تفاصيل الوظيفة
فلووس (AL-AN Alkhaligia for Consumer Microfinance Company) تعلن عن حاجة لوظيفة أخصائي الأمن السيبراني في الرياض، السعودية. تهدف الشركة إلى حماية أصول المعلومات وبيانات العملاء والخدمات الرقمية من خلال تنفيذ ومراقبة ضوابط الأمن والاستجابة للحوادث ودعم الامتثال لمتطلبات البنك المركزي السعودي (SAMA) والجهات الرقابية الأخرى.
المهام والمسؤوليات
- مراقبة الأمن والاستجابة للحوادث: مراقبة التنبيهات الأمنية من SIEM وأدوات حماية نقطة النهاية وغيرها، والتحقيق في الحوادث وتصنيفها، ودعم أنشطة الاحتواء والاستئصال، وتوثيق الحوادث وإعداد التقارير للإدارة والجهات الرقابية، ومتابعة معلومات التهديدات.
- إدارة الثغرات والتهديدات: إجراء فحوصات دورية للثغرات وتتبع المعالجة مع فريق تقنية المعلومات والبائعين، وتنسيق اختبارات الاختراق ومتابعة إغلاق النتائج، ومراجعة تكوينات الخوادم والشبكات والخدمات السحابية ونقاط النهاية مقابل خطوط أساس معتمدة، ودعم المراجعات الأمنية للأنظمة الجديدة والتغييرات قبل التشغيل.
- إدارة الهوية والوصول: مراجعة صلاحيات الوصول للمستخدمين والحسابات المميزة بشكل دوري، ومراقبة نشاط الوصول المميز والإبلاغ عن الحالات الشاذة، ودعم تطبيق سياسات التحكم في الوصول بما في ذلك المصادقة متعددة العوامل ومبدأ أقل الامتياز.
- الحوكمة والمخاطر والامتثال: دعم الامتثال لإطار الأمن السيبراني لـ SAMA وضوابط الأمن السيبراني الأساسية للهيئة الوطنية للأمن السيبراني (NCA) وقانون حماية البيانات الشخصية (PDPL)، والمساعدة في صيانة سياسات ومعايير وإجراءات الأمن السيبراني، ودعم تقييمات مخاطر الأمن السيبراني والتقييم الذاتي للنضج، وإعداد الأدلة لعمليات التدقيق الداخلي والفحوصات الرقابية وتتبع إغلاق النتائج، ودعم تقييمات الأمن السيبراني للأطراف الثالثة والبائعين.
- التوعية والتقارير: دعم برامج التوعية بالأمن السيبراني بما في ذلك محاكاة التصيد وتدريب الموظفين، وإعداد تقارير دورية ومؤشرات أداء رئيسية حول وضع الأمن السيبراني للشركة لمقدم تقارير CISO، والحفاظ على توثيق دقيق لأدوات الأمن والتكوينات والإجراءات.
الشروط والمتطلبات
- درجة البكالوريوس في الأمن السيبراني أو علوم الحاسب أو تقنية المعلومات أو الهندسة أو مجال ذي صلة.
- خبرة لا تقل عن 3 سنوات في مجال الأمن السيبراني أو أمن المعلومات.
- يفضل خبرة في الخدمات المالية أو التكنولوجيا المالية أو التمويل الاستهلاكي، وخبرة في كيان خاضع لرقابة SAMA هي ميزة إضافية.
- شهادات مهنية: يفضل CompTIA Security+ أو CEH أو ما يعادلها، وتعتبر شهادات CySA+ أو GIAC (مثل GSEC و GCIH) أو ISO 27001 Lead Implementer أو شهادات أمن سحابي ذات صلة ميزة إضافية.
- إجادة اللغتين العربية والإنجليزية (تحدثاً وكتابة).
- الجنسية: سعودي.
المهارات المطلوبة
- المهارات التقنية: معرفة جيدة وخبرة عملية في SIEM وأدوات مراقبة الأمن، كشف الحوادث والاستجابة، فحص الثغرات وإدارتها، أمن نقاط النهاية والشبكات وجدران الحماية، الأمن السحابي، إدارة الهوية والوصول (IAM/PAM)، أمن البريد الإلكتروني والويب، خطوط الأساس لتكوين الأمن وتقويته.
- المعرفة التنظيمية والامتثالية: معرفة بإطار الأمن السيبراني لـ SAMA، والإلمام بضوابط الأمن السيبراني للهيئة الوطنية للأمن السيبراني (NCA) وقانون حماية البيانات الشخصية (PDPL)، والإلمام بالمعايير الدولية مثل ISO 27001 و NIST.
- الكفاءات الشخصية: مهارات تحليلية وتحقيقية قوية، القدرة على الحفاظ على الهدوء واتخاذ القرارات خلال الحوادث، النزاهة والسرية في التعامل مع المعلومات الحساسة، التواصل الواضح كتابياً وشفهياً.
عرض النص الأصلي للإعلان
About Flooss
AL-AN Alkhaligia for Consumer Microfinance Company (Flooss) provides consumer microfinance solutions in Saudi Arabia and operates in the regulated financial sector under the supervision of the Saudi Central Bank (SAMA).
We are building a customer-focused, technology-enabled, and well-governed organization, and we are looking for talented professionals who will help shape its next stage of growth.
Role Purpose
Support the Company's Cybersecurity function in protecting information assets, customer data, and digital services by implementing and monitoring security controls, responding to incidents, and supporting compliance with SAMA and other applicable regulatory requirements.
The Cybersecurity Specialist will report to the Chief Information Security Officer (CISO) and work closely with the IT team, Risk, Compliance, and technology vendors.
Key Responsibilities
1. Security Monitoring & Incident Response
- Monitor security alerts and events from the SIEM, endpoint protection, and other security tools, whether in-house or through an outsourced Security Operations Center (SOC).
- Investigate and triage security incidents, and support containment, eradication, and recovery activities.
- Document incidents and support the preparation of incident reports to management and regulators as required.
- Follow up on threat intelligence and assess its relevance to the Company's environment.
2. Vulnerability & Threat Management
- Conduct regular vulnerability scans and track remediation with the IT team and vendors.
- Coordinate penetration tests and follow up on closure of findings.
- Review security configurations of servers, networks, cloud services, and endpoints against approved baselines.
- Support security reviews of new systems, changes, and integrations before go-live.
3. Identity & Access Management
- Review user access rights and privileged accounts periodically.
- Monitor privileged access activity and report anomalies.
- Support the implementation of access control policies, including multi-factor authentication and least-privilege principles.
4. Governance, Risk & Compliance
- Support compliance with the SAMA Cyber Security Framework, NCA Essential Cybersecurity Controls, and the Personal Data Protection Law (PDPL).
- Help maintain cybersecurity policies, standards, and procedures.
- Support cybersecurity risk assessments and maturity self-assessments.
- Prepare evidence for internal audits and regulatory examinations, and track remediation of findings.
- Support cybersecurity assessments of third parties and vendors.
5. Awareness & Reporting
- Support cybersecurity awareness programs, including phishing simulations and employee training.
- Prepare periodic reports and key metrics on the Company's cybersecurity posture for the CISO.
- Maintain accurate documentation of security tools, configurations, and procedures.
Qualifications & Experience
Education
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field.
Experience
- Minimum 3 years of experience in cybersecurity or information security.
- Experience in financial services, fintech, or consumer finance is preferred.
- Experience working in a SAMA-regulated entity is an advantage.
Professional Certifications
- CompTIA Security+, CEH, or equivalent preferred.
- CySA+, GIAC certifications (e.g., GSEC, GCIH), ISO 27001 Lead Implementer, or relevant cloud security certifications are an advantage.
Technical Skills
Good knowledge and practical experience in:
- SIEM and security monitoring tools
- Incident detection and response
- Vulnerability scanning and management
- Endpoint, network, and firewall security
- Cloud security
- Identity and access management (IAM/PAM)
- Email and web security
- Security configuration baselines and hardening
Regulatory & Compliance Knowledge
- Knowledge of the SAMA Cyber Security Framework.
- Familiarity with NCA cybersecurity controls and the Personal Data Protection Law (PDPL).
- Familiarity with international standards such as ISO 27001 and NIST.
Personal Competencies
- Strong analytical and investigative skills.
- Ability to stay calm and act decisively during incidents.
- Integrity and discretion in handling sensitive information.
- Clear written and verbal communication.
Languages
- Fluent in Arabic and English.
Nationality
- Saudi national
رقم الإعلان لدى المصدر: 4473644302