📍 المملكة العربية السعودية تحديث مستمر على مدار الساعة وظائف تناسب سيرتك الذاتيةمجاناً قناة تيليجرام

إير برودكتس تعلن عن وظيفة قائد أمن سيبراني IT/DT - NGHP في ضباء

NGHP IT/DT Cybersecurity Lead
🏢 إير برودكتس (Air Products)
🕒 نُشرت: (منذ شهرين) 📍 ضباء وظائف الهندسة والتقنية

تفاصيل الوظيفة

شركة إير برودكتس تعلن عن وظيفة NGHP IT/DT Cybersecurity Lead في دُبَا، المملكة العربية السعودية. انضم إلى فريقنا لقيادة أنشطة الأمن السيبراني في الموقع، وضمان الامتثال التنظيمي، والتنسيق مع الجهات المعنية.

المهام والمسؤوليات

  • قيادة وتنسيق أنشطة الأمن السيبراني في الموقع، بما في ذلك اختبار قبول الموقع السيبراني، وأنشطة النظافة السيبرانية، ومراجعات الجاهزية السيبرانية، وجمع وثائق إثبات الامتثال، وإغلاق فجوات تنفيذ الأمن السيبراني.
  • العمل كنقطة تنسيق سيبراني في الموقع بين إدارة تقنية المعلومات (DT)، وأمن أنظمة التشغيل والتحكم الصناعي (OT/ICS)، وإدارة المشاريع، وأنظمة التحكم في العمليات، والموردين، والمقاولين من الباطن، وأصحاب المصلحة في NGHC.
  • تقديم التوجيه اليومي لمهندسي الأمن السيبراني والشركاء الخارجيين والموارد السيبرانية في الموقع الداعمة للتنفيذ والاختبار والتوثيق وجمع الأدلة.
  • ضمان توافق الأنشطة السيبرانية مع جدول المشروع وأولويات التشغيل واحتياجات بدء التشغيل ومراحل الامتثال.
  • التنسيق مع مدير مشروع DT وفريق أمن OT/ICS للحفاظ على جدول موحد لتسليمات الأمن السيبراني والتبعيات والمخاطر والمعالم.
  • دعم تنفيذ أنشطة الأمن السيبراني المتوافقة مع المتطلبات التنظيمية السعودية (NCA ECC، NCA OTCC، متطلبات تصريح تشغيل HCIS/SAIS، والتزامات الأنظمة الحيوية/CNI).
  • قيادة جمع وتنظيم ومراجعة الجودة والجاهزية لوثائق إثبات الامتثال لدعم أنشطة الامتثال لـ HCIS وNCA.
  • التنسيق مع NGHC بشأن مراجعة الأدلة السيبرانية وتغذية الملاحظات وحل التعليقات. دعم إعداد حزم الأدلة السيبرانية والردود للتقديم التنظيمي.
  • ضمان اكتمال وثائق الامتثال وإمكانية تتبعها والتحكم فيها وتنظيمها للتدقيق والمراجعة التنظيمية والموافقة من أصحاب المصلحة.
  • الإشراف على إدارة المخاطر والعوائق الفنية والفجوات في التوثيق التي قد تؤثر على الامتثال التنظيمي أو جاهزية البدء أو التسليم.
  • التواصل الفعال لحالة الأمن السيبراني والمخاطر والقضايا والتبعيات وموضوعات التصعيد للإدارة العليا وقادة المشاريع.
  • إدارة والإشراف على الشركاء الخارجيين المشاركين في تصميم وشراء وتنفيذ وتوثيق ودعم حلول الأمن السيبراني ضمن نطاق المشروع.

الشروط والمتطلبات

  • فهم قوي للوائح الأمن السيبراني السعودية ومتطلباتها التنظيمية (بما في ذلك NCA وHCIS).
  • فهم الالتزامات التعاقدية للأمن السيبراني بين Air Products/APEPC وNGHC.
  • خبرة في قيادة أنشطة أمن OT/ICS في بيئات صناعية أو طاقة أو كيميائية أو مرافق عامة أو بنية تحتية حيوية أو مشاريع رأسمالية كبيرة.
  • خبرة في اختبار قبول الموقع السيبراني، ووثائق إثبات الامتثال، وجمع الأدلة التنظيمية، وإغلاق تقييم المخاطر السيبرانية، والجاهزية للتدقيق.
  • القدرة على إدارة أولويات متعددة ومتزامنة عبر تنفيذ المشروع، والتنسيق مع أصحاب المصلحة، والامتثال التنظيمي، وإدارة البائعين، والجاهزية للموقع.
  • مهارات قوية في التواصل الكتابي واللفظي باللغة الإنجليزية؛ اللغة العربية ميزة إضافية.
  • القدرة على التواصل بفعالية مع الإدارة العليا مع فهم وتوجيه أعمال العمل اليومية التفصيلية في الموقع.
  • مهارات قوية في إدارة أصحاب المصلحة عبر المشروع والهندسة والأمن السيبراني والعمليات والبائعين والمنظمات الخارجية/العميلة.
  • الإلمام بمبادئ أمن OT/ICS بما في ذلك التقسيم (segmentation)، وشبكات DMZ الصناعية، والوصول عن بُعد الآمن، والتحكم في الوصول، والتصلب (hardening)، والمراقبة، والجاهزية للحوادث.
  • القدرة على العمل في بيئة معقدة متعددة الأطراف تشمل Air Products وNGHC وPDO وDT ومقاولي EPC والبائعين والجهات التنظيمية.
عرض النص الأصلي للإعلان


في شركة «إير برودكتس»، نعيد تصور ما هو ممكن. من خلال الاستفادة من حماس موظفينا وخبرتنا الجماعية، نبتكر الأفكار والابتكارات التي تدفعنا إلى الأمام. عندما نجتمع معًا - حيث تُسمع كل صوت ويشعر الجميع بالانتماء والأهمية - نبتكر حلولًا تنقل البشر إلى الفضاء، وتدعم الرعاية المنقذة للحياة في المستشفيات، وتتيح إنشاء منشآت إنتاج رائدة على نطاق عالمي.
 
إعادة تصور ما هو ممكن

DT Cybersecurity Leadership and Site Execution

  • Lead and coordinate cybersecurity activities at site, including cyber site acceptance testing, cyber hygiene activities, cyber readiness reviews, proof-of-compliance documentation collection, and closure of cybersecurity implementation gaps.

  • Serve as the site-based cybersecurity point of coordination between DT, OT/ICS Cybersecurity, project management, process controls, vendors, subcontractors, and NGHC stakeholders.

  • Provide day-to-day direction to cybersecurity engineers, external partners, and site-based cyber resources supporting implementation, testing, documentation, and evidence collection.

  • Ensure cyber activities are aligned to the project schedule, commissioning priorities, start-up needs, and compliance milestones.

  • Coordinate with the DT Project Manager and OT/ICS Cybersecurity team to maintain a consolidated schedule of cybersecurity deliverables, dependencies, risks, and milestones.

Regulatory and Compliance Readiness

  • Support execution of cybersecurity activities aligned to applicable KSA regulatory requirements, including NCA ECC, NCA OTCC, HCIS/SAIS operating permit requirements, and applicable CNI/critical systems obligations.

  • Lead collection, organization, quality review, and readiness of Proof of Compliance documentation required to support HCIS and NCA compliance activities.

  • Coordinate with NGHC on CSAT witnessing, evidence review, documentation feedback, and comment resolution.

  • Support NGHC in preparing cybersecurity evidence packages and responses for regulatory submission, recognizing that NGHC is expected to submit documentation to HCIS and NCA while Air Products/APEPC supports project delivery and evidence readiness.

  • Ensure compliance documentation is complete, traceable, controlled, and organized for audit, regulatory review, and stakeholder approval.

Stakeholder Interface and Governance

  • Interface regularly with the OT/ICS Cybersecurity team, including alignment with PDO on-site cyber resources performing CSAT, cyber hygiene, and vendor-related compliance activities.

  • Conduct routine coordination meetings with OT/ICS Cybersecurity, DT, NGHC, and project stakeholders to align cyber execution activities, risks, blockers, and decisions.

  • Communicate cybersecurity status, risks, issues, dependencies, and escalation items effectively to senior management and project leadership.

  • Translate technical cybersecurity and compliance topics into clear, actionable updates for project executives, DT leadership, NGHC, PDO, and external partners.

  • Support governance meetings, executive cyber oversight reviews, and compliance readiness discussions.

Third-Party and Vendor Oversight

  • Manage and supervise external partners engaged to design, purchase, implement, document, test, or support cybersecurity solutions for the GHE scope.

  • Oversee on-site work performed by external cybersecurity implementation partners and ensure deliverables meet Air Products, NGHC, NCA, HCIS, and project requirements.

  • Coordinate third-party support between CSAT, commissioning, start-up, and handover to NGHC.

  • Ensure vendor/subcontractor cybersecurity deliverables are tracked, reviewed, documented, and escalated when gaps or delays affect compliance or project readiness.

  • Support review of vendor documentation, cyber execution plans, network/security architecture, hardening evidence, access control matrices, SIEM/monitoring documentation, and POC packages.

DT, OT, and Project Integration

  • Serve as the interface between DT infrastructure activities and cybersecurity-related activities at site.

  • Support alignment across OT systems, industrial DMZs, site network architecture, identity/access controls, monitoring, cyber hygiene, and cyber readiness activities.

  • Identify scope gaps, accountability gaps, technical blockers, and documentation gaps that could affect regulatory compliance, start-up readiness, or handover.

  • Partner with site engineering, process controls, and project management teams to ensure cybersecurity activities are integrated into site work plans and commissioning sequences.

  • Support handover readiness by ensuring documentation, evidence, operating assumptions, and support responsibilities are clearly defined.

Required Qualifications and Experience

  • Strong understanding of KSA cybersecurity regulations and regulatory expectations, including NCA and HCIS requirements.

  • Understanding of contractual cybersecurity obligations between Air Products/APEPC and NGHC.

  • Experience leading OT/ICS cybersecurity activities in industrial, energy, chemical, utility, critical infrastructure, or large capital project environments.

  • Experience with cybersecurity site acceptance testing, proof-of-compliance documentation, regulatory evidence collection, cyber risk assessment closure, and audit readiness.

  • Ability to manage multiple concurrent priorities across project execution, stakeholder coordination, regulatory compliance, vendor management, and site readiness.

  • Strong written and verbal communication skills in English; Arabic language capability a plus.

  • Ability to communicate effectively with senior management while also understanding and directing detailed day-to-day work activities at site.

  • Strong stakeholder management skills across project, engineering, cybersecurity, operations, vendors, and external/customer organizations.

  • Familiarity with OT/ICS security principles, including segmentation, industrial DMZs, secure remote access, access control, hardening, monitoring, and incident readiness.

  • Ability to operate in a complex, multi-party environment involving Air Products, NGHC, PDO, DT, EPC contractors, vendors, and regulatory stakeholders.

تأسست شركة Air Products في عام 1940، وهي شركة رائدة عالمياً في مجال الغازات الصناعية ولديها تاريخ حافل بالابتكار والتميز التشغيلي، مع التزام راسخ بالسلامة والإدارة البيئية. من خلال العمل معاً، نستغل شغفنا وخلفياتنا المتنوعة للمضي قدماً في إعادة تصور ما هو ممكن وخلق مستقبل أنظف لعملائنا ومجتمعاتنا والعالم.

المصدر: الموقع الرسمي للجهة - أُضيفت للموقع في 3 أكتوبر 2026
رقم الإعلان لدى المصدر: JR-2026-21401