وظائف مراقب كاميرات في السعودية
٢٢٠٥٦ وظائف شاغرة
???? We’re Hiring | Cybersecurity & Infrastructure Security Specialist<br>Company: [Masharah Company]<br>We are looking for an experienced Cybersecurity & Infrastructure Security Specialist to take ownership of the company’s cybersecurity requirements, security architecture, risk management, and overall security posture.<br>This role will serve as the company’s technical security authority and primary security representative when dealing with external cybersecurity, infrastructure, network, and technology service providers.<br>The successful candidate will be responsible for identifying security risks and gaps, defining the required security controls, evaluating and selecting appropriate solutions, leading technical discussions with service providers, overseeing implementation, and validating that the delivered environment meets the company’s security requirements.<br>???? Key Responsibilities<br>* Own and continuously assess the company’s overall cybersecurity and infrastructure security posture.* Conduct security assessments and identify security gaps, risks, vulnerabilities, and areas requiring improvement.* Define cybersecurity requirements, security controls, and technical security standards.* Develop and review security architecture covering: * Network Security * Firewalls / NGFW * Network Segmentation * DMZ / WAF * VPN / ZTNA * Servers & Virtualization * Identity & Access Management * EDR/XDR * SIEM / SOC * Backup & Disaster Recovery * Application & Data Security* Develop cybersecurity and infrastructure security requirements for external service providers.* Identify, evaluate, and recommend appropriate cybersecurity technologies and solutions.* Lead technical meetings and discussions with cybersecurity, network, infrastructure, and other service providers.* Challenge and evaluate vendors’ proposed architectures, technologies, configurations, and security recommendations.* Review security architecture, HLDs, LLDs, technical proposals, BoQs, and implementation plans.* Oversee security implementation and ensure agreed security requirements and controls are correctly implemented.* Validate and test security controls before accepting implemented solutions.* Establish and oversee vulnerability management and remediation processes.* Coordinate penetration testing and security assessments and ensure findings are properly remediated.* Define and oversee security monitoring, logging, SIEM/SOC, EDR/XDR, and alerting requirements.* Establish incident response, containment, recovery, and security incident-handling requirements.* Define and review IAM, MFA, RBAC, PAM, privileged access, and network access-control requirements.* Ensure appropriate security hardening and secure configuration of infrastructure and security systems.* Review Git Hub, CI/CD, Dev Sec Ops, and application security practices where applicable.* Review backup, disaster recovery, business continuity, RTO/RPO, and ransomware-resilience requirements.* Assess data protection, data residency, and cross-border data-transfer considerations.* Identify applicable Saudi cybersecurity and data protection requirements and support compliance efforts.* Maintain cybersecurity policies, standards, risk registers, security architecture, and technical documentation.* Provide management with regular updates on security risks, gaps, priorities, and remediation progress.* Act as the primary technical security representative between the company and external service providers.<br>???? Requirements<br>* 3–5+ years of professional experience in Cybersecurity, Infrastructure Security, Network Security, Security Engineering, or a closely related field.* Strong practical understanding of cybersecurity principles and security architecture.* Demonstrated experience conducting security assessments and identifying security gaps and risks.* Strong knowledge of network security, including: * Firewalls / NGFW * IPS/IDS * Network segmentation * VLANs * DMZ * VPN / ZTNA * Secure remote access* Good understanding of server, virtualization, endpoint, and infrastructure security.* Knowledge of IAM, MFA, RBAC, PAM, and privileged-access management.* Experience or strong understanding of EDR/XDR, SIEM, SOC, security monitoring, and centralized logging.* Understanding of WAF and web/application security.* Knowledge of vulnerability management and penetration-testing processes.* Understanding of backup, disaster recovery, business continuity, RTO/RPO, and ransomware resilience.* Familiarity with Git Hub, CI/CD, Dev Sec Ops, and application security is a strong advantage.* Ability to review, evaluate, and challenge technical architectures, security designs, configurations, and vendor proposals.* Strong experience communicating with technical stakeholders, vendors, and service providers.* Strong analytical and problem-solving skills.* Ability to work independently and take ownership of cybersecurity requirements and decisions.* Strong written and verbal communication skills in English.* Arabic communication skills are a plus.<br>???? Preferred Certifications<br>The following certifications are considered a strong advantage:<br>* CISSP / CISM* Security+* CCNA / CCNP* Palo Alto Networks certifications* Fortinet certifications* ISO 27001-related certifications* Other relevant cybersecurity or infrastructure security certifications<br>???? What We’re Looking For<br>We are looking for someone who can own cybersecurity from the company’s side, rather than simply coordinate between vendors.<br>The ideal candidate should be capable of:<br>Identify → Assess → Design → Recommend → Lead → Implement → Validate → Improve<br>You should be comfortable moving between management-level discussions and detailed technical discussions with cybersecurity and infrastructure engineers.<br>You will be expected to independently assess proposed solutions, identify security gaps, challenge vendors when necessary, and ensure that the company’s security requirements are properly addressed.<br>???? Position Details<br>Location: Jeddah, Saudi Arabia Work Model: Hybrid : (Remote/attendance) based on work needs.(Expected) Onsite Attendance: Typically once/twice per week in Jeddah, with additional attendance when required for important meetings, vendor discussions, implementation activities, assessments, audits, or other business needs. Employment Type: Full-Time<br>???? To Apply: Please send your CV,To [office@masharah.com]<br>Please share this opportunity with anyone who may be a suitable candidate.
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Description</span><br><span></span><p><strong><u>Roles & Responsibilities</u></strong></p><br><p><strong>Strategy: </strong></p><br><ul><li>Develops and establishes comprehensive security policies and procedures that align with the organization's strategic objectives.</li><li>Oversees vendor and supplier performance, ensuring outsourced staff meet security standards and deliver optimal results.</li><li><p>Manages stakeholder relationships by coordinating across corporate operations, external partners, and other relevant entities to ensure cohesive </p><br><p>security strategies and effective communication.</p><br></li><li>Consults with outside experts on security matters when required.</li></ul><p><strong>Operations: </strong></p><br><ul><li>Supervises all on-site security operations at rigs and corporate facilities.</li><li>Manages a two-tier security model:<br>o Industrial Security: Watchmen operating on rotation at the rigs.<br>o Corporate Security: SANAD-employed security personnel across facilities.</li><li>Ensures effective resource planning and monitoring, ensuring adequate security measures are effectively implemented across all locations.</li><li>Manages site access control, guard deployment, emergency protocols, and incident reporting protocols.</li><li>Establishes and maintains relationships with local law enforcement agencies to facilitate clearances and support investigations.</li><li>Provides regular reports to management on the security status of SANAD to update on security risks or incidents. </li></ul><p><strong>People Management: </strong></p><br><ul><li>Collaborates with the Corporate Security Services (CSS) team to ensure access control systems, CCTV equipment, and investigations are running smoothly and well maintained.</li><li>Monitors rotations, resolves personnel issues, and ensures proper handover between shifts.</li><li>Liaise with the HSE department to ensure coordination between security and emergency response plans.</li></ul><p><strong>Product/Process Improvement: </strong></p><br><ul><li>Identifies vulnerabilities and recommends improvements to physical security systems.</li><li>Supports the QHSE department in investigations involving security breaches or asset damage.</li></ul><p><strong>Physical Working Conditions: </strong></p><br><ul><li>Requires regular presence on rigs and in field locations in addition to office work. </li></ul><br> <br> <span>Qualifications</span><br><span></span><p><span><strong><u>JOB QUALIFICATIONS AND REQUIREMENTS</u></strong></span></p><br><p><span><strong>Experience & Qualification:</strong></span></p><br><ul><li><span>Minimum 5 years of experience managing corporate and industrial security operations.</span></li><li><span>Bachelor’s degree in Security Management or a related field. </span></li></ul><p><span><strong>Knowledge & Skills: </strong></span></p><br><ul><li><span>Experience supervising both internal and contracted security teams.</span></li><li><span>Proven ability to lead and motivate, work independently, and as part of a team.</span></li><li><span>Strong understanding of rig security operations and logistics-based security risks</span></li><li><span>Familiarity with emergency response procedures and regulatory compliance</span></li><li><span>Certified Security Manager (CSM) or equivalent. </span></li></ul><br> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
5+ years </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
<p>تبحث بارسونز عن مُراقب كميات أول موهوب بشكل مذهل للانضمام إلى فريقنا! نحن نسعى لمُراقب كميات عالي المهارة ومهتم بالتفاصيل للانضمام إلى فريقنا.</p><p><b>ما ستقوم به:</b></p><ul><li>إعداد تقديرات تكلفة دقيقة، وميزانيات، وتوقعات لمشروعات البناء.</li><li>تحليل تكاليف المشروع وتحديد فرص لتوفير التكاليف.</li><li>المراقبة والسيطرة على النفقات لضمان الالتزام بالميزانيات.</li><li>إعداد وثائق العطاءات، بما في ذلك جداول الكميات، والمواصفات، والعقود.</li><li>تقييم عروض المقاولين وتقديم توصيات لمنح العقد.</li><li>التفاوض على العقود وإدارة عمليات المشتريات لضمان تحقيق قيمة مقابل المال.</li><li>التعاون مع فريق PMC لضمان تحقيق معالم المشروع ضمن الميزانية والجدول الزمني.</li><li>تقديم رؤى وتوصيات متعلقة بالتكاليف أثناء التخطيط والتنفيذ للمشروع.</li><li>المساعدة في استراتيجيات إدارة المخاطر والتخفيف المرتبطة بتكاليف المشروع.</li><li>إدارة العقود وضمان الامتثال للشروط والأحكام.</li><li>مراقبة التغييرات والمطالبات، مع التأكد من التوثيق الصحيح والحل.</li><li>إعداد وتقديم تقارير التقدم والتقييمات والحسابات النهائية.</li><li>التواصل مع العملاء والمقاولين والمستشارين لضمان سلاسة التواصل وتنفيذ المشروع.</li><li>توفير تحديثات منتظمة حول Matters cost-related to stakeholders.</li></ul><p><strong>الملف المرشح المرغوب</strong></p><p>درجة البكالوريوس في قياس الكميات، أو مجال ذات صلة.</p><p>خبرة مثبّتة في قياس الكميات، ويفضل مع التعرض لأدوار PMC و CS.</p><p>معرفة قوية بتقدير التكاليف، والمناقصات، وإدارة العقود.</p><p>المألوفية بعمليات مراجعة التصميم والقدرة على تحديد تبعات التكلفة.</p><p>التمكّن من البرامج ذات الصلة (مثل AutoCAD، MS Excel، أدوات إدارة التكاليف).</p><p>مهارات تحليلية، تفاوضية، والتواصل ممتازة.</p><p>القدرة على العمل بشكل تعاوني في بيئة سريعة الإيقاع.</p><p>خبرة في العمل على مشاريع إنشاء كبيرة النطاق.</p><p>معرفة بقوانين البناء واللوائح المحلية.</p><p>شهادة في RICS (المؤسسة الملكية لمراقبي الكميات المعتمدين) أو ما يعادلها تعتبر ميزة.</p>
Security Architecture Analyst(Secure‑by‑Design • Cloud Security • Enterprise Architecture)<br>we are seeking an experienced Security Architecture Analyst to join their cybersecurity and enterprise architecture function in Riyadh. This is a fully on‑site role supporting secure‑by‑design governance across cloud and on‑prem environments.<br>Role Summary The Security Architecture Analyst will ensure that all technology projects and platforms follow approved security architecture standards, secure‑by‑design principles, and regulatory requirements. The role requires deep expertise in cloud security patterns, secure design reviews, and enterprise‑grade architecture governance.<br>Key Responsibilities Security Architecture Reviews - Conduct security architecture assessments for new projects, major changes, and cloud deployments (OCI, microservices, APIs, data platforms). Secure Design Patterns - Develop and maintain enterprise security design patterns and reference architectures covering network segmentation, IAM, encryption, API security, and data protection. Cloud Security Architecture - Define secure configurations for OCI services, including identity models, network security groups, encryption, and key management. Dev Sec Ops Integration - Embed security controls into CI/CD pipelines (SAST, dependency scanning, container security, IaC validation). Technology Evaluation - Support evaluation and selection of security technologies and ensure architectural alignment. Cross‑Functional Collaboration - Work with SOC, GRC, and Enterprise Architecture teams to ensure monitoring and governance requirements are built into solution designs. Architecture Governance - Participate in architecture review boards and document decisions, risks, and required design adjustments. Documentation & Reporting - Produce high‑quality architecture review reports, diagrams, and design rationales.<br>Minimum Experience & Qualifications7+ years of experience in security architecture, secure‑by‑design reviews, and enterprise security frameworks. Strong expertise in cloud security (preferably OCI), microservices, API security, and data protection. Deep knowledge of network segmentation, IAM, encryption, and secure third‑party integration. Experience integrating security into Dev Ops/CI‑CD pipelines. Strong documentation and architectural governance discipline. Preferred Certifications Cloud security certifications (OCI, AWS, Azure) SABSA, TOGAF, CCSK, CCSP, or equivalent architecture/security certifications<br>Work Model???? On‑site in Riyadh Due to the sensitivity of architecture governance and secure‑by‑design processes, this role requires full on‑site presence
Security Architecture Analyst(Secure‑by‑Design • Cloud Security • Enterprise Architecture)<br>we are seeking an experienced Security Architecture Analyst to join their cybersecurity and enterprise architecture function in Riyadh. This is a fully on‑site role supporting secure‑by‑design governance across cloud and on‑prem environments.<br>Role Summary The Security Architecture Analyst will ensure that all technology projects and platforms follow approved security architecture standards, secure‑by‑design principles, and regulatory requirements. The role requires deep expertise in cloud security patterns, secure design reviews, and enterprise‑grade architecture governance.<br>Key Responsibilities Security Architecture Reviews - Conduct security architecture assessments for new projects, major changes, and cloud deployments (OCI, microservices, APIs, data platforms). Secure Design Patterns - Develop and maintain enterprise security design patterns and reference architectures covering network segmentation, IAM, encryption, API security, and data protection. Cloud Security Architecture - Define secure configurations for OCI services, including identity models, network security groups, encryption, and key management. Dev Sec Ops Integration - Embed security controls into CI/CD pipelines (SAST, dependency scanning, container security, IaC validation). Technology Evaluation - Support evaluation and selection of security technologies and ensure architectural alignment. Cross‑Functional Collaboration - Work with SOC, GRC, and Enterprise Architecture teams to ensure monitoring and governance requirements are built into solution designs. Architecture Governance - Participate in architecture review boards and document decisions, risks, and required design adjustments. Documentation & Reporting - Produce high‑quality architecture review reports, diagrams, and design rationales.<br>Minimum Experience & Qualifications7+ years of experience in security architecture, secure‑by‑design reviews, and enterprise security frameworks. Strong expertise in cloud security (preferably OCI), microservices, API security, and data protection. Deep knowledge of network segmentation, IAM, encryption, and secure third‑party integration. Experience integrating security into Dev Ops/CI‑CD pipelines. Strong documentation and architectural governance discipline. Preferred Certifications Cloud security certifications (OCI, AWS, Azure) SABSA, TOGAF, CCSK, CCSP, or equivalent architecture/security certifications<br>Work Model???? On‑site in Riyadh Due to the sensitivity of architecture governance and secure‑by‑design processes, this role requires full on‑site presence
Security Expert <br>Experience: 10 Years Location: Saudi Arabia ( On-Site )<br>Job Description<br>We are looking for an experienced Security Expert with strong expertise in security requirement assessment, Role-Based Access Control (RBAC), authorization design, and access governance.<br>Key Responsibilities<br>Assess security requirements across all in-scope work packages. Design and implement RBAC, roles, and authorization structures. Define secure access models aligned with business and enterprise security standards. Support access provisioning, security testing, compliance, and audit requirements. Identify security risks and recommend appropriate controls. Collaborate with business, functional, and technical teams on security design and implementation.<br>Mandatory Skills<br>Strong hands-on experience in Security Architecture / Security Design. Strong expertise in RBAC, Role Design, Authorization, and Access Control. Experience in IAM, Access Governance, and security requirement assessment. Good understanding of SoD, security compliance, and risk management. Excellent communication and stakeholder management skills.
Role Purpose:The IT Security Lead is responsible for implementing and managing ASD’s enterprise information security programme to protect its systems, data, and digital assets from cyber threats and ensure regulatory compliance. The role establishes and matures the organization's security posture through policy, technology, and awareness — with a specific focus on securing the SAP S/4HANA programme environment, Microsoft platforms, cloud infrastructure, and operational technology. The Security Lead operates within the B-ITSC governance framework and reports on security risk to executive leadership and the board.<br>Key Accountabilities:Own ASD’s information security strategy, policy framework, and security roadmap. Coordinate and maintain information security policies, standards, and procedures. Produce quarterly security risk reports for the IT Operations Manager. Conduct annual information security risk assessments; maintain the enterprise security risk register and treatment plans. Ensure compliance with applicable regulations including PDPL (Saudi Personal Data Protection Law), GDPR, and NCA ECC framework. Collaborate with the Security Operations Centre (SOC) function, monitoring and alerting. Lead incident response activities; own the Incident Response Plan and Playbooks for P1/P2 cyber security events. Manage threat intelligence feeds and vulnerability management programme; prioritize patching based on risk exposure. Conduct regular penetration testing, red team exercises, and security assessments; remediate findings within agreed SLAs. Oversee endpoint detection and response (EDR) using Microsoft Defender for Endpoint across all ASD devices. Manage Business Continuity Planning (BCP) and Disaster Recovery (DR) for cyber event scenarios. Define and govern the SAP S/4HANA security architecture including role-based access control, segregation of duties (SoD), and audit logging. Review SAP security design deliverables produced by the system integrator; validate against ASD’s security standards. Conduct SoD conflict analysis during UAT and prior to go-live; ensure remediation before production cutover. Manage security requirements for all application systems: Sales Buzz, Sales Code, Shelfr, SO99, and third-party Saa S. Collaborate with AFG, ASD’s Identity and Access Management (IAM) programme including Privileged Access Management (PAM) and Zero Trust implementation. Govern user provisioning, de-provisioning, and access certification processes across all systems including SAP and M365. Manage Azure Active Directory / Entra ID security configuration: MFA, Conditional Access, PIM, and identity protection. Define and enforce least-privilege access principles and role segregation policies across IT and business systems. Conduct quarterly access reviews and user entitlement audits; report exceptions to the IT Operations Manager. Deliver the organisation-wide security awareness and training programme; track completion rates and phishing simulation outcomes. Manage third-party and supply chain security risk assessments; include security requirements in vendor contracts. Liaise with Internal Audit on security-related audit findings; develop and track remediation action plans. Prepare for and support external regulatory audits and certifications, including NCA ECC, ISO 27001, and ZATCA security requirements. Produce monthly security metrics dashboards covering threat landscape, vulnerability posture, and compliance status.<br>Qualifications:Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or a related field. CISM (Certified Information Security Manager) — required or CISA — preferred. Microsoft SC-200 (Security Operations Analyst) or SC-300 — advantageous.5–8 years of experience in information security, with at least 3 years in a security leadership role. Proven experience securing SAP environments including role design, SoD analysis, and SAP security audit. Experience with cloud security: Azure Security Center / Defender for Cloud, AWS Guard Duty, or GCP SCC. Knowledge of Saudi Arabia regulatory requirements: PDPL and NCA ECC cybersecurity framework — strongly preferred. Strong incident response and forensic investigation experience; crisis communication skills. GCC or FMCG industry experience is an advantage. Excellent risk communication skills; experience presenting security risk to executive and board audiences.
A leading organization is seeking an experienced Director of Security Technologies to lead the operation, development, and continuous improvement of network and application security technologies. The role will oversee cybersecurity controls, security infrastructure, operational security requests, vulnerability management, threat mitigation, and the performance of the Security Technologies function.<br>Key Responsibilities• Lead the operation and enhancement of network and application security technologies.• Oversee firewall policies, port access requests, device isolation, and website and email security controls.• Ensure security systems, signatures, configurations, and technologies are continuously updated and optimized.• Oversee web application security controls and resolve network and application access issues.• Evaluate, test, approve, and implement new security technologies and cybersecurity controls.• Lead vulnerability management activities and ensure identified security risks are effectively addressed.• Oversee root cause analysis for security incidents and ensure compliance with cybersecurity policies and controls.• Develop security policies, processes, procedures, tools, and operating models.• Establish departmental objectives, performance measures, and key performance indicators.• Manage departmental operations, workforce requirements, annual budget planning, and strategic priorities.• Lead, develop, and evaluate team members through objective setting, performance feedback, and professional development.<br>Qualifications and Experience• Bachelor’s degree in Cybersecurity, Information Technology, Network Engineering, or a related field.• Minimum of 7 years of relevant experience, including leadership or managerial experience.• Strong experience in network security, firewalls, web application security, vulnerability management, and security operations.• Proven ability to lead technical teams and manage complex cybersecurity environments.• Professional certifications such as CISSP, CISM, CEH, CCNP Security, or equivalent are preferred.
Aggreko We're the global leader in providing engineered energy solutions that help businesses grow and communities thrive. We work as a team and we’re proud of the difference we make to customers, to local communities, and towards a sustainable future for the world.<br>Purpose We are seeking an experienced HSE Officer for our depot at Riadh and for our work at customer and projects premisses The HSE Officer is responsible for developing, maintaining, and implementing Company Health, Safety and Environment (HSE) Management System. The HSE Officer will be fully responsible for implementing safe systems of work and safe behavioural practices at all levels of the organization. This position provides HSE guidance to the organization and supports the operations process to maintain and continually improve the safety culture and performance, in line with the organization’s needs to comply with business objectives in the short, medium, and long terms and in accordance with the terms of our various contracts and the Integrated Management System.<br>Responsibilities - Monitor and improve the Health, Safety & Environment performance in compliance with local and legal legislation, regulations, and company policies.- Liaise and coordinate with Project managers /Location managers/Service Managers/ Service Team Leaders to ensure compliance with Aggreko’s HSE policies and HSE Management System.- Conduct in depth Investigation for all HSE related incidents and liaise with local management teams and QHSE Officer (KSA) for creation and implementation of immediate and corrective action plans.- Liaise with the suppliers and service providers for all HSE related requirements in conjunction with the QHSE Officer (KSA).- Conduct internal HSE inductions at a local level encompassing all relevant staff and sub – contractors.- Liaise with relevant stake holders as required in preparation for Risk Assessments and Method Statements as per the scope of work.- Liaise with Aggreko sales team and customer representatives and prepare and support completion of Pre-Qualification questionnaire along with the required documents to support customer requirements.- Support audits and inspections in conjunction with QHSE Officer (KSA) as and when required.- Visit and attend to local customer sites as and when requested.- Monitor the vehicle trackers, and coordinate the installation and removal of the trackers and dashcam and download the vehicle tracking and dashcam details as and when requested.<br><br><br>What we’re looking for- NEBOSH IGC and IOSH safety management qualifications are required.- Minimum three years of experience in ensuring HSE for (electro)mechanical industrial work.- Experience with ensuring safety on the depot and at in the field, at customers premisses.- Knowledge and ideally experience short cycle delivery projects (e.g. large events).- Nice to have, but not mandatory: Knowledge/ experience with the oil and gas sector- Possession of valid local driving license.- Availability to travel frequently as and when required within KSA.- Fluent command of English language.- Saudi Arabian citizen- You are based at or nearby Riadh, KSA.
نحن نبحث عن أخصائي أو محلل مكتب إدارة مشاريع (PMO) ذي خبرة لدعم حوكمة المشاريع، والتخطيط، وإعداد التقارير، وتتبع الجوانب المالية، وإدارة الموارد، والتنسيق مع أصحاب المصلحة عبر مشاريع وبرامج متعددة. سيلعب المرشح المثالي دوراً محورياً في ضمان تنفيذ المشاريع بما يتماشى مع الأهداف التنظيمية، ومعايير الحوكمة، والجداول الزمنية، والميزانيات، وتوقعات الجودة. يتطلب هذا الدور مهارات تحليلية قوية، وقدرات ممتازة في إعداد التقارير، وخبرة عملية في عمليات مكتب إدارة المشاريع.<br>الخبرة: 5-7 سنوات الموقع: المنطقة الشرقية<br>المسؤوليات الرئيسية:حوكمة المشاريع وإعداد التقارير:دعم عمليات حوكمة مكتب إدارة المشاريع وإدارة دورة حياة المشروع. مراقبة تقدم المشروع، والمعالم الرئيسية، والمخاطر، والقضايا، والاعتمادات. إعداد تقارير حالة المشروع اليومية والأسبوعية والشهرية وتقارير الإدارة التنفيذية. توحيد لوحات معلومات المشروع وتقارير إدارة المحفظة. تتبع مقاييس صحة المشروع وتحديد الانحرافات عن الخطط المعتمدة.<br>تخطيط وتنسيق المشاريع:تنسيق أنشطة المشروع عبر الفرق التجارية والتقنية. الحفاظ على جداول المشروع، وسجلات المخاطر والقضايا (RAID)، ومتتبعات الإجراءات، ومحاضر الاجتماعات. تسهيل اجتماعات الحوكمة، ومراجعات اللجنة التوجيهية، ومنتديات المشاريع. دعم مديري المشاريع طوال مراحل التخطيط والتنفيذ والمراقبة والإغلاق.<br>الإدارة المالية والتجارية:مراقبة ميزانيات المشاريع، والتوقعات، واستخدام الموارد. تتبع أوامر الشراء، والفواتير، ومدفوعات الموردين، والمالية العامة للمشروع. المساعدة في تحليل التكاليف، والتنبؤ، وإعداد تقارير تباين الميزانية. دعم إدارة العقود، وبيانات العمل (SOWs)، وعمليات طلب التغيير.<br>إدارة الموارد:تنسيق أنشطة انضمام ومغادرة الموارد. الحفاظ على تقارير تخصيص الموارد، والاستخدام، وتخطيط السعة. التعاون مع فرق التوظيف لتلبية متطلبات موارد المشروع. دعم أنشطة تخطيط القوى العاملة وتنبؤ الموارد.<br>إدارة المخاطر والامتثال والجودة:<br>الحفاظ على سجلات مخاطر وقضايا المشروع وتتبع خطط التخفيف. ضمان الامتثال لمعايير مكتب إدارة المشاريع، وأطر الحوكمة، والعمليات التنظيمية. إدارة مستودعات وثائق المشروع ومتطلبات الجاهزية للتدقيق. دعم مراجعات الجودة وتقييمات حوكمة المشاريع.<br>إدارة أصحاب المصلحة:التواصل مع مديري المشاريع، وأصحاب المصلحة التجاريين، والموردين، والقيادات. إبلاغ حالة المشروع، والمخاطر، والقضايا، والتصعيدات بفعالية. تسهيل التعاون بين الفرق متعددة الوظائف لضمان نجاح المشروع.<br>المهارات والخبرات المطلوبة:<br>إدارة المشاريع ومكتب إدارة المشاريع:فهم قوي لأطر عمل مكتب إدارة المشاريع، وحوكمة المشاريع، ومبادئ إدارة المشاريع. خبرة في دعم مشاريع وبرامج متعددة في وقت واحد. معرفة بمنهجيات التسليم الرشيقة (Agile)، والشلال (Waterfall)، والهجينة. خبرة في إعداد تقارير المشاريع، وتتبع المحفظة، وإدارة الحوكمة.<br>الأدوات والتقنيات: إتقان متقدم لبرنامج Microsoft Excel (الجداول المحورية، Power Query، لوحات المعلومات، تحليل البيانات). Microsoft Project. Power BI. SharePoint. Microsoft Teams. JIRA و Confluence (مفضل).<br>المؤهلات: درجة البكالوريوس في الهندسة، أو علوم الحاسب، أو نظم المعلومات، أو إدارة الأعمال، أو تخصص ذي صلة. يفضل الحصول على شهادات مهنية مثل PMP، أو CAPM، أو PRINCE2، أو PMO، أو Agile/Scrum، أو ما يعادلها.
We are looking for a Safety Officer to join our team in Jeddah.<br>Key Responsibilities Implement occupational health and safety requirements across the project site Conduct daily site safety inspections and identify unsafe conditions and practices Monitor work activities to ensure compliance with safety procedures and regulations Follow up and close out safety observations and corrective actions Participate in risk assessments and hazard identification activities Ensure compliance with the Permit to Work (PTW) system Conduct daily toolbox talks and safety awareness sessions for the workforce Promote a strong safety culture and support continuous improvement initiatives<br>Requirement Minimum 2 years of experience as a Safety Officer in construction or infrastructure project NEBOSH, IOSH, or OSHA certificatio Good knowledge of occupational health and safety standards and regulation Experience in site inspections, risk assessments, and Permit to Work (PTW) system Strong communication, reporting, and teamwork skill
<p>الغرض من العمل: المسؤول عن استقبال وتسجيل ونقل والتخلص من الأصول الثابتة للوظائف أو الكيانات المحددة لدى Fakeeh Care. يضمن توثيقًا دقيقًا ومعالجة transfers والتخلصات في الوقت المناسب، ومراقبة حركات الأصول، والامتثال الكامل لسياسات Fakeeh Care والمتطلبات التنظيمية.</p><p>المهام والمسؤوليات الرئيسية:</p><ul><li>التواصل يوميًا مع قسم المشتريات لتتبع أوامر الشراء الجديدة وRequests، والمتابعة في حال فقدان أي مستندات.</li><li>إجراء فحص ثلاثي على العناصر المستلمة (أمر الشراء، الفاتورة، والعناصر الفعلية)، لضمان تطابق السعر والوصف والكمية.</li><li>التأكد من تعبئة نموذج الاستلام بدقة بكل المعلومات المطلوبة والحصول على توقيع الأمين.</li><li>المتابعة مع قسم الهندسة الطبية على جميع العناصر ذات الصلة للحصول على نموذج قبول موقع من مدير/مدير قسم الهندسة الطبية.</li><li>إعداد ملف Excel يسرد العناصر المستلمة حسب أمر الشراء، ورقم GRN، واسم المورد، ورمز الباركود، والقسم، والتاريخ، والموقع؛ وحفظه شهريًا في المجلد المشترك.</li><li>إنشاء إشعار استلام البضائع (GRN)، وتوزيع نسخ إلى قسم المشتريات والدائنين، والحصول على توقيعات من كلا القسمين.</li><li>تسجيل GRNs المفهرسة عند نشرها في Mass Addition في Oracle، تخصيص الفئة والعSub-الفئة ومركز التكلفة والموقع والأمين.</li><li>متابعة أي معاملات CIP لضمان الاستلام وإتاحة التثمين عند استخدام الأصول.</li><li>التحقق من صحة جميع طلبات النقل والتخلص الواردة، والتأكد من مطابقة العناصر للوصف والباركود.</li><li>مراجعة نماذج النقل وتنسيق نقل الأصول وتعيين الأمناء وتحديث النظام وفقًا لذلك.</li><li>إعداد تقارير موجزة للإدارة عن جميع النقلات والتصرفات.</li><li>التأكد من تقديم تقارير التقييم الفني لكل عنصر التخلص، موقَّعة من قبل مدير/مدير الفنيين.</li><li>الاتصال ب purchasers الخردة، والحصول على ثلاث عروض على الأقل، وتقديمها إلى لجنة الخردة، وتنسيق الدفع والإشراف على إزالة العناصر.</li><li>الحفاظ على تنظيم مناسب لمخزن مراقبة الملكية والعمل كوصي لسجن الخردة.</li><li>التحقيق في أي أضرار بالأصول الثابتة ليست ناجمة عن التآكل الاعتيادي والإبلاغ إلى مدير الخط.</li><li>المساعدة في العد الفعلي للمخزون والمشاركة في مشاريع أخرى حسب التعيين.</li><li>مهام أخرى كما تُحدَّد ضمن نطاق العمل.</li></ul><p>المهارات والقدرات:</p><ul><li>إتقان Microsoft Word وExcel وPowerPoint.</li><li>انتباه قوي للتفاصيل والقدرة على الالتزام بالمواعيد النهائية.</li><li>مهارات تقرير قوية.</li></ul><p><strong>الملف الوظيفي المطلوب</strong></p><ul><li>الموظف: خبرة من 0 إلى 2 سنة في إدارة الأصول الثابتة والمخزون أو مجال ذات صلة.</li><li>الموظف الأول: الحد الأدنى 3 سنوات من الخبرة في إدارة الأصول الثابتة والمخزون أو مجال ذو صلة.</li><li>درجة البكالوريوس في المحاسبة أو المالية أو تخصص ذي صلة.</li><li>إتقان ممتاز للإنجليزية والعربية شفوياً وكتابة.</li></ul>
Job Role: Cyber Security Architect / Expert<br><br>Experience: 10+ years<br><br>Location: KSA (Onsite)<br><br>Duration: 1 year<br><br>Technology Stack<br><br>Azure Security Architecture & Engineering: Entra ID, APIM, Azure Policy, Key Vault, Defender for Cloud, Microsoft Sentinel, Microsoft Fabric/Purview, Azure Dev Ops security pipelines, API and microservices security, IoT security, and Gen AI security.<br><br>Security Assessment & Detection: Sentinel/KQL, Burp Suite, Nessus, SAST/DAST/SCA tools, OWASP web, API, and mobile security, and security scripting.<br><br>Job Description<br><br>Define security architecture, controls, identity, access, compliance and risk mitigation requirements. Ensure solution design follows secure-by-design principles across application, data, cloud and integration layers.<br><br>Configure Entra ID, MFA, Conditional Access, RBAC/PIM, Key Vault, WAF, Firewall, private endpoints, Defender and Sentinel. Execute or coordinate SAST, DAST, VA/PT, API and configuration assessments, track remediation and retest fixes.<br><br>Technical Skills Summary<br><br>Security configuration, Dev Sec Ops, vulnerability testing, SIEM/SOAR, evidence collection and operational security.<br><br>Functional Skills Summary<br><br>Security Architecture & Governance:<br><br>Define target architecture, security controls, risk mitigation measures, compliance alignment, access governance, and secure-by-design reviews, ensuring adherence to applicable NCA, PDPL, NDMO, and DGA requirements.<br><br>Platform Engineering & Operations<br><br>Build and operate environments, automate deployments, manage releases, and ensure monitoring, reliability, performance, and operational readiness.<br><br>Skills: soar,security architect,vulnerability,cyber security,architecture,security,siem,operational security,devsecops,security confirguration
الغرض الرئيسي من الوظيفة: مسؤول عن ضمان مطابقة الأعمال الميكانيكية لمواصفات المشروع ومعايير الجودة ومتطلبات العميل. يقوم بإجراء عمليات تفتيش مفصلة، واعتمادات فنية، وإدارة تقارير عدم المطابقة (NCR)، ويدعم التحسين المستمر لأداء الجودة الميكانيكية.<br>الواجبات والمسؤوليات: إجراء عمليات تفتيش مفصلة للأعمال الميكانيكية لضمان الامتثال للرسومات والمواصفات والمعايير المعتمدة. مراجعة واعتماد نتائج اختبارات التفتيش والقياسات والوثائق ذات الصلة. تحديد وتوثيق والإبلاغ عن تقارير عدم المطابقة (NCRs) ومتابعة الإجراءات التصحيحية. دعم تحليل الأسباب الجذرية (RCA) وتنفيذ الإجراءات التصحيحية والوقائية. تقديم الدعم الفني والتوجيه لقادة الفرق والمفتشين بشأن مسائل الجودة الميكانيكية. مراجعة التصاميم الميكانيكية والتركيبات والأعمال المنجزة لضمان مطابقتها لمتطلبات المشروع. إعداد وصيانة تقارير التفتيش المفصلة وسجلات الجودة وسجلات التفتيش. حضور عمليات تفتيش نقاط التوقف (HP) ونقاط المراقبة (WP). معالجة ملاحظات العميل/الاستشاري ودعم التحسين المستمر للعمليات والدروس المستفادة. • ضمان الامتثال لمعيار ISO 9001، ونظام إدارة الجودة (QMS) للمشروع، والمشاركة في عمليات التدقيق الداخلي للجودة. مسؤوليات السلامة والجودة: حماية صحة وسلامة وأمن موظفينا والسعي لتحسينها في جميع الأوقات؛ القضاء على حالات عدم المطابقة للجودة وحوادث الصحة والسلامة والبيئة (HSE)؛ ضمان الامتثال المستمر والمتسق من قبل جميع الموظفين والموردين بمتطلبات ومعايير وبروتوكولات السلامة والتنظيم. مسؤول عن خلق بيئة عمل آمنة، وإدارة المخاطر وتقليل التعرض للمسؤولية. دعم الإدارة المباشرة في إدارة حوادث الصحة والسلامة والبيئة، والإجراءات التصحيحية/الوقائية.<br>مسؤوليات الامتثال الاجتماعي: الحفاظ على سياسة نظام الإدارة الاجتماعية للشركة من خلال المتابعة والإبلاغ عن أي حالات منحرفة عن سياسة نظام الإدارة المتكامل (IMS) للشركة. تحمل مسؤوليته الخاصة للامتثال لمتطلبات المساءلة الاجتماعية وفقًا لمعيار SA8000. التعاون مع فريق المسؤولية الاجتماعية (SP) لأي تواصل إضافي من أجل تحسين وتعزيز مستوى التنفيذ والامتثال لنظام الإدارة الاجتماعية للشركة.<br>المؤهلات الوظيفية المطلوبة: المتطلبات الأساسية: المؤهل: بكالوريوس في الهندسة الميكانيكية. الخبرة في المجال ذي الصلة: +5 سنوات من الخبرة في مجال ذي صلة. الخبرة الإجمالية: +5 سنوات من الخبرة.
<h3 >عن الطيران الأعلى والدور</h3>
<p >تبحث شركة Aloula Aviation، ومقرها الدمام، المنطقة الشرقية، المملكة العربية السعودية، عن طيار مساعد م dedicated لينضم إلى فريق عمليات الطيران لديها. هذا المنصب بدوام كامل مخصص لطموح الطيارين من 0-1 سنة من الخبرة، وهو عضو رئيسي في طاقم الطيران لأسطول العلوة. يتحرك مساعد الطيار تحت إشراف دقيق من قائد الطيارين، قائد الأسطول، قائد التدريب، والقائد، مع الحرص على الالتزام بجميع المعايير والإجراءات التشغيلية.</p> <h3 >السياق التشغيلي</h3>
<p >المسؤول عن الأنشطة الجوية المعينة التي تتضمن مختلف طائرات أسطول أرامكو، والتي تشمل بوينغ 737-800، جلف ستريم، هوكر 900XP، كينغ إير 350، وآير تراكتر 802. تتم العمليات داخل المملكة العربية السعودية وخارجها، مع دعم رئيسي للاستكشاف والحفر والتسهيلات الخاصة بالخطوط أو العمليات في المناطق الصحراوية النائية باستخدام مهابط ممهَّدة أو غير معدة. يُتوقع من الطيارين مبادرة وحسن تقدير لضمان حماية الطائرة وسلامة الركاب والبضائع، واستكمال سجل الرحلة والتسجيلات الأخرى بدقة.</p> <h3 >المسؤوليات الرئيسية</h3>
<ul >
<li >أداء واجبات مساعد الطيار، بما في ذلك مراقبة الطيار والقيادة، وفقًا لدليل تشغيل الرحلة وبناءً على توجيهات القبطان.</li>
<li >إجراء فحوص داخلية وفحص ما قبل الرحلة للطائرة.</li>
<li >تهيئة أنظمة الملاحة والتحقق من دقة البيانات المدخلة يدويًا.</li>
<li >الحصول على موجزات الأحوال الجوية، ومعلومات المسار، وتقديم خطط الرحلة، ومراجعة جميع تفاصيل الرحلة من حيث الصحة والدقة.</li>
<li >مساعدة القبطان في فحص جميع الأدوات، المحركات، ومعدات الاتصالات قبل الرحلة.</li>
<li >إجراء الاتصالات اللاسلكية اللازمة قبل الإقلاع بعد تشغيل المحركات.</li>
<li >قيادة الطائرة، بناءً على توجيهات القبطان، وفقاً لإجراءات الطيارين المعتمدة وقوانين ICAO/GACA/FAA واللوائح.</li>
<li >الحفاظ على اتصالات لاسلكية مستمرة مع مرافق الضبط المناسبة، وتقديم تقارير الوضع المطلوبة وتلقي التغييرات/التعديلات على خطة الطيران.</li>
<li >تشغيل أنظمة الملاحة لضمان المسار الصحيح للطائرة بما يتوافق مع تصريح الطيران والحفاظ على سجل ملاحي.</li>
<li >إبلاغ القبطان عن أية فروقات مُكتشَفة والمساعدة في تطوير مسارات بديلة عند الحاجة.</li>
<li >مساعدة القبطان في ضمان سلامة وراحة الركاب والتأكد من امتثال تشغيل الطائرة للوائح GACA والشركة والإدارة والسلامة.</li>
<li >دعم القبطان في تأمين الطائرة، وإجراءات الجمارك والهجرة، ونزول الركاب.</li>
<li >أداء الواجب الاحتياطي المعين حتى 48 ساعة في الأسبوع، وأداء واجبات أخرى حسب تكليف القائد الطيارين، قائد الأسطول، قائد التدريب، أو القبطان، بما في ذلك العمل المكتبي إذا لزم الأمر.</li>
</ul> <h3 >المؤهلات والخبرة المطلوبة</h3>
<ul >
<li >حد أدنى من <strong >200 ساعة طيران</strong>، بما في ذلك الساعات المكتسبة في برنامج التدريب المعتمد الأولي (IATP).</li>
<li >حيازة رخصة طيران تجارية سارية <strong >GACA CPL</strong>.</li>
<li >حيازة شهادة طبية سارية من <strong >GACA</strong>.</li>
<li >درجة البكالوريوس في تخصص تقني أو شهادة ذات صلة بالطيران.</li>
</ul> <h3 >التطوير المهني والالتزام</h3>
<p >يتطلب هذا الدور التزامًا مستمرًا بالنمو المهني، بما في ذلك التقدم المستمر نحو إكمال جميع التدريبات الأرضية والجوّية للطائرة المعنية بنجاح. يتحمل مساعد الطيار مسؤولية التقدم المستمر في معرفة إجراءات التشغيل للطائرة المعينة ويجب إكمال جميع الدورات المحددة للحفاظ على الكفاءة والامتثال لمعايير الصناعة.</p> <h3 >عملية التقديم</h3>
<p >نشجع المرشحين المهتمين الذين يستوفون المؤهلات المحددة على التقدم لهذا المنصب بدوام كامل كمساعد طيار في الدمام. سيتم مناقشة تفاصيل الراتب أثناء عملية المقابلة.</p>
Overview:The Security Specialist is responsible for supporting and maintaining the organization’s IT security operations to ensure the availability, integrity, and protection of systems, networks, and applications. The role focuses on the day-to-day operation and administration of security technologies.<br>Key Responsibilities:Provide advanced operational support for IT security controls and security platforms Support protection and availability of security controls and platforms Resolve security platform related incidents and support problem management Execute approved security related changes Support recovery and restoration of security controls and platforms<br>Talent Profile:Bachelor’s degree in computer science, Information Technology, Network Engineering, or a related field. Minimum 4 years of relevant experience in IT security operations<br>Job Nature:SITE, Project-Based.<br>In addition to the monthly salary, SITE provides you these Benefits:Social allowance. Mobile allowance. Medical Insurance employee, his/her family, and parents.
Role Purpose<br><br>As Head of Security at Salla, you are the most senior security authority at Salla. You set the strategy, build the team, and own the controls that keep our platform, our people, and our merchants safe. You translate risk into business language for the executive team and the Board, and you make security a competitive advantage rather than a constraint. You will lead end to end across every security domain and represent Salla's security posture to auditors, regulators, partners, and customers.<br><br>Please not that we are looking for Saudi Nationals only for this role. <br><br>Key Responsibilities<br><br>Security Strategy & Leadership<br><br>Own and evolve the enterprise security strategy, roadmap, and operating model across cloud, network, endpoint, physical, and GRC, aligned to Salla's growth and public-listing readiness Act as the organization's principal security advisor; brief the executive team and the Board on cyber risk posture, investment priorities, and regulatory exposure Define and steward the security budget, headcount plan, and tooling portfolio; drive measurable return on security investment Establish security KPIs, OKRs, and a metrics-driven reporting cadence for leadership and audit committees<br><br>Cloud Security<br><br>Lead cloud security across the platform, including landing-zone hardening, network segmentation, secrets management, and workload protection (AWS strongly preferred) Govern Infrastructure-as-Code security, container and Kubernetes security (image scanning, admission control, runtime protection), and CI/CD pipeline integrity Drive Cloud Security Posture Management, workload protection, and continuous compliance against recognized cloud control frameworks and CIS benchmarks Partner with SRE and Platform Engineering to embed secure-by-default guardrails that protect velocity rather than slow it<br><br>Network Security<br><br>Own network security architecture, including edge protection, DDoS mitigation, web application firewall, segmentation, and zero-trust network access Govern the CDN and edge security stack, bot management, rate limiting, and origin lockdown for high-traffic, merchant-facing services Oversee secure connectivity, private connectivity, VPN, and DNS security<br><br>Endpoint Security<br><br>Lead endpoint protection across corporate and engineering fleets, including EDR/XDR, device hardening, mobile device management, and disk encryption Run a continuous vulnerability and patch management program with clear remediation SLAsDefine and enforce endpoint baselines and data loss prevention controls<br><br>Physical & Facility Security<br><br>Own physical security for Salla's offices and facilities in Makkah and other sites, including access control, CCTV, visitor management, and environmental controls Align physical and logical access policies; govern physical access to sensitive areas and equipment Coordinate with Facilities, HR, and local authorities on safety, badging, and on-site incident response<br><br>Identity & Access Management (Zero Trust)<br><br>Lead IAM strategy across cloud and corporate systems, including single sign-on, multi-factor authentication, privileged access management, and least-privilege enforcement Automate joiner, mover, and leaver workflows and run periodic access recertification Advance the organization toward a mature zero-trust architecture<br><br>Security Operations & Incident Response<br><br>Build and run the security operations capability, including SIEM, detection engineering, threat intelligence, and continuous monitoring Own the incident response lifecycle from preparation through detection, containment, eradication, recovery, and blameless post-incident review Lead tabletop exercises, red and purple teaming, and breach-readiness drills; maintain crisis-communication and breach-notification playbooks<br><br>Governance, Risk & Compliance (GRC)<br><br>Own the GRC function and the enterprise risk register; run the risk assessment and treatment lifecycle Lead certification and audit programs spanning ISO/IEC 27001, SOC 2, and PCI DSS, with alignment to the NCA Essential Cybersecurity Controls and Cloud Cybersecurity Controls, and to the SAMA Cyber Security Framework where applicable Own data protection and privacy compliance under the Saudi Personal Data Protection Law and SDAIA requirements, including data inventories, processing agreements, and cross-border transfer controls Prepare Salla's security and IT-governance posture for Tadawul listing, including controls maturity, evidence collection, and auditor readiness Author, ratify, and maintain the full lifecycle of security policies, standards, and procedures<br><br>Third-Party & Vendor Risk<br><br>Establish and run the third-party risk program, including security due diligence, contractual security terms, and continuous monitoring of critical suppliers Embed security requirements into procurement and vendor onboarding<br><br>Security Awareness & Culture<br><br>Build a company-wide security awareness, training, and phishing-simulation program Champion a positive, blameless security culture in which security is a shared responsibility<br><br>Team Leadership & Organization Building<br><br>Lead, mentor, and grow a multidisciplinary security organization spanning cloud security, Sec Ops, GRC, and physical security Set objectives, develop talent, and build the hiring plan to scale the function with the business Forge cross-functional partnerships with Engineering, SRE, IT, Legal, HR, and Finance<br><br>Requirements<br><br>12+ years in information and cyber security, including 5+ years in senior security leadership (Head of Security, Director, or CISO-track) at a Saa S, fintech, or e-commerce organization Demonstrated ownership of security across multiple domains: cloud, network, endpoint, physical, and GRCDeep hands-on and architectural knowledge of cloud security (AWS strongly preferred), including Kubernetes and modern CI/CDProven track record building and operating security operations and incident response at scale Strong GRC experience across ISO 27001, PCI DSS, GDPR and Saudi regulatory frameworks (NCA ECC and CCC, PDPL and SDAIA; SAMA CSF a plus) Experience leading audits and certifications, ideally including IPO or regulatory-readiness programs Excellent executive communication; able to translate technical risk into business and regulatory language for the Board Bachelor's degree in Computer Science, Engineering, Information Security, or a related field Willingness and eligibility to work on-site in Makkah, Saudi Arabia
Lead the day-to-day delivery of IT, network/infrastructure, OT, and application security operations across all ASO-managed platforms. Oversee Managed Service Partner (L1/L2) service delivery, ensuring effective platform governance, SLA compliance, operational efficiency, and continuous improvement.<br><br>Key Responsibilities<br><br> Lead and manage the ASO team, including Senior Lead, Senior Specialist, and Security Specialist. Oversee Managed Service Partner L1/L2 service delivery and SLA performance. Govern platform administration and security tool configuration changes. Oversee the Application Security program, including WAF governance, application vulnerability remediation, and coordination with the Cybersecurity Team. Lead vulnerability management activities, including prioritization, tracking, and reporting. Manage change management for all ASO-owned security platforms. Oversee operational handover of new security tools and ensure service continuity. Coordinate with the Security Lead on security incidents, escalations, and change approvals. Prepare and present monthly operational and performance reports for leadership<br><br>Requirements<br><br>7+ years of cybersecurity experience, including 3+ years in a leadership role. Experience managing enterprise security operations and security platforms. Hands-on experience with security technologies such as firewalls, EDR, PAM, vulnerability management, and WAF. Experience managing Managed Security Service Providers (MSSPs) and SLA performance. Strong stakeholder management and operational governance skills. Professional certification such as CISSP or CISM preferred
Lead the day-to-day delivery of IT, network/infrastructure, OT, and application security operations across all ASO-managed platforms. Oversee Managed Service Partner (L1/L2) service delivery, ensuring effective platform governance, SLA compliance, operational efficiency, and continuous improvement.<br><br>Key Responsibilities<br><br> Lead and manage the ASO team, including Senior Lead, Senior Specialist, and Security Specialist. Oversee Managed Service Partner L1/L2 service delivery and SLA performance. Govern platform administration and security tool configuration changes. Oversee the Application Security program, including WAF governance, application vulnerability remediation, and coordination with the Cybersecurity Team. Lead vulnerability management activities, including prioritization, tracking, and reporting. Manage change management for all ASO-owned security platforms. Oversee operational handover of new security tools and ensure service continuity. Coordinate with the Security Lead on security incidents, escalations, and change approvals. Prepare and present monthly operational and performance reports for leadership<br><br>Requirements<br><br>7+ years of cybersecurity experience, including 3+ years in a leadership role. Experience managing enterprise security operations and security platforms. Hands-on experience with security technologies such as firewalls, EDR, PAM, vulnerability management, and WAF. Experience managing Managed Security Service Providers (MSSPs) and SLA performance. Strong stakeholder management and operational governance skills. Professional certification such as CISSP or CISM preferred
Adree is seeking a Security Engineer, Specialist to support our product development and engineering initiatives by leveraging deep application security and analytical expertise to articulate the value of secure, compliant digital solutions. In this role, you will work closely with stakeholders to understand technical requirements and business goals, and clearly demonstrate how enforceable security gates and robust vulnerability lifecycle management can address their needs.<br><br>You will be responsible for bridging the gap between security compliance and rapid delivery execution, collaborating across teams to operationalize automated security controls throughout the SDLC. By blending secrets management, automated scanning pipelines, and artifact trust mechanisms, you will ensure our digital products are highly secure, resilient, and fully audit-ready.<br><br>Key Responsibilities:<br><br>Engage with clients and stakeholders to gather security requirements and understand their digital transformation and compliance goals Deliver impactful presentations, security dashboards, and reporting frameworks showcasing vulnerability triage, remediation tracking, and pipeline safety metrics Support the engineering and Dev Ops teams in configuring and tuning Fortify SAST/DAST, establishing clear thresholds, and governing exception workflows Provide technical insights and application security expertise throughout the product lifecycle to automate SSL/TLS certificate renewals using Hashi Corp Vault and Cert-Manager in Kubernetes Collaborate with cross-functional teams (including Dev Ops and QA) to build secure pipelines, manage test environment controls, and enforce software supply chain visibility via SBOM integration Stay current with industry trends, OWASP frameworks, container security concepts, and threat modeling to position solution security effectively Conduct workshops and technical triage sessions internally and with clients to define Quality Gates, vulnerability SLAs, and secure secrets management patterns with Secur Envoy MFAParticipate in Agile development processes and release alignments, producing required compliance evidence, scan outputs, approvals, and comprehensive release evidence packs<br><br>Requirements<br><br>Education<br><br>Bachelor's degree in Computer Science, Cyber Security, Software Engineering, or a related technical field<br><br>Experience<br><br>4+ years of professional experience in Application Security (App Sec), Dev Sec Ops, or Security Engineering Proven experience operationalizing enforceable security gates within CI/CD pipelines, preferably using Azure Dev Ops Server Demonstrated experience with threat modeling, vulnerability management, and operating within government or highly regulated enterprise sectors is a strong plus<br><br>Skills & Competencies (Technical & Analytical + Soft)<br><br>Deep proficiency in Secure SDLC principles, OWASP Top 10, container security concepts, and Kubernetes/Open Shift security basics Strong hands-on experience implementing image signing/verification (Sigstore/Cosign) and artifacts lifecycle security via JFrog Artifactory Analytical skills to correlate security logs and monitoring alerts with enterprise platforms like App Dynamics, BMC, or Azure Monitoring Excellent soft skills with an ability to influence without authority, deliver pragmatic risk-based guidance, and handle security escalations calmly Strong collaboration, structured reporting, and cross-functional engineering alignment<br><br>Experience (summary)<br><br>Operationalization of automated Dev Sec Ops security gates across CI/CD pipelines Vulnerability lifecycle management including triage, SLA tracking, and remediation Automated software supply chain security (SBOM generation & container image signing) Secrets management integration and automated infrastructure certificate management Application security scanning optimization across SAST and DAST frameworks Regulatory compliance evidence gathering and release package auditing<br><br>Skills & Competencies (summary)<br><br>Azure Dev Ops Server & JFrog Artifactory secure workflow management Fortify SAST/DAST tuning & exception workflow design Hashi Corp Vault secrets management & Cert-Manager infrastructure Container & cluster security principles (Kubernetes / Red Hat Open Shift) Multi-factor authentication access patterns (Secur Envoy MFA) Stakeholder relationship management & security governance Prioritization, risk-based communication, and teamwork Travel for client-facing activities<br><br>Job location: Client Site