تفاصيل الوظيفة
تسعى شركة Accelerec Ltd. في الرياض، السعودية، إلى توظيف مدير مركز عمليات أمنية (SOC Manager) لقيادة عمليات مركز الأمن. توفر هذه الوظيفة الدائمة فرصةً لحماية الأصول الرقمية للمؤسسة، وبناء فريق أمني عالي الأداء وتوجيهه، والمساهمة في تطوير الوضع الأمني السيبراني.
المهام والمسؤوليات
- إدارة العمليات اليومية لمركز عمليات الأمن (SOC) بشكل مباشر، وضمان المراقبة المستمرة والاستجابة الفعالة للحوادث.
- تطوير وتنفيذ وتحسين عمليات وplaybooks وإجراءات SOC للكشف عن الحوادث وتحليلها واحتوائها واستئصالها والتعافي منها.
- قيادة وتوجيه فريق من محللي SOC مع تعزيز تطورهم المهني وضمان الأداء العالي.
- الإشراف على الاستخدام الفعال وتحسين منصات SIEM (مثل Splunk وQRadar وELK Stack) للكشف المتقدم عن التهديدات وتحليلها.
- قيادة مبادرات الصيد الاستباقي للتهديدات (threat hunting) لتحديد وتحييد التهديدات المتطورة قبل أن تؤثر على المؤسسة.
- إدارة وتحسين برامج إدارة الثغرات الأمنية (vulnerability management) لتحديد وإصلاح نقاط الضعف الأمنية عبر المؤسسة.
- التعاون مع فرق الهندسة الأمنية وبنية الأمن لضمان تنفيذ ضوابط أمنية قوية لبيئات الشبكة ونقاط النهاية والسحابة.
الشروط والمتطلبات
- درجة البكالوريوس في العلوم أو علوم الحاسب (Bachelor of Science أو BCS).
- خبرة لا تقل عن 7 سنوات في عمليات الأمن السيبراني مع تركيز على إدارة مركز عمليات الأمن أو دور قيادي مماثل.
- شهادة إلزامية من إحدى: CISSP أو CISM أو GIAC.
المهارات المطلوبة
- خبرة في إدارة SIEM والاستجابة للحوادث والصيد الاستباقي للتهديدات وإدارة الثغرات وأمن الشبكات وأمن نقاط النهاية وأمن السحابة وبنية الأمن.
- إتقان أدوات SIEM مثل Splunk وQRadar أو ELK Stack.
- خبرة في استخدام لغات البرمجة النصية مثل Python للأتمتة.
- مهارات قيادية مثبتة للفريق، واتصال استثنائي (كتابي وشفهي)، وحل المشكلات، والتفكير النقدي، واتخاذ القرارات.
- إجادة اللغة الإنجليزية.
- خبرة في ممارسات وأدوات أمن السحابة في بيئات AWS أو Azure أو GCP.
- شهادات أمن سيبراني إضافية تتجاوز الشهادات المطلوبة.
- خبرة في تطوير وتنفيذ حلول التنسيق والأتمتة والاستجابة الأمنية (SOAR).
المزايا
- بيئة عمل ديناميكية وتحديات جديدة ضمن مؤسسة متنامية.
- فرصة لقيادة وتشكيل وظيفة أمنية حيوية في السعودية.
- حزمة مزايا تنافسية تدعم رفاهيتك ونموك المهني.
- الوصول إلى أحدث التقنيات والمنهجيات الأمنية.
- ثقافة فريق تعاونية تقدّر الخبرة والتعلم المستمر.
عرض النص الأصلي للإعلان
We are seeking a highly experienced and motivated SOC Manager to lead our Security Operations Center in Saudi Arabia. This pivotal role offers a challenging and rewarding opportunity to safeguard our organization's digital assets, build and mentor a high-performing security team, and drive the evolution of our cybersecurity posture. If you are a seasoned security leader with a passion for proactive threat detection and response, we encourage you to apply for this permanent position.
Key Responsibilities
- Direct and manage the day-to-day operations of the Security Operations Center (SOC), ensuring continuous monitoring and effective incident response.
- Develop, implement, and refine SOC processes, playbooks, and procedures for incident detection, analysis, containment, eradication, and recovery.
- Lead and mentor a team of SOC analysts, fostering their professional development and ensuring high performance.
- Oversee the effective utilization and optimization of SIEM platforms (e.g., Splunk, QRadar, ELK Stack) for advanced threat detection and analysis.
- Drive proactive threat hunting initiatives to identify and neutralize sophisticated threats before they impact the organization.
- Manage and enhance vulnerability management programs to identify and remediate security weaknesses across the enterprise.
- Collaborate with security architecture and engineering teams to ensure the implementation of robust security controls for network, endpoint, and cloud environments.
Required Qualifications
- Education: Bachelor of Science or Bachelor of Computer Science (BCS)
- Experience: A minimum of 7 years of progressive experience in cybersecurity operations, with a focus on Security Operations Center management or a similar leadership role.
- Technical Skills: Demonstrated expertise in SIEM management, incident response, threat hunting, vulnerability management, network security, endpoint security, cloud security, and security architecture. Proficiency with SIEM tools such as Splunk, QRadar, or ELK Stack. Experience with scripting languages like Python for automation.
- Leadership & Soft Skills: Proven team leadership capabilities, exceptional communication (written and verbal), problem-solving, critical thinking, and decision-making skills.
- Certifications: CISSP, CISM, or GIAC certification is mandatory.
Preferred Qualifications
- Fluency in English.
- Experience with cloud security best practices and tools in AWS, Azure, or GCP environments.
- Additional cybersecurity certifications beyond the required ones.
- Experience in developing and implementing Security Orchestration, Automation, and Response (SOAR) solutions.
What We Offer
- A dynamic and challenging work environment within a growing organization.
- The opportunity to lead and shape a critical security function in Saudi Arabia.
- A competitive benefits package designed to support your well-being and professional growth.
- Access to cutting-edge security technologies and methodologies.
- A collaborative team culture that values expertise and continuous learning.
رقم الإعلان لدى المصدر: 4473865887