وصف الوظيفة
يحمي مهندس عمليات أمان تكنولوجيا المعلومات الأول بنية الشركة التحتية IT والشبكات والبيانات المؤسسية وبيئات السحابة من مخاطر وتهديدات الأمن التشغيلي.
تلعب هذه الوظيفة العملية دوراً يوازن بين إدارة البنية التحتية واكتشاف التهديدات والاستجابة للحوادث وحوكمة IAM والامتثال لمعايير الأمن عبر أنظمة المؤسسة.
المسؤوليات الأساسية الدفاع عن البنية التحتية والشبكة: تهيئة وإدارة وتدقيق الجدران النارية المؤسسية وVPNs وعوامل اكتشاف التهديدات والاستجابة (EDR) وضوابط وكيل الويب الوكالة.
المراقبة الأمنية والاستجابة للحوادث: قيادة تحقيقات أحداث الأمن من المستوى 2/3، تحليل سجلات SIEM، وتخفيف حوادث الأمن للحد من فترات التعطل التشغيلية.
حوكمة الهوية والوصول: فرض ضوابط صارمة للهوية وإدارة الوصول (IAM)، وإدارة الوصول المميز (PAM)، والمصادقة متعددة العوامل، وسياسات الوصول القائمة على الأدوار.
إدارة الثغرات والتحديثات: توجيه مسوح ثغرات بنية تحتية روتينية، وتحديد أولويات جداول التحديثات الحرجة مع فرق بنية تحتية IT، والتحقق من تقوية الأنظمة.
سلامة النسخ الاحتياطي وتدقيق النظام: ضمان تكوينات نسخ احتياطي آمنة، والاستعداد لاسترداد من الكوارث، والامتثال للمعايير الأمنية (ITIL، ISO 27001، NCA-ECC).
1. خبرة عملية لا تقل عن 6 سنوات في إدارة أمان IT، هندسة SOC، أو عمليات أمان الشبكة.
2. كفاءة متقدمة مع حلول أمان أساسية بما في ذلك أدوات SIEM (Splunk، QRadar، Sentinel)، منصات EDR (CrowdStrike، Defender)، وجدران حماية من الجيل التالي (Palo Alto، Fortinet) .
3. خبرة قوية في إدارة الهوية والوصول (Active Directory، Entra ID، حلول PAM)، والمصادقة متعددة العوامل، وقيود وصول الشبكة.
4. سجل مثبت في اكتشاف التهديدات، الاستجابة للحوادث، تحليل السجلات، وتقوية الأنظمة عبر خوادم Windows/Linux والمنصات السحابية (Azure/AWS).
5. وجود شهادة صناعية نشطة مثل CompTIA Security+، CISSP، CEH، CCSP، أو ITIL4 .
مرشح مفضل
سنوات الخبرة
1+ سنوات
الجنسية
المملكة العربية السعودية
الدرجة
بكالوريوس / دبلوم عالي
Job description
The Senior IT Security Operations Engineer safeguards corporate IT infrastructure, networks, enterprise data, and cloud environments against operational security risks and threats.
This hands-on role bridges infrastructure management with threat detection, incident response, IAM governance, and security standard compliance across enterprise systems.
Key Responsibilities Infrastructure & Network Defense: Configure, manage, and audit enterprise firewalls, VPNs, Endpoint Detection and Response (EDR) agents, and web proxy controls.
Security Monitoring & Incident Response: Lead Tier-2/Tier-3 security event investigations, analyze SIEM logs, and mitigate security incidents to limit operational downtime.
Identity & Access Governance: Enforce strict identity and access management (IAM) controls, privileged access management (PAM), multi-factor authentication, and role-based access policies.
Vulnerability & Patch Management: Direct routine infrastructure vulnerability scans, prioritize critical patching schedules with IT infrastructure teams, and verify system hardening.
Backup Integrity & System Audits: Ensure secure backup configurations, system disaster recovery readiness, and adherence to security standards (ITIL, ISO 27001, NCA-ECC).
1. Minimum 6+ years of hands-on experience in IT security administration, SOC engineering, or network security operations.
2. Advanced proficiency with core security solutions including SIEM tools (Splunk, QRadar, Sentinel), EDR platforms (CrowdStrike, Defender), and Next-Gen Firewalls (Palo Alto, Fortinet) .
3. Strong expertise in Identity & Access Management (Active Directory, Entra ID, PAM solutions) , multi-factor authentication, and network access controls.
4. Proven track record in threat detection, incident response, log analysis, and system hardening across Windows/Linux servers and cloud platforms (Azure/AWS).
5. Hold at least one active industry certification such as CompTIA Security+, CISSP, CEH, CCSP, or ITIL4 .
Preferred candidate
Years of experience
1+ years
Nationality
Saudi Arabia
Degree
Bachelor's degree / higher diploma