📍 المملكة العربية السعودية تحديث مستمر على مدار الساعة وظائف تناسب سيرتك الذاتيةمجاناً قناة تيليجرام

أسمو تعلن عن وظيفة محلل أمن سيبراني للأطراف الثالثة في السعودية

Cybersecurity Third Party Analyst
🏢 أسمو (ASMO)
🕒 نُشرت: (منذ يومين) 📍 السعودية وظائف الهندسة والتقنية

تفاصيل الوظيفة

تعلن شركة أسمو (ASMO)، المشروع المشترك بين DHL وأرامكو السعودية، عن توفر وظيفة محلل الأمن السيبراني لأطراف ثالثة (Cybersecurity Third Party Analyst) في المملكة العربية السعودية.

نبذة عن الوظيفة

محلل الأمن السيبراني للأطراف الثالثة مسؤول عن إدارة والإشراف على أنشطة الأمن السيبراني المتعلقة بالأطراف الثالثة طوال دورة حياة المورد. يضمن أن المنظمات الخارجية، بما في ذلك الموردين والبائعين ومقدمي الخدمات والشركاء ومقدمي الخدمات الخارجيين، تلتزم بمتطلبات الأمن السيبراني لشركة أسمو. يدعم حوكمة الأمن السيبراني للأطراف الثالثة، التقييمات الأمنية، التحقق من الامتثال، تحديد المخاطر، المراقبة المستمرة، وأنشطة الضمان.

المهام والمسؤوليات

  • إجراء تقييمات مخاطر الأمن السيبراني للأطراف الثالثة (الجديدة والقائمة) باستخدام المنهجيات المعتمدة.
  • مراجعة استبيانات الأمن السيبراني للطرف الثالث، والشهادات، وتقارير التدقيق، والأدلة.
  • ضمان تضمين متطلبات الأمن السيبراني في عقود واتفاقيات الأطراف الثالثة.
  • التحقق من امتثال الأطراف الثالثة لسياسات الأمن والمعايير والالتزامات التنظيمية المعمول بها.
  • مراقبة الأطراف الثالثة المهمة للتغيرات في وضع الأمن السيبراني والحوادث والمخاطر الأمنية.
  • الحفاظ على سجل دقيق للأطراف الثالثة الخاضعة للرقابة على الأمن السيبراني.
  • دعم دمج ضوابط الأمن السيبراني للأطراف الثالثة ضمن إطار نظام إدارة أمن المعلومات (ISMS).
  • دعم عمليات التدقيق الداخلي والخارجي والمراجعات التنظيمية التي تخص الأطراف الثالثة.

الشروط والمتطلبات

  • درجة البكالوريوس في تقنية المعلومات أو ما يعادلها من جامعة معترف بها ومعتمدة.
  • شهادة ISO 27001 Lead Implementer أو ISO 27001 Lead Auditor أو Security+ أو CISA أو CISM أو CRISC أو CISSP أو ما يعادلها.
  • خبرة لا تقل عن 5 سنوات في مجال مماثل أو ذي صلة.
  • يُفضل خبرة في تقنية المعلومات / حلول البيانات / الشبكات / الأمن السيبراني.
  • إجادة اللغة الإنجليزية تحدثاً وكتابة.

المهارات المطلوبة

  • فهم ضوابط الأمن السيبراني.
  • معرفة بأمن السحابة (Cloud Security).
  • فهم إدارة الهوية والوصول (Identity and Access Management).
  • معرفة بحماية البيانات (Data Protection).
  • فهم إدارة الثغرات (Vulnerability Management).
عرض النص الأصلي للإعلان

ASMO is a groundbreaking joint venture between DHL and Saudi Aramco. Inheriting DHL’s logistics excellence and Saudi Aramco’s extensive supply chain ecosystem, we are here to set a new benchmark and redefine the procurement and supply chain landscape, enabling growth.

ASMO aims to be operational in 2025 and provide reliable end-to-end integrated procurement and supply chain services for companies across the industrial, energy, chemical, and petrochemical sectors. Our focus customers in the short term will be Saudi Aramco and its Affiliates. In the long term, all the industrial sectors within Saudi Arabia aim to reach the MENA region.

 

Objective:

The Cybersecurity Third Party Analyst is responsible for managing and overseeing cybersecurity activities related to third parties throughout the vendor lifecycle. The role ensures that third-party organizations including suppliers, vendors, service providers, partners, and outsourced providers comply with the ASMO’s cybersecurity requirements. The position supports third-party cybersecurity governance, security assessments, compliance validation, risk identification, continuous monitoring, and assurance activities. 

General Responsibilities:

  • Conduct cybersecurity Third-Party risk assessments for new and existing third parties using approved methodologies.
  • Review third-party security questionnaires, certifications, audit reports, and evidence.
  • Ensure cybersecurity requirements are incorporated into third-party engagements and contracts.
  • Verify third-party compliance with applicable security policies, standards, and regulatory obligations.
  • Monitor critical third parties for cybersecurity posture changes, incidents, and security risks.
  • Maintain accurate inventory of third parties subject to cybersecurity oversight.
  • Support integration of third-party cybersecurity controls within the ISMS framework.
  • Support internal audits, external audits, and regulatory reviews involving third parties.

Qualifications:

  • Bachelor’s degree in information technology, or equivalent from a recognized and accredited university is required.
  • ISO 27001 Lead Implementer, ISO 27001 Lead Auditor, Security+, CISA, CISM, CRISC, CISSP or equivalent.
  • Minimum 5 years' experience in similar or related field.
  • Experience in Information Technology / Data Solutions / Networking / Cybersecurity preferred.
  • Understanding of cybersecurity controls, cloud security, identity and access management, data protection, and vulnerability management.
  • Demonstrated proficiency in oral and written English.

 

Deadline: 30 days from posting.

المصدر: الموقع الرسمي للجهة - أُضيفت للموقع في 7 أكتوبر 2026
رقم الإعلان لدى المصدر: 155