📍 المملكة العربية السعودية تحديث مستمر على مدار الساعة وظائف تناسب سيرتك الذاتيةمجاناً قناة تيليجرام

وظيفة مشغل أنظمة - جدار الحماية والتطبيقات الخارجية شاغرة لدى VaporVM في الرياض

System Operator - Internet Firewall & External Applications (Saudi National)
🏢 VaporVM
🕒 نُشرت: (منذ 30 يوماً) 📍 الرياض وظائف الحرف والعمالة الفنية

تفاصيل الوظيفة

تعلن شركة VaporVM عن توفر وظيفة System Operator - Internet Firewall & External Applications (للسعوديين) في مدينة الرياض، بهدف دعم تشغيل ومراقبة وإدارة أنظمة الأمن السيبراني ضمن قطاع الشؤون الصحية (Health Affairs).

المهام والمسؤوليات

  • تشغيل ودعم أنظمة الأمن السيبراني مثل Firewall، WAF، SIEM، Antivirus (AV)، EDR، Proxy، IDS/IPS والتقنيات ذات الصلة.
  • المراقبة المستمرة للتنبيهات والأحداث والاختراقات الأمنية في البيئة.
  • تحديد وتصنيف وترتيب أولويات والتحقيق في الأحداث الأمنية المجمعة من: أجهزة الجدار الناري وأجهزة الشبكة، ووكلاء الوكيل (Proxy) وأنظمة IDS/IPS، وحلول مكافحة الفيروسات (AV) وEDR، وقواعد البيانات والخوادم ونقاط النهاية.
  • تصنيف الحوادث حسب النوع والتأثير والخطورة.
  • اتخاذ الإجراء المناسب بناءً على خطورة الحادثة، بما في ذلك: إبلاغ مسؤولي الأنظمة المختصين، اتباع إجراءات الاستجابة المعتمدة، تصعيد الحوادث وفق عمليات التصعيد المحددة، وتوثيق جميع الحوادث والإجراءات المتخذة بدقة.
  • التحقيق في حوادث الأمن السيبراني، تتبع الهجمات، وجمع المعلومات ذات الصلة حول المهاجمين المحتملين وطرق الهجوم.
  • تحليل الأحداث والحوادث السيبرانية المبلغ عنها من الهيئة الوطنية للأمن السيبراني وتنسيق الإجراءات المناسبة.
  • إنشاء ومراجعة وتحديث حالات استخدام (use cases) لـ SIEM/مراقبة الأمن للأنظمة والتطبيقات الجديدة.
  • حل وإدارة طلبات الخدمة ومشكلات المستخدمين المتعلقة بالأمن السيبراني.
  • التنسيق مع الإدارات والفرق الفنية الأخرى أثناء التحقيق في حوادث الأمن السيبراني وحلها.
  • مراقبة الامتثال لمعايير الأمن الفني المعمول بها في MNG-HA ودعم معالجة الثغرات المحددة.
  • صيانة وتشغيل أحدث الإصدارات المعتمدة من أنظمة الأمن السيبراني داخل الشؤون الصحية.
  • إعداد وتقديم تقارير شهرية عن الأمن السيبراني تلخص الحوادث الرئيسية والتحقيقات والإجراءات المتخذة والملاحظات الهامة.
  • دعم التحسين المستمر لعمليات المراقبة الأمنية والاستجابة للحوادث والتشغيل السيبراني.

الشروط والمتطلبات

  • خبرة في عمليات الأمن السيبراني، مركز عمليات الأمن (SOC)، المراقبة الأمنية، أو هندسة الأمن.
  • خبرة عملية مع تقنيات أمنية مثل Firewalls، WAF، SIEM، EDR، Antivirus، Proxy، IDS/IPS.
  • فهم قوي لمراقبة الأحداث الأمنية، تصنيف الحوادث، التحقيق، التصعيد، والاستجابة.
  • خبرة في تحليل السجلات والأحداث الأمنية من أجهزة الشبكة، الخوادم، نقاط النهاية، قواعد البيانات، وأدوات الأمن.
  • معرفة بعمليات الاستجابة للحوادث وأفضل الممارسات في الأمن السيبراني.
  • القدرة على تطوير وصيانة حالات استخدام مراقبة الأمن/SIEM.
  • مهارات تحليلية قوية، واستكشاف الأخطاء، والتوثيق، والتواصل.
  • خبرة في العمل ضمن بيئة عمليات أمنية (SOC) على مدار 24 ساعة تعتبر ميزة إضافية.
  • الشهادات المهنية في الأمن السيبراني مثل Security+، CySA+، CEH، GCIH أو ما يعادلها مفضلة.
عرض النص الأصلي للإعلان

System Operator - Internet Firewall & External Applications


We are looking for a System Operator - Internet Firewall & External Applications to support the operation, monitoring, and administration of cybersecurity systems within Health Affairs. The role will focus on security monitoring, incident handling, investigation, escalation, compliance, and maintaining the effectiveness of security infrastructure.


Key Responsibilities

  • Operate and support cybersecurity systems, including Firewall, WAF, SIEM, Antivirus (AV), EDR, Proxy, IDS/IPS, and related security technologies.
  • Continuously monitor security alerts, events, and incidents across the environment.
  • Identify, classify, prioritize, and investigate security events collected from:
  • Firewalls and network devices
  • Proxies and IDS/IPS systems
  • Antivirus and EDR solutions
  • Databases, servers, and endpoints
  • Classify incidents according to their type, impact, and severity.
  • Take appropriate action based on incident severity, including:
  • Notifying relevant system administrators.
  • Following established incident response procedures.
  • Escalating incidents in accordance with defined escalation processes.
  • Accurately documenting all incidents and actions taken.
  • Investigate cybersecurity incidents, track cyberattacks, and gather relevant information about potential attackers and attack methods.
  • Analyze cyber events and incidents reported by the National Cybersecurity Authority and coordinate appropriate actions.
  • Create, review, and update SIEM/security monitoring use cases for new systems and applications.
  • Resolve and manage cybersecurity-related service requests and user issues.
  • Coordinate with other departments and technical teams during security incident investigations and resolution.
  • Monitor compliance with applicable MNG-HA technical security standards and support remediation of identified gaps.
  • Maintain and operate the latest approved versions of cybersecurity systems and security technologies within Health Affairs.
  • Prepare and submit monthly cybersecurity reports summarizing major incidents, investigations, actions taken, and key observations.
  • Support continuous improvement of security monitoring, incident response, and cybersecurity operational processes.


Required Skills & Experience

  • Experience in Cybersecurity Operations, SOC, Security Monitoring, or Security Engineering.
  • Hands-on experience with security technologies such as Firewalls, WAF, SIEM, EDR, Antivirus, Proxy, and IDS/IPS.
  • Strong understanding of security event monitoring, incident classification, investigation, escalation, and response.
  • Experience analyzing logs and security events from network devices, servers, endpoints, databases, and security tools.
  • Knowledge of incident response processes and cybersecurity best practices.
  • Ability to develop and maintain security monitoring/SIEM use cases.
  • Strong analytical, troubleshooting, documentation, and communication skills.
  • Experience working in a 24x7 SOC or security operations environment is an advantage.
  • Relevant cybersecurity certifications such as Security+, CySA+, CEH, GCIH, or equivalent are preferred.
المصدر: LinkedIn - أُضيفت للموقع في 10 سبتمبر 2026
رقم الإعلان لدى المصدر: 4464199839