IT Security Engineer_SAUDI

Astek Middle East
الرياض, الرياض دوام كامل
نشر: 1448/1/29 | 2026/07/14 ينتهي: 1448/2/30 | 2026/08/13 ✨ وصف بالذكاء الاصطناعي
تقدم للوظيفة الآن

الوصف الوظيفي

About the Role

We are seeking a highly skilled and experienced IT Security Engineer to join a premier organization within the government and critical infrastructure sector. In this pivotal role, you will be responsible for safeguarding the organization’s digital assets by managing advanced security technologies, proactively monitoring cyber threats, strengthening security controls, and ensuring robust incident response. Your expertise will be instrumental in maintaining compliance with industry best practices and regulatory standards, while collaborating closely with infrastructure, cybersecurity, and business teams to continuously elevate the organization’s security posture.

Key Responsibilities

The IT Security Engineer will be entrusted with a diverse range of responsibilities, including:

  • Security Technology Administration: Manage, maintain, and optimize enterprise security technologies such as Firewalls (Palo Alto, Fortinet FortiGate, F5), Endpoint Protection, Email Security, Intrusion Detection/Prevention Systems (IDS/IPS), Data Loss Prevention (DLP), Virtual Private Networks (VPN), Identity and Access Management (IAM), and other advanced security platforms.
  • Threat Monitoring and Incident Response: Monitor security alerts, investigate potential threats, and respond to incidents, service requests, and change requests in a timely and effective manner to mitigate risks and minimize operational disruptions.
  • Patch Management and System Hardening: Execute security patch management, system hardening, and regular updates across all security platforms to ensure resilience against evolving cyber threats and vulnerabilities.
  • Vulnerability Management: Conduct comprehensive vulnerability assessments, coordinate remediation activities, and meticulously track security findings to ensure timely closure and adherence to compliance requirements.
  • Security Control Enhancement: Design, implement, and continuously improve security controls and operational security procedures to strengthen the organization’s defensive posture and align with industry standards.
  • Risk Identification and Mitigation: Continuously monitor networks, systems, and applications to identify cyber threats, vulnerabilities, and operational risks, providing actionable insights to mitigate potential security breaches.
  • Project Support: Collaborate with infrastructure and enterprise technology projects, including infrastructure upgrades and server migrations, to ensure security best practices are integrated throughout the lifecycle.
  • Policy and Compliance Management: Develop, maintain, and enhance IT security policies, standards, and operating procedures to ensure alignment with regulatory frameworks such as ISO 27001, NIST, and organizational security policies.
  • Risk Assessments and Compliance Initiatives: Participate in security risk assessments, vendor security reviews, and compliance initiatives to uphold the highest standards of security and regulatory adherence.
  • Stakeholder Collaboration: Work closely with internal cybersecurity teams and external stakeholders during security incidents, providing clear communication and coordination to resolve issues efficiently.
  • Reporting and Metrics: Prepare detailed operational reports, security metrics, and executive summaries to communicate the organization’s security posture, trends, and areas for improvement.
  • Compliance Assurance: Ensure strict adherence to security standards and frameworks, including ISO 27001, NIST, and organizational policies, to maintain regulatory compliance and operational integrity.
  • Advisory Role: Provide expert guidance to technical and business stakeholders on cybersecurity risks, mitigation strategies, and best practices to foster a culture of security awareness across the organization.
  • On-Call Support: Participate in on-call support for critical security incidents, demonstrating the ability to perform effectively under pressure and deliver timely resolutions.

Requirements

Education and Certifications

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • Professional cybersecurity certifications are highly preferred, including:
    • CISSP (Certified Information Systems Security Professional)
    • CISM (Certified Information Security Manager)
    • CompTIA Security+
    • CEH (Certified Ethical Hacker)
    • GIAC (Global Information Assurance Certification)
    • CCNP Security (Cisco Certified Network Professional Security)
    • CCIE Security (Cisco Certified Internetwork Expert Security)
    • SANS Certifications

Professional Experience

  • Minimum of 7 years of hands-on experience in IT Infrastructure and IT Security.
  • Proven track record in supporting enterprise security operations within highly regulated environments such as Banking, Financial Services, Government, Defense, Telecommunications, Healthcare, or other critical infrastructure sectors.
  • Strong expertise in managing enterprise security platforms and technologies, with a focus on security operations, incident response, vulnerability management, risk assessment, and compliance.
  • In-depth knowledge of security frameworks, including NIST Cybersecurity Framework (CSF), ISO 27001, and MITRE ATT&CK.
  • Hands-on experience administering enterprise security solutions such as Palo Alto Firewalls, Fortinet FortiGate, F5, CrowdStrike, Nessus, and other Endpoint Protection Platforms.
  • Familiarity with cloud security principles across platforms such as AWS, Azure, or GCP is considered a valuable asset.
  • Comprehensive understanding of network security, malware, ransomware, phishing attacks, and modern cyber threats.
  • Exceptional analytical, troubleshooting, communication, and stakeholder management skills.
  • Ability to thrive in high-pressure environments and during critical security incidents, demonstrating resilience and problem-solving capabilities.

Candidates with prior experience in Banking and Financial Services will be given preference, as this background typically involves exposure to highly regulated environments, mature security operations, and stringent compliance requirements. Experience within Government, Defense, Telecommunications, Healthcare, or other critical infrastructure organizations is also highly desirable.

يمكن أن يرتكب الذكاء الاصطناعي أخطاءً.

المصدر: لينكد إن ↗ • 14 مشاهدة

وظائف مشابهة

تقدم للوظيفة الآن