Job Objective:
To ensure the functionality of the Cybersecurity Operations Center, which includes monitoring, log management, threat management, and incident management.
Responsibilities:
- Develop, update, and implement methodologies for monitoring cybersecurity incidents.
- Ensure the collection and 24/7 monitoring of all logs and events of information and technology assets.
- Enhance the mechanism for analyzing cybersecurity logs and events and develop use cases for detecting and managing cyberattacks.
- Proactively collect and analyze cybersecurity-related information from national or international sources.
- Utilize preventive measures and information gathered from various sources to identify and analyze potential network events.
- Develop and implement cybersecurity policies related to monitoring and analysis.
- Report information crimes and cyber incidents to upper management.
- Monitor the implementation of incident response tasks to support incident response teams.
- Change Management: Support in assessing the impact of changes affecting employees, processes, and systems.
- Support in developing awareness initiatives and communication channels necessary to support the effective implementation of change.
- Policies and Procedures: Contribute to the management, development, and implementation of policies and procedures.
- Review the effectiveness and efficiency of key processes and ensure that their requirements are met to achieve the desired objectives.
- Reporting: Prepare and review reports to ensure they meet the policies, standards, and requirements of the Digital Government Authority to achieve the desired efficiency and performance excellence.
- Related Tasks: Perform other related duties and tasks as directed.
Qualifications:
- Bachelor's degree in information security, Cybersecurity, Computer Science, Computer Engineering, Information Technology, Information Systems, or equivalent.
- Minimum 4 years of experience in the relevant field.