📍 المملكة العربية السعودية تحديث مستمر على مدار الساعة

القدية تعلن عن وظيفة مدير تقديم أمن تقنية المعلومات في الرياض

Manager - IT Security Delivery
🏢 القدية (Qiddiya | القدية)
🕒 نُشرت: (أمس) 📍 الرياض وظائف الهندسة والتقنية
التقديم على الوظيفة من المصدر الرسمي ↗

تفاصيل الوظيفة

القدية تعلن عن وظيفة Manager - IT Security Delivery في الرياض.

نبذة عن الوظيفة

  • الإشراف على جاهزية البناء وتنسيق الاختبارات والتسليم المتحكم به، بالتنسيق مع فريق التصميم، وفرض نقاط التفتيش وإغلاق العيوب وإنتاج حزم التحقق الجاهزة للتدقيق لبرامج أمن تكنولوجيا المعلومات عبر برامج الشركات والأصول.

المهام والمسؤوليات

  • إدارة حوكمة الجاهزية ونقاط التفتيش عبر البيئات، والتحقق من المتطلبات المسبقة (الوصول، الشهادات، النسخ الاحتياطي، التراجع).
  • الإشراف على جلسات Go/No-Go وتوثيق المخاطر والاستثناءات والضوابط التعويضية مع موافقة الأمن السيبراني.
  • صيانة جداول التغيير المتوافقة مع فترات الأصول وفترات الإغلاق.
  • الإشراف على بناء خطط اختبار شاملة تغطي السيناريوهات الوظيفية والسلبية والمرونة والتكامل، وضمان مشاركة المراقبين من العمليات وخبراء المنصة.
  • إدارة فرز العيوب وتعيين المالكين ومستويات الخطورة وتتبع اتفاقيات مستوى الخدمة للإصلاح وإعادة الاختبار.
  • صيانة سجلات المخاطر والافتراضات والمشكلات والتبعيات (RAID) ورفع العوائق وقياس المخاطر المتبقية عند الإصدار.
  • الإشراف على تجميع حزم التحقق (الخطط، النتائج، الأدلة، مصفوفات التتبع) وضمان التخزين المُرقّم والموافقات، وتحقيق القبول من أول مرة من ضمان الجودة.
  • التحقق من كتيبات التشغيل والمراقبة والتنبيه واستكمال تدريب المستويات الأولى والثانية، وتأكيد اتفاقيات مستوى الخدمة التشغيلية وأدوات التعافي من الكوارث، وتعيينات SIEM/SOAR.
  • تسهيل بروفات القطع ونشر خطط الاتصال وRACI وجداول الرعاية الفائقة، وتقديم لوحات معلومات الجاهزية الأسبوعية وملخصات المخاطر.
  • تتبع معدل نجاح التغيير والقوائم المرجعية وفقاً لذلك.
  • قيادة تقييم ضوابط أمن تكنولوجيا المعلومات والتقنيات والحلول لضمان التوافق مع الاستراتيجية ومتطلبات الأمن السيبراني وأولويات الأعمال والاحتياجات التشغيلية.
  • الإشراف على أنشطة إثبات المفهوم (POC) بما في ذلك تعريف النطاق ومعايير النجاح وتنفيذها وإعداد التقارير.
  • تقييم ملاءمة الحلول بناءً على الفعالية الأمنية وقابلية التكامل وقابلية التوسع والامتثال والأثر التشغيلي وقابلية الدعم والقيمة طويلة الأجل.
  • التوصية بضوابط وحلول أمن تكنولوجيا المعلومات المناسبة بناءً على النتائج وقيمة تقليل المخاطر والجاهزية التشغيلية والتوجه المؤسسي.

الشروط والمتطلبات

  • بكالوريوس في علوم الحاسب أو الأمن السيبراني أو ما يعادلها من جامعة معترف بها ومعتمدة (شرط أساسي).
  • يفضل ماجستير في علوم الحاسب أو الأمن السيبراني أو ما يعادلها.
  • خبرة من 6 إلى 8 سنوات في مجال ذي صلة، ويفضل أن تكون الغالبية في تسليم أمن تكنولوجيا المعلومات عبر بيئات الشركات والأصول.
عرض النص الأصلي للإعلان
JOB PURPOSE:

Own build readiness, testing orchestration, and controlled handover, coordinating with the Design team for inputs. Enforce gates, close defects, and produce audit-ready validation packs for assigned programs across corporate and asset IT Security programs.

Core Responsibilities:

Readiness governance and gates

  • Operate exit-gate governance across environments; verify prerequisites (access, certs, backups, rollback)
  • Supervise Go/No-Go forums and ensure documentation of risks, exceptions, and compensating controls with Cybersecurity sign-off
  • Maintain change calendars aligned to asset windows and blackout periods

Test planning, data, and environments

  • Supervise the build of end-to-end test plans covering functional, negative, resilience, and integration scenarios
  • Ensure observer participation (Ops, platform SMEs) for test credibility

Defect, risk, and issue management

  • Manage defect triage; assign owners/severity; track fix SLAs and re-tests
  • Maintain RAID logs; escalate blockers; quantify residual risk at release

Validation packs and traceability

  • Supervise compilation of validation packs (plans, results, evidence, traceability matrices); ensure versioned storage and approvals
  • Ensure achievement of first-pass acceptance by QA/Excellence and ensure quick resolution of returns

Handover and run readiness

  • Validate runbooks, monitoring/alerting, and L1/L2 training completion; confirm operational SLOs and DR artifacts
  • Confirm SIEM/SOAR mappings and case workflows prior to go-live
  • Stakeholder coordination and communications
  • Facilitate cutover rehearsals; publish comms plans, RACI, and hyper care schedules
  • Provide weekly readiness dashboards and risk summaries to governance forums

Continuous improvement

  • Track change success rate and checklists accordingly

Security Control Evaluation, POC, and Implementation

  • Lead the evaluation of IT Security controls, technologies, and solutions to ensure alignment with organizational strategy, Cybersecurity requirements, business priorities, and operational needs
  • Oversee Proof of Concept activities, including scope definition, success criteria, stakeholder alignment, execution oversight, and outcome reporting
  • Assess solution suitability based on security effectiveness, integration capability, scalability, compliance alignment, operational impact, supportability, and long-term value
  • Recommend fit-for-purpose IT Security controls and technology solutions based on outcomes, risk reduction value, operational readiness, and enterprise direction

Requirements

Qualifications:

  • Bachelor's degree in Computer Science, Cybersecurity or equivalent from a recognized and accredited university is required
  • Master's degree in Computer Science, Cybersecurity or equivalent from a recognized and accredited university is preferred

Years of Experience:

  • 6-8 years in a relevant industry, preferably with majority in IT security delivery across corporate and asset environments
المصدر: LinkedIn - أُضيفت للموقع في 11 أغسطس 2026

وظائف أخرى لدى القدية