Security Officer Jobs - Riyadh Saudi
8943 Jobs Found
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>Cybersecurity Operations Expert responsible for supporting the first line of defense through the day-to-day execution, monitoring, and improvement of operational security controls across enterprise IT environments. The role focuses on protecting systems, networks, endpoints, applications, and users by detecting threats, responding to security events, coordinating remediation activities, and maintaining effective cybersecurity operations. Key responsibilities include continuous monitoring of security alerts and events, email security, and other operational security platforms, and ensuring timely containment and recovery actions. The role also supports vulnerability management by tracking findings, coordinating remediation with infrastructure and application teams, and validating closure of identified risks. The Cybersecurity Operations Expert works closely with IT operations, network, cloud, server, endpoint, and application teams to ensure security controls are implemented and functioning effectively as part of daily business and technology operations. Responsibilities also include supporting identity and access security operations, reviewing privileged access activities, enforcing security baselines, maintaining playbooks and operational procedures, and contributing to security awareness from an operational perspective. This position is part of the first line of defense and is therefore focused on operating and executing controls rather than performing independent oversight, policy governance, regulatory compliance assurance, or internal audit activities associated with the second or third lines of defense.</p><p>Responsibilities:</p><ul><li>Monitor and analyze cybersecurity alerts, events, and incidents.</li><li>Perform initial triage, investigation, containment support, and escalation of security incidents.</li><li>Support endpoint, network, cloud, and email security operations.</li><li>Coordinate vulnerability remediation with relevant technical teams.</li><li>Execute and maintain operational security controls and monitoring use cases.</li><li>Monitor and support security-related patching, platform upgrades, and operational technology refresh activities to ensure minimal security exposure and service disruption.</li><li>Support security activities during system, tool, and infrastructure migrations, including validation of controls, configuration reviews, and post-migration security checks.</li><li>Review and validate security integrations between cybersecurity tools, IT systems, cloud platforms, and third-party solutions to ensure proper logging, alerting, connectivity, and control effectiveness.</li><li>Support access control reviews, privileged access monitoring, and identity-related security operations.</li><li>Maintain incident response procedures, runbooks, and operational documentation.</li><li>Track remediation actions and follow up on risk reduction activities.</li><li>Contribute to continuous improvement of cybersecurity activities and processes.</li><li>Support business resilience by reducing operational cyber risk exposure.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li>Bachelor s degree in Cybersecurity, Information Security, Computer Science, Information Technology, Engineering, or a related field.</li><li>5+ years of experience in cybersecurity operations, security monitoring, incident response, vulnerability management, or security engineering functions.</li><li>Hands-on experience with enterprise security technologies, including SIEM, EDR/XDR, email security, identity and access management, network security, cloud security, and vulnerability management platforms.</li><li>Strong understanding of cybersecurity frameworks, attack techniques, threat detection methodologies, and security operations best practices.</li><li>Experience working in hybrid environments spanning on-premises infrastructure, cloud platforms, and third-party services.</li><li>Preferred Certifications Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM)</li></ul><p></p></section>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>We are looking for an experienced Cybersecurity Specialist to join our team in Riyadh.<br> The ideal candidate will have a strong background in cybersecurity, with experience in threat intelligence and hands-on exposure to Anomali.<br> This role requires an analytical professional who can contribute to strengthening the organization's cybersecurity posture and support security operations.<br> Key Responsibilities Monitor and assess cybersecurity threats and emerging risks.<br> Support threat intelligence activities and provide actionable insights.<br> Collaborate with internal teams to improve the organization's security posture.<br> Analyze security incidents and contribute to investigations.<br> Prepare reports, documentation, and recommendations for stakeholders.<br> Ensure compliance with organizational security policies and industry best practices.<br> Participate in security awareness and continuous improvement initiatives.<br> Work closely with cross-functional teams to support cybersecurity objectives.<br> Minimum 4 years of experience in cybersecurity.<br> Experience in Cybersecurity Threat Intelligence .<br> Hands-on experience with Anomali .<br> GCTI and/or GREM certification is required.<br> Strong analytical and problem-solving skills.<br> Excellent communication and stakeholder management abilities.<br> Ability to work effectively in a collaborative team environment.<br></span> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Nationality">
<b>Nationality</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Nationality">
Saudi Arabia </div>
</div>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
<p>We are looking for a Senior Specialist Cybersecurity Production Support to join our team in Saudi Arabia. Job Overview: The Senior Specialist will be responsible for supporting and maintaining cybersecurity platforms, ensuring high availability, operational stability, and effective security monitoring across enterprise environments. Key Responsibilities: Provide production support for cybersecurity platforms including SIEM, SOAR, VPN, and security monitoring solutions. Monitor cybersecurity platforms, dashboards, alerts, and operational activities. Support Splunk SIEM use cases, log ingestion, correlation rules, and performance optimization. Manage and maintain SOAR workflows, playbooks, and automation processes. Support VPN infrastructure including secure remote access and site-to-site connectivity. Perform Incident, Problem, and Change Management activities following ITIL practices. Conduct Root Cause Analysis (RCA) for security incidents and platform issues. Support Cyber Incident Response activities including investigation and remediation. Participate in Disaster Recovery (DR) and Business Continuity Planning (BCP). Maintain security documentation, runbooks, SOPs, and operational reports. Collaborate with security teams, infrastructure teams, and vendors for issue resolution.</p><p><strong>Desired Candidate Profile</strong></p><p>Bachelor s degree in Cybersecurity, Information Security, Computer Science, or related field. 4 8 years of experience in cybersecurity production support within enterprise or financial environments. Hands-on experience with: SIEM platforms (Splunk Enterprise / Splunk ES preferred) SOAR platforms (Cortex XSOAR, Splunk SOAR, or similar) VPN technologies (IPSec / SSL VPN) Security monitoring and incident response Strong understanding of cybersecurity operations, threat detection, and log analysis. Experience with ITIL Incident, Problem, and Change Management. Knowledge of SAMA Cybersecurity Framework, NCA ECC, PDPL, and NDMO is preferred. Basic scripting knowledge (Python, PowerShell, or similar) is preferred.</p>
<p><p><p style=\"color: #4d5056; background-color: #ffffff;\"><b>Job Purpose:</b></p>
</p><p><p style=\"color: #4d5056; background-color: #ffffff;\">Monitoring the arrival and leaving of people and vehicles and tracking their entry and exit Monitoring alarms and surveillance cameras Providing first aid if necessary Requesting assistance from the relevant authorities immediately upon hearing the sound of sirens</p>
</p><p><p style=\"color: #4d5056; background-color: #ffffff;\"><b>Key Accountabilities:</b></p>
</p><p><p style=\"color: #4d5056; background-color: #ffffff;\">• Ability to deal with theft cases as per policy, procedure and regulations<br>• Able to explain emergency procedures to Security on detail.<br>• Ensure adherence in handling of security seals before driver dispatching to stores/.<br>• Ensure adherence in handling of security seals after drivers arrival from delivery<br>• Ensure handling and weighing of scrap materials for sale from stores<br>• Knowledge in investigation for theft cases<br>• Knowledge of contact numbers of police and fire department in case of emergency.<br>• Inputs accidents in GOSI platforms and details thereof.</p>
</p><p><p class=\"MsoNormal\" style=\"margin-bottom: 0in;\"> </p></p></p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<br><b>Company:</b>Qualcomm Middle East Information Technology Company LLC<br><b>Job Area:</b>Information Technology Group, Information Technology Group > Cyber Security Engineering<br><p><u><b>General Summary:</b></u></p><br><br><p><u><b>About the role</b></u></p><br><br><br><p><b>We are a collaborative team</b><br>We are always learning, sharing, and researching. You will work with engineers and business stakeholders across the company to secure complex infrastructure and applications. You will need communication, analytical, and interpersonal skills, and the ability to learn and grow in a rapidly evolving environment. We welcome candidates who are passionate about cybersecurity and eager to learn and grow as engineers on our team. At Qualcomm, we are committed to fostering a culture of innovation. We value collaboration, creativity, and the power of diverging viewpoints. A significant part of our success as a company comes from our ability to collaborate effectively, analyze complex problems, identify potential solutions, and ultimately converge on a winning strategy. This collective buy-in fosters incredible teamwork and drives our achievements.</p><br><br><br><p>Join us and be part of a team dedicated to pushing the boundaries of technology and making a positive impact on the world.</p><br><br><br><br><p><b>We are looking for motivated people</b><br>We are looking for those who have experience in the areas listed, but even more importantly a strong desire to learn and grow as a Cybersecurity Sr. Staff and team player. At this level, we are committed to help provide training opportunities to acclimate new employees to how Qualcomm’s cybersecurity team operates.</p><br><br><br><p><b><u>You must have 10+ years of Cyber Security experience</u></b></p><br><br><br><p><b>Preferred Qualifications</b></p><br><br><p>Qualcomm values people from all walks of life and backgrounds. We understand not everyone will meet all the qualifications below on day one. That's okay! If you’re passionate about technology and want to grow your skills, if you cover even some of these preferences - we encourage you to apply.</p><br><br><ul><li>10+ years of cybersecurity-relevant work experience with a Bachelor's degree in Engineering, Information Systems, Computer Science, or related field.</li><li>Familiarity with Programming Language such as C, C++, Java, Python, etc.</li><li>1+ year in a technical leadership role with or without direct reports. </li><li>1+ year of work experience in a role requiring interaction with senior leadership (e.g., Director level and above).</li><li>Cybersecurity-relevant certifications.</li><li>Fluency in Arabic</li></ul><br><p><b><u>Principal Duties and Responsibilities:</u></b></p><br><br><ul><li>Serve as the technical security lead for large datacenter and sovereign AI deployments, applying deep expertise in areas such as cryptography, key management, and secure architecture to drive programs to completion.</li><li>Design and operationalize Infrastructure Identity & PKI, producing detailed runbooks for operations to maintain end-to-end mTLS, manage certificate lifecycles, and secure private keys and secrets using a KMS as required.</li><li>Own perimeter security architecture and hands-on firewall operations, configuring and managing next-generation firewalls (e.g., Palo Alto, Fortinet) to enforce customer-driven ingress/egress policies and secure cluster boundaries.</li><li>Lead Data Sovereignty & Compliance assurance, auditing system architecture against applicable regulatory, cybersecurity, and data protection frameworks (e.g., KSA NCA ECC, Cloud Cybersecurity Controls (CCC), and PDPL) to ensure sovereign AI data remains resident, controlled, and protected within datacenter boundaries.</li><li>Architect storage security controls in collaboration with operations, implementing encryption at rest and strict NFS/S3 access controls on VAST/DDN platforms to safeguard training data, model weights, and sensitive assets.</li><li>Define Kubernetes & container security posture with software teams, establishing cluster security policies and enforcing pod security standards to isolate inference workloads.</li><li>Drive vulnerability management across the inference software stack, partnering with engineering teams to implement scanning, prioritization, and remediation of critical CVEs, and tracking fixes through closure.</li><li>Lead Security Incident Response activities, acting as the primary escalation point for the Managed Security Service Provider (MSP), coordinating investigation, containment, remediation, and post-incident root cause analysis for security events.</li><li>Lead security architecture reviews and root cause analyses, producing actionable findings and updates for senior leadership (e.g., Sr. Director+), and reviewing technical documentation and security architecture diagrams before publication to ensure accuracy and completeness.</li><li>Design and enforce identity and access management controls across infrastructure and platforms, including user, service account, and workload identities. Implement least-privilege access, role-based access control, and privileged access management to isolate tenants and protect sensitive systems.</li><li>Perform threat modeling and abuse case analysis for infrastructure, platform, and AI systems to identify attack paths, validate security assumptions, and inform architecture decisions and risk mitigations early in the design process</li><li>Proactively identify and prioritize complex security risks across systems and dependencies, working cross-functionally to execute mitigations, resolve escalations impacting customers/stakeholders, and continuously strengthen defenses against emerging attack trends.</li><li>Provide KSA on-site security leadership, interface directly with Humain’s security teams, participate in joint compliance audits, support incident response, and ensure deployments meet regional sovereign AI security mandates.</li></ul><br><br><br><p><b><u>What's on Offer</u></b></p><br><br><p>Apart from working with great people, we offer the below:</p><br><br><ul><li><p>Salary including housing & transport allowance</p><br><br></li><li><p>Stock (RSU's) and performance related bonus</p><br><br></li><li><p>16 weeks fully paid Maternity Leave</p><br><br></li><li><p>6 weeks fully paid Paternity Leave</p><br><br></li><li><p>Employee stock purchase scheme</p><br><br></li><li><p>Child Education Allowance</p><br><br></li><li><p>Relocation and immigration support (if needed)</p><br><br></li><li><p>Life and Medical Insurance</p><br><br></li><li><p>Live+ Well Reimbursement for health and recreational membership fees</p><br><br></li></ul><br><p><u><b>Minimum Qualifications:</b></u></p><br><br>• Bachelor's degree in Engineering, Information Systems, Computer Science, or related field and 5+ years of cybersecurity-relevant work experience.<br> OR <br>High school diploma or equivalent and 6+ years of cybersecurity-relevant work experience.<br><br><br><br><br><p><span>*References to a particular number of years experience are for indicative purposes only. Applications from candidates with equivalent experience will be considered, provided that the candidate can demonstrate an ability to fulfill the principal duties of the role and possesses the required competencies.</span></p><br><br><br><p><span>Qualcomm is an equal opportunity employer. If you are an individual with a disability and need an accommodation during the application/hiring process, rest assured that Qualcomm is committed to providing an accessible process. You may e-mail </span><span>disability-accomodations@qualcomm.com</span><span> or call Qualcomm's toll-free number found </span>here<span>. Upon request, Qualcomm will provide reasonable accommodations to support individuals with disabilities to be able participate in the hiring process. Qualcomm is also committed to making our workplace accessible for individuals with disabilities. (Keep in mind that this email address is used to provide reasonable accommodations for individuals with disabilities. We will not respond here to requests for updates on applications or resume inquiries).</span></p><br><br><br><br><br><p><span>Qualcomm expects its employees to abide by all applicable policies and procedures, including but not limited to security and other requirements regarding protection of Company confidential information and other confidential and/or proprietary information, to the extent those requirements are permissible under applicable law.</span></p><br><br><br><p><b>To all Staffing and Recruiting Agencies</b>:Our Careers Site is only for individuals seeking a job at Qualcomm. Staffing and recruiting agencies and individuals being represented by an agency are not authorized to use this site or to submit profiles, applications or resumes, and any such submissions will be considered unsolicited. Qualcomm does not accept unsolicited resumes or applications from agencies. Please do not forward resumes to our jobs alias, Qualcomm employees or any other company location. Qualcomm is not responsible for any fees related to unsolicited <span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span><span>resumes/applications.</span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></span></p><br><br><br><p><span>If you would like more information about this role, please contact </span>Qualcomm Careers<span>.</span></p><br><br><br> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>The Cybersecurity GRC Consultant supports the design, implementation, and continuous improvement of cybersecurity governance, risk, and compliance initiatives. The role contributes to the development of governance frameworks, policies, operating models, and regulatory compliance activities while ensuring alignment with organizational objectives and Saudi cybersecurity regulations. The consultant works closely with senior consultants, architects, and client stakeholders to deliver high-quality governance artifacts and advisory services.</p><p><strong>Key Responsibilities</strong></p><ul><li>Support the development, implementation, and maintenance of the cybersecurity governance framework, including policies, standards, procedures, and guidelines.</li><li>Assist in designing and improving cybersecurity governance operating models, organizational structures, and RACI matrices.</li><li>Contribute to the development and maintenance of governance-related KPIs, KRIs, dashboards, and reporting mechanisms.</li><li>Perform governance maturity assessments, gap analyses, and benchmarking activities against industry best practices.</li><li>Prepare governance documentation, reports, presentations, and recommendations for client review.</li><li>Ensure governance deliverables align with Saudi regulatory requirements, including NCA ECC, CST (formerly CITC), SAMA Cybersecurity Framework, and relevant international standards such as ISO/IEC 27001 and NIST Cybersecurity Framework.</li><li>Support governance committees, working groups, and client workshops by preparing documentation, facilitating discussions, and tracking action items.</li><li>Collaborate with Risk Management, Compliance, Third-Party Risk Management (TPRM), Enterprise Architecture, and Security Operations teams to ensure governance activities are integrated across cybersecurity domains.</li><li>Assist in the review and quality assurance of governance documentation and project deliverables.</li><li>Monitor regulatory updates and industry trends to recommend improvements to governance practices.</li><li>Provide advisory support to clients on cybersecurity governance best practices and regulatory compliance requirements.</li><li>Contribute to knowledge sharing, documentation, and continuous improvement initiatives within the Cybersecurity GRC practice.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p><strong>Qualifications</strong></p><ul><li>Bachelor's degree in Cybersecurity, Information Security, Information Technology, Computer Science, or a related discipline.</li><li>3 - 7 years of experience in Cybersecurity Governance, Risk & Compliance (GRC), Information Security, or Cybersecurity Consulting.</li><li>Experience in developing governance documentation, policies, standards, and cybersecurity frameworks.</li><li>Familiarity with cybersecurity governance operating models and organizational structures.</li><li>Experience supporting governance assessments, compliance initiatives, and regulatory audits.</li><li>Knowledge of Saudi cybersecurity regulations and international security standards.</li><li>Experience working within consulting, managed services, or large enterprise environments is preferred.</li></ul><p></p></section>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p>Cybersecurity Operations Expert responsible for supporting the first line of defense through the day-to-day execution, monitoring, and improvement of operational security controls across enterprise IT environments. The role focuses on protecting systems, networks, endpoints, applications, and users by detecting threats, responding to security events, coordinating remediation activities, and maintaining effective cybersecurity operations.</p><br><p>Key responsibilities include continuous monitoring of security alerts and events, email security, and other operational security platforms, and ensuring timely containment and recovery actions. The role also supports vulnerability management by tracking findings, coordinating remediation with infrastructure and application teams, and validating closure of identified risks.</p><br><p>The Cybersecurity Operations Expert works closely with IT operations, network, cloud, server, endpoint, and application teams to ensure security controls are implemented and functioning effectively as part of daily business and technology operations. </p><br><p>Responsibilities also include supporting identity and access security operations, reviewing privileged access activities, enforcing security baselines, maintaining playbooks and operational procedures, and contributing to security awareness from an operational perspective.</p><br><p>This position is part of the first line of defense and is therefore focused on operating and executing controls rather than performing independent oversight, policy governance, regulatory compliance assurance, or internal audit activities associated with the second or third lines of defense.</p><br><p><u><strong>Rsponsibilities:</strong></u></p><br><ul><li>Monitor and analyze cybersecurity alerts, events, and incidents.</li><li>Perform initial triage, investigation, containment support, and escalation of security incidents.</li><li>Support endpoint, network, cloud, and email security operations.</li><li>Coordinate vulnerability remediation with relevant technical teams.</li><li>Execute and maintain operational security controls and monitoring use cases.</li><li>Monitor and support security-related patching, platform upgrades, and operational technology refresh activities to ensure minimal security exposure and service disruption.</li><li>Support security activities during system, tool, and infrastructure migrations, including validation of controls, configuration reviews, and post-migration security checks.</li><li>Review and validate security integrations between cybersecurity tools, IT systems, cloud platforms, and third-party solutions to ensure proper logging, alerting, connectivity, and control effectiveness.</li><li>Support access control reviews, privileged access monitoring, and identity-related security operations.</li><li>Maintain incident response procedures, runbooks, and operational documentation.</li><li>Track remediation actions and follow up on risk reduction activities.</li><li>Contribute to continuous improvement of cybersecurity activities and processes.</li><li>Support business resilience by reducing operational cyber risk exposure.</li></ul> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
<p>DeepSource Technologies is seeking a talented Security Engineer focused on securing our cloud environments. This position is exclusively available for Saudi nationals, and the successful candidate will play a crucial role in implementing and maintaining robust security measures within our cloud infrastructure while ensuring compliance with local and international regulations.</p><p>Key Responsibilities:</p><ul><li><strong>Security Architecture Design:</strong> Design and implement security architectures and frameworks for cloud solutions, particularly in AWS and Azure environments.</li><li><strong>Identity and Access Management:</strong> Configure and manage IAM roles, policies, and permissions to enforce strong access controls and governance.</li><li><strong>Threat Detection and Incident Response:</strong> Monitor cloud environments for security events, and respond to incidents, perform vulnerability assessments, and remediate issues promptly.</li><li><strong>Compliance and Risk Management:</strong> Ensure compliance with cybersecurity policies, regulations, and standards relevant to cloud security (e.g., ISO 27001, NIST).</li><li><strong>Automation and Tooling:</strong> Develop automation scripts to enhance security operations and implement infrastructure as code (IaC) principles using tools like Terraform and CloudFormation.</li><li><strong>Collaboration:</strong> Work closely with development, operations, and compliance teams to integrate security practices into the software development lifecycle (SDLC).</li></ul><p><strong>Desired Candidate Profile</strong></p><ul><li><strong>Experience:</strong> 3+ years of experience in cloud security roles, with a strong focus on AWS and Azure cloud platforms.</li><li><strong>Certifications:</strong> Certified Cloud Security Professional (CCSP), AWS Certified Security Specialty, or equivalent certifications are preferred.</li><li><strong>Technical Skills:</strong> Proficient in security best practices for cloud architectures and services, with knowledge of security tools (e.g., SIEM, IDS/IPS, firewalls). Experience with vulnerability scanning and remediation techniques for cloud infrastructure. Familiarity with container security and orchestration technologies (e.g., Docker, Kubernetes).</li><li><strong>Key Competencies:</strong> Strong analytical and problem-solving skills, with the ability to prioritize and manage multiple tasks efficiently. Excellent communication and teamwork skills.</li></ul>
<h3 >About the Role</h3>
<p >National Security Services is seeking a <strong >Head, Cybersecurity</strong> to lead the development of SAFE’s cybersecurity program. This full-time role involves advising and directing Corporate IT and Technology Solutions on the implementation and operation of cybersecurity measures and safeguards.</p>
<h3 >Key Responsibilities</h3>
<ul >
<li >Lead the development of SAFE’s cybersecurity program, including policies, procedures, protocols, regulations, and standards.</li>
<li >Provide guidance and direction to Corporate IT and Technology Solutions regarding the setup and operation of cybersecurity safeguards and measures.</li>
<li >Interact with related disciplines through committees to ensure the consistent application of policies and standards across all technology projects, systems, and services.</li>
<li >Partner with business stakeholders across the company to raise awareness of cybersecurity risk management concerns.</li>
</ul>
<h3 >Leadership and Team Development</h3>
<ul >
<li >Foster a culture of cooperation, learning and development, and leadership within the team.</li>
<li >Deliver ongoing feedback and address performance issues effectively.</li>
<li >Attract, recruit, and retain a high-performance management team.</li>
<li >Provide mentoring as a cornerstone to the management career development program.</li>
</ul>
<h3 >Work Type</h3>
<p >This is a full-time position within National Security Services.</p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p>Transform your passion for security into impactful solutions! As a<b>Security Delivery Lead</b>, you will serve as a subject matter expert, collaborating with cross-functional teams to make critical decisions and manage the delivery of security governance. This role offers an exciting opportunity to shape security strategies, implement innovative solutions, and ensure alignment with enterprise policies. Join us in safeguarding our organization and driving security excellence!</p><br><br><ul><li><p>Lead end-to-end delivery of security and infrastructure projects across <b>network, IAM, and endpoint </b>domains</p><br><br></li><li><p>Manage cross-functional teams, vendors, and stakeholders to ensure timely and quality delivery</p><br><br></li><li>Provide technical oversight on network security (firewalls, load balancers, VPNs), IAM solutions, and endpoint protection platforms</li><li>Ensure alignment with security standards, governance frameworks, and best practices</li><li>Drive implementation, integration, and optimization of security solutions</li><li>Track project progress, risks, and dependencies, ensuring effective mitigation and reporting</li></ul><br> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Nationality">
<b>Nationality</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Nationality">
Saudi Arabia </div>
</div>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Managed.sa is seeking an experienced OT Cybersecurity Engineer to support the security of operational technology and industrial control system environments.<br> The successful candidate will assess OT security risks, design and implement security controls, support compliance activities, and work closely with technical and operational stakeholders to strengthen industrial cybersecurity resilience.<br> Key Responsibilities Conduct cybersecurity assessments for OT, ICS, and SCADA environments.<br> Identify vulnerabilities, risks, and security gaps within industrial networks.<br> Review OT network architecture, segmentation, remote access, and security controls.<br> Develop OT cybersecurity policies, procedures, standards, and remediation plans.<br> Support the implementation of OT security controls and monitoring solutions.<br> Conduct risk assessments and maintain OT cybersecurity risk registers.<br> Support incident response and investigation activities involving OT environments.<br> Coordinate with engineering, operations, IT, vendors, and client stakeholders.<br> Prepare technical reports, assessment findings, and management presentations.<br> Support compliance with applicable cybersecurity and industrial security standards.<br> Contribute to OT cybersecurity projects from assessment through implementation.<br> Bachelor’s degree in Cybersecurity, Information Technology, Engineering, or a related field.<br> 3–5 years of relevant experience in OT, ICS, SCADA, or industrial cybersecurity.<br> Strong understanding of industrial networks, systems, and communication protocols.<br> Experience assessing or securing OT and ICS environments.<br> Knowledge of network segmentation, firewalls, access control, and security monitoring.<br> Experience conducting risk assessments and developing remediation recommendations.<br> Strong technical documentation and stakeholder-management skills.<br> Good written and spoken English.<br> Ability to work on-site in Riyadh.<br> Preferred Qualifications Knowledge of IEC 62443, NIST SP 800-82, NCA OTCC, or similar standards.<br> Experience within utilities, energy, manufacturing, oil and gas, or critical infrastructure.<br> Experience with OT security tools, industrial firewalls, SIEM, or network monitoring solutions.<br> Relevant certifications such as GICSP, GRID, ISA/IEC 62443, CISSP, or similar.<br></span> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Job Purpose The Cybersecurity Engineer is responsible for designing, implementing, operating, and continuously improving technical security controls to protect the organization’s information assets, systems, and networks.<br> The role requires strong analytical thinking, deep technical expertise in cybersecurity technologies, and the ability to effectively respond to security incidents while operating in a regulated environment.<br> Responsibilities Planning, implementing, managing, monitoring, and upgrading security measures for the protection of the organization's data, systems, and networks.<br> Troubleshooting security and network problems.<br> Manage and configure Data Loss Prevention (DLP) solutions, including creation, tuning, and maintenance of DLP use cases and policies.<br> Implement and enforce data classification frameworks and data protection controls across the organization.<br> Manage and configure Mobile Device Management (MDM) solutions to secure corporate and BYOD devices.<br> Manage and administer Identity and Access Management (IAM) controls, including access provisioning, role management, and periodic access reviews.<br> Operate, configure, and monitor core security technologies (Firewalls, VPNs, IDS/IPS, Web Proxy and Endpoint protection) and respond to security incidents.<br> Ensure security controls are implemented and managed in alignment with NCA Cybersecurity Essential Controls (ECC) and support compliance assessments.<br> Responding to all system and/or network security breaches.<br> Ensuring that the organization's data and infrastructure are protected by enabling the appropriate security controls.<br> Testing and identifying network and system vulnerabilities.<br> Daily administrative tasks, reporting, and communication with the relevant departments in the organization.<br> Education requirements: Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Systems Engineering or a related field.<br> Certification Requirements: Certified Information Systems Security Professional (CISSP) Experience: Minimum 4 years of work experience with incident detection and, incident response Security solutions.<br> Languages: Arabic (Fluent), English (Advance).<br> Technical Skills: Strong experience with Firewalls (configuration, operation, and maintenance).<br> Experience with Office 365 Security, VSX, Endpoint Security solutions.<br> Solid understanding of networking concepts and infrastructure security.<br> Proficiency in one or more scripting/programming languages such as Python, PowerShell, C++, Java, or Ruby.<br></span> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<p>We are looking for a Senior Network Security Engineer with a strong specialization in Secure Web Gateway (SWG) and proxy technologies, particularly Blue Coat ProxySG (now part of Broadcom/Symantec). This role sits within our broader network security function and is responsible for administering, securing, and optimizing web/internet access infrastructure across the organization.</p><br><p>Candidates should bring at least 2–3 years of hands-on Blue Coat ProxySG / SGOS administration experience as part of a broader network security career (typically 5+ years overall). Experience in banking and financial services is a strong plus, but not mandatory.<br><strong>Key Responsibilities</strong></p><br><p>Proxy & Secure Web Gateway Administration</p><br><ul><li>Administer, configure, and support Blue Coat ProxySG (SGOS) and related secure web gateway/web security solutions.</li><li>Design, implement, and maintain web filtering categories, acceptable use policies, and secure internet access controls.</li><li>Configure and manage SSL/TLS interception (SSL Visibility), authentication integration (AD/LDAP, Kerberos, SAML), and ICAP integration with DLP, antivirus, and sandboxing solutions.</li><li>Monitor proxy performance, availability, and capacity; conduct tuning and optimization to ensure minimal latency and maximum uptime.<br></li></ul><p>Troubleshooting & Incident Response</p><br><ul><li>Troubleshoot proxy-related incidents, connectivity issues, and policy conflicts, working across network layers (TCP/IP, DNS, HTTP/HTTPS, routing).</li><li>Participate in security incident response related to web-based threats, malicious traffic, and policy violations.</li><li>Collaborate with SOC, network, and broader cybersecurity teams to correlate proxy logs with SIEM and threat intelligence platforms.<br></li></ul><p>Project, Migration & Lifecycle Support</p><br><ul><li>Support upgrades, patching, and lifecycle management of Blue Coat ProxySG appliances and related SWG components.</li><li>Assist with migration or integration projects between on-premise proxy solutions and cloud-delivered SWG/SASE platforms.</li><li>Contribute to automation and scripting initiatives to streamline policy deployment, reporting, and routine administration tasks.<br></li></ul><p>Governance, Documentation & Compliance</p><br><ul><li>Prepare and maintain technical documentation, configuration standards, and operational runbooks.</li><li>Support internal and external audits by providing evidence of secure configuration, change control, and policy enforcement.</li><li>Ensure alignment with information security policies and relevant regulatory frameworks (e.g., SAMA, NCA ECC, ISO/IEC 27001, PCI DSS) where applicable.<br></li></ul> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>We are seeking a skilled Cybersecurity Engineer to protect enterprise applications, infrastructure, and cloud environments by implementing robust security controls, identifying vulnerabilities, and responding to security threats. The ideal candidate will have experience with application security, cloud security, identity and access management, vulnerability management, and security automation while ensuring compliance with organizational and industry security standards.</p><p>Key Responsibilities</p><ul><li>Design, implement, and maintain enterprise security controls across applications, infrastructure, and cloud environments.</li><li>Perform vulnerability assessments, security scans, penetration testing coordination, and risk assessments.</li><li>Secure CI/CD pipelines by integrating automated security scanning tools.</li><li>Monitor, investigate, and respond to security incidents and vulnerabilities.</li><li>Implement identity and access management (IAM) and authentication solutions.</li><li>Configure and manage Web Application Firewalls (WAFs) and cloud-native security services.</li><li>Collaborate with development, DevOps, infrastructure, and compliance teams to implement secure-by-design practices.</li><li>Develop security documentation, policies, standards, and incident response procedures.</li><li>Support compliance initiatives and security audits.</li></ul><p>Must Have Skills</p><ul><li>Experience with Trivy OR Grype OR Snyk OR Prisma Cloud for vulnerability and container image scanning.</li><li>Experience with Gitleaks OR GitGuardian OR TruffleHog for secrets detection and source code security.</li><li>Experience with Burp Suite OR OWASP ZAP OR Nessus OR Acunetix for application security testing and vulnerability assessment.</li><li>Experience with Web Application Firewall (WAF) OR Google Cloud Armor OR AWS WAF OR Azure Web Application Firewall OR Cloudflare WAF.</li><li>Experience with Okta OR Microsoft Entra ID (Azure AD) OR Ping Identity OR Auth0 OR Keycloak for identity and access management.</li><li>Application Security AND Cloud Security AND Identity & Access Management (IAM) AND Vulnerability Management AND Incident Response.</li><li>Knowledge of OWASP Top 10 AND Secure SDLC AND Threat Modeling.</li><li>Experience with Linux AND Networking AND TCP/IP AND DNS AND HTTPS.</li><li>Familiarity with Git AND GitHub OR GitLab OR Bitbucket.</li><li>Strong analytical, troubleshooting, communication, and problem-solving skills.</li></ul><p>Good to Have Skills</p><ul><li>SIEM platforms: Splunk OR Microsoft Sentinel OR QRadar OR Elastic Security.</li><li>Container and Kubernetes security using Docker OR Kubernetes OR OpenShift.</li><li>Cloud platforms: Google Cloud Platform (GCP) OR AWS OR Microsoft Azure.</li><li>Security automation and scripting using Python OR Bash OR PowerShell.</li><li>CI/CD tools: Jenkins OR GitHub Actions OR GitLab CI OR Azure DevOps.</li><li>Compliance frameworks: ISO 27001 OR NIST Cybersecurity Framework OR CIS Controls OR SOC 2.</li><li>Endpoint protection tools: Microsoft Defender OR CrowdStrike OR SentinelOne.</li><li>Certifications: CompTIA Security+ OR CEH OR GSEC OR CISSP OR CCSP OR Google Professional Cloud Security Engineer.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p>Preferred Qualifications</p><ul><li>Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field.</li><li>3 11 years of experience in cybersecurity, application security, cloud security, or security engineering.</li><li>Experience securing enterprise applications and cloud-native environments.</li><li>Strong understanding of security architecture, risk management, and security best practices.</li><li>Excellent communication skills and the ability to collaborate effectively with cross-functional teams.</li></ul><p></p></section>
<div dir="rtl"><h3 >About Qiddiya Investment Company</h3>
<p >Qiddiya Investment Company (شركة قدية الاستثمارية) is a pioneering entity driving the development of Qiddiya, Saudi Arabia's capital of Entertainment, Sports, and the Arts. The company is seeking a dedicated professional to join its team in Riyadh, Riyadh Province, contributing to the security infrastructure of its critical assets.</p> <h3 >Role Summary</h3>
<p >The Manager - Security and Threat will lead the governance of security operations and threat management specifically across Qiddiya Workers Villages. This full-time role is critical for preventing, detecting, and responding to security threats through disciplined security governance and robust emergency preparedness.</p> <h3 >Key Responsibilities</h3>
<ul >
<li >Develop and implement comprehensive security and threat management frameworks.</li>
<li >Oversee daily access control, security patrols, and CCTV operations.</li>
<li >Lead threat assessments and vulnerability analyses to identify potential risks.</li>
<li >Coordinate intelligence gathering and threat alerts with relevant authorities.</li>
<li >Investigate security incidents thoroughly and implement effective corrective actions.</li>
<li >Ensure continuous compliance with all applicable Saudi security regulations.</li>
<li >Maintain strict compliance with all required security training and licensing standards.</li>
</ul> <h3 >Key Deliverables and Performance Metrics</h3>
<p >The successful candidate will be accountable for the following key deliverables and will be measured against specific performance metrics:</p>
<ul >
<li >Approved security and threat frameworks.</li>
<li >Comprehensive threat risk registers and assessments.</li>
<li >Detailed incident investigation reports.</li>
<li >Robust emergency and crisis response plans.</li>
<li >Regular security KPI dashboards and reports.</li>
<li >Achieving target security incident rates and response times.</li>
<li >Ensuring high threat assessment completion rates.</li>
<li >Maintaining optimal access control compliance rates.</li>
<li >Upholding training and licensing compliance rates.</li>
<li >Minimizing audit non-conformance rates.</li>
</ul> <h3 >Authority and Decision-Making</h3>
<p >The Manager - Security and Threat will have the authority to:</p>
<ul >
<li >Stop unsafe or non-compliant security practices immediately.</li>
<li >Escalate credible threats to leadership and relevant authorities.</li>
<li >Approve corrective security action plans.</li>
</ul> <h3 >Candidate Profile</h3>
<p >We are seeking candidates with <strong >5-10 years of relevant experience</strong> in security operations and threat management. This full-time position is based in Riyadh, Saudi Arabia. We invite qualified professionals who meet these requirements to apply.</p></div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<b>Overview</b><br><p><span>With over 17,000 employees worldwide, the Microsoft Customer Experience & Success (CE&S) organization is responsible for the strategy, design, and implementation of Microsoft's end-to-end customer experience. Come join CE&S and help us build a future where customers come to us not only because we provide industry-leading products and services, but also because we provide a differentiated and connected customer experience.</span></p><br><br><p><span>We are looking for a highly motivated and passionate </span><span>Security Cloud Solution Architect (CSA)</span><span> to drive our customer's security transformation on the </span><span>Microsoft Azure and Microsoft 365 Platforms</span><span>. This is a customer-facing role, owning the security-focused technical relationship and strategy between the customer and Microsoft as well customer engagements, including architecture, implementation, and operational health.</span></p><br><br><br><b>Responsibilities</b><br><p><span>The ideal candidate will have </span><span>hands-on project delivery experience</span><span> in customer-facing roles and success in leading in-depth </span><span>technical security architecture discussions</span><span> with senior customer executives, Enterprise Security Architects, Enterprise Architects, IT Management, and Developers to Secure our customer's technology estate and drive Security as an enabler for Azure and Microsoft 365 workloads. </span></p><br><br><p><span>Trusted Advisor</span><span> - Empower customers in their Microsoft Security adoption journey, being hands on with them to envision and define a Secure strategy, Architecture, and implementation of necessary security controls aligned with Microsoft XDR and Microsoft Azure Security workloads while ensuring operational health.</span></p><br><br><p><span>Security Services Acquisition and Expansion </span><span>- Position and deliver solutions that drive Security products usage with a focus on Microsoft Sentinel, Defender for Cloud and other Azure security solutions. Collaborate with Azure Infrastructure, AI, Data, Apps teams to expand Security of cloud migration projects. </span></p><br><br><p><span>Understand Customer/Partner Technical Environment</span><span> - Accelerate Business Value of overall Security adoption by improving security posture and ensuring that the solution exhibits "Secure by Design" framework, such as high-performance levels, security, scalability, maintainability, appropriate reusability, and reliability upon deployment.</span></p><br><br><p><span>Architecture Design and Deployment</span><span> - Run Architectural Design Session to build a plan forimplementing the solution — governing design in line with customer business goals and their technical environment. Outcome is consensus on solution design and next steps toward production</span></p><br><br><p><span>Practice Development</span><span> - Collaborate and orchestrate with other Cloud Solution Architects and MS stakeholders including FastTrack, partner, and Microsoft Services in developing complex end-to-end Enterprise solutions with the Microsoft Security platform</span></p><br><br><p><span>Thought Leadership</span><span> - Land an end-to-end value and architecture plan for Security, which spans the breadth of Microsoft Security offerings, and with focus on Threat Protection, ID + Access Management and Cloud Security. Be a Voice of Customer to share insights and best practices, connect with Global Security teams at Microsoft, Engineering and Product teams to remove blockers and influence the solution roadmap.</span></p><br><br><br><br><br><br><b>Qualifications</b><br><p><span>Bachelor's Degree in Computer Science, Information Technology, Engineering, Business,</span></p><br><br><p><span>Cybersecurity, or related field 5+ years experience in cloud/infrastructure technologies, cybersecurity, information technology (IT) consulting/support, systems administration, network operations, technology solutions, practice development, architecture, and/or consulting OR equivalent experience.</span></p><br><br><p><span>Candidates should have broad experience in security and expertise around related technologies and concepts such as Zero Trust, threat management, SOC monitoring (SIEM / SOAR), and Extended Detection & Response (XDR), Data Security, AI Security and Identity.</span></p><br><br><p><span> Candidates should have knowledge as a security engineer or consultant to understand industry trends and competitive landscape, advise customers on ways to strengthen their security posture or health, and land customer value through security.</span></p><br><br><ul><li><p><span>The technical aptitude and experience to learn new cloud and AI security technologies and understand relevant cloud security market trends.</span></p><br></li></ul><br><ul><li><p><span>Competitive Landscape: Knowledge of cloud security platforms and competitors. Breadth of technical security experience and knowledge, with depth / Subject Matter Expertise in two or more of the following security solutions:</span></p><br></li></ul><br><ul><li><p><span>Defender for Cloud - Hands On Experience in deploying Microsoft Defender for Cloud platform, experience on AI Security preferred</span></p><br></li></ul><br><ul><li><p><span>Threat protection - Microsoft Defender for Cloud, Endpoint, Identity and O365 - hands on experience required, supported with certificates.</span></p><br></li></ul><br><ul><li><p><span>Microsoft Sentinel - Hands on Experience in deploying Microsoft Sentinel in complex customer environments preferred. </span></p><br></li></ul><br><ul><li><p><span>Identity and Access Management (Microsoft Entra)</span></p><br></li></ul><br><ul><li><p><span>Data Security (Purview) - experience preferred.</span></p><br></li></ul><br><p><span>Certification in one or more of the following technologies preferred: Microsoft Cybersecurity Architect Expert, Microsoft 365 Security Administrator, Microsoft SOC Analyst Associate. </span></p><br><br><br> <br><p>This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.</p><br><br><br><p>Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about <b><u>requesting accommodations.</u></b></p><br> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>The Senior IT Security Operations Architect designs, builds, and governs the overarching security operations framework, SOC architecture, and threat mitigation strategies across enterprise hybrid infrastructure.<br> This strategic and technical role aligns operational security systems (SIEM/SOAR, EDR, IAM, Network Defense) with business goals, cloud environments, and national compliance standards.<br> Key Responsibilities Architecture & Strategy Design: Design scalable security architectures for enterprise hybrid environments (On-Premises, AWS, Azure), integrating Zero Trust models and operational security controls.<br> SOC & SOAR Integration: Build and optimize Security Operations Center (SOC) workflows, automation playbooks (SOAR), and SIEM architecture to reduce incident response time and eliminate operational fatigue.<br> Security Tool Engineering Oversight: Architect the deployment and lifecycle management of Next-Gen Firewalls (Palo Alto, Fortinet), EDR/XDR ecosystems, PAM, and Cloud Security Posture Management (CSPM) tools.<br> Threat Intelligence & Resilience: Establish proactive threat-hunting programs, red/blue team operational alignment, and high-availability disaster recovery frameworks.<br> Governance & Regulatory Compliance: Ensure all operational security designs strictly comply with local regulatory frameworks (NCA-ECC, SAMA CSF) and global standards (ISO 27001, NIST).<br> 1. Minimum 10+ years of progressive experience in IT security, with at least 4+ years as a Security Architect or Principal Security Engineer managing enterprise SOC frameworks.<br> 2. Deep expertise in designing enterprise SOC pipelines, SIEM/SOAR architectures (Splunk, Sentinel, Cortex), and automated incident response playbooks .<br> 3. Proven track record in hybrid cloud security architecture (Azure, AWS) and Zero Trust Network Architecture (ZTNA) implementations .<br> 4. Hands-on mastery of governance frameworks and local regulatory compliance (NCA-ECC, SAMA, ISO 27001, NIST CSF) in Saudi Arabia or the wider GCC.<br> 5. Hold advanced architecture certifications such as CISSP-ISSAP, CISM, SABSA, TOGAF, or CCSP .<br></span> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
1+ years </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Nationality">
<b>Nationality</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Nationality">
Saudi Arabia </div>
</div>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>
<p><strong>Role Summary:</strong></p><p>Responsible for providing the leadership, management, and vision necessary to ensure that SAFE has the proper operational controls, administrative and reporting procedures, and people systems in place to grow the organization and ensure operating efficiency effectively.</p><p> </p><p><strong>Main Responsibilities:</strong></p><ul> <li>Direct the development of service delivery and deployment plans alongside other business units while continuously aligning with People and Administration functions on human resources and equipment availability.</li> <li>Ensure providing the best security services of guarding and patrolling, security solutions (K9 security services, VVIP/ bodyguarding, and armed guarding security), cash management services, and ground security systems.</li> <li>Lead and develop facilities management capabilities to deliver an outstanding service to SAFE clients. </li> <li>Guide and manage fire prevention systems and plans.</li> <li>Oversee the development, monitoring, and evaluation of pre-surveillance strategies, command and control, and security systems used for SAFE clients, and drive the centralization of operational communication between clients and on-ground staff.</li> <li>Direct safe and secure cash management services and manage its operations, which includes ATM management in terms of cash/ valuable items delivery and pick-ups, cash-in-transit, cash processing services and cash center.</li> <li>Oversee SAFE Security Academy functions, ensuring effective training programs being provided with cost efficiency and profitability.</li></ul><p><strong>Managerial Accountability:</strong></p><ul> <li>Foster a culture of cooperation, learning and development, and leadership.</li> <li>Provide leadership and development advice to direct reports.</li> <li>Attract, recruit, and retain a high-performance management team; provide mentoring as a cornerstone to the management career development program.</li></ul><p><strong>Required Qualifications:</strong></p><ul> <li>Bachelor’s degree Engineering, military services, or business/ finance.</li> <li>10-15+ years of experience in the service sector, with at least 3-5 years in a similar leadership role (experience in the private security services landscape and evolving technological trends).</li> <li>Prefer Professional Certificates: MBA.</li></ul><p> </p><p><strong>Required Skills:</strong></p><ul> <li>Strong verbal & written communication skills in both English & Arabic.</li></ul><p> </p><p> <strong>Leadership Competency:</strong></p><p><strong>Driving Success</strong>:</p><ul> <li>Translates SAFE vision and goals into clear, specific, and achievable objectives. Takes control of projects, leading on key tasks and monitoring others to ensure they fulfil their roles effectively.</li> <li>Demonstrates belief in and personal commitment to SAFE vision and mission. Fulfills commitments while maintaining high levels of productivity and output for self and team.</li></ul><p><strong>Building Relationships</strong>:</p><ul> <li>Builds an understanding of key stakeholders (including shareholders) , their needs, drivers, and constraints. Develop common understanding across widely competing needs.</li> <li>Interacts well with others, quickly establishing rapport and maintaining useful relationships with internal and external stakeholders for the organization’s benefit. </li></ul><p><strong>Engaging Individuals:</strong></p><ul> <li>Creates a team identity and shared purpose among team members. Articulates the vision for the future to motivate others to action. Finds effective ways to empower individuals and help them succeed.</li> <li>Focuses on developing, coaching, and mentoring talent to enhance skills, knowledge, and abilities to improve individual and organizational performance. </li></ul><p> <strong>Core Competency: </strong></p><p><strong>Dependability: </strong></p><ul> <li>Self-driven and acts proactively.</li> <li>Pursues goals with persistence and stamina, works on tasks thoroughly, ensuring accuracy and meeting standards.</li> <li>Maintains high levels of quality and effectiveness of work outputs and achieves outstanding results.</li></ul><p><strong>Collaboration:</strong></p><ul> <li>Collaborates constructively with people at all levels across the organization.</li> <li>Helps colleagues, is always available to the team, and delivers on team commitments.</li> <li>Trusts the guidance and direction of colleagues and senior members of the team.</li></ul><p><strong>Analytical Thinking:</strong></p><ul> <li>Examines, evaluates, and analyses different types of information objectively. </li> <li>Spots trends and patterns, establishes key facts clearly and interprets numerical data effectively.</li> <li>Provides insights and identifies ways to improve things. Trusts intuition about which methods will work best.</li></ul><p><strong>Effective Communication:</strong></p><ul> <li>Listens attentively and seeks to understand before being understood.</li> <li>Explains things clearly and articulates and presents information effectively and confidently.</li> <li>Challenges ideas effectively and presents persuasive arguments by presenting a strong case.</li></ul>
<p>As a part of the Mandiant s Security Transformation Services (STS) team, you will help organizations build an effective security operations program that minimizes organizational risk and reduces the impact of security breaches. You will utilize the latest industry standards and combine experience gained from Mandiant incident response, intelligence and managed defense practices, help clients contain security events, and transform their security programs. In this role, you will work in teams to address projects, communicate with clients, expediting assistance with containment and remediation activities, while creating and presenting high-quality deliverables. You will quickly assess victim needs, engage various Mandiant resources.Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.</p><p><strong>Desired Candidate Profile</strong></p><ul><li>Bachelor's degree in Computer Science, Information Systems, Cybersecurity, related technical field, or equivalent practical experience.</li><li>5 years of experience working within a cybersecurity domain.</li><li>Experience developing project plans and leading teams to implement technical recommendations.</li><li>Experience documenting project requirements that define scope, schedule, and technical deliverables.</li><li>Experience in program management and technical leadership.</li><li>Experience with enterprise security controls in on-premises and Cloud Infrastructures, Zero Trust Architecture, Secure Enterprise Platforms Architecture, Identity providers such as, Google Cloud Platform, Active Directory, Salesforce, B2B/B2C identities and collaboration platforms.</li><li>Experience with enterprise networking and network segmentation strategies, agile program and project management, SCRUM methodology, DevSecOps, GRC practices, NIST cybersecurity framework and others.</li><li>Experience with Windows and Unix endpoint hardening and security control enforcement.</li><li>Experience with privileged access management.</li><li>Ability to communicate with internal and external customers, explaining technical details clearly and concisely.</li><li>Ability to travel up to 50% of the time.</li></ul>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
Company Description<br><p><strong>Tech for People Unlocks the Future</strong></p><br><p>At Devoteam, we believe that technology, combined with strong human values, can actively drive change for the better. Discover how Tech for People is shaping the future, creating a positive impact on individuals and the world around us.<br>
With over 25 years of passion for technology and a presence in 18+ countries across EMEA and beyond, we are committed to leveraging innovation, expertise, and human-centric values to make a difference.</p><br><p><strong>Devoteam Culture & Values:</strong><br>
True innovation is born from a powerful culture, fused with meaningful values.</p><br><p><strong>Culture:</strong></p><br><p><strong>Fair and courageous</strong><br>
Everyone is treated fairly – this fuels bravery. At Devoteam, we always make fair decisions. We listen and are willing to be challenged, taking courageous decisions as a result. We help our employees to progress at every step and congratulate those who deserve it.<br>
<br>
<strong>Ambition and results</strong><br>
Ambition is nurtured at every step – this drives results. We are ambitious entrepreneurs with a taste for performance, growth and celebrating success. Commitments are always kept as we seek to achieve profitable growth to create value and employment. We aim to bring as much value as possible to our clients, at every touchpoint.<br>
<br>
<strong>Learning and innovating</strong><br>
Curiosity and learning are at our core – this stimulates innovation. At Devoteam, we are curious. We learn and embrace innovation constantly to meet challenges and build partnerships of excellence.<br>
<br>
<strong>Caring and sharing</strong><br>
A caring attitude is infused into our culture – this encourages sharing. We believe in the power of teams, we promote support and collaboration.<br>
At Devoteam, we care about our teams and want to work in a positive, productive environment. We support the development of talent and careers, </p><br><p><strong>Values:</strong></p><br><p>1. Respect<br>
2. Frankness<br>
3. Passion</p><br><p>Knowing that success is the result of collaboration. Alone, we go faster, but together, we go further.</p><br><p>To know more about us, please visit: www.devoteam.com<br>
</p><br><br>Job Description<br><p>The Cybersecurity GRC Consultant supports the design, implementation, and continuous improvement of cybersecurity governance, risk, and compliance initiatives. The role contributes to the development of governance frameworks, policies, operating models, and regulatory compliance activities while ensuring alignment with organizational objectives and Saudi cybersecurity regulations. The consultant works closely with senior consultants, architects, and client stakeholders to deliver high-quality governance artifacts and advisory services.</p><br><br>Qualifications<br><p><strong>Key Responsibilities</strong></p><br><ul><li>Support the development, implementation, and maintenance of the cybersecurity governance framework, including policies, standards, procedures, and guidelines.</li><li>Assist in designing and improving cybersecurity governance operating models, organizational structures, and RACI matrices.</li><li>Contribute to the development and maintenance of governance-related KPIs, KRIs, dashboards, and reporting mechanisms.</li><li>Perform governance maturity assessments, gap analyses, and benchmarking activities against industry best practices.</li><li>Prepare governance documentation, reports, presentations, and recommendations for client review.</li><li>Ensure governance deliverables align with Saudi regulatory requirements, including NCA ECC, CST (formerly CITC), SAMA Cybersecurity Framework, and relevant international standards such as ISO/IEC 27001 and NIST Cybersecurity Framework.</li><li>Support governance committees, working groups, and client workshops by preparing documentation, facilitating discussions, and tracking action items.</li><li>Collaborate with Risk Management, Compliance, Third-Party Risk Management (TPRM), Enterprise Architecture, and Security Operations teams to ensure governance activities are integrated across cybersecurity domains.</li><li>Assist in the review and quality assurance of governance documentation and project deliverables.</li><li>Monitor regulatory updates and industry trends to recommend improvements to governance practices.</li><li>Provide advisory support to clients on cybersecurity governance best practices and regulatory compliance requirements.</li><li>Contribute to knowledge sharing, documentation, and continuous improvement initiatives within the Cybersecurity GRC practice.</li></ul><p><strong>Qualifications</strong></p><br><ul><li>Bachelor's degree in Cybersecurity, Information Security, Information Technology, Computer Science, or a related discipline.</li><li>3–7 years of experience in Cybersecurity Governance, Risk & Compliance (GRC), Information Security, or Cybersecurity Consulting.</li><li>Experience in developing governance documentation, policies, standards, and cybersecurity frameworks.</li><li>Familiarity with cybersecurity governance operating models and organizational structures.</li><li>Experience supporting governance assessments, compliance initiatives, and regulatory audits.</li><li>Knowledge of Saudi cybersecurity regulations and international security standards.</li><li>Experience working within consulting, managed services, or large enterprise environments is preferred.</li></ul><br>Additional Information<br><p><strong>Business Unit: </strong>Strategy & Transformation</p><br><p><strong>Level: Mid Level </strong></p><br><br><br> </div><h2 data-automation-id="subHeaderPreferredCandidate" class="h5">
Preferred candidate </h2>
<div class="row is-m v-align-top t-small bg-mute">
<div class="col is-3 p5" data-automation-id="label_Years_of_experience">
<b>Years of experience</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Years_of_experience">
No experience required </div>
</div>
<div class="row is-m v-align-top t-small ">
<div class="col is-3 p5" data-automation-id="label_Degree">
<b>Degree</b>
</div>
<div class="col is-9 p5" data-automation-id="data_Degree">
Bachelor's degree / higher diploma </div>
</div>