📍 المملكة العربية السعودية تحديث مستمر على مدار الساعة

شركة سايت تعلن عن وظيفة مدير SIEM في الرياض

SIEM Administrator
🏢 SITE سايت
🕒 نُشرت: (اليوم) 📍 الرياض وظائف الإدارة والدعم المكتبي
التقديم على الوظيفة من المصدر الرسمي ↗

تفاصيل الوظيفة

تعلن شركة SITE سايت عن توفر وظيفة (SIEM Administrator) في الرياض، السعودية.

نبذة عن الوظيفة

إدارة وصيانة وتحسين منصة SIEM (إدارة الأحداث والمعلومات الأمنية) في المؤسسة لضمان مراقبة أمنية فعالة، وإدارة السجلات، وكشف التهديدات. يركز الدور على إدخال مصادر السجلات، وتطوير وضبط قواعد الارتباط، ودعم المراقبة الأمنية، وتحسين فعالية مركز عمليات الأمن (SOC).

المهام والمسؤوليات

  • إدارة وتكوين وصيانة منصة SIEM لضمان التوفر العالي والأداء الأمثل.
  • دمج وإدخال مصادر السجلات من الخوادم، والأجهزة الطرفية، وأجهزة الشبكة، والخدمات السحابية، والحلول الأمنية.
  • تطوير وتحسين وصيانة قواعد الارتباط، وحالات الكشف، ولوحات المعلومات، والتنبيهات لتحسين قدرات كشف التهديدات.
  • مراقبة صحة منصة SIEM، واستكشاف مشكلات الأداء، وضمان جمع السجلات المستمر وسلامة البيانات.
  • إجراء تحليل السجلات، وتطبيعها، والتحقق منها لضمان الارتباط الدقيق للأحداث وإعداد التقارير.
  • ضبط قواعد SIEM وعتبات التنبيه لتقليل النتائج الإيجابية الخاطئة مع تحسين دقة الكشف.
  • دعم محللي SOC من خلال التحقيق في المشكلات المتعلقة بـ SIEM وتعزيز الرؤية في الأحداث الأمنية.
  • إنشاء تقارير أمنية ولوحات معلومات ومقاييس لدعم التقارير التشغيلية والإدارية.
  • التعاون مع فرق الأمن والبنية التحتية والتطبيقات لدمج الأنظمة الجديدة وتحسين تغطية المراقبة.
  • دعم ترقيات منصة SIEM وأنشطة الصيانة وتنفيذ حالات الكشف الأمنية الجديدة.
  • الحفاظ على توثيق SIEM بما في ذلك جرد مصادر السجلات وقواعد الارتباط والإجراءات التشغيلية.
  • المساهمة في التحسين المستمر لهندسة SIEM وقدرات الكشف وعمليات مراقبة SOC.

الشروط والمتطلبات

  • درجة البكالوريوس في الأمن السيبراني، تقنية المعلومات، علوم الحاسب، التحقيق الرقمي، أو مجال ذي صلة.
  • خبرة لا تقل عن 3 سنوات في الأمن السيبراني، تتضمن خبرة عملية في إدارة منصات SIEM مثل Microsoft Sentinel، Splunk، IBM QRadar، ArcSight، LogRhythm، أو غيرها من حلول SIEM المؤسسية المماثلة.

المزايا

  • طبيعة الوظيفة: مشروعية (Project-Based) لدى شركة SITE.
  • بدل اجتماعي.
  • بدل جوال.
  • تأمين طبي للموظف وعائلته ووالديه.
عرض النص الأصلي للإعلان

Overview:

SIEM Administrator administering, maintaining, and optimizing the organization's Security Information and Event Management (SIEM) platform to ensure effective security monitoring, log management, and threat detection. The role focuses on onboarding log sources, developing and tuning correlation rules, supporting security monitoring, and enhancing the overall effectiveness of the Security Operations Center (SOC).


Key Responsibilities:

  • Administer, configure, and maintain the SIEM platform to ensure high availability and optimal performance.
  • Integrate and onboard log sources from servers, endpoints, network devices, cloud services, and security solutions.
  • Develop, optimize, and maintain correlation rules, detection use cases, dashboards, and alerts to improve threat detection capabilities.
  • Monitor SIEM platform health, troubleshoot performance issues, and ensure continuous log collection and data integrity.
  • Perform log parsing, normalization, and validation to ensure accurate event correlation and reporting.
  • Fine-tune SIEM rules and alert thresholds to minimize false positives while improving detection accuracy.
  • Support SOC analysts by investigating SIEM-related issues and enhancing visibility into security events.
  • Generate security reports, dashboards, and metrics to support operational and management reporting.
  • Collaborate with security, infrastructure, and application teams to integrate new systems and improve monitoring coverage.
  • Support SIEM platform upgrades, maintenance activities, and implementation of new security use cases.
  • Maintain SIEM documentation, including log source inventory, correlation rules, and operational procedures.
  • Contribute to the continuous improvement of SIEM architecture, detection capabilities, and SOC monitoring processes.


Talent Profile:

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Digital Forensics, or a related field.
  • Proven experience of 3+ years in cybersecurity, including hands-on experience administering SIEM platforms such as Microsoft Sentinel, Splunk, IBM QRadar, ArcSight, LogRhythm, or similar enterprise SIEM solutions


Job Nature:

SITE, Project-Based.


In addition to the monthly salary, SITE provides you these Benefits:

  • Social allowance.
  • Mobile allowance.
  • Medical Insurance employee, his/her family, and parents.
المصدر: LinkedIn - أُضيفت للموقع في 21 يوليو 2026

وظائف أخرى لدى SITE سايت