Security inspector Jobs - Riyadh Saudi
1356 Jobs Found
<h2 ><span lang="ar" dir="rtl">اعلان شركة جسارة عن وظيفة مفتش كهربائي (Electrical Inspector)</span></h2><h3 ><span lang="ar" dir="rtl">نبذة عن الوظيفة</span></h3><p ><span lang="ar" dir="rtl">يساهم مفتش الكهرباء في ضمان جودة وسلامة الأعمال الكهربائية ضمن المشاريع، من خلال تطبيق المعايير الفنية والتأكد من الالتزام بالكودات واللوائح المحلية والدولية، بما يدعم جودة تنفيذ مشاريع البنية التحتية في المملكة.</span></p><h3 ><span lang="ar" dir="rtl">المتطلبات</span></h3><ul><li><p ><span lang="ar" dir="rtl">درجة البكالوريوس في الهندسة الكهربائية أو تخصص ذي صلة.</span></p></li><li><p ><span lang="ar" dir="rtl">خبرة لا تقل عن 10–12 سنة في مجال التفتيش الكهربائي أو وظيفة مشابهة.</span></p></li><li><p ><span lang="ar" dir="rtl">فهم قوي للأنظمة والمكونات الكهربائية وأساليب التركيب.</span></p></li><li><p ><span lang="ar" dir="rtl">معرفة بالكودات والمعايير الكهربائية المحلية والدولية.</span></p></li><li><p ><span lang="ar" dir="rtl">مهارات تحليلية عالية ودقة كبيرة في التفاصيل.</span></p></li><li><p ><span lang="ar" dir="rtl">مهارات تواصل جيدة والقدرة على العمل ضمن فريق.</span></p></li><li><p ><span lang="ar" dir="rtl">القدرة على العمل بشكل مستقل وإدارة جداول التفتيش بكفاءة.</span></p></li><li><p ><span lang="ar" dir="rtl">يفضل وجود شهادات مهنية في مجال التفتيش الكهربائي.</span></p></li></ul>
<h2 ><span lang="ar" dir="rtl">اعلان شركة جسارة عن وظيفة مفتش الصحة والسلامة والبيئة (HSE Inspector)</span></h2><h3 ><span lang="ar" dir="rtl">المسؤوليات:</span></h3><ul><li><p ><span lang="ar" dir="rtl">إجراء جولات تفتيش ميدانية منتظمة لضمان الالتزام بلوائح الصحة والسلامة والبيئة وسياسات الشركة.</span></p></li><li><p ><span lang="ar" dir="rtl">تحديد المخاطر وتقييمها واقتراح الإجراءات التصحيحية المناسبة عند الحاجة.</span></p></li><li><p ><span lang="ar" dir="rtl">إعداد تقارير تفتيش تفصيلية وإيصال النتائج إلى إدارة المشروع.</span></p></li><li><p ><span lang="ar" dir="rtl">المساعدة في تطوير وتنفيذ برامج التدريب الخاصة بالصحة والسلامة والبيئة للموظفين والمقاولين.</span></p></li><li><p ><span lang="ar" dir="rtl">المشاركة في التحقيقات الخاصة بالحوادث لتحديد الأسباب الجذرية واقتراح التدابير الوقائية.</span></p></li><li><p ><span lang="ar" dir="rtl">متابعة أحدث التشريعات والمعايير وأفضل الممارسات المتعلقة بالصحة والسلامة والبيئة.</span></p></li><li><p ><span lang="ar" dir="rtl">دعم تنفيذ المبادرات والبرامج الخاصة بالصحة والسلامة والبيئة داخل المنظمة.</span></p></li></ul><h3 ><span lang="ar" dir="rtl">المتطلبات:</span></h3><ul><li><p ><span lang="ar" dir="rtl">درجة البكالوريوس في الصحة والسلامة المهنية أو العلوم البيئية أو أي تخصص ذي صلة.</span></p></li><li><p ><span lang="ar" dir="rtl">خبرة لا تقل عن 5 سنوات في مجال التفتيش على الصحة والسلامة والبيئة، ويفضل في قطاع الإنشاءات.</span></p></li><li><p ><span lang="ar" dir="rtl">معرفة قوية بلوائح ومعايير الصحة والسلامة والبيئة.</span></p></li><li><p ><span lang="ar" dir="rtl">مهارات ممتازة في التحليل وحل المشكلات.</span></p></li><li><p ><span lang="ar" dir="rtl">مهارات فعالة في التواصل والتعامل مع الآخرين.</span></p></li><li><p ><span lang="ar" dir="rtl">القدرة على العمل بشكل مستقل وضمن فريق عمل.</span></p></li><li><p ><span lang="ar" dir="rtl">الحصول على شهادات مهنية في إدارة السلامة مثل NEBOSH أو IOSH يعد ميزة إضافية.</span></p></li></ul>
<h2 ><span lang="ar" dir="rtl">اعلان شركة تابي عن وظيفة محلل أمن المعلومات (Information Security Analyst)</span></h2><h3 ><span lang="ar" dir="rtl">الوصف الوظيفي</span></h3><p ><span lang="ar" dir="rtl">يدعم محلل أمن المعلومات وظائف الحوكمة والمخاطر والامتثال (GRC) من خلال المساهمة في توثيق ومتابعة وتنسيق أنشطة أمن المعلومات داخل المؤسسة. ويساعد في الحفاظ على إطار حوكمة قوي لأمن المعلومات، ودعم عمليات تقييم المخاطر، وضمان التوافق مع المتطلبات التنظيمية والمعايير المعتمدة مثل SAMA وPDPL وISO 27001 وPCI-DSS.</span></p><h3 ><span lang="ar" dir="rtl">المهام والمسؤوليات</span></h3><h4 ><span lang="ar" dir="rtl">الحوكمة وإدارة أمن المعلومات</span></h4><ul><li><p ><span lang="ar" dir="rtl">المساعدة في إعداد وصيانة وثائق إطار حوكمة أمن المعلومات.</span></p></li><li><p ><span lang="ar" dir="rtl">دعم مواءمة مبادرات أمن المعلومات مع أهداف العمل والمتطلبات التنظيمية.</span></p></li><li><p ><span lang="ar" dir="rtl">جمع وتحديث المعلومات المتعلقة بالمتطلبات القانونية والتنظيمية ذات الصلة بأمن المعلومات.</span></p></li><li><p ><span lang="ar" dir="rtl">المشاركة في توثيق العوامل المؤثرة على أمن المعلومات مثل التغيرات التقنية ومتطلبات الأعمال ومستوى تقبل المخاطر.</span></p></li><li><p ><span lang="ar" dir="rtl">المساهمة في تحديث مصفوفات الأدوار والمسؤوليات الخاصة بأمن المعلومات.</span></p></li><li><p ><span lang="ar" dir="rtl">دعم إعداد المواد والتقارير الخاصة بالتواصل الداخلي والخارجي المتعلقة بحوكمة أمن المعلومات.</span></p></li></ul><h4 ><span lang="ar" dir="rtl">إدارة مخاطر أمن المعلومات</span></h4><ul><li><p ><span lang="ar" dir="rtl">المساعدة في حصر وتصنيف الأصول المعلوماتية وتوثيق مالكيها.</span></p></li><li><p ><span lang="ar" dir="rtl">المشاركة في تنفيذ وتوثيق تقييمات مخاطر أمن المعلومات.</span></p></li><li><p ><span lang="ar" dir="rtl">المساهمة في جمع بيانات تحليل أثر الأعمال (BIA).</span></p></li><li><p ><span lang="ar" dir="rtl">دعم أنشطة تقييم التهديدات والثغرات الأمنية من خلال جمع البيانات وإعداد التقارير.</span></p></li><li><p ><span lang="ar" dir="rtl">توثيق الضوابط الأمنية الحالية والمساعدة في تقييم فعاليتها.</span></p></li><li><p ><span lang="ar" dir="rtl">المساهمة في دمج بيانات المخاطر والثغرات ضمن عمليات المشتريات والمشاريع.</span></p></li><li><p ><span lang="ar" dir="rtl">إعداد تقارير المخاطر وإبراز التغييرات المهمة للمراجعة من قبل المختصين.</span></p></li></ul><h4 ><span lang="ar" dir="rtl">تطوير برنامج أمن المعلومات</span></h4><ul><li><p ><span lang="ar" dir="rtl">المساعدة في صيانة الوثائق الخاصة ببرنامج واستراتيجية أمن المعلومات.</span></p></li><li><p ><span lang="ar" dir="rtl">متابعة الأنشطة السيبرانية مثل تنبيهات مركز العمليات الأمنية (SOC) ومراقبة الامتثال.</span></p></li><li><p ><span lang="ar" dir="rtl">دعم مراقبة الالتزام بالسياسات والمعايير والإجراءات الأمنية.</span></p></li><li><p ><span lang="ar" dir="rtl">المساهمة في التحقيقات الأولية للحوادث الأمنية من خلال جمع السجلات والتقارير.</span></p></li><li><p ><span lang="ar" dir="rtl">دعم جمع وتحليل معلومات التهديدات من المصادر الداخلية والخارجية.</span></p></li><li><p ><span lang="ar" dir="rtl">المشاركة في تنسيق المراجعات والتدقيقات والتقييمات الأمنية.</span></p></li><li><p ><span lang="ar" dir="rtl">المساعدة في إعداد مواد التوعية الأمنية وخطط التدريب والتواصل.</span></p></li><li><p ><span lang="ar" dir="rtl">تحديث المعايير والإجراءات والإرشادات الأمنية بشكل مستمر.</span></p></li><li><p ><span lang="ar" dir="rtl">دعم دمج متطلبات أمن المعلومات ضمن وثائق المشاريع والمشتريات.</span></p></li><li><p ><span lang="ar" dir="rtl">متابعة مؤشرات الأداء والمخاطر (KPIs & KRIs) وإعداد التقارير ولوحات المتابعة.</span></p></li></ul><h4 ><span lang="ar" dir="rtl">مهام عامة</span></h4><ul><li><p ><span lang="ar" dir="rtl">دعم تطوير وصيانة سياسات ومعايير وإجراءات أمن المعلومات.</span></p></li><li><p ><span lang="ar" dir="rtl">المشاركة في مبادرات أمن المعلومات مع فرق الأعمال والتقنية.</span></p></li><li><p ><span lang="ar" dir="rtl">المساهمة في مراقبة الامتثال للسياسات الأمنية واللوائح التنظيمية.</span></p></li><li><p ><span lang="ar" dir="rtl">المشاركة في مراجعات أمن المعلومات وإعداد التقارير المرتبطة بها.</span></p></li><li><p ><span lang="ar" dir="rtl">المساعدة في تصنيف المعلومات والأنظمة وتوثيق المتطلبات الأمنية للمشاريع.</span></p></li><li><p ><span lang="ar" dir="rtl">المساهمة في برامج التوعية والتثقيف الأمني داخل المؤسسة.</span></p></li><li><p ><span lang="ar" dir="rtl">تقديم الدعم الإداري والتحليلي لفريق الحوكمة والمخاطر والامتثال وأمن المعلومات.</span></p></li></ul><h3 ><span lang="ar" dir="rtl">المؤهلات والمتطلبات</span></h3><ul><li><p ><span lang="ar" dir="rtl">درجة البكالوريوس في تقنية المعلومات أو علوم الحاسب أو هندسة البرمجيات أو الأمن السيبراني أو تخصص ذي صلة.</span></p></li><li><p ><span lang="ar" dir="rtl">لا يشترط وجود خبرة سابقة، وتعد الخبرة من 0 إلى سنتين في مجال أمن المعلومات ميزة إضافية.</span></p></li><li><p ><span lang="ar" dir="rtl">فهم أساسي لمفاهيم وأطر ومعايير أمن المعلومات مثل ISO 27001 وNIST وSAMA CSF.</span></p></li><li><p ><span lang="ar" dir="rtl">معرفة أساسية بأنظمة حماية البيانات والخصوصية مثل نظام حماية البيانات الشخصية (PDPL).</span></p></li><li><p ><span lang="ar" dir="rtl">يفضل وجود مشاريع أكاديمية أو تدريب تعاوني أو دورات متخصصة في الأمن السيبراني أو إدارة المخاطر أو الامتثال.</span></p></li></ul><h3 ><span lang="ar" dir="rtl">المهارات المطلوبة</span></h3><ul><li><p ><span lang="ar" dir="rtl">مهارات تحليلية قوية والاهتمام بالتفاصيل.</span></p></li><li><p ><span lang="ar" dir="rtl">إعداد التقارير والتوثيق.</span></p></li><li><p ><span lang="ar" dir="rtl">القدرة على التعلم السريع والتطوير المستمر.</span></p></li><li><p ><span lang="ar" dir="rtl">مهارات التواصل والعمل الجماعي.</span></p></li><li><p ><span lang="ar" dir="rtl">إدارة الوقت وتنظيم المهام.</span></p></li><li><p ><span lang="ar" dir="rtl">القدرة على التعامل مع البيانات والمعلومات بسرية ومهنية عالية.</span></p></li></ul>
<h2 ><span lang="ar" dir="rtl">اعلان بنك الجزيرة عن وظيفة مساعد مدير أمن البنية التحتية للمعلومات</span></h2><h2 ><span lang="ar" dir="rtl">الوصف الوظيفي</span></h2><p ><span lang="ar" dir="rtl">يهدف هذا الدور إلى دعم تصميم وتنفيذ وتشغيل وتحسين البنية التحتية لأمن المعلومات في البنك بشكل مستمر، بما يضمن حماية الأنظمة والشبكات والبيانات من التهديدات السيبرانية، مع المحافظة على الامتثال للمعايير الأمنية والمتطلبات التنظيمية المعتمدة.</span></p><h2 ><span lang="ar" dir="rtl">المهام والمسؤوليات الرئيسية</span></h2><ul><li><p ><span lang="ar" dir="rtl">المساعدة في إدارة وتأمين البنية التحتية الأمنية بما يشمل الجدران النارية (Firewalls) وأنظمة كشف ومنع التسلل (IDS/IPS) وأنظمة إدارة معلومات وأحداث الأمن (SIEM) وحلول حماية الأجهزة الطرفية وأدوات أمن الشبكات.</span></p></li><li><p ><span lang="ar" dir="rtl">مراقبة الأنظمة الأمنية والاستجابة للحوادث الأمنية والثغرات والتنبيهات بالتنسيق مع مركز العمليات الأمنية (SOC) وفرق تقنية المعلومات.</span></p></li><li><p ><span lang="ar" dir="rtl">دعم تنفيذ الضوابط الأمنية عبر الخوادم والشبكات والمنصات السحابية والتطبيقات المختلفة.</span></p></li><li><p ><span lang="ar" dir="rtl">إجراء التقييمات الأمنية الدورية وفحوصات الثغرات الأمنية ومتابعة خطط المعالجة والإغلاق.</span></p></li><li><p ><span lang="ar" dir="rtl">التأكد من توافق إعدادات الأمن السيبراني مع السياسات الداخلية والمتطلبات التنظيمية مثل البنك المركزي السعودي (SAMA) والهيئة الوطنية للأمن السيبراني (NCA) ومعايير ISO.</span></p></li><li><p ><span lang="ar" dir="rtl">المشاركة في مراجعات التصميم الأمني للأنظمة الجديدة ومشاريع البنية التحتية التقنية.</span></p></li><li><p ><span lang="ar" dir="rtl">دعم خطط التعافي من الكوارث واستمرارية الأعمال وتعزيز المرونة السيبرانية.</span></p></li><li><p ><span lang="ar" dir="rtl">إعداد وصيانة الوثائق الأمنية والإجراءات والتقارير الفنية ذات الصلة.</span></p></li><li><p ><span lang="ar" dir="rtl">تقديم الإرشاد والدعم الفني لفرق تقنية المعلومات حول أفضل الممارسات الأمنية الخاصة بالبنية التحتية.</span></p></li></ul><h2 ><span lang="ar" dir="rtl">المؤهلات المطلوبة</span></h2><ul><li><p ><span lang="ar" dir="rtl">درجة البكالوريوس في الأمن السيبراني أو علوم الحاسب أو تقنية المعلومات أو أي تخصص ذي صلة.</span></p></li><li><p ><span lang="ar" dir="rtl">خبرة تتراوح بين 5 و8 سنوات في مجال أمن البنية التحتية للمعلومات أو العمليات الأمنية السيبرانية، ويفضل في القطاع المصرفي أو البيئات الخاضعة للأنظمة واللوائح التنظيمية.</span></p></li><li><p ><span lang="ar" dir="rtl">خبرة عملية في أمن الشبكات والخوادم وأمن الحوسبة السحابية وأدوات المراقبة الأمنية.</span></p></li></ul><h2 ><span lang="ar" dir="rtl">المهارات التقنية المطلوبة</span></h2><ul><li><p ><span lang="ar" dir="rtl">إدارة الجدران النارية وأنظمة حماية الشبكات.</span></p></li><li><p ><span lang="ar" dir="rtl">التعامل مع أنظمة IDS / IPS.</span></p></li><li><p ><span lang="ar" dir="rtl">استخدام منصات SIEM وتحليل الأحداث الأمنية.</span></p></li><li><p ><span lang="ar" dir="rtl">أمن الحوسبة السحابية (Cloud Security).</span></p></li><li><p ><span lang="ar" dir="rtl">إدارة الخوادم وتأمين البنية التحتية.</span></p></li><li><p ><span lang="ar" dir="rtl">إدارة الثغرات الأمنية واختبارات التقييم الأمني.</span></p></li><li><p ><span lang="ar" dir="rtl">إجراءات التعافي من الكوارث واستمرارية الأعمال.</span></p></li><li><p ><span lang="ar" dir="rtl">الالتزام بالمعايير والأطر التنظيمية الأمنية.</span></p></li></ul><h2 ><span lang="ar" dir="rtl">ملخص الوظيفة</span></h2><ul><li><p ><span lang="ar" dir="rtl"><strong>المسمى الوظيفي:</strong> مساعد مدير أمن البنية التحتية للمعلومات</span></p></li><li><p ><span lang="ar" dir="rtl"><strong>نوع الوظيفة:</strong> دوام كامل</span></p></li><li><p ><span lang="ar" dir="rtl"><strong>المستوى الوظيفي:</strong> متوسط (Mid Level)</span></p></li><li><p ><span lang="ar" dir="rtl"><strong>التخصص الرئيسي:</strong> الأمن السيبراني</span></p></li><li><p ><span lang="ar" dir="rtl"><strong>المؤهل العلمي:</strong> بكالوريوس فأعلى</span></p></li><li><p ><span lang="ar" dir="rtl"><strong>القطاع المفضل:</strong> البنوك أو القطاعات الخاضعة للتنظيم</span></p></li></ul>
<p><p> </p>
<p style=\"color: #4d5056; background-color: #ffffff;\"><b>Job Purpose:</b></p>
<p style=\"color: #4d5056; background-color: #ffffff;\">Monitoring the arrival and leaving of people and vehicles and tracking their entry and exit Monitoring alarms and surveillance cameras Providing first aid if necessary Requesting assistance from the relevant authorities immediately upon hearing the sound of sirens</p>
<p style=\"color: #4d5056; background-color: #ffffff;\"> </p>
<p style=\"color: #4d5056; background-color: #ffffff;\"><b>Key Accountabilities:</b><b></b></p>
<p style=\"color: #4d5056; background-color: #ffffff;\">• Ability to deal with theft cases as per policy, procedure and regulations<br>• Able to explain emergency procedures to Security on detail.<br>• Ensure adherence in handling of security seals before driver dispatching to stores/.<br>• Ensure adherence in handling of security seals after drivers arrival from delivery<br>• Ensure handling and weighing of scrap materials for sale from stores<br>• Knowledge in investigation for theft cases<br>• Knowledge of contact numbers of police and fire department in case of emergency.<br>• Inputs accidents in GOSI platforms and details thereof.</p>
<p> </p></p>
<h2 ><span lang="ar" dir="rtl">اعلان مركز الإسناد والتصفية عن وظيفة خبير عمليات الأمن السيبراني</span></h2><h3 ><span lang="ar" dir="rtl">المهام الوظيفية</span></h3><ul><li><p ><span lang="ar" dir="rtl">مراقبة ورصد وتحليل التنبيهات والأنشطة غير الاعتيادية في الأنظمة والشبكات والخوادم على مدار الساعة، وتصعيد الحوادث المشتبه بها وفق خطة الاستجابة المعتمدة.</span></p></li><li><p ><span lang="ar" dir="rtl">تحليل سجلات الأنظمة والشبكات من مصادر متعددة لتحديد التهديدات المحتملة ونقاط الضعف الأمنية واتخاذ الإجراءات المناسبة لمعالجتها.</span></p></li><li><p ><span lang="ar" dir="rtl">إجراء التحليل الجنائي الرقمي وجمع الأدلة بطريقة فنية ومنهجية لدعم التحقيقات الأمنية والاستجابة للحوادث.</span></p></li><li><p ><span lang="ar" dir="rtl">عزل وإزالة البرمجيات الخبيثة من الأنظمة المتأثرة وتوثيق جميع الإجراءات المتخذة بدقة.</span></p></li><li><p ><span lang="ar" dir="rtl">تحديد وتحليل أساليب وتقنيات وإجراءات (TTPs) التي يستخدمها المهاجمون لتحسين استراتيجيات الدفاع والتصدي للتهديدات المستقبلية.</span></p></li><li><p ><span lang="ar" dir="rtl">تنسيق وتنفيذ أنشطة الاستجابة للحوادث السيبرانية بالتعاون مع الفرق الفنية المعنية، بما في ذلك تقديم الدعم الفني أثناء الهجمات الإلكترونية.</span></p></li><li><p ><span lang="ar" dir="rtl">الإشراف على تشغيل أنظمة المراقبة الأمنية (SIEM) وضمان استمرارية عملها بكفاءة عالية، ومراجعة فعالية التنبيهات وآليات الكشف.</span></p></li><li><p ><span lang="ar" dir="rtl">تنظيم المناوبات اليومية للفريق الفني وتوزيع المهام لضمان تغطية كاملة للعمليات الأمنية على مدار اليوم.</span></p></li><li><p ><span lang="ar" dir="rtl">إجراء اختبارات الاختراق والفحص الأمني الدوري لتقييم جاهزية الأنظمة ومقاومتها للتهديدات، وإعداد التقارير بالمخاطر والثغرات والتوصيات اللازمة لمعالجتها.</span></p></li><li><p ><span lang="ar" dir="rtl">إجراء تقييمات واختبارات الثغرات على الأصول التقنية والمعلوماتية وتوثيق نتائجها ومتابعة تنفيذ الإصلاحات.</span></p></li><li><p ><span lang="ar" dir="rtl">ضمان متابعة معالجة نقاط الضعف الأمنية المكتشفة من أنظمة المراقبة أو الاختبارات وتوثيق الإجراءات في النظام المركزي.</span></p></li><li><p ><span lang="ar" dir="rtl">المشاركة في تقييم الحالة الأمنية للبنية التحتية الرقمية وتحديد الفجوات في المعمارية الأمنية واقتراح الحلول التصحيحية المناسبة.</span></p></li><li><p ><span lang="ar" dir="rtl">تحليل اتجاهات التهديدات السيبرانية الداخلية والخارجية ومراقبة مصادر معلومات التهديدات الخارجية لتحديث الإجراءات الوقائية.</span></p></li><li><p ><span lang="ar" dir="rtl">تطوير واستخدام أدوات وتقنيات الرصد والدفاع السيبراني وتعزيز قدرات الاكتشاف والاستجابة من خلال الأتمتة والتحسين المستمر.</span></p></li><li><p ><span lang="ar" dir="rtl">التنسيق مع الفرق الفنية والإدارات ذات العلاقة مثل البنية التحتية والتحول الرقمي والشؤون القانونية والحوكمة عند وقوع الحوادث الأمنية أو اكتشاف الثغرات.</span></p></li><li><p ><span lang="ar" dir="rtl">تطوير وتحديث مؤشرات الأداء التشغيلية ومتابعة تنفيذها ورفع تقارير الأداء إلى الإدارة.</span></p></li><li><p ><span lang="ar" dir="rtl">إعداد تقارير تفصيلية بعد الحوادث الأمنية تتضمن الأسباب الجذرية والدروس المستفادة وخطط التحسين المستقبلية.</span></p></li><li><p ><span lang="ar" dir="rtl">تقديم الدعم الفني في تطوير سياسات وخطط الأمن السيبراني وضمان توافقها مع طبيعة التهديدات الحالية والمتغيرة.</span></p></li></ul><h3 ><span lang="ar" dir="rtl">المتطلبات</span></h3><ul><li><p ><span lang="ar" dir="rtl">درجة البكالوريوس في الأمن السيبراني أو تقنية المعلومات أو إدارة الشبكات.</span></p></li><li><p ><span lang="ar" dir="rtl">خبرة عملية لا تقل عن 6 سنوات في مجال عمليات الأمن السيبراني.</span></p></li><li><p ><span lang="ar" dir="rtl">خبرة في إدارة الحوادث الأمنية والاستجابة لها وتحليل التهديدات والثغرات الأمنية.</span></p></li><li><p ><span lang="ar" dir="rtl">إجادة العمل على أنظمة المراقبة الأمنية (SIEM) وأدوات التحليل الجنائي الرقمي.</span></p></li><li><p ><span lang="ar" dir="rtl">القدرة على تنفيذ اختبارات الاختراق وتقييم الثغرات الأمنية وإعداد التقارير الفنية.</span></p></li><li><p ><span lang="ar" dir="rtl">مهارات تحليلية قوية وقدرة على التعامل مع التهديدات الأمنية المعقدة.</span></p></li><li><p ><span lang="ar" dir="rtl">شهادات مهنية معتمدة مثل:</span></p><ul><li><p ><span lang="ar" dir="rtl">CEH</span></p></li><li><p ><span lang="ar" dir="rtl">GIAC</span></p></li><li><p ><span lang="ar" dir="rtl">CompTIA Security+</span></p></li><li><p ><span lang="ar" dir="rtl">ISO 27035</span></p></li></ul></li></ul>
<h2 ><span lang="ar" dir="rtl">اعلان أكاديمية طويق عن دبلوم الأمن السيبراني</span></h2><p ><span lang="ar" dir="rtl">تعلن <strong>أكاديمية طويق</strong> عن فتح باب التسجيل في <strong>دبلوم الأمن السيبراني المتقدم</strong>، وهو برنامج تدريبي حضوري مخصص للرجال والنساء في مدينة <strong>الرياض</strong>، مع الحصول على شهادة معتمدة من الأكاديمية بعد اجتياز متطلبات البرنامج.</span></p><h3 ><span lang="ar" dir="rtl">مسمى البرنامج</span></h3><ul><li><p ><span lang="ar" dir="rtl">دبلوم الأمن السيبراني المتقدم.</span></p></li></ul><h3 ><span lang="ar" dir="rtl">مميزات البرنامج</span></h3><ul><li><p ><span lang="ar" dir="rtl">دبلوم تطبيقي يمتد لمدة <strong>39 أسبوعًا</strong> بإجمالي <strong>780 ساعة تدريبية</strong>.</span></p></li><li><p ><span lang="ar" dir="rtl">مسار تدريبي متدرج يبدأ بالأساسيات التقنية وصولًا إلى الأمن السحابي والعمليات الأمنية.</span></p></li><li><p ><span lang="ar" dir="rtl">مختبرات عملية وبيئات محاكاة آمنة للتطبيق العملي.</span></p></li><li><p ><span lang="ar" dir="rtl">تدريب على الاستجابة للحوادث والتحليل الجنائي الرقمي وعمليات مركز العمليات الأمنية (SOC).</span></p></li><li><p ><span lang="ar" dir="rtl">التدريب على التطوير الآمن وأمن سلسلة توريد البرمجيات والبنية التحتية ككود.</span></p></li><li><p ><span lang="ar" dir="rtl">مشاريع تطبيقية ومشروع تخرج لبناء ملف أعمال احترافي.</span></p></li><li><p ><span lang="ar" dir="rtl">تقييمات عملية ومتابعة مستمرة لقياس التقدم.</span></p></li><li><p ><span lang="ar" dir="rtl">شهادة إتمام معتمدة بعد استيفاء متطلبات الحضور والتقييم والمشروع النهائي.</span></p></li></ul><h3 ><span lang="ar" dir="rtl">أهداف الدبلوم</span></h3><ul><li><p ><span lang="ar" dir="rtl">تطبيق مبادئ الأمن السيبراني وأخلاقيات الممارسة المهنية.</span></p></li><li><p ><span lang="ar" dir="rtl">تأمين أنظمة Linux وخدمات الشبكات والبنية التحتية.</span></p></li><li><p ><span lang="ar" dir="rtl">تحليل حركة الشبكات وتطبيق ضوابط الدفاع والمراقبة.</span></p></li><li><p ><span lang="ar" dir="rtl">تقييم أمن تطبيقات الويب في بيئات تدريبية آمنة.</span></p></li><li><p ><span lang="ar" dir="rtl">تطبيق ممارسات التطوير الآمن وأمن سلسلة توريد البرمجيات.</span></p></li><li><p ><span lang="ar" dir="rtl">تأمين البيئات السحابية والحاويات وإدارة الهوية والوصول.</span></p></li><li><p ><span lang="ar" dir="rtl">تنفيذ عمليات مراكز العمليات الأمنية (SOC) والاستجابة للحوادث والتحليل الجنائي الرقمي.</span></p></li><li><p ><span lang="ar" dir="rtl">تطبيق مبادئ الحوكمة وإدارة المخاطر والامتثال وفق ضوابط الهيئة الوطنية للأمن السيبراني (NCA) ومتطلبات ساما.</span></p></li></ul><h3 ><span lang="ar" dir="rtl">وصف البرنامج</span></h3><p ><span lang="ar" dir="rtl">يقدم الدبلوم مسارًا تدريبيًا متقدمًا يجمع بين الجوانب النظرية والتطبيقية، ويبدأ بالأساسيات التقنية ثم ينتقل إلى أمن الأنظمة والشبكات والتطبيقات، والتطوير الآمن، والحوسبة السحابية، والعمليات الأمنية، والاستجابة للحوادث، ويختتم بمشروع تطبيقي متكامل.</span></p><h3 ><span lang="ar" dir="rtl">شروط الالتحاق</span></h3><ul><li><p ><span lang="ar" dir="rtl">أن يكون المتقدم أو المتقدمة سعودي الجنسية.</span></p></li><li><p ><span lang="ar" dir="rtl">الحصول على درجة البكالوريوس أو ما يعادلها.</span></p></li><li><p ><span lang="ar" dir="rtl">إجادة استخدام الحاسب الآلي وتطبيقاته الأساسية.</span></p></li><li><p ><span lang="ar" dir="rtl">الاستعداد للتعلم التقني والمشاركة في الأنشطة العملية.</span></p></li><li><p ><span lang="ar" dir="rtl">القدرة على قراءة وفهم المحتوى التقني باللغة الإنجليزية.</span></p></li><li><p ><span lang="ar" dir="rtl">الالتزام بالحضور واستكمال المتطلبات العملية والمشاريع والعمل ضمن فريق.</span></p></li><li><p ><span lang="ar" dir="rtl">الالتزام بالاستخدام المسؤول والأخلاقي للأدوات والتقنيات الأمنية داخل البيئات التدريبية المصرح بها.</span></p></li></ul>
<h2 ><span lang="ar" dir="rtl">إعلان الشركة الوطنية للرعاية الطبية عن وظيفة حارس أمن </span></h2><h3 ><span lang="ar" dir="rtl">الوصف الوظيفي</span></h3><p ><span lang="ar" dir="rtl">يتولى حارس الأمن تنفيذ الجولات الميدانية داخل المنطقة المخصصة له لضمان سلامة موظفي المستشفى والمرضى والزوار، وحماية الممتلكات والمعدات، بالإضافة إلى مراقبة الدخول والخروج من مباني المستشفى، ومتابعة أنظمة الإنذار الخاصة بالحريق والأمن عند الحاجة.</span></p><h3 ><span lang="ar" dir="rtl">المهام الوظيفية</span></h3><ul><li><p ><span lang="ar" dir="rtl">المساهمة في تقديم بيئة آمنة تدعم جودة الرعاية الصحية المقدمة للمرضى.</span></p></li><li><p ><span lang="ar" dir="rtl">تنفيذ جولات تفقدية للمباني للتأكد من سلامة الأبواب والنوافذ والإضاءة والمعدات.</span></p></li><li><p ><span lang="ar" dir="rtl">رصد الأضرار وإبلاغ الجهات المختصة لإجراء الإصلاحات اللازمة، وتوثيق الحوادث الأمنية.</span></p></li><li><p ><span lang="ar" dir="rtl">مراقبة السلوكيات غير النظامية أو المشبوهة والتعامل معها وفق الإجراءات المعتمدة.</span></p></li><li><p ><span lang="ar" dir="rtl">متابعة جاهزية طفايات الحريق وأجهزة السلامة والإبلاغ عن أي أعطال أو مخالفات.</span></p></li><li><p ><span lang="ar" dir="rtl">الإبلاغ عن الأضواء أو الأقفال أو الأبواب غير الصالحة للعمل، وتشغيل وإطفاء الإضاءة الخارجية وفق التعليمات.</span></p></li></ul><h3 ><span lang="ar" dir="rtl">الشروط</span></h3><ul><li><p ><span lang="ar" dir="rtl">الحصول على شهادة الثانوية العامة أو ما يعادلها.</span></p></li><li><p ><span lang="ar" dir="rtl">خبرة من سنة إلى سنتين في مجال الأمن، ويفضل في منشأة صحية.</span></p></li><li><p ><span lang="ar" dir="rtl">إجادة اللغة الإنجليزية.</span></p></li></ul><h3 ><span lang="ar" dir="rtl">لمحة عن الشركة</span></h3><p ><span lang="ar" dir="rtl">تأسست الشركة الوطنية للرعاية الطبية (رعاية) عام 2003 كشركة مساهمة مغلقة مملوكة للمؤسسة العامة للتأمينات الاجتماعية وعدد من المساهمين، ثم تحولت إلى شركة مساهمة عامة مدرجة في السوق المالية السعودية (تداول) عام 2013. وتدير الشركة مستشفى رعاية الرياض ومركز رعاية لطب العائلة، وتقدم خدمات صحية متخصصة وفق أعلى معايير الجودة.</span></p>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>The Roads Inspector monitors and inspects all phases of road construction activities to ensure adherence to approved drawings, specifications, materials, and safety procedures.</p><p>Your role</p><ul><li>Inspect road construction works including excavation, grading, subgrade, GSB, sub base, basecourse, and asphalt layers.</li><li>Verify compliance with material specifications and test results (soil, aggregates, asphalt).</li><li>Inspect drainage systems, kerbs, duct banks, utility crossings, and manholes.</li><li>Monitor traffic management setups and detours to ensure road user safety.</li><li>Prepare inspection reports, NCRs, and follow up on corrective actions.</li><li>Participate in joint inspections with contractors, consultants, and clients.</li><li>Ensure proper implementation of ITPs and QA/QC requirements.</li><li>Verify workmanship quality and safety in active road zones.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p>Diploma/Bachelor s in Civil Engineering. 3 7 years relevant experience in road inspection. Strong understanding of road construction materials and specifications. Good technical observation and documentation skills.</p><p></p></section>
Assistant Manager - Cybersecurity Security Architecture Qiddiya Investment Company
Information Technology
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>Qiddiya Investment Company is looking for a highly experienced and innovative Senior Manager - Cybersecurity Security Architecture to join our forward-thinking team. In this pivotal role, you will oversee the development and implementation of a comprehensive cybersecurity architecture framework designed to protect our digital and operational environments. Your strategic leadership will be essential in integrating security into all levels of our organization, ensuring that security measures support our ambitious growth and innovation goals. As a senior leader, you will play an instrumental role in shaping the security posture of Qiddiya by designing robust security architectures that align with industry best practices and regulatory standards.</p><p>Responsibilities</p><ul><li>Establish security design principles and standards that guide the implementation of secure systems and applications.</li><li>Conduct thorough assessments of existing security architectures and identify areas for improvement to mitigate risks.</li><li>Collaborate with cross-functional teams, including IT, engineering, and operations, to ensure that security architecture is implemented throughout the SDLC and operational phases.</li><li>Monitor advancements in cybersecurity technologies and integrate relevant solutions to enhance the security architecture.</li><li>Provide mentoring and leadership to team members and promote a culture of security awareness within the organization.</li><li>Develop and deliver presentations on cybersecurity architecture strategies to stakeholders and executive leadership.</li><li>Engage with external partners and vendors to assess potential security solutions and ensure alignment with architecture goals.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p>Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field; a master s degree is preferred. Demonstrated expertise in developing enterprise-level cybersecurity architectures for complex IT environments. In-depth knowledge of security frameworks, standards (e.g., NIST, ISO 27001, CIS Controls), and best practices. Strong analytical and problem-solving abilities, with a strategic and innovative mindset. Relevant certifications such as Certified Information Systems Security Professional (CISSP) or Certified Information Security Architect (CISA) are highly desirable.</p><p></p></section>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>We are looking for an experienced Cybersecurity Specialist to join our team in Riyadh. The ideal candidate will have a strong background in cybersecurity, with experience in threat intelligence and hands-on exposure to Anomali. This role requires an analytical professional who can contribute to strengthening the organization's cybersecurity posture and support security operations.</p><p>Key Responsibilities</p><ul><li>Monitor and assess cybersecurity threats and emerging risks.</li><li>Support threat intelligence activities and provide actionable insights.</li><li>Collaborate with internal teams to improve the organization's security posture.</li><li>Analyze security incidents and contribute to investigations.</li><li>Prepare reports, documentation, and recommendations for stakeholders.</li><li>Ensure compliance with organizational security policies and industry best practices.</li><li>Participate in security awareness and continuous improvement initiatives.</li><li>Work closely with cross-functional teams to support cybersecurity objectives.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li>Minimum 4 years of experience in cybersecurity.</li><li>Experience in Cybersecurity Threat Intelligence .</li><li>Hands-on experience with Anomali .</li><li>GCTI and/or GREM certification is required.</li><li>Strong analytical and problem-solving skills.</li><li>Excellent communication and stakeholder management abilities.</li><li>Ability to work effectively in a collaborative team environment.</li></ul><p></p></section>
<p>Role Overview :</p><br><p>Oversee the security operations of organizations, develop security strategies, implement security procedures, and supervise security officers and guards.</p><br><p>Job Responsibilities :</p><br><ul><li><p>Supervise all security staff and conduct periodic training exercises for them on regulatory and operational compliance as deemed necessary.</p></li><li><p>Train organization members and visitors on security rules and procedures.</p></li><li><p>Manage the security systems, including card access system, camera control, etc.</p></li><li><p>Plan, direct, or coordinate security activities to safeguard company assets, employees, visitors, or others on company property.</p></li><li><p>Monitor security policies, programs or procedures to ensure compliance with internal security policies, or applicable government security requirements, policies, and directives.</p></li><li><p>Develop, conduct, support, or assist in governmental reviews, internal corporate evaluations, or assessments of the overall effectiveness of facility and personnel security processes.</p></li><li><p>Communicate security status, updates, and actual or potential problems, using established protocols.</p></li><li><p>Develop or manage investigation programs, including collection and preservation of video and notes of surveillance processes or investigative interviews.</p></li><li><p>Prepare reports or make presentations on internal investigations, losses, or violations of regulations, policies and procedures.</p></li><li><p>Ensure compliance to all relevant safety and environmental management procedures and controls across the function to guarantee employee safety, legislative compliance, delivery of high quality products/service and a responsible environmental attitude.</p></li></ul><br><p><strong>Desired Candidate Profile</strong></p><p><strong>Qualification and Experience</strong></p><ul><li><p>A minimum of 5 to 6 years’ experience</p></li><li><p>Diploma and above; further education in security administration or similar field will be a plus.</p></li><li><p>Any security certifications will be a plus.</p></li></ul><br><p><strong>Skills and Abilities</strong></p><ul><li><p>Strong knowledge of Fire, Life & Safety (FLS), risk assessments, and crisis response protocols.</p></li><li><p>Technical expertise in CCTV, access control systems, alarms, and surveillance technology.</p></li><li><p>Solid understanding of Saudi security regulations and emergency response standards.</p></li><li><p>Knowledge of security industry regulations</p></li><li><p>Excellent surveillance and emergency response skills.</p></li><li><p>Excellent communication and interpersonal skills.</p></li><li><p>Outstanding organizational and leadership skills</p></li></ul>
<p>The Security Engineer supports physical security operations across data center environments. This role is responsible for monitoring security infrastructure, responding to incidents, ensuring compliance with access control policies, and supporting safe operations within leased or managed data center spaces. The position operates as part of a multi-tier security model, working closely with Security Operations Centers (SOC), Facilities teams, and regional security leadership to maintain the integrity and security of critical infrastructure.</p><p>Security Engineer acts as the first line of defense within the data center security operations framework. The role focuses on monitoring security systems, performing routine site inspections, identifying potential risks, and responding to operational security incidents.</p><p><strong>Key Responsibilities</strong></p><ul><li>Conduct routine security patrols across Data Halls, storage rooms, and office areas</li><li>Validate functionality of security systems including badge readers, doors, cameras, and sensors</li><li>Identify and report security incidents, safety risks, or hardware anomalies</li><li>Support vendor activities including installation or maintenance of security devices (CCTV, access control systems)</li><li>Escort vendors or contractors working within secured areas</li><li>Assist with critical security activities such as media destruction events or security audits</li><li>Maintain accurate daily reports and incident logs</li><li>Participate in operational briefings and team coordination meetings</li><li>Support access control onboarding activities and maintain presence in restricted environments</li><li>Ensure full compliance with PPE requirements and confidentiality policies</li></ul><p><strong>Desired Candidate Profile</strong></p><p><strong>Required Qualifications</strong></p><ul><li>Basic understanding of data centre environments or colocation facilities</li><li>Familiarity with security systems such as access control and CCTV</li><li>Proficiency in basic office tools (Excel, reporting tools, collaboration platforms such as Lark)</li><li>Strong written documentation and reporting skills</li><li>Ability to work rotating shifts in a 24 7 operational environment</li><li>Strong attention to detail and ability to follow strict operational procedures</li><li>Ability to work independently while escalating incidents when required</li></ul>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>Lead the day-to-day delivery of IT, network/infrastructure, OT, and application security operations across all ASO-managed platforms. Oversee Managed Service Partner (L1/L2) service delivery, ensuring effective platform governance, SLA compliance, operational efficiency, and continuous improvement.</p><p>Key Responsibilities</p><ul><li>Lead and manage the ASO team, including Senior Lead, Senior Specialist, and Security Specialist.</li><li>Oversee Managed Service Partner L1/L2 service delivery and SLA performance.</li><li>Govern platform administration and security tool configuration changes.</li><li>Oversee the Application Security program, including WAF governance, application vulnerability remediation, and coordination with the Cybersecurity Team.</li><li>Lead vulnerability management activities, including prioritization, tracking, and reporting.</li><li>Manage change management for all ASO-owned security platforms.</li><li>Oversee operational handover of new security tools and ensure service continuity.</li><li>Coordinate with the Security Lead on security incidents, escalations, and change approvals.</li><li>Prepare and present monthly operational and performance reports for leadership.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p>7+ years of cybersecurity experience, including 3+ years in a leadership role. Experience managing enterprise security operations and security platforms. Hands-on experience with security technologies such as firewalls, EDR, PAM, vulnerability management, and WAF. Experience managing Managed Security Service Providers (MSSPs) and SLA performance. Strong stakeholder management and operational governance skills. Professional certification such as CISSP or CISM preferred.</p><p></p></section>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>Cybersecurity Operations Expert responsible for supporting the first line of defense through the day-to-day execution, monitoring, and improvement of operational security controls across enterprise IT environments. The role focuses on protecting systems, networks, endpoints, applications, and users by detecting threats, responding to security events, coordinating remediation activities, and maintaining effective cybersecurity operations. Key responsibilities include continuous monitoring of security alerts and events, email security, and other operational security platforms, and ensuring timely containment and recovery actions. The role also supports vulnerability management by tracking findings, coordinating remediation with infrastructure and application teams, and validating closure of identified risks. The Cybersecurity Operations Expert works closely with IT operations, network, cloud, server, endpoint, and application teams to ensure security controls are implemented and functioning effectively as part of daily business and technology operations. Responsibilities also include supporting identity and access security operations, reviewing privileged access activities, enforcing security baselines, maintaining playbooks and operational procedures, and contributing to security awareness from an operational perspective. This position is part of the first line of defense and is therefore focused on operating and executing controls rather than performing independent oversight, policy governance, regulatory compliance assurance, or internal audit activities associated with the second or third lines of defense.</p><p>Responsibilities:</p><ul><li>Monitor and analyze cybersecurity alerts, events, and incidents.</li><li>Perform initial triage, investigation, containment support, and escalation of security incidents.</li><li>Support endpoint, network, cloud, and email security operations.</li><li>Coordinate vulnerability remediation with relevant technical teams.</li><li>Execute and maintain operational security controls and monitoring use cases.</li><li>Monitor and support security-related patching, platform upgrades, and operational technology refresh activities to ensure minimal security exposure and service disruption.</li><li>Support security activities during system, tool, and infrastructure migrations, including validation of controls, configuration reviews, and post-migration security checks.</li><li>Review and validate security integrations between cybersecurity tools, IT systems, cloud platforms, and third-party solutions to ensure proper logging, alerting, connectivity, and control effectiveness.</li><li>Support access control reviews, privileged access monitoring, and identity-related security operations.</li><li>Maintain incident response procedures, runbooks, and operational documentation.</li><li>Track remediation actions and follow up on risk reduction activities.</li><li>Contribute to continuous improvement of cybersecurity activities and processes.</li><li>Support business resilience by reducing operational cyber risk exposure.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li>Bachelor s degree in Cybersecurity, Information Security, Computer Science, Information Technology, Engineering, or a related field.</li><li>5+ years of experience in cybersecurity operations, security monitoring, incident response, vulnerability management, or security engineering functions.</li><li>Hands-on experience with enterprise security technologies, including SIEM, EDR/XDR, email security, identity and access management, network security, cloud security, and vulnerability management platforms.</li><li>Strong understanding of cybersecurity frameworks, attack techniques, threat detection methodologies, and security operations best practices.</li><li>Experience working in hybrid environments spanning on-premises infrastructure, cloud platforms, and third-party services.</li><li>Preferred Certifications Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM)</li></ul><p></p></section>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>The Cybersecurity GRC Consultant supports the design, implementation, and continuous improvement of cybersecurity governance, risk, and compliance initiatives. The role contributes to the development of governance frameworks, policies, operating models, and regulatory compliance activities while ensuring alignment with organizational objectives and Saudi cybersecurity regulations. The consultant works closely with senior consultants, architects, and client stakeholders to deliver high-quality governance artifacts and advisory services.</p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><ul><li>Bachelor's degree in Cybersecurity, Information Security, Information Technology, Computer Science, or a related discipline.</li><li>3 - 7 years of experience in Cybersecurity Governance, Risk & Compliance (GRC), Information Security, or Cybersecurity Consulting.</li><li>Experience in developing governance documentation, policies, standards, and cybersecurity frameworks.</li><li>Familiarity with cybersecurity governance operating models and organizational structures.</li><li>Experience supporting governance assessments, compliance initiatives, and regulatory audits.</li><li>Knowledge of Saudi cybersecurity regulations and international security standards.</li><li>Experience working within consulting, managed services, or large enterprise environments is preferred.</li></ul><p></p></section>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>Design and maintain enterprise cybersecurity architecture frameworks and standards. Review solution, infrastructure, cloud, and application architectures to ensure security requirements are embedded throughout the project lifecycle. Define security architecture principles, patterns, and reference architectures. Conduct architecture risk assessments and recommend appropriate security controls. Collaborate with Enterprise Architecture, Infrastructure, Cloud, Network, and Application teams to integrate security-by-design principles. Evaluate emerging technologies and recommend secure implementation approaches. Support cloud security architecture across Azure, AWS, and/or Google Cloud environments. Define requirements for Identity & Access Management (IAM), Zero Trust, network segmentation, encryption, and privileged access. Ensure compliance with cybersecurity frameworks and regulatory requirements (NCA ECC, NIST CSF, ISO 27001, CIS Controls).</p></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p>Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field. Master's degree is preferred. Minimum 3 4 years in Cybersecurity Architecture or Security Engineering.</p><p></p></section>
<section><p class="heading jdMain">Job Description</p><p class="heading">Roles & Responsibilities</p><div class="paragraph"><p>The Cybersecurity GRC Consultant supports the design, implementation, and continuous improvement of cybersecurity governance, risk, and compliance initiatives. The role contributes to the development of governance frameworks, policies, operating models, and regulatory compliance activities while ensuring alignment with organizational objectives and Saudi cybersecurity regulations. The consultant works closely with senior consultants, architects, and client stakeholders to deliver high-quality governance artifacts and advisory services.</p><p><strong>Key Responsibilities</strong></p><ul><li>Support the development, implementation, and maintenance of the cybersecurity governance framework, including policies, standards, procedures, and guidelines.</li><li>Assist in designing and improving cybersecurity governance operating models, organizational structures, and RACI matrices.</li><li>Contribute to the development and maintenance of governance-related KPIs, KRIs, dashboards, and reporting mechanisms.</li><li>Perform governance maturity assessments, gap analyses, and benchmarking activities against industry best practices.</li><li>Prepare governance documentation, reports, presentations, and recommendations for client review.</li><li>Ensure governance deliverables align with Saudi regulatory requirements, including NCA ECC, CST (formerly CITC), SAMA Cybersecurity Framework, and relevant international standards such as ISO/IEC 27001 and NIST Cybersecurity Framework.</li><li>Support governance committees, working groups, and client workshops by preparing documentation, facilitating discussions, and tracking action items.</li><li>Collaborate with Risk Management, Compliance, Third-Party Risk Management (TPRM), Enterprise Architecture, and Security Operations teams to ensure governance activities are integrated across cybersecurity domains.</li><li>Assist in the review and quality assurance of governance documentation and project deliverables.</li><li>Monitor regulatory updates and industry trends to recommend improvements to governance practices.</li><li>Provide advisory support to clients on cybersecurity governance best practices and regulatory compliance requirements.</li><li>Contribute to knowledge sharing, documentation, and continuous improvement initiatives within the Cybersecurity GRC practice.</li></ul></div></section><section><p class="heading">Desired Candidate Profile</p><p class="paragraph"></p><p><strong>Qualifications</strong></p><ul><li>Bachelor's degree in Cybersecurity, Information Security, Information Technology, Computer Science, or a related discipline.</li><li>3 - 7 years of experience in Cybersecurity Governance, Risk & Compliance (GRC), Information Security, or Cybersecurity Consulting.</li><li>Experience in developing governance documentation, policies, standards, and cybersecurity frameworks.</li><li>Familiarity with cybersecurity governance operating models and organizational structures.</li><li>Experience supporting governance assessments, compliance initiatives, and regulatory audits.</li><li>Knowledge of Saudi cybersecurity regulations and international security standards.</li><li>Experience working within consulting, managed services, or large enterprise environments is preferred.</li></ul><p></p></section>
<p>We are looking for a Senior Specialist Cybersecurity Production Support to join our team in Saudi Arabia. Job Overview: The Senior Specialist will be responsible for supporting and maintaining cybersecurity platforms, ensuring high availability, operational stability, and effective security monitoring across enterprise environments. Key Responsibilities: Provide production support for cybersecurity platforms including SIEM, SOAR, VPN, and security monitoring solutions. Monitor cybersecurity platforms, dashboards, alerts, and operational activities. Support Splunk SIEM use cases, log ingestion, correlation rules, and performance optimization. Manage and maintain SOAR workflows, playbooks, and automation processes. Support VPN infrastructure including secure remote access and site-to-site connectivity. Perform Incident, Problem, and Change Management activities following ITIL practices. Conduct Root Cause Analysis (RCA) for security incidents and platform issues. Support Cyber Incident Response activities including investigation and remediation. Participate in Disaster Recovery (DR) and Business Continuity Planning (BCP). Maintain security documentation, runbooks, SOPs, and operational reports. Collaborate with security teams, infrastructure teams, and vendors for issue resolution.</p><p><strong>Desired Candidate Profile</strong></p><p>Bachelor s degree in Cybersecurity, Information Security, Computer Science, or related field. 4 8 years of experience in cybersecurity production support within enterprise or financial environments. Hands-on experience with: SIEM platforms (Splunk Enterprise / Splunk ES preferred) SOAR platforms (Cortex XSOAR, Splunk SOAR, or similar) VPN technologies (IPSec / SSL VPN) Security monitoring and incident response Strong understanding of cybersecurity operations, threat detection, and log analysis. Experience with ITIL Incident, Problem, and Change Management. Knowledge of SAMA Cybersecurity Framework, NCA ECC, PDPL, and NDMO is preferred. Basic scripting knowledge (Python, PowerShell, or similar) is preferred.</p>
<h3 >About KBR Saudi Arabia and the Role</h3>
<p >KBR Saudi Arabia is seeking a <strong >Senior Security Manager</strong> for a full-time position in Riyadh, KSA. This role is integral to a Project Management Office (PMO) overseeing a high-profile infrastructure development. The Senior Security Manager will be responsible for supporting the management and implementation of the Client’s security policies at both program and project levels.</p> <h3 >Role Context and Objectives</h3>
<p >The Senior Security Manager will provide direct, hands-on support to the Client, numerous Project Management Consultants (PMCs), and contractors. This involves assessing and managing the security situation related to existing and upcoming projects. Additionally, this position is responsible for providing security coordination for members of the organization’s Senior Management Team in response to incidents, emergencies, and crises. The role also assists the Client in producing, implementing, and maintaining updated safety and security Standard Operating Procedures (SOPs), ensuring compliance with organizational standards.</p> <h3 >Key Responsibilities</h3>
<ul >
<li >Assist in developing and managing the organization’s safety and security strategy and policies.</li>
<li >Conduct on-site training for PMCs and contractors to facilitate the development and implementation of security management plans.</li>
<li >Serve as an advisor to the Client regarding security matters.</li>
<li >Contribute to the development of security priorities, ensuring safety operations and compliance are integrated into project plans and budgets.</li>
<li >Conduct threat and risk assessments for project-specific and Development risk environments, events, and designated venues.</li>
<li >Draft and develop site security plans in accordance with KBR policies, operational scope, and Client requirements.</li>
<li >Integrate, maintain, and utilize KBR travel management requirements and systems for tracking employee locations during high-security risks.</li>
<li >Advise and assist the Client in day-to-day security management duties, including physical security, special travel, escorts, incident response, reporting, and access control.</li>
<li >Serve as a coordinator for emergency/employee incidents involving employees and assets, informing senior management and recommending response actions.</li>
<li >Provide technical security advice in consultation with senior management on all security matters.</li>
<li >Conduct security drills and exercises in coordination with the Client and Project Management Consultants, adhering to global security standards.</li>
</ul> <h3 >Qualifications and Experience</h3>
<ul >
<li >A minimum of <strong >10 years of experience</strong> in security management.</li>
<li >Proven ability to manage international projects in high-risk environments and operate in unsecured contexts.</li>
<li >Substantial and documented prior experience as a trainer, with the ability to develop, implement, facilitate, and impart learning to diverse audiences.</li>
<li >High level of experience in developing security-related technical tools, guidelines, and systems, with the ability to work under minimal supervision.</li>
<li >Understanding of principles and codes of conduct associated with specific sectors such as fabrication, development, or other commercial construction contexts.</li>
<li >Skilled in interdisciplinary problem-solving.</li>
<li >Ability to gain a precise understanding of local, regional, country, and international policies, operational positions, and interactions, providing clear dynamic briefings and analysis of security and political situations.</li>
<li >Strong assessment, evaluation, analysis, strategic planning, and project management skills.</li>
<li >Demonstrated ability to manage and work under stressful conditions.</li>
<li >Understanding of the Saudi Arabian political, contextual, and ethical issues in assigned areas.</li>
<li >Previous experience interacting with local government agencies and other foreign agencies to implement security strategies and procedures.</li>
<li >Demonstrated commitment to diversity, equity, and inclusion.</li>
</ul> <h3 >Preferred Attributes</h3>
<ul >
<li >Experience in multiple geographic locations.</li>
<li >Prior military or law enforcement work experience, or relevant experience in the technical security area.</li>
<li >Ability to develop security strategies for critical infrastructure projects internationally.</li>
</ul> <h3 >About KBR Saudi Arabia</h3>
<p >KBR delivers future-forward science, technology, and engineering solutions, alongside mission-critical services, to governments and companies worldwide. The organization focuses on helping clients achieve their objectives and sustainability goals. KBR Sustainable Technology Solutions provides holistic and value-added solutions across the entire asset life cycle. KBR fosters an environment of teamwork, accountability, creativity, and innovation, valuing individuals who lead by example and model the company's culture and values.</p>