وظائف مفتش أمن في السعودية
٦٥٢٦ وظائف شاغرة
Job Title: SOC Analyst (L2) Location: Riyadh, Alsahafa District, Saudi Arabia Work Type: On-site<br>Company brief:Circlys is a pioneering fintech company revolutionizing traditional monthly financial committees (ROSCA or Jameya), or as we call them Circles. Our innovative, authorized, and secure solution empowers individuals to achieve their financial goals with ease and peace of mind. With over 2 million users and more than 8 billion SAR in savings, Circlys is a leader in its field. Our success is driven by a passionate and talented team of professionals who are committed to fostering financial well-being in our community. If you're ready to make an impact in a fast-growing fintech environment where security is central to everything we do, Circlys is the place to be.<br>Job Summary:The SOC Analyst plays a critical role as part of Circlys security operations, serving as both the first line of defense and a key contributor to advanced detection and incident response. This role involves continuous monitoring of SIEM and EDR platforms to detect and analyze potential threats, performing triage and investigation of security alerts, and coordinating response activities to mitigate risks. The analyst also contributes to detection engineering and the continuous improvement of SOC processes by optimizing correlation rules, integrating new log sources, and maintaining complete visibility across Circlys digital infrastructure to ensure security readiness and resilience.<br>Key Responsibilities Monitor and analyze security events using SIEM and EDR platforms to detect and respond to potential threats Perform investigation and response activities to ensure timely containment and remediation Develop and optimize detection rules, use cases, and incident response playbooks Collaborate with IT and engineering teams to maintain system security and incident readiness Conduct proactive threat analysis and maintain accurate documentation and reports<br>Requirements Bachelor’s degree in Computer Science, IT, Cybersecurity or related field2 years of SOC or IT security monitoring experience Relevant certifications (e.g., Security+, CySA+, GCIH, CEH) are preferred Strong analytical, technical and communication skills with attention to detail Familiarity with SIEM and EDR platforms Understanding of networking fundamentals, incident handling and detection frameworks
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Job Title
<br></span><p>"IT Security Engineer -Makkah Al-Mukarramah "</p><br><br><br>Job Scope
<br><p>The IT Security Engineer is accountable for designing, building and enforcing policies and protocols that protect the organization’s computing infrastructure from all forms of threats. S/He provides the organization with advanced solution on cyber threats and helps create strategies to protect network from breaches.</p><br><br><br>Main Duties and Responsibilities
<br><ol>
<li>7+ years’ experience in technical support department</li>
<li>Advanced expertise in configuring, managing, and troubleshooting firewalls (e.g.,Fortinet).</li>
<li>Management of Web Application Firewalls (WAF) for protecting web applications from attacks (e.g. Forti WAF).</li>
<li>Administration of enterprise-grade antivirus and endpoint protection solutions.</li>
<li>Configuration, maintenance, and operation of email security gateways (e.g., FortiMail).</li>
<li>Implementation and support of Zero Trust Network Access (ZTNA) frameworks.</li>
<li>Network Access Control (NAC) deployment and integration.</li>
<li>Administration of centralized authentication systems (e.g., TACACS+, RADIUS).</li>
<li>Advanced knowledge of intrusion detection and prevention systems (IDS/IPS).</li>
<li>Conducting security audits, vulnerability assessments, and compliance reporting.</li>
<li>Proficient in cloud networking services such as VPN gateways, virtual network peering, and cloud firewalls.</li>
<li>Preparing and maintaining technical documentation, including architecture diagrams and operational procedures.</li>
<li><strong>Cisco Certified Internetwork Expert (CCIE) in security</strong></li>
<li><strong>Additional: certified in </strong>Fortinet NSE (5,6,7) and above.</li>
</ol><br><br>Position Requirements
<br><br>Education
<br><p>Bachelor’s degree in IT, CE, CIS or related field</p><br><br><br>Experience
<br><p>At least 7 years of relevant experience</p><br><br><br><br>
</div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
We are seeking experienced professionals across the Saudi and wider GCC defense and security ecosystem to join a paid expert panel supporting a research project on AI-enabled opportunities in the sector. The project aims to understand demand for AI-enabled products and services, including priority use cases, buying dynamics, capability gaps, and commercialization considerations relevant to the Saudi/GCC market. Experts will share insights through paid consultations over the coming weeks.<br>What we're looking for• Experience within the Saudi or wider GCC defense and security ecosystem, through government, military, technology, or industrial roles • Exposure to entities such as GAMI, SAMI, MoD, MoI, GADD, National Guard, Presidency of State Security, or comparable defense and security stakeholders • Background as a former senior official, procurement leader, or capability development leader • Ex-military experience with operational or mission planning exposure • Experience with defense OEMs, systems integrators, AI-native defense companies, cybersecurity firms, or C4ISR and surveillance providers • Familiarity with defense procurement, localization requirements, offset or local content frameworks, and partnership or commercialization routes in the region<br>Preferred to have• Direct exposure to ISR, command and control, cyber defense, border security, logistics, predictive maintenance, geospatial intelligence, or autonomous systems • Prior experience advising on strategy, capability development, or technology adoption within a defense or security context • Comfort discussing operational pain points and where AI could realistically create value • Availability for a short paid consultation within the next one to two weeks
Responsibilities<br><br>Experience in OPERCOM ™ and ICAPS© application At least 15 years of experience in Security System, including ~10 years of Pre-commissioning and Commissioning Experience to Perform pre-functional and functional tests of all security systems against approved test procedures and checklists Coordinate and perform Integrated Systems Testing (IST) across subsystems such as CCTV, Access Control, intrusion detection, perimeter systems, networks, and building management interlocks. Validate interfaces between security systems and other infrastructure (e.g., fire alarms, BMS) Work closely with main contractors, MEP/ICT teams, vendors, site engineers, and consultants to resolve test issues
Senior IT Specialist — Infrastructure, Site Support & Network Security
اللوجستيات وسلاسل الإمداد والمشتريات
We are seeking an experienced Senior IT Specialist to join our IT team. The successful candidate will be responsible for ensuring the reliability, security, and performance of the organization's IT infrastructure across the head office and multiple plant/site locations. This role requires strong expertise in Fortinet Forti Gate administration, enterprise networking, infrastructure management, and end-user support, while serving as the technical escalation point for complex infrastructure and security-related issues.<br> Key Responsibilities Design, configure, and maintain Fortinet Forti Gate firewalls, including Firewall Policies, NAT, VPN, High Availability (HA), and SD-WAN. Manage network security technologies such as IPS, Web Filtering, Application Control, SSL Inspection, and bandwidth optimization. Monitor firewall performance, internet utilization, and network health while ensuring maximum availability and security. Administer and support LAN/WAN infrastructure, switches, routers, wireless networks, VLANs, DHCP, DNS, and WAN connectivity. Configure and maintain site-to-site and remote access VPN solutions. Support servers, virtualization, backup infrastructure, Active Directory / Entra ID, and endpoint security. Provide advanced technical support and act as the escalation point for complex IT infrastructure issues. Support new site deployments, standardize infrastructure across locations, and coordinate with ISPs and technology vendors. Ensure compliance with cybersecurity standards and maintain infrastructure documentation. Mentor junior IT team members and contribute to infrastructure improvement initiatives and IT projects.<br>Qualifications & Experience Bachelor's degree in computer science, Information Technology, Network Engineering, or a related field. Minimum 6 years of experience in IT Infrastructure and Support. At least 4 years of hands-on experience with Fortinet Forti Gate in a multi-site environment. Strong experience with Firewall Administration, VPNs, SD-WAN, LAN/WAN, VLANs, Routing, Switching, DNS, DHCP, and network security. Experience supporting distributed sites, industrial environments, or manufacturing operations is preferred. Strong troubleshooting and problem-solving skills.<br>Preferred Qualification Fortinet NSE 4 (required or strongly preferred); NSE 5/7 is a plus. Experience with Forti Manager, Forti Analyzer, Forti AP, and SD-WAN. Knowledge of ITIL and ITSM tools. Additional certifications such as CCNA, Comp TIA Network+, or Security+ are an advantage.<br>Key Competences Fortinet Forti Gate Administration Enterprise Network Infrastructure Network Security & Firewall Management VPN & Secure Connectivity Active Directory / Entra IDInfrastructure Troubleshooting Communication, Leadership, and Problem-Solving
Safety and Security Officer to safeguard residents, staff, and facilities in rehabilitation and long-term care settings. This role monitors access, enforces safety policies, responds to incidents, and supports emergency preparedness. You’ll collaborate with leadership to maintain a secure, compliant, and tranquil environment. JOB SCOPEThe Safety and Security Officer is responsible for maintaining a safe and secure campus, including monitoring access control, surveillance systems, and perimeter security. Responsibilities include incident response, de-escalation, traffic and crowd management during activities, and coordination with local emergency services. You will conduct risk assessments, safety audits, and walk-throughs to identify hazards, recommending corrective actions. The role also involves visitor screening, badge management, and supporting staff training on safety protocols, fire safety, and evacuation procedures. You’ll collaborate with clinical and facilities teams to ensure safe patient and resident movement, transport safety, and secure alignment with privacy regulations. Budget awareness and reporting on security incidents, asset protection, and safety program effectiveness are essential. The position requires strong observation, communication, and conflict-resolution skills, along with a proactive, service-oriented approach to maintain a calm, secure environment for residents, families, and staff. JOB REQUIREMENTSEDUCATION AND EXPERIENCE Educations and Certificates: Bachelor’s degree in safety Engineer, related field. NEBOSH, IOSH, and CSMS certifications are required or highly preferred Experience: Minimum of 4 of security, safety, or emergency management experience in healthcare or similar settings. Experience with access control systems, CCTV, incident reporting, and safety drills is desirable. SKILLS AND PORFESSIONAL KNOWLEDGE Familiarity with incident command, de-escalation techniques, and basic first aid/CPR (certification preferred). Strong observation, risk assessment, and problem-solving abilities. Effective communication, conflict resolution, and customer-service orientation. Ability to prepare incident reports, maintain security logs, and support regulatory readiness. Proficiency with safety management software, badge/access systems, and basic IT skills LANGUAGE Proficiency in written, read and spoken Arabic and English languages. ROLES AND RESPONSIBILITIES (But not limited to) GENERAL ROLES AND RESPONSIBILITES Maintain a safe and secure facility environment; monitor access points, CCTV, and alarm systems. Respond to incidents, disturbances, and emergencies; coordinate with security and clinical teams. Conduct regular safety rounds, hazard assessments, and safety drills; implement corrective actions. Enforce visitor management policies; screen and guide visitors to appropriate areas. Support incident reporting, root-cause analysis, and implementation of safety improvements. Collaborate with facilities, nursing, and administration to ensure resident, staff, and visitor safety. Maintain incident logs, security documentation, and audit readiness. Provide customer-service oriented support to residents, families, and staff with professionalism and discretion. ESSENTIAL FUNCTIONS/RESPONSIBILITIES Patrol assigned areas; monitor defibrillator locations, emergency exits, and safety signage. Manage access control and visitor screening during shifts, document irregularities. Respond to alarms, alarms, medical alerts, and security incidents; coordinate with emergency services as needed. Assist in evacuation planning and drills; participate in fire safety and disaster readiness activities. Report safety hazards, thefts, or vandalism; follow up with corrective actions and preventive measures. Maintain confidentiality and privacy in all security-related matters. Support training for staff in safety, de-escalation, and emergency procedures. Prepare periodic security and safety reports for leadership review.
<b>Join Marriott International as a Mgr-Security & Safety!</b><br>As a Mgr-Security & Safety, you will play a crucial role in managing the daily functions of the security department, ensuring the protection of property assets, employees, and guests. You will be responsible for maintaining logs and documents required by law and standard operating procedures, as well as training staff in established emergency procedures.<br><br><b>Responsibilities:</b><ul><li>Administer fire prevention programs and emergency preparedness.</li><li>Conduct hazard and risk assessments at the property.</li><li>Develop detailed 'shut down' procedures to secure all areas appropriately.</li><li>Monitor unusual activities around the property to ensure guest and employee well-being.</li><li>Handle complaints and resolve disputes effectively.</li><li>Provide personal assistance and medical attention as needed.</li></ul><br><b>Candidate Profile:</b><br>A high school diploma or GED with 4 years of experience in security/loss prevention or a 2-year degree in Criminal Justice with 2 years of related experience is required. Strong leadership, interpersonal skills, and a commitment to exceptional customer service are essential.<br><br><b>About Marriott International:</b><br>At Marriott International, we foster an inclusive culture and provide a diverse workforce that values unique backgrounds. Our commitment to non-discrimination ensures that every individual has an opportunity to thrive within our community. Join us and experience the art of hospitality in a luxurious environment.
Abunayyan Holding is a leading Saudi Arabian conglomerate with a diverse portfolio spanning multiple sectors, including water, energy, and telecommunications. Established in 1955, the company is committed to innovation and excellence, providing sustainable solutions that meet the needs of its customers and contribute to the development of the Kingdom. With a strong emphasis on quality and efficiency, Abunayyan Holding plays a crucial role in shaping the future of various industries in Saudi Arabia and beyond.<br>We are seeking a highly skilled Senior Network & Security Engineer to design, implement, and maintain our enterprise network infrastructure. The ideal candidate will have extensive experience in network security, wireless LAN, voice communications, and next-generation firewalls. You will play a key role in ensuring network reliability, security, and performance while leading infrastructure projects.<br>Key Responsibilities:<br>Design, deploy, and manage enterprise LAN/WAN, Wireless (Aruba), and Voice Communication systems. Configure and maintain Aruba switches, access points, and Next-Generation Firewalls (NGFW). Implement and optimize SD-WAN solutions to enhance network performance. Monitor network security, troubleshoot issues, and ensure compliance with best practices. Lead infrastructure projects, including upgrades, migrations, and new deployments. Collaborate with IT teams to integrate Zscaler, WAF, Avaya, and CCTV solutions (preferred). Provide technical guidance and mentorship to junior engineers. Document network configurations, policies, and procedures.<br>Qualifications: <br>At least one professional network or security certification (e.g., CCNA, CCNP, Aruba ACMP/ACSP, NSE4, etc.). Minimum of 4 years in network, security, Wireless LAN, or voice communication. Technical Expertise:At least 2 years of hands-on experience with Aruba switches and Aruba access points. At least 1 year of experience with Next Generation Firewalls and SD-WAN technologies Strong knowledge of routing protocols (BGP, OSPF), VLANs, VPNs, and network security best practices. Experience with Zscaler, Web Application Firewall (WAF), Avaya, CCTV systems. Background in implementing infrastructure projects. Strong problem-solving abilities and analytical thinking. Excellent verbal and written communication skills to effectively collaborate with technical and non-technical stakeholders.
About Us:We’re building an ecosystem of digital products and services that power everyday life across the Middle East—fast, scalable, and deeply customer-centric. Our mission is to deliver to every door every day. We want to redefine what technology can do in this region, and we’re looking for a Cyber Security Engineer who can help us move even faster.noon’s mission: Every door, every day.<br>What you'll do:Team noon has some of the fastest, smartest, and hardest-working people we've encountered. With a young, aggressive, and talented team, we're driving major missions forward. As a Cyber Security Engineer, you will play a key role in maintaining secure and scalable systems while working closely with technology and risk teams to embed security into everything we build. Develop secure back-end logic for web and mobile applications Work closely with product and engineering teams to ensure secure integrations Perform threat modeling for new products and features Design and implement secure data models using relational databases Build scalable, high-quality code with strong security practices Collaborate with stakeholders to design, debug, and enhance secure solutions Stay updated on latest cybersecurity trends, threats, and technologies<br>What you'll need:Bachelor’s degree in Cyber Security, Computer Science/ Engineering, Information Security, or a related field Strong understanding of cybersecurity principles, best practices, and attack vectors Solid knowledge of algorithms, data structures, system design, RESTful APIs, and HTTPUnderstanding of MySQL and server-side Python with secure coding practices Familiarity with Dev Ops/Dev Sec Ops (CI/CD, Docker, Kubernetes, security automation) Strong communication skills and ability to explain technical concepts clearly Passion for cybersecurity demonstrated through projects, internships, or competitions0-2 year of experience in cybersecurity<br>Who will excel? We’re looking for people with high standards, who understand that hard work matters. You need to be relentlessly resourceful and operate with a deep bias for action. We need people with the courage to be fiercely original.noon is not for everyone; readiness to adapt, pivot, and learn is essential.
Security Solutions Engineer (Sales Engineer) — Red Team & Continuous Offensive Testing
تكنولوجيا المعلومات
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Security Solutions Engineer (Sales Engineer) — Red Team & Continuous Offensive Testing based in Saudi Arabia.<br><br>We are seeking a technically skilled Security Solutions Engineer who can bridge the gap between offensive cybersecurity expertise and enterprise sales. In this role, you will work alongside business development teams to design compelling technical strategies that demonstrate real-world security risks and the value of continuous offensive testing. You will engage with executive stakeholders, security leaders, and technical teams, translating complex attack scenarios into clear business outcomes. This position offers the opportunity to help shape a growing pre-sales function while collaborating with world-class security professionals in a fully remote, globally distributed environment. If you enjoy combining technical depth with customer engagement and strategic thinking, this is an opportunity to make a significant impact.<br><br>Accountabilities<br><br>As a Security Solutions Engineer, you will play a central role in the technical sales process, helping prospective customers understand security risks and designing tailored offensive security engagements. You will collaborate closely with sales, technical teams, and customers to build trust, develop winning proposals, and support long-term client success.<br><br>Lead technical discovery sessions to assess customer environments, security maturity, attack surfaces, and business risks. Develop customized attack strategies and technical proposals that demonstrate how continuous offensive testing addresses customer challenges. Translate complex cybersecurity concepts and attack paths into business-focused risk assessments for executive and board-level audiences. Deliver engaging product demonstrations, technical presentations, and solution workshops tailored to customer needs. Own the technical response for RFPs, security questionnaires, procurement reviews, and vendor assessments. Partner with account management teams to support renewals, quarterly business reviews, and expansion opportunities. Develop technical sales collateral, industry-specific content, and thought leadership materials. Build and improve AI-powered workflows and tools that enhance sales effectiveness and proposal quality. Strengthen competitive positioning by educating internal sales teams and differentiating offensive security solutions from traditional penetration testing services.<br><br>Requirements<br><br>The ideal candidate combines deep offensive security expertise with excellent communication and customer-facing skills. You should be comfortable engaging with both highly technical professionals and executive decision-makers while thriving in a fast-paced, remote-first environment.<br><br>Strong expertise in offensive cybersecurity, including Red Team operations, adversary simulation, penetration testing, and continuous offensive testing methodologies. Previous experience in security pre-sales, sales engineering, technical consulting, or a hands-on offensive security role with customer interaction. Ability to translate technical findings into business risk and communicate effectively with CISOs, executives, and technical stakeholders. Strong proposal writing, documentation, and presentation skills. Experience developing technical content, attack scenarios, and customer-facing solution materials. Interest in leveraging AI tools and automation to improve technical sales processes. Self-motivated with the ability to build processes and operate independently in a remote environment. Willingness to travel internationally for client engagements, industry conferences, and company events. Excellent written and verbal communication skills.<br><br>Benefits<br><br>Fully remote work with the flexibility to work from anywhere. Flexible working hours focused on outcomes rather than fixed schedules. Competitive base salary with uncapped commission opportunities. Unlimited paid time off to support work-life balance. Unlimited training and professional development opportunities. Quarterly company-wide meetups to collaborate and connect with global colleagues. Opportunity to work alongside highly experienced offensive security professionals. Collaborative, transparent culture with minimal bureaucracy and a strong focus on technical excellence.<br><br>How Jobgether Works<br><br>We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.<br><br>We appreciate your interest and wish you the best!<br><br> Why Apply Through Jobgether?<br><br>Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.<br><br>We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Responsibilities<br>About the team:<br>The Cloud Security team is responsible for the security assurance of Byte Dance enterprise businesses and the underlying cloud platform, covering areas such as security architecture, SDLC, vulnerability management, security incident response, and security compliance. The team aim to ensure the security and stability of the Byte Dance cloud platforms while enabling the success of the cloud business.<br><br>The Chief Information Security Officer (CISO) is responsible for the overall cybersecurity posture of the organization and for ensuring compliance with applicable cybersecurity laws, regulations, and regulatory frameworks, including the National Cybersecurity Authority (NCA) Essential Cybersecurity Controls (ECC) within the Kingdom of Saudi Arabia (KSA).<br><br>The CISO will provide independent executive leadership and oversight across cybersecurity governance, risk management, and security operations. The role requires a pragmatic, business-oriented leader with strong expertise in cybersecurity, cloud security, and modern technology environments, capable of ensuring that cybersecurity risks are identified, managed, and reported in alignment with the organization's risk appetite and regulatory expectations.<br><br>You’ll collaborate closely with senior executives. This role offers the opportunity to shape strategic outcomes, reduce risk exposure, and drive secure innovation across complex, interconnected ecosystems.<br><br>Responsibilities:<br>Cybersecurity Governance & Leadership:<br>- Establish and maintain enterprise-wide cybersecurity governance in line with SAMA CSF and NCA ECC requirements.<br>- Ensure clear ownership, accountability, and segregation of duties across cybersecurity functions.<br>- Advise executive management on cybersecurity risks, threats, and control effectiveness.<br>- Ensure cybersecurity considerations are embedded into corporate governance and enterprise risk management.<br><br>Cybersecurity Risk Management & Compliance:<br>- Own and oversee the cybersecurity risk management framework.<br>- Ensure continuous compliance with applicable regulations and industry good practices.<br>- Ensure timely remediation of audit findings and regulatory observations.<br>- Act as the primary point of accountability for cybersecurity matters with regulators.<br><br>Security Operations & Technology Oversight:<br>- Oversee cybersecurity operations including monitoring, detection, vulnerability management, IAM, and incident response.<br>- Ensure effective prevention, detection, response, and recovery capabilities.<br>- Govern the selection and operation of cybersecurity technologies.<br>- Ensure security by design across infrastructure, applications, cloud, and data platforms.<br><br>Incident Management & Cyber Resilience:<br>- Ensure effective incident response and cyber crisis management.<br>- Lead executive coordination during material cybersecurity incidents.<br>- Ensure alignment with business continuity and disaster recovery.<br>- Oversee post-incident reviews.<br><br>Third-Party & Outsourcing Cybersecurity:<br>- Ensure third-party cybersecurity risks are identified and managed.<br>- Ensure compliance of vendors with regulatory and contractual obligations.<br>- Oversee outsourced and managed security services.<br><br>People, Culture & Capability:<br>- Establish and maintain a compliant cybersecurity operating model.<br>- Develop national cybersecurity talent in alignment with Saudization.<br>- Promote cybersecurity awareness and culture.<br>- Ensure adequate resourcing and training.<br><br>Authority & Decision Rights:<br>- Define cybersecurity policies and standards.<br>- Escalate risks and incidents to executive management.<br>- Approve or reject cybersecurity risk acceptances.<br><br>Qualifications<br>Minimum Qualifications:<br>- Education: A bachelor’s degree in computer science, computer engineering, information technology, or a related field.<br>- Experience: 5+ years of relevant experience in security strategy, cybersecurity governance, risk management, or related domains.<br>- Security Frameworks Knowledge: Familiarity with industry standards such as OWASP, SANS CWE Top 25, ISO 27001, PCI DSS, NIST, and SAMA/NCA frameworks.<br>- Proven executive leadership in cybersecurity governance, risk management, and regulatory compliance.<br>- Strong experience engaging with Boards, regulators, and senior executives on cybersecurity matters.<br>- Ability to translate complex cybersecurity risks into clear business and risk implications<br>- Demonstrated leadership in building high-performing cybersecurity teams and national talent.<br><br>Preferred Qualifications:<br>- Sound decision-making and crisis leadership during material cybersecurity incidents Proven executive leadership in cybersecurity governance, risk management, and regulatory compliance.<br>- End-to-end security design and strategic roadmap of cloud security products and services.<br>- CISSP, CISM, CCSP, GIAC Certifications<br><br>About Us<br>Founded in 2012, Byte Dance's mission is to inspire creativity and enrich life. With a suite of more than a dozen products, including Tik Tok, Lemon8, Cap Cut and Pico as well as platforms specific to the China market, including Toutiao, Douyin, and Xigua, Byte Dance has made it easier and more fun for people to connect with, consume, and create content.<br><br><br>Why Join Byte Dance<br>Inspiring creativity is at the core of Byte Dance's mission. Our innovative products are built to help people authentically express themselves, discover and connect – and our global, diverse teams make that possible. Together, we create value for our communities, inspire creativity and enrich life - a mission we work towards every day.<br>As Byte Dancers, we strive to do great things with great people. We lead with curiosity, humility, and a desire to make impact in a rapidly growing tech company. By constantly iterating and fostering an "Always Day 1" mindset, we achieve meaningful breakthroughs for ourselves, our Company, and our users. When we create and grow together, the possibilities are limitless. Join us.<br>Diversity & Inclusion<br>Byte Dance is committed to creating an inclusive space where employees are valued for their skills, experiences, and unique perspectives. Our platform connects people from across the globe and so does our workplace. At Byte Dance, our mission is to inspire creativity and enrich life. To achieve that goal, we are committed to celebrating our diverse voices and to creating an environment that reflects the many communities we reach. We are passionate about this and hope you are too.
Responsibilities<br>About the team:<br>The Cloud Security team is responsible for the security assurance of Byte Dance enterprise businesses and the underlying cloud platform, covering areas such as security architecture, SDLC, vulnerability management, security incident response, and security compliance. The team aim to ensure the security and stability of the Byte Dance cloud platforms while enabling the success of the cloud business.<br><br>The Chief Information Security Officer (CISO) is responsible for the overall cybersecurity posture of the organization and for ensuring compliance with applicable cybersecurity laws, regulations, and regulatory frameworks, including the National Cybersecurity Authority (NCA) Essential Cybersecurity Controls (ECC) within the Kingdom of Saudi Arabia (KSA).<br><br>The CISO will provide independent executive leadership and oversight across cybersecurity governance, risk management, and security operations. The role requires a pragmatic, business-oriented leader with strong expertise in cybersecurity, cloud security, and modern technology environments, capable of ensuring that cybersecurity risks are identified, managed, and reported in alignment with the organization's risk appetite and regulatory expectations.<br><br>You’ll collaborate closely with senior executives. This role offers the opportunity to shape strategic outcomes, reduce risk exposure, and drive secure innovation across complex, interconnected ecosystems.<br><br>Responsibilities:<br>Cybersecurity Governance & Leadership:<br>- Establish and maintain enterprise-wide cybersecurity governance in line with SAMA CSF and NCA ECC requirements.<br>- Ensure clear ownership, accountability, and segregation of duties across cybersecurity functions.<br>- Advise executive management on cybersecurity risks, threats, and control effectiveness.<br>- Ensure cybersecurity considerations are embedded into corporate governance and enterprise risk management.<br><br>Cybersecurity Risk Management & Compliance:<br>- Own and oversee the cybersecurity risk management framework.<br>- Ensure continuous compliance with applicable regulations and industry good practices.<br>- Ensure timely remediation of audit findings and regulatory observations.<br>- Act as the primary point of accountability for cybersecurity matters with regulators.<br><br>Security Operations & Technology Oversight:<br>- Oversee cybersecurity operations including monitoring, detection, vulnerability management, IAM, and incident response.<br>- Ensure effective prevention, detection, response, and recovery capabilities.<br>- Govern the selection and operation of cybersecurity technologies.<br>- Ensure security by design across infrastructure, applications, cloud, and data platforms.<br><br>Incident Management & Cyber Resilience:<br>- Ensure effective incident response and cyber crisis management.<br>- Lead executive coordination during material cybersecurity incidents.<br>- Ensure alignment with business continuity and disaster recovery.<br>- Oversee post-incident reviews.<br><br>Third-Party & Outsourcing Cybersecurity:<br>- Ensure third-party cybersecurity risks are identified and managed.<br>- Ensure compliance of vendors with regulatory and contractual obligations.<br>- Oversee outsourced and managed security services.<br><br>People, Culture & Capability:<br>- Establish and maintain a compliant cybersecurity operating model.<br>- Develop national cybersecurity talent in alignment with Saudization.<br>- Promote cybersecurity awareness and culture.<br>- Ensure adequate resourcing and training.<br><br>Authority & Decision Rights:<br>- Define cybersecurity policies and standards.<br>- Escalate risks and incidents to executive management.<br>- Approve or reject cybersecurity risk acceptances.<br><br>Qualifications<br>Minimum Qualifications:<br>- Education: A bachelor’s degree in computer science, computer engineering, information technology, or a related field.<br>- Experience: 5+ years of relevant experience in security strategy, cybersecurity governance, risk management, or related domains.<br>- Security Frameworks Knowledge: Familiarity with industry standards such as OWASP, SANS CWE Top 25, ISO 27001, PCI DSS, NIST, and SAMA/NCA frameworks.<br>- Proven executive leadership in cybersecurity governance, risk management, and regulatory compliance.<br>- Strong experience engaging with Boards, regulators, and senior executives on cybersecurity matters.<br>- Ability to translate complex cybersecurity risks into clear business and risk implications<br>- Demonstrated leadership in building high-performing cybersecurity teams and national talent.<br><br>Preferred Qualifications:<br>- Sound decision-making and crisis leadership during material cybersecurity incidents Proven executive leadership in cybersecurity governance, risk management, and regulatory compliance.<br>- End-to-end security design and strategic roadmap of cloud security products and services.<br>- CISSP, CISM, CCSP, GIAC Certifications<br><br>About Us<br>Founded in 2012, Byte Dance's mission is to inspire creativity and enrich life. With a suite of more than a dozen products, including Tik Tok, Lemon8, Cap Cut and Pico as well as platforms specific to the China market, including Toutiao, Douyin, and Xigua, Byte Dance has made it easier and more fun for people to connect with, consume, and create content.<br><br><br>Why Join Byte Dance<br>Inspiring creativity is at the core of Byte Dance's mission. Our innovative products are built to help people authentically express themselves, discover and connect – and our global, diverse teams make that possible. Together, we create value for our communities, inspire creativity and enrich life - a mission we work towards every day.<br>As Byte Dancers, we strive to do great things with great people. We lead with curiosity, humility, and a desire to make impact in a rapidly growing tech company. By constantly iterating and fostering an "Always Day 1" mindset, we achieve meaningful breakthroughs for ourselves, our Company, and our users. When we create and grow together, the possibilities are limitless. Join us.<br>Diversity & Inclusion<br>Byte Dance is committed to creating an inclusive space where employees are valued for their skills, experiences, and unique perspectives. Our platform connects people from across the globe and so does our workplace. At Byte Dance, our mission is to inspire creativity and enrich life. To achieve that goal, we are committed to celebrating our diverse voices and to creating an environment that reflects the many communities we reach. We are passionate about this and hope you are too.
About the job<br>Domain: IT Services & Consulting Position: Senior Network & Security Engineer Experience: 7+ Years Location: Riyadh, Saudi Arabia Your Team You are invited to work with a top-tier organization that's been in the game for 50+ years, partnering with some of the world's biggest businesses. As India's largest multinational business group, this enterprise boast a workforce of highly skilled consultants spread across 60+ countries, at the forefront of the financial markets and data industry, delivering exceptional services in Data & Analytics, Capital Markets, and Post Trade. <br>Your Job Job Purpose Responsible for designing, implementing, administering, and supporting secure network infrastructure for the Masdr Data Enablement Zone, on-premises and cloud environments.<br>Key Responsibilities<br>Network Operations Administer enterprise routing, switching, VLANs, DNS, DHCP, and IP addressing. Manage OCI networking including VCNs, subnets, route tables, DRGs, NSGs, security lists, gateways, and load balancers. Support secure hybrid connectivity.<br>Security Operations Administer Forti Gate and Palo Alto firewalls. Manage VPNs, NAT, routing policies, and security rules. Implement network segmentation and infrastructure hardening. Support vulnerability remediation and compliance.<br>Operations & Governance Monitor network availability and performance. Troubleshoot network/security incidents and perform root cause analysis. Maintain documentation and network diagrams. Support disaster recovery testing and infrastructure audits. Bachelor's degree in Computer Science, IT, Computer Engineering, or related field.<br>Minimum Qualifications<br>Experience5–8+ years in enterprise networking and security. Hands-on Forti Gate, Palo Alto, OCI Networking, hybrid connectivity.<br>Preferred Certifications Fortinet FCSS/NSEPalo Alto PCNSECisco CCNP Enterprise OCI Networking Professional<br>Technical Skills Routing & Switching VLANsTCP/IPDNS/DHCPBGP/OSPFForti Gate Palo Alto VPN/IPSec OCI Networking Load Balancers Hybrid Connectivity Network Security Monitoring Qualifications: MBA/ B. Tech/Any Graduation You can explore new jobs at https://www.linkedin.com/company/cognitud-advisory/jobs/?view AsMember=true You can also apply for more job openings on our website by visiting this link: https://www.cognitud.com/open-jobs
At Indra Group, we protect what matters most. We lead the development of cutting-edge technology solutions that strengthen national and international security, safeguarding critical infrastructure through reliable fire detection and integrated security systems that protect people and operations worldwide.<br>Join our team! As a leading company in the defense and technology sector, we are looking to strengthen our team in Saudi Arabia with a Fire Detection & Security Systems Engineer with solid experience in fire alarm and integrated security systems to manage operation and maintenance activities, ensure system reliability, and support the integration of fire and security systems across critical infrastructure.<br>????What will you do? Perform operation and maintenance of Edwards EST3/EST4 fire alarm systems. Execute preventive and corrective maintenance activities based on defined schedules. Troubleshoot fire alarm loops, devices, and panel/system-level faults. Maintain and support CCTV (IP-based systems), Access Control (Lenel/ATS), and Intrusion Detection Systems. Monitor and investigate alarms from centralized systems. Ensure proper integration between fire and security systems. Support field teams (ML1) and coordinate with OEM/vendors (ML3). Maintain accurate documentation, logs, and technical reports.<br>????What are we looking for? ✅ Bachelor's Degree in Electrical, Electronics, or Mechatronics Engineering.✅ Minimum 5 years of experience in fire and security systems, with hands-on experience in Edwards EST3/EST4 (mandatory).✅ Experience with integrated security systems (CCTV, ACS, IDS) and control room environments.✅ Strong understanding of system integration and alarm management, with knowledge of TCP/IP networks, RS-485, and fiber systems.✅ Comfortable working in 24/7 critical operations environments, with strong troubleshooting and analytical skills.✅ Experience in railway, metro, or large infrastructure projects, and Edwards (EST), NFPA, or Lenel certifications, are a plus.<br>✨What we offer????✨: Stability and Future Long-term projects in a leading Defense company with more than 65,000 professionals, with financial security.???? International, High-Impact Projects: You will work in an international environment, with impact both nationally and globally.???? Close-Knit, Transparent Environment: You will enjoy direct, fluid communication with managers and colleagues, in a collaborative and open environment.⏳Autonomy and Responsibility: You will have the freedom to organize your work within a role of technical responsibility and growth.???? Career Plan Tailored to You: Designed to drive your professional growth and development.???? Competitive Compensation and flexible compensation plans tailored to your needs.<br>Our commitment is to promote work environments where people are treated with respect and dignity, fostering the professional development of our workforce and guaranteeing equal opportunities in selection, training, and promotion, while providing a work environment free from any discrimination based on gender, age, disability, sexual orientation, gender identity or expression, religion, ethnicity, marital status, or any other personal or social circumstance.<br><br>INDRA is a Top Employer 2026 certified company! Join a company recognized as one of the best employers in Spain, thanks to our comprehensive HR management and the conditions we offer our professionals.
Established in 2008, Geidea epitomises customer focused empowerment and commercial success through continuous innovation Geidea makes best in class digital payment solutions available for all by attracting and leveraging the best creative & entrepreneurial talent in the market Our solutions give any business the chance to get ahead and reach for more no matter their size or maturity. Our technology mirrors our people - Smart, Innovative & Forward Thinkingwww.geidea.net<br>To maintain competitive advantage as we grow, we are currently looking for new Sr. Network Security Engineer<br>Job purpose:<br>Ensure the integrity, confidentiality and high availability of Network infrastructure including Network Security across all Geidea regions to provide the maximum performance and to meet the defined SLA.<br>Responsibilities:<br>Ensure the running of Geidea Network security infrastructure in KSA, UAE, India, Egypt smoothly including configuration, monitoring & troubleshooting of (CISCO Routers and switches) and Firewalls (Fortigate, Palo Alto), F5, and any new technology assigned Configure and maintain all PCI rules -For Network and security devices for Geidea PCI Scope Provide and solve L3 level Support & networking complex problems. Ensure coverage of all factors that might affect the network and security areas and that the security equipment is installed at the precise network location. Maintain backup configuration in a timely manner. Prepare and update all documents related to NOC, LAN, WAN & NSP Network infrastructure including HLD, LLD Diagrams. Investigate and resolve issues on Geidea network using troubleshooting methodologies. Ensure accurate recording of all cases using the Company’s ticket management tool and closing within agreed timeframes. Share across the network team and enable best practice by involving them for any new configuration or activity in Geidea office, NSP, GMB Acquiring. Support and take ownership of any new networking projects. Support the team with knowledge share, via knowledge base communications (emails, how-to guides etc.) and contribution at team meetings. Ensure tickets’ SLAs and KPIs are achieved. Ensure escalation procedures, policies and working practices are adhered to. Including following up with Network and Telecom suppliers for any new solution or troubleshooting required. Ensure all records relating to Service Requests, Incidents, Problems and Knowledge Management are completed accurately and within agreed time frame. Adhere to Geidea’ s information security practices and policies. Report events and disturbances jeopardizing security Review and apply the best practices related to PCI-DSS & other Security Framework applied by the Network team.<br>Must have technical/professional qualifications:<br>5-7+ years of experience in a similar role Bachelor’s degree in computer science or IT is a plus CCIE certificate is a plus Vendor specific certifications like F5, Palo alto, Forti Gate are a must Fin-tech background is a plus Extensive knowledge in documentation and designing PCI-DSS background is a plus Knowledge in F5, firewalls and router switches.<br>Our values guide how we think and act - They describe what we care about the most Customer first - It’s embedded in our design thinking and customer service approach Open - Openness allows us to constantly improve and evolve Real - No jargon and no excuses! Bold - Constantly challenging ourselves and our way of thinking Resilient – If we fail, we bounce back stronger than before Collaborative - We know that we can achieve a lot more as a team We are changing lives by constantly striving for a better solution Click apply below and become part of the Geidea story
Cybersecurity GRC Specialist???? Saudi Arabia | ???? Cyber | ???? Full-time Location: Jeddah About Cyber At Cyber, we are committed to strengthening organizational resilience through robust cybersecurity governance, risk management, and regulatory compliance. We operate in alignment with the Kingdom of Saudi Arabia’s regulatory landscape, ensuring adherence to NCA, SAMA, and international best practices. We are seeking a Cybersecurity GRC Specialist to support and enhance our Governance, Risk, Compliance, and Security Awareness programs. This role plays a critical part in protecting our information assets, cloud environments, and data by ensuring effective governance structures, regulatory compliance, and risk mitigation strategies. Key Responsibilities???? Cybersecurity Governance Develop, implement, and maintain cybersecurity governance policies, frameworks, and standards. Monitor organizational adherence to established cybersecurity policies and controls. Provide periodic governance and risk posture reports to the CISO and executive leadership. Maintain cybersecurity documentation aligned with regulatory and industry standards.???? Risk Management Conduct comprehensive cybersecurity risk assessments across business units and cloud environments. Identify, evaluate, and prioritize cybersecurity risks. Maintain and continuously update the organizational risk register. Drive remediation efforts and ensure timely closure of identified risks and audit findings.???? Compliance & Regulatory Alignment Ensure compliance with KSA regulatory frameworks (e.g., NCA ECC, SAMA CSF) and international standards such as ISO 27001. Support internal and external audit activities. Evaluate the effectiveness of implemented technical and administrative security controls. Prepare and submit regulatory compliance reports as required.???? Business Continuity & Incident Support Assist in the development and maintenance of Business Continuity and Disaster Recovery plans. Support Business Impact Analysis (BIA) activities. Participate in testing and validation of continuity and recovery procedures. Contribute to incident response efforts to ensure minimal operational disruption.???? Security Awareness Support and promote cybersecurity awareness initiatives across the organization. Assist in managing awareness tools and programs. Foster a strong cybersecurity culture and ensure employee understanding of risks and responsibilities. Qualifications & Requirements Bachelor’s degree in Cybersecurity, Information Security, Computer Science, or related field.2–4 years of experience in Cybersecurity GRC or related roles. Strong understanding of governance frameworks, risk management methodologies, and compliance practices. Knowledge of KSA regulatory requirements (NCA, SAMA) and ISO 27001 standards. Hands-on experience with GRC tools is preferred. Preferred Certifications ISO 27001 Lead Implementer Comp TIA Security+Other relevant GRC certifications are a plus
We Are Hiring – Cyber Security Director | Saudi Arabia<br>A prominent organization within Saudi Arabia's regulated insurance sector is seeking a Cyber Security Director to lead enterprise-wide cybersecurity strategy, compliance, and resilience. Reporting to executive leadership with visibility to the Board, this is a high-impact leadership role at the core of regulatory alignment and executive decision-making.<br>Key Responsibilities:Design and evolve security systems architecture, aligning with emerging cyber threats and business objectives. Lead post-breach incident investigations, conduct impact analyses, and develop actionable risk mitigation plans. Oversee identity and access management protocols, safeguarding critical assets and data across the organization. Manage external vendor and third-party relationships, including security audits and compliance reviews. Ensure robust compliance with IA, CCHI, and other regulatory bodies through continuously reviewed policies and controls. Champion a dynamic cybersecurity strategy, integrating the latest intelligence, trends, and regulatory updates. Brief the executive team and Board, acting as a key advisor and strategic partner across all departments.<br>What We're Looking For:10–12 years in cybersecurity leadership, preferably in insurance or other highly regulated industries. Demonstrated expertise in cybersecurity architecture, incident response, and regulatory compliance. Strategic thinker with hands-on experience managing vendor ecosystems, IAM protocols, and cyber risk frameworks. Fluent in frameworks and standards such as ISO, NIST, SOX, HIPAA, and PCI-DSS. Technical proficiency across Windows, Linux, UNIX, secure coding, and threat detection technologies. Holds key certifications: CISSP, CISM, CISA, CRISC, CGEIT, or equivalent. Due to Saudization requirements, this role is open only to Saudi Nationals.<br>???? Location: Saudi Arabia<br>This is a high-impact mandate to lead cybersecurity for a major player in the Kingdom's insurance sector.<br>???? Interested or know someone who could be a strong fit? Get in touch today!<br>#Cyber Security #Executive Search #Info Sec #Saudi Jobs #Insurance #Leadership #Hiring #Vision2030
M365 E5 Security Administration & Engineering Identity & Access (Entra ID): Configure and maintain Conditional Access policies, Multi-Factor Authentication (MFA), Privileged Identity Management (PIM), and Identity Protection rules Endpoint Security (Microsoft Defender for Endpoint & Intune): Manage EDR policies, device compliance rules, Attack Surface Reduction (ASR) rules, and automated remediation on Windows/mobile devices Email & Collaboration (Defender for Office 365): Oversee Safe Links, Safe Attachments, anti-phishing, anti-spam policies, and quarantine triage Data Protection & Governance (Purview): Implement and monitor Data Loss Prevention (DLP) policies, Sensitivity Labels, and Information Barrier policies across M365 services Cloud Apps (Defender for Cloud Apps): Monitor shadow IT, manage OAuth app permissions, and enforce session policies. 2. Microsoft Sentinel (SIEM/SOAR) Operations Data Connector Management: Maintain and optimize log ingestion from M365, Entra ID, Defender XDR, firewalls, and cloud infrastructure while keeping ingestion costs efficient Detection & Analytics: Write and update KQL (Kusto Query Language) analytics rules, hunting queries, and custom workbooks/dashboards Automation (SOAR): Build and maintain Logic Apps playbooks to automate incident response workflows and threat containment Incident Response: Perform Tier 2/3 triage, investigation, and root-cause analysis on alerts originating from Defender XDR and Sentinel3. Operational Support & Maintenance (:300 Users) License & Tenant Health: Continuously review Microsoft Secure Score, address recommendations, and audit user license assignments Patch & Vulnerability Management: Monitor Defender Vulnerability Management insights and coordinate with IT support to remediate endpoint software vulnerabilities User Escalations: Handle escalated support tickets regarding access blocks, false positives, quarantine releases, or compromised account recovery Reporting & Documentation: Maintain accurate security operational runbooks, architecture diagrams, and monthly threat/compliance reporting for management<br><br>Requirements<br><br>3+ years of hands-on experience administering Microsoft 365 security features, specifically within an E5 / Defender XDR environment3+ years of experience configuring and operating Microsoft Sentinel Strong proficiency in writing KQL (Kusto Query Language) queries for logs, investigations, and analytics rules Experience with Microsoft Intune (MDM/MAM) for Windows endpoint management Solid understanding of Power Shell for M365 scripting and security automation Hands-on knowledge of networking basics (DNS, Firewalls, VPNs) and cloud identity fundamentals (Entra ID, SAML, SSO)<br><br>Desirable Certifications (At least one preferred)<br><br>Microsoft Certified: Identity and Access Administrator Associate (SC-300) Microsoft Certified: Information Protection and Governance Administrator Associate (SC-400) Microsoft Certified: Security Operations Analyst Associate (SC-200) (Highly Desirable) Microsoft Certified: Cybersecurity Architect Expert (SC-100)
The Embedded Offensive Security Engineer will serve as the primary technical resource responsible for the day-to-day operation, tuning, and ongoing stabilisation of the attack simulation and EASM platforms deployed within the Client environment. The role combines deep offensive security expertise with strong systems administration and hands-on remediation capability.<br>This individual will act as the technical bridge between the vendor platform, the Client internal cyber security team, and cross-functional stakeholders including IT, infrastructure, Dev Ops, and application owners.<br>3. Key Responsibilities3.1 Platform Operations and Alert Management Operate, monitor, and triage all alerts generated by the EASM and automated penetration testing platforms on a daily basis. Schedule and execute approved internal attack simulations, including identity/Active Directory attack-path testing, lateral movement scenarios, and network segmentation validation. Maintain full audit logs of all simulation activity, generated artefacts, and system access in line with Client governance requirements. Conduct retesting and regression validation following remediation, producing formal closure evidence for each finding.<br>3.2 Remediation Leadership and Hands-On Hardening Coordinate with IT, Dev Ops, infrastructure, and application owners to drive timely remediation of identified vulnerabilities and misconfigurations. Work directly with system and service owners to implement patches, configuration changes, and security hardening measures. Troubleshoot and resolve asset discovery, attribution, and coverage gaps impacting platform visibility or assessment accuracy. Support platform configuration, integrations (EDR, SIEM, CMDB, ITSM), and tuning activities until stable operations are achieved.<br>3.3 External Attack Surface Management Manage and continuously refine the EASM platform, including onboarding of approved asset inventories (domains, IP ranges, subsidiary entities, brand identifiers). Monitor and profile externally exposed assets, including open ports, exposed services, expiring certificates, and DNS weaknesses. Identify unknown, orphaned, and shadow IT assets on the external attack surface and drive their inclusion in remediation workflows. Correlate EASM findings with enterprise platforms for integrated remediation tracking.<br>3.4 Threat Modelling and Attack-Path Analysis Conduct manual threat modelling and attack-path analysis for critical and high-risk business systems, supporting informed risk-based decision-making. Map executed attack scenarios to recognised adversary frameworks, including MITRE ATT&CK, with end-to-end attack-chain documentation. Validate defensive control effectiveness across WAF, EDR, SIEM, and identity controls with timestamped evidence outputs.<br>3.5 Executive and Management Reporting Translate technical findings into clear, business-focused risk narratives suitable for senior leadership and executive management at Client. Produce and present regular reports on platform status, risk posture, open findings, and remediation progress to the Head of Cyber Security. Contribute to audit readiness documentation, evidence packs, and internal governance reporting.3.6 Knowledge Transfer and Runbook Development Develop and maintain fully documented operational runbooks for all platform capabilities. Deliver structured knowledge transfer sessions to Client's internal Cyber Security team. Support the formal handover process to enable the Client team to achieve independent, steady-state operations.<br>4. Required Qualifications and Experience4.1 Essential Minimum 4-6 years of hands-on offensive security experience, including penetration testing, red team operations, or attack simulation roles. Demonstrable experience deploying, operating, and troubleshooting enterprise-grade attack simulation or automated penetration testing platforms (e.g., Cymulate, Pentera, Horizon3.ai, Attack IQ, or equivalent). Strong background in systems administration: Windows Server, Active Directory, Linux, and enterprise networking. Hands-on experience with identity and AD attack-path techniques: credential access, privilege escalation, lateral movement, Kerberoasting, Pass-the-Hash, and equivalent. Practical knowledge of network segmentation testing, EDR evasion validation, and SIEM detection logic. Experience with External Attack Surface Management platforms and asset discovery methodologies. Ability to produce clear, executive-level risk reporting from complex technical findings. Current CREST certification (CRT, CCT, or equivalent) OR OSCP, GPEN, GXPN, or equivalent offensive security qualification. Willingness and ability to work on-site in Riyadh, KSA, five days per week.<br>4.2 Highly Desirable Prior experience in a vendor-embedded or client-site secondment model. Familiarity with GCC or KSA enterprise environments, regulatory expectations (NCA ECC, SAMA CSF), and data sovereignty requirements. Experience with large-scale enterprise environments in sectors such as FMCG, food production, logistics, or critical national infrastructure. Knowledge of MITRE ATT&CK, TIBER-EU, or CBEST red team frameworks. Arabic language skills (professional working proficiency or above). Experience with integration of security platforms into CMDB, SIEM (e.g., Splunk, Microsoft Sentinel), EDR (e.g., Crowd Strike, Microsoft Defender), and ITSM (e.g., Service Now).
We are looking for an experienced Senior Network Engineer to lead the design, operation, security, and lifecycle management of enterprise network infrastructure. The ideal candidate will have strong expertise in routing, switching, wireless networking, DNS/DHCP/IPAM services, and network governance, with the ability to support and enable Service Desk operations.<br>Key Responsibilities<br>Network Architecture & Operations:Design, implement, and maintain enterprise network infrastructure, including switching, routing, wireless, and connectivity services. Ensure high availability, performance, resilience, and security across network environments. Perform capacity planning, performance tuning, and lifecycle management of network infrastructure. Lead network troubleshooting activities for complex incidents and recurring issues.<br>Juniper Mist Wireless Operations & Assurance Administer and manage Juniper Mist wireless environments. Configure sites, templates, policies, and automation workflows. Monitor user experience, network health, and service levels through Mist Assurance. Manage integrations, APIs, reporting, and proactive alerting. Ensure wireless infrastructure follows security and operational best practices.<br>Switching, Routing & Wireless Infrastructure Design and maintain LAN, WAN, WLAN, and campus network architectures. Configure and support enterprise switching and routing platforms. Manage firmware upgrades, patching, and vulnerability remediation. Develop redundancy and failover strategies to ensure business continuity. Optimize network performance and ensure adherence to operational standards.<br>Infoblox DDI Administration Manage DNS, DHCP, and IP Address Management (IPAM) services within Infoblox. Monitor grid health and ensure service availability. Maintain IP address allocation standards and governance. Support change management and infrastructure expansion activities. Troubleshoot and resolve DDI-related incidents and performance issues.<br>Internet Connectivity Management Manage internet circuits, WAN links, and carrier services. Coordinate with telecom providers to resolve connectivity issues. Monitor utilization, bandwidth, capacity, and service performance. Ensure redundancy and resiliency of internet connectivity services. Participate in network expansion and optimization projects.<br>Cloudflare DNS Administration Manage authoritative DNS architecture and DNS security controls. Administer zones, records, policies, and DNS governance. Monitor DNS performance and availability. Resolve DNS-related incidents and service disruptions. Ensure DNS configurations align with security and operational requirements.<br>SMS Gateway Administration Administer SMS gateway platforms and associated integrations. Monitor capacity, availability, and performance. Coordinate with vendors for issue resolution and platform enhancements. Support application teams with troubleshooting and implementation activities.<br>Engineering Governance & Documentation Create and maintain High-Level Design (HLD) and Low-Level Design (LLD) documentation. Maintain network diagrams, topology documentation, and configuration standards. Establish and enforce IP addressing, VLAN, routing, and security standards. Manage configuration backups and disaster recovery procedures. Track technical debt and recommend improvements to infrastructure and processes.<br>Vendor & Lifecycle Management Manage relationships with OEMs, network vendors, telecom providers, and service partners. Oversee support contracts, warranties, renewals, licensing, and subscription management. Participate in procurement, solution evaluations, and technical assessments. Maintain lifecycle plans for network hardware and software platforms.<br>Service Desk Enablement Develop L1 troubleshooting procedures, runbooks, and knowledge base articles. Define escalation criteria and evidence collection requirements. Conduct training and knowledge transfer sessions for support teams. Support continuous improvement initiatives to increase first-call resolution rates.<br>Additional Platforms (Preferred) Administer Cisco Audio/Video (AV) infrastructure for conference and collaboration environments. Support CCTV platforms, including network integration, availability, and lifecycle management. Ensure compliance with security, privacy, and operational requirements for specialized systems.