Specialist I, Cybersecurity
الوصف الوظيفي
Position Overview
The Specialist I, Cybersecurity – Joint Ventures & Subsidiaries plays a pivotal role in safeguarding the digital infrastructure of Al Ayuni’s subsidiaries, joint ventures, and projects. This position is responsible for implementing and maintaining robust cybersecurity standards, providing expert technical guidance, and ensuring strict compliance with cybersecurity requirements across all organizational environments. The ideal candidate will serve as a trusted advisor to leadership and IT teams, driving the adoption of security best practices while mitigating risks to protect critical assets and data integrity.
Key Responsibilities
Cybersecurity Implementation & Technical Operations
This role leads the deployment and operational management of cybersecurity controls across subsidiaries, joint ventures, and project environments. The Specialist I will implement, configure, and maintain a wide range of security solutions, including:
- Firewalls and network security appliances to protect against unauthorized access;
- Endpoint Detection and Response (EDR) systems to detect and respond to threats on endpoints;
- Identity and Access Management (IAM) solutions to enforce least-privilege access;
- Multi-Factor Authentication (MFA) to strengthen authentication processes;
- Email security platforms to defend against phishing and malicious content;
- Security Information and Event Management (SIEM) systems for real-time threat monitoring and incident response;
- Additional security technologies as required to maintain a resilient security posture.
The Specialist I will also perform security hardening of servers, endpoints, operating systems, network devices, cloud platforms, databases, and business applications in strict accordance with established cybersecurity standards. This includes securing Microsoft 365, Microsoft Azure, and hybrid infrastructure environments through the implementation of appropriate security controls and configurations. Collaboration with Infrastructure, Applications, and Digital teams is essential to ensure cybersecurity requirements are integrated into all technology implementations and operational processes.
Security Assessment & Compliance
The Specialist I conducts comprehensive assessments of the cybersecurity posture of subsidiaries, joint ventures, and projects to identify risks, vulnerabilities, and compliance gaps. This includes performing:
- Vulnerability assessments to identify weaknesses in systems and applications;
- Cybersecurity health checks to evaluate overall security readiness;
- Technical compliance reviews to ensure adherence to corporate standards and regulatory requirements.
The role coordinates remediation activities, validates the implementation of corrective actions, and verifies the closure of identified security vulnerabilities. Additionally, the Specialist I supports cybersecurity audits, risk assessments, and compliance activities to ensure alignment with corporate policies and external regulatory frameworks. Monitoring cybersecurity performance through security dashboards, technical metrics, and assessment results is critical, along with preparing detailed technical reports for management review.
Infrastructure & Application Security
The Specialist I reviews the security architecture of infrastructure, cloud, and technology projects to ensure compliance with cybersecurity requirements and secure design principles. This includes evaluating application architecture and configurations to identify security weaknesses and recommending appropriate mitigation measures. The role reviews firewall configurations, VPN connectivity, remote access solutions, network segmentation, and third-party integrations to ensure secure connectivity and data flow.
Validation of remediation efforts for infrastructure and application security findings is a key responsibility, ensuring that recommended controls are effectively implemented. The Specialist I ensures that all infrastructure and business applications comply with corporate cybersecurity standards, regulatory requirements, and industry best practices, thereby reducing exposure to potential threats.
Incident Response & Technical Advisory
In the event of a cybersecurity incident, the Specialist I supports the investigation, analysis, and resolution process across subsidiaries, joint ventures, and project environments. This includes performing root cause analysis to identify the source of incidents and recommending corrective and preventive actions to minimize the risk of recurrence. The Specialist I coordinates with subsidiary IT teams to ensure timely implementation of cybersecurity recommendations and security improvements.
The role provides expert technical guidance and cybersecurity expertise to IT teams on security controls, technologies, and implementation best practices. Preparing technical security assessments, comprehensive cybersecurity reports, and implementation updates is essential to support informed decision-making by management.
Additional Responsibilities
The Specialist I adheres to organizational policies and procedures to ensure compliance and maintain a productive work environment. Upholding safety and security protocols is a priority to protect the well-being of employees and company assets. The Specialist I may also perform additional duties as needed to support the team and contribute to the overall business objectives.
Qualifications
A Bachelor’s Degree in Cybersecurity, Computer Science, or a related field is required. Professional certifications such as CISSP, CISM, CEH, or CompTIA Security+ are highly desirable and will be considered an advantage.
يمكن أن يرتكب الذكاء الاصطناعي أخطاءً.