MSS Engineering Advisor

On-site
Saudi , Saudi Arabia
--

Job Details

Job Description

Roles & Responsibilities

Responsibilities:

  • Strategic Thought Leadership Define the long term vision for log data acquisition, normalization, and analytics across all service lines. Publish whitepapers, best practice guides, and thought leadership content for internal and external audiences.
  • Enterprise Architecture & Governance Architect enterprise scale telemetry frameworks that span on premise, cloud, and OT environments.
  • Advisory & Client Engagement Serve as the senior technical advisor for strategic customers, presenting roadmap recommendations and risk assessments. Conduct executive level workshops and security posture reviews for tiering, identifying clients risks and delivering actionable recommendations. Evaluate and recommend emerging technologies (e.g., graph analytics, zero trust telemetry).
  • Performance & Quality Excellence Define KPIs for ingestion latency, data fidelity, and detection efficacy. Champion the implementation of automated quality gates and continuous improvement loops. Handle and train the team members for complex MDR integration tasks. Define operation standards, plans, guidelines and ensure team is in compliance with the defined procedure. Automate and optimize onboarding tasks.

Desired Candidate Profile

  • Bachelor s degree in Computer Science, Cybersecurity, Information Systems, or a related field
  • 9+ years of experience with SIEM platforms, log engineering, and security operations.
  • Deep knowledge of SIEM architectures (e.g., Splunk, QRadar, Elastic, Azure Sentinel). Mastery of log formats, protocols, and data models (CEF, JSON, Syslog, OpenTelemetry). Advanced scripting/programming (Python, PowerShell, Bash, Go) and automation tools (Ansible, Terraform, Jenkins). Experience with containerization (Docker/Kubernetes) and cloud platforms (AWS, Azure, GCP).
  • Strong analytical, troubleshooting, and communication skills Ability to manage priorities and work cross-functionally in a fast-paced environment
  • CISSP, CISM, or equivalent. Vendor-specific SIEM certifications (e.g., Splunk Certified Architect). Cloud security certifications (CCSP, AWS Security Specialty)

Similar Jobs