview<br>We are seeking a Cybersecurity Responsible to join the IT Department. The ideal candidate will have experience implementing cybersecurity controls, managing security risks, and protecting systems and digital infrastructure to ensure the confidentiality, integrity, and availability of information, as well as compliance with regulatory requirements and best practices.<br>Key Responsibilities Implement and monitor company-wide cybersecurity policies and controls. Monitor security systems, analyze threats, and respond to security incidents. Conduct security risk assessments and propose mitigation plans. Manage user identities and permissions, and review access levels. Implement cybersecurity awareness programs and raise security awareness among employees. Monitor compliance with regulatory requirements and relevant standards. Prepare periodic reports on risks, incidents, and compliance levels.<br>Qualifications and Experience Bachelor’s degree in cybersecurity, information technology, computer science, or a related field. At least 3–5 years of experience in the field of cybersecurity. Experience in security risk management and incident response. Good knowledge of the National Cybersecurity Authority (ECC) controls and global best practices. Experience with network protection systems, identity and access management, and security protection solutions. Fluency in both Arabic and English, spoken and written.<br>The following are preferred:Comp TIA Security+ certification. Certified Ethical Hacker (CEH) certification. ISO/IEC 27001 Lead Implementer or Lead Auditor certification. ISC² Certified in Cybersecurity (CC) or CISSP certification for candidates with advanced experience. Experience in multi-branch organizations or the education sector.<br>Required Skills Security risk analysis and management. Security incident response and investigation. Development of security policies and procedures. Analytical thinking and problem-solving. Preparation of technical and executive reports. Communication and collaboration skills with various stakeholders. Ability to work under pressure and ensure business continuity.<br>مسؤول الأمن السيبراني<br>نبذة عن الوظيفة<br>نبحث عن مسؤول أمن سيبراني للانضمام إلى إدارة تقنية المعلومات، يمتلك خبرة في تطبيق ضوابط الأمن السيبراني، وإدارة المخاطر الأمنية، وحماية الأنظمة والبنية التحتية الرقمية، بما يضمن المحافظة على سرية وسلامة وتوافر المعلومات، والامتثال للمتطلبات التنظيمية وأفضل الممارسات.<br>المسؤوليات الرئيسيةتطبيق ومتابعة سياسات وضوابط الأمن السيبراني على مستوى الشركة.مراقبة الأنظمة الأمنية وتحليل التهديدات والاستجابة للحوادث الأمنية.تنفيذ تقييمات المخاطر الأمنية واقتراح خطط المعالجة.إدارة هويات المستخدمين والصلاحيات ومراجعة مستويات الوصول.تنفيذ برامج التوعية بالأمن السيبراني ورفع الوعي الأمني لدى الموظفين.متابعة الامتثال للمتطلبات التنظيمية والمعايير ذات العلاقة.إعداد التقارير الدورية الخاصة بالمخاطر والحوادث ومستوى الامتثال.<br>المؤهلات والخبراتدرجة البكالوريوس في الأمن السيبراني أو تقنية المعلومات أو علوم الحاسب أو أي تخصص ذي صلة.خبرة لا تقل عن (3–5) سنوات في مجال الأمن السيبراني.خبرة في إدارة المخاطر الأمنية والاستجابة للحوادث.معرفة جيدة بضوابط الهيئة الوطنية للأمن السيبراني (ECC) وأفضل الممارسات العالمية.خبرة في أنظمة حماية الشبكات، وإدارة الهوية والصلاحيات، وحلول الحماية الأمنية.إجادة اللغتين العربية والإنجليزية تحدثاً وكتابة.<br>يفضل توفر الآتيشهادة Comp TIA Security+.شهادة Certified Ethical Hacker (CEH).شهادة ISO/IEC 27001 Lead Implementer أو Lead Auditor.شهادة ISC2 Certified in Cybersecurity (CC) أو CISSP للمرشحين ذوي الخبرة المتقدمة.خبرة في المؤسسات متعددة الفروع أو قطاع التعليم.<br>المهارات المطلوبةتحليل وإدارة المخاطر الأمنية.الاستجابة للحوادث الأمنية والتحقيق فيها.إعداد السياسات والإجراءات الأمنية.التفكير التحليلي وحل المشكلات.إعداد التقارير الفنية والتنفيذية.مهارات التواصل والعمل مع مختلف أصحاب المصلحة.القدرة على العمل تحت الضغط والمحافظة على استمرارية الأعمال.