وصف الوظيفة
يُصمِّم مهندس عمليات أمن المعلومات الأول، ويبني إطار عمل عمليات الأمن الشامل، وهندسة SOC، واستراتيجيات التخفيف من التهديدات عبر بنية المؤسسة الهجينة، كما يحكمها.
ينسجم هذا الدور الاستراتيجي والتقني أنظمة الأمن التشغيلية (SIEM/SOAR، EDR، IAM، Network Defense) مع أهداف العمل وبيئات السحابة ومعايير الامتثال الوطنية.
المسؤوليات الرئيسية التصميم الهندسي والاستراتيجي: تصميم هياكل أمنية قابلة للتوسع لبيئات المؤسسة الهجينة (On-Premises، AWS، Azure)، مع دمج نماذج Zero Trust والتحكمات الأمنية التشغيلية.
تكامل SOC وSOAR: بناء وتحسين سير عمل مركز عمليات الأمن (SOC)، وكتالوجات التشغيل الآلي (SOAR)، وهندسة SIEM لتقليل وقت الاستجابة للحوادث والقضاء على الإرهاق التشغيلي.
إشراف هندسة أدوات الأمن: تصميم نشر وإدارة دورة حياة جدران حماية الجيل القادم (Palo Alto، Fortinet)، ونظم EDR/XDR، وPAM، وأدوات Cloud Security Posture Management (CSPM).
الاستخبارات والمرونة في التهديدات: إنشاء برامج بحث مستمر عن التهديدات، ومواءمة عمليات الفريقين red/blue، وإطارات تعافي من الكوارث عالية التوفر.
الحوكمة والامتثال التنظيمي: ضمان أن جميع تصاميم الأمن التشغيلي تتوافق تماماً مع الأطر التنظيمية المحلية (NCA-ECC، SAMA CSF) ومعايير عالمية (ISO 27001، NIST).
1. خبرة لا تقل عن 10+ سنوات في أمن المعلومات، مع خبرة لا تقل عن 4+ سنوات كمهندس معماري أمني أو مهندس أمني رئيسي يدير أطر SOC للمؤسسة.
2. خبرة عميقة في تصميم خطوط أنابيب SOC للمؤسسة، وهندسة SIEM/SOAR (Splunk، Sentinel، Cortex)، وكتالوجات استجابة للحوادث آلية .
3. سجل حافل في هندسة أمان السحابة الهجينة (Azure، AWS) وتصميم Zero Trust Network Architecture (ZTNA).
4. إتقان عملي لأطر الحوكمة والامتثال التنظيمي المحلي (NCA-ECC، SAMA، ISO 27001، NIST CSF) في المملكة العربية السعودية أو الخليج الأوسع.
5. تحمل شهادات هندسة متقدمة مثل CISSP-ISSAP، CISM، SABSA، TOGAF، أو CCSP .
مرشّح مفضل
سنوات الخبرة
1+ سنوات
الجنسية
المملكة العربية السعودية
المؤهل
بكالوريوس أو دبلوم عالي
Job description
The Senior IT Security Operations Architect designs, builds, and governs the overarching security operations framework, SOC architecture, and threat mitigation strategies across enterprise hybrid infrastructure.
This strategic and technical role aligns operational security systems (SIEM/SOAR, EDR, IAM, Network Defense) with business goals, cloud environments, and national compliance standards.
Key Responsibilities Architecture & Strategy Design: Design scalable security architectures for enterprise hybrid environments (On-Premises, AWS, Azure), integrating Zero Trust models and operational security controls.
SOC & SOAR Integration: Build and optimize Security Operations Center (SOC) workflows, automation playbooks (SOAR), and SIEM architecture to reduce incident response time and eliminate operational fatigue.
Security Tool Engineering Oversight: Architect the deployment and lifecycle management of Next-Gen Firewalls (Palo Alto, Fortinet), EDR/XDR ecosystems, PAM, and Cloud Security Posture Management (CSPM) tools.
Threat Intelligence & Resilience: Establish proactive threat-hunting programs, red/blue team operational alignment, and high-availability disaster recovery frameworks.
Governance & Regulatory Compliance: Ensure all operational security designs strictly comply with local regulatory frameworks (NCA-ECC, SAMA CSF) and global standards (ISO 27001, NIST).
1. Minimum 10+ years of progressive experience in IT security, with at least 4+ years as a Security Architect or Principal Security Engineer managing enterprise SOC frameworks.
2. Deep expertise in designing enterprise SOC pipelines, SIEM/SOAR architectures (Splunk, Sentinel, Cortex), and automated incident response playbooks .
3. Proven track record in hybrid cloud security architecture (Azure, AWS) and Zero Trust Network Architecture (ZTNA) implementations .
4. Hands-on mastery of governance frameworks and local regulatory compliance (NCA-ECC, SAMA, ISO 27001, NIST CSF) in Saudi Arabia or the wider GCC.
5. Hold advanced architecture certifications such as CISSP-ISSAP, CISM, SABSA, TOGAF, or CCSP .
Preferred candidate
Years of experience
1+ years
Nationality
Saudi Arabia
Degree
Bachelor's degree / higher diploma