📍 المملكة العربية السعودية تحديث مستمر على مدار الساعة

وظيفة مهندس عمليات الأمن السيبراني شاغرة لدى CONNECT Professional Services في الرياض

Cybersecurity Operations Engineer
🏢 CONNECT Professional Services
🕒 نُشرت: (اليوم) 📍 الرياض وظائف الهندسة والتقنية
التقديم على الوظيفة من المصدر الرسمي ↗

تفاصيل الوظيفة

تقدم شركة CONNECT Professional Services وظيفة مهندس عمليات الأمن السيبراني (Cybersecurity Operations Engineer) في الرياض.

نبذة عن الوظيفة

مهندس عمليات الأمن السيبراني مسؤول عن مراقبة التهديدات السيبرانية واكتشافها والاستجابة لها، مع الحفاظ على الضوابط الأمنية للمؤسسة عبر الشبكات والأنظمة والأجهزة الطرفية والمنصات السحابية والتطبيقات. يدعم الدور الاستجابة للحوادث وإدارة الثغرات الأمنية والتشغيل اليومي لتقنيات الأمن السيبراني لضمان بيئة تقنية آمنة ومرنة.

المهام والمسؤوليات

  • مراقبة وتحليل والتحقيق في التنبيهات والأحداث والحوادث الأمنية السيبرانية باستخدام أدوات المراقبة الأمنية.
  • إجراء فرز أولي للحوادث، والاحتواء، والاستئصال، والتعافي، والتصعيد وفقًا لإجراءات الاستجابة للحوادث.
  • دعم التشغيل اليومي لحلول الأمن للأجهزة الطرفية والشبكات والسحابة والبريد الإلكتروني.
  • تنفيذ أنشطة المراقبة الأمنية وتحسين حالات الكشف بشكل مستمر.
  • التنسيق مع فرق البنية التحتية والتطبيقات والسحابة لمعالجة الثغرات الأمنية والتحقق من أنشطة المعالجة.
  • دعم إدارة التصحيحات الأمنية وترقيات التقنيات ومشاريع تجديد البنية التحتية لتقليل المخاطر الأمنية.
  • المشاركة في ترحيل الأنظمة من خلال التحقق من الضوابط الأمنية ومراجعة التكوينات وإجراء فحوصات أمنية بعد التنفيذ.
  • مراجعة والتحقق من التكامل بين المنصات الأمنية وأنظمة المؤسسة والخدمات السحابية والتقنيات الخارجية.
  • دعم أنشطة إدارة الهوية والوصول (IAM) بما في ذلك مراقبة الوصول المميز والمراجعات الدورية للوصول.
  • الحفاظ على توثيق الاستجابة للحوادث والإجراءات التشغيلية وكتيبات الأمن (runbooks).
  • تتبع أنشطة المعالجة وضمان الحل في الوقت المناسب للنتائج الأمنية المحددة.
  • التوصية بتحسينات للمراقبة الأمنية والأتمتة والعمليات التشغيلية.
  • التعاون مع الفرق متعددة الوظائف لضمان تضمين أفضل الممارسات الأمنية في العمليات اليومية.
  • إعداد تقارير تشغيلية وتقديم تحديثات منتظمة حول حوادث الأمن السيبراني وجهود المعالجة.

الشروط والمتطلبات

  • درجة البكالوريوس في علوم الحاسب، أمن المعلومات، تقنية المعلومات، الأمن السيبراني، أو مجال ذي صلة.
  • خبرة لا تقل عن 5 سنوات في عمليات الأمن السيبراني، أو مركز عمليات الأمن (SOC)، أو أمن المعلومات.
  • خبرة في العمل في بيئات تقنية المؤسسات.
  • يفضل الحصول على واحدة أو أكثر من الشهادات التالية: CCNA Security، CCNP Security، CISSP، CISM، Certified Ethical Hacker (CEH)، Security+ أو شهادات أمن سيبراني معادلة.
  • يفضل أن يكون المرشح سعودي الجنسية.
  • مهارات تحليلية قوية وقدرة على حل المشكلات.
  • مهارات ممتازة في التواصل وإدارة أصحاب المصلحة.
  • القدرة على العمل بفعالية تحت الضغط والاستجابة للحوادث الأمنية.
  • دوافع ذاتية، مهتم بالتفاصيل، وملتزم بالتعلم المستمر.

المهارات المطلوبة

  • خبرة عملية في: جدران الحماية (Firewalls)، التحكم بالوصول إلى الشبكة (NAC)، جدران الحماية لتطبيقات الويب (WAF)، كشف والاستجابة للأجهزة الطرفية (EDR/XDR)، حلول أمن البريد الإلكتروني، منصات SIEM، أدوات إدارة الثغرات الأمنية.
  • معرفة بإدارة الهوية والوصول (IAM) وإدارة الوصول المميز (PAM).
  • الإلمام بمفاهيم الأمن السحابي (Azure، AWS، أو Google Cloud).
  • فهم قوي للشبكات وأنظمة التشغيل وأفضل الممارسات الأمنية.
  • معرفة أطر الأمن السيبراني مثل NIST، ISO 27001، أو CIS Controls.
عرض النص الأصلي للإعلان

Job Summary:

The Cybersecurity Operations Engineer is responsible for monitoring, detecting, and responding to cybersecurity threats while maintaining the organization's security controls across networks, systems, endpoints, cloud platforms, and applications. The role supports incident response, vulnerability management, and the day-to-day operation of cybersecurity technologies to ensure a secure and resilient IT environment.

 

Key Responsibilities:

·     Monitor, analyze, and investigate cybersecurity alerts, events, and incidents using security monitoring tools.

·     Perform incident triage, containment, eradication, recovery, and escalation in accordance with incident response procedures.

·     Support the daily operation of endpoint, network, cloud, and email security solutions.

·     Execute security monitoring activities and continuously improve detection use cases.

·     Coordinate vulnerability remediation with infrastructure, application, and cloud teams and validate remediation activities.

·     Support security patch management, technology upgrades, and infrastructure refresh projects to minimize security risks.

·     Participate in system migrations by validating security controls, reviewing configurations, and conducting post-implementation security checks.

·     Review and validate integrations between security platforms, enterprise systems, cloud services, and third-party technologies.

·     Support Identity and Access Management (IAM) activities, including privileged access monitoring and periodic access reviews.

·     Maintain incident response documentation, operational procedures, and security runbooks.

·     Track remediation activities and ensure timely resolution of identified security findings.

·     Recommend improvements to security monitoring, automation, and operational processes.

·     Collaborate with cross-functional teams to ensure security best practices are embedded into daily operations.

·     Prepare operational reports and provide regular updates on cybersecurity incidents and remediation efforts.

Qualifications:

·     Bachelor's degree in Computer Science, Information Security, Information Technology, Cybersecurity, or a related field.

·     Minimum of 5 years of experience in Cybersecurity Operations, SOC, or Information Security.

·     Experience working in enterprise IT environments.

Preferred Certifications:

·     One or more of the following certifications is preferred:

·     CCNA Security

·     CCNP Security

·     CISSP

·     CISM

·     Certified Ethical Hacker (CEH)

·     Security+ or equivalent cybersecurity certifications

Technical Skills:

·     Hands-on experience with:

·     Firewalls

·     Network Access Control (NAC)

·     Web Application Firewalls (WAF)

·     Endpoint Detection & Response (EDR/XDR)

·     Email Security Solutions

·     SIEM platforms

·     Vulnerability Management tools

·     Knowledge of Identity and Access Management (IAM) and Privileged Access Management (PAM).

·     Familiarity with cloud security concepts (Azure, AWS, or Google Cloud).

·     Strong understanding of networking, operating systems, and security best practices.

·     Knowledge of cybersecurity frameworks such as NIST, ISO 27001, or CIS Controls.

Preferred Candidate:

·     Saudi National is preferred.

·     Strong analytical and troubleshooting skills.

·     Excellent communication and stakeholder management abilities.

·     Ability to work effectively under pressure and respond to security incidents.

·     Self-motivated, detail-oriented, and committed to continuous learning.

 


المصدر: LinkedIn - أُضيفت للموقع في 2 أغسطس 2026

وظائف أخرى لدى CONNECT Professional Services