Security and ICT Engineer
الوصف الوظيفي
Join AECOM and Drive Impactful Change in Secure ICT Infrastructure
At AECOM, we are dedicated to shaping a better world through innovative infrastructure solutions that empower communities and transform industries. As a global leader in consulting, engineering, and construction, we partner with visionary clients to address the most complex challenges—from enhancing urban mobility and ensuring energy resilience to delivering sustainable water solutions and modernizing skylines. Our mission is to create lasting legacies that foster progress and prosperity for generations to come.
With unprecedented global investment in infrastructure accelerating, AECOM stands at the forefront of this transformative era. We invite you to contribute your expertise, creativity, and strategic vision to our dynamic team of over 50,000 professionals—planners, engineers, digital innovators, and industry leaders—who are collectively driving meaningful change worldwide. If you are passionate about innovation, security, and making a tangible difference, we encourage you to be part of our global movement.
Role Overview
We are seeking a highly skilled and detail-oriented Security and ICT Engineer to join our team in Riyadh, Saudi Arabia. In this pivotal role, you will play a critical part in safeguarding AECOM’s critical systems, data, and infrastructure against evolving cyber threats. Your expertise will ensure compliance with global security standards while driving operational excellence and resilience. This is an opportunity to merge technical prowess with strategic thinking to protect our organization’s digital assets and support our mission of delivering impactful, secure solutions worldwide.
Key Responsibilities
In this dynamic and impactful role, your responsibilities will include:
- Design, Implement, and Maintain Secure ICT Infrastructure: Develop and oversee robust information and communication technology systems that align with industry best practices and AECOM’s operational needs, ensuring seamless functionality while maintaining the highest security standards.
- Proactive Threat Detection and Mitigation: Conduct comprehensive security vulnerability assessments and penetration testing to identify and address potential risks before they escalate. Utilize advanced security tools and methodologies to fortify our network against cyber threats.
- Advanced Security Configuration and Management: Configure and manage critical security appliances, including firewalls, intrusion detection/prevention systems (IDS/IPS), and other security solutions to create a multi-layered defense strategy.
- Develop and Enforce Security Policies: Create and implement security policies, procedures, and protocols that adhere to internationally recognized frameworks such as ISO 27001, NIST, and other relevant standards. Ensure these policies are enforceable, scalable, and aligned with AECOM’s strategic objectives.
- Incident Response and Troubleshooting: Monitor network traffic, system logs, and security alerts to detect and respond to incidents in real-time. Lead incident response efforts, including containment, eradication, and recovery, while documenting findings for audit and compliance purposes.
- Compliance and Audit Support: Perform regular security audits and assessments to ensure ongoing compliance with regulatory requirements and industry standards. Collaborate with internal and external auditors to address findings and maintain a robust security posture.
- Technical Leadership and Collaboration: Work closely with IT teams to deploy security patches, updates, and system improvements. Provide technical guidance to end-users on security best practices and foster a culture of cybersecurity awareness across the organization.
- Strategic Threat Intelligence: Stay ahead of emerging cyber threats by continuously researching and analyzing new vulnerabilities. Recommend and implement preventive measures to enhance our security infrastructure proactively.
- Documentation and Reporting: Maintain detailed documentation of security configurations, incidents, remediation actions, and compliance efforts to support audit readiness and continuous improvement initiatives.
Qualifications and Skills
To excel in this role, you will bring a blend of technical expertise, analytical rigor, and a commitment to excellence. We are looking for candidates who meet the following criteria:
- Proven Experience: A minimum of 10 years of hands-on experience in network security, ICT infrastructure management, and cybersecurity operations. Demonstrated success in designing, implementing, and maintaining secure IT environments in complex organizational settings.
- Technical Proficiency: In-depth knowledge of security protocols, standards, and frameworks, including ISO 27001, NIST, and other relevant guidelines. Proficiency with firewall technologies, intrusion detection/prevention systems, and advanced security tools such as vulnerability scanners and penetration testing frameworks.
- System Administration and Network Architecture: Strong understanding of system administration principles, network architecture, and cybersecurity best practices. Experience with cloud security and cloud infrastructure protection is a significant advantage.
- Incident Response and Troubleshooting: Extensive experience in incident response, security troubleshooting, and remediation. Ability to analyze complex security incidents and implement effective solutions under pressure.
- Data Protection and Encryption: Knowledge of data protection principles, encryption technologies, and compliance requirements to safeguard sensitive information.
- Analytical and Problem-Solving Skills: Exceptional analytical abilities and a methodical approach to problem-solving. Strong attention to detail to identify and mitigate security risks effectively.
- Collaborative Mindset: Ability to work independently as well as collaboratively within cross-functional teams, including IT, operations, and compliance departments. Strong communication skills to translate technical concepts into actionable strategies for stakeholders.
Preferred Qualifications:
- Certifications such as CISSP, CEH, Security+, or CompTIA Security+ to validate your expertise in cybersecurity.
- Experience with Security Information and Event Management (SIEM) systems to enhance threat detection and response capabilities.
- Background in risk assessment and security compliance auditing to ensure alignment with regulatory and organizational requirements.
- Familiarity with the regulatory landscape and cybersecurity requirements specific to the Saudi Arabian market, enabling you to navigate local compliance challenges effectively.
- Proficiency in scripting languages or automation tools to streamline security tasks and improve operational efficiency.
At AECOM, we are committed to fostering a secure and transparent recruitment process. All newly hired employees are required to participate in mandatory compliance training and verification procedures to uphold the highest standards of integrity and professionalism.
If you are a visionary security professional eager to contribute to a global organization that values innovation, integrity, and impact, we encourage you to apply and be part of our journey toward building a safer, more connected world.
يمكن أن يرتكب الذكاء الاصطناعي أخطاءً.
ℹ️ إخلاء مسؤولية توظيف:
موقع وظائف السعودية (ksajobshub.com) هو محرك بحث ومجمع لإعلانات الوظائف من المصادر والشركات الرسمية في المملكة العربية السعودية. نحن لا نتقاضى أي مبالغ مالية أو رسوم من الباحثين عن عمل، وتتم عمليات التقديم مباشرة عبر الانتقال للرابط الأصلي للجهة المعلنة.