Cyber Security Engineer
الوصف الوظيفي
About the Company
Our organization is a dynamic and forward-thinking enterprise based in Riyadh, dedicated to enhancing its technological infrastructure and fortifying its security posture. We specialize in delivering robust digital services while safeguarding critical information assets for both internal stakeholders and valued customers. Collaboration is at the heart of our operations, as our team works seamlessly across IT, operations, and leadership to design, implement, and maintain secure systems and infrastructure. We uphold the highest standards of professionalism, continuous improvement, and adherence to international security frameworks. By joining our team, you will have the opportunity to engage with cutting-edge technologies and contribute to impactful, long-term security initiatives.
Position Overview
As a Cyber Security Engineer, you will play a pivotal role in safeguarding our organization’s digital assets by designing, deploying, and maintaining robust security controls across our infrastructure and applications. Your responsibilities will encompass a wide range of critical functions, including real-time monitoring of security events, thorough analysis of vulnerabilities, and swift response to incidents to mitigate risks and ensure uninterrupted business operations. You will collaborate closely with IT and development teams to secure networks, servers, endpoints, and cloud environments, while also supporting secure configurations, patch management, and access control mechanisms. Additionally, you will be responsible for creating and updating comprehensive security documentation, policies, and procedures, as well as assisting with internal audits and compliance activities. This is a full-time, on-site position based in Riyadh, offering a dynamic and challenging environment for professional growth.
Key Responsibilities
- Security Architecture & Implementation: Develop and implement security controls, policies, and procedures to protect the organization’s digital assets, ensuring alignment with industry best practices and regulatory requirements.
- Threat Detection & Incident Response: Monitor security events, analyze alerts, and perform incident triage to identify and mitigate potential threats, ensuring rapid response and resolution to minimize impact.
- Vulnerability Management: Conduct regular vulnerability assessments and penetration testing to identify security weaknesses, interpret findings, and recommend remediation strategies to enhance the organization’s security posture.
- Network & Endpoint Security: Secure network infrastructure, including firewalls, VPNs, and IDS/IPS systems, while also hardening endpoints and servers through effective patch management and antivirus/EDR solutions.
- Cloud Security: Implement and maintain security controls in cloud environments (e.g., AWS, Azure) to protect data, applications, and services, ensuring compliance with cloud security best practices.
- Compliance & Auditing: Assist with internal audits and compliance activities, ensuring adherence to security frameworks such as ISO 27001, NIST, and CIS controls, as well as other regulatory requirements.
- Documentation & Training: Develop and maintain up-to-date security documentation, policies, and procedures, and provide guidance to internal teams on security best practices and compliance obligations.
- Automation & Scripting: Utilize scripting and automation tools (e.g., Python, PowerShell) to streamline security workflows, enhance efficiency, and support proactive threat detection and response.
Qualifications & Skills
To excel in this role, you should possess the following qualifications and competencies:
- Technical Expertise: Strong knowledge of network security concepts, including firewalls, VPNs, IDS/IPS, and secure network architectures, as well as hands-on experience with endpoint and server security, hardening, and patch management.
- Security Tools & Practices: Proficiency in vulnerability assessment and penetration testing tools, with the ability to interpret findings and implement remediation strategies. Familiarity with cloud security practices and controls in platforms such as AWS or Azure is highly desirable.
- Security Frameworks & Compliance: A solid understanding of security frameworks and standards, including ISO 27001, NIST, and CIS controls, along with experience supporting compliance activities and internal audits.
- Incident Response & Analysis: The ability to analyze security logs and alerts, perform incident triage, and support incident response activities to mitigate risks and ensure business continuity.
- Scripting & Automation: Proficiency in scripting or automation languages such as Python or PowerShell, with the ability to develop custom tools and workflows to enhance security operations.
- Certifications & Education: Relevant certifications such as CEH, CISSP, CISM, Security+, or equivalent are advantageous. A Bachelor’s degree in Computer Science, Information Security, or a related field is preferred, though equivalent practical experience will also be considered.
- Soft Skills: Exceptional problem-solving abilities, keen attention to detail, and strong communication skills to effectively collaborate with both technical and non-technical stakeholders.
يمكن أن يرتكب الذكاء الاصطناعي أخطاءً.
ℹ️ إخلاء مسؤولية توظيف:
موقع وظائف السعودية (ksajobshub.com) هو محرك بحث ومجمع لإعلانات الوظائف من المصادر والشركات الرسمية في المملكة العربية السعودية. نحن لا نتقاضى أي مبالغ مالية أو رسوم من الباحثين عن عمل، وتتم عمليات التقديم مباشرة عبر الانتقال للرابط الأصلي للجهة المعلنة.