📍 المملكة العربية السعودية تحديث مستمر على مدار الساعة

وظيفة أخصائي أمن سحابي وتشفير لدى Kualitatem Inc. في الرياض

Cloud Security and Encryption Specialist
🏢 Kualitatem Inc.
🕒 نُشرت: (اليوم) 📍 الرياض وظائف الهندسة والتقنية
التقديم على الوظيفة من المصدر الرسمي ↗

تفاصيل الوظيفة

تعلن شركة Kualitatem Inc. عن توفر وظيفة أخصائي أمن وسحابة وتشفير (Cloud Security and Encryption Specialist) في الرياض، المملكة العربية السعودية، لدعم عمليات الأمن السيبراني لوزارة الثقافة، مع التركيز على أمن السحابة وهندسة الأمن وإدارة المخاطر والتشفير.

نبذة عن الوظيفة

نبحث عن أخصائي أمن سحابة وتشفير ذو خبرة لدعم عمليات الأمن السيبراني لوزارة الثقافة، مع التركيز على أمن السحابة وهندسة الأمن وإدارة المخاطر والتشفير. سيكون مسؤولاً عن الحفاظ على الوضع الأمني للبيئات السحابية وتعزيزه، وتحديد نقاط الضعف ومعالجتها، ومراقبة ضوابط أمن السحابة، وضمان الامتثال للسياسات والمعايير والهندسة المعتمدة.

المهام والمسؤوليات

  • مراقبة البيئات السحابية لضمان الامتثال للسياسات والمعايير والهندسة الأمنية المعتمدة.
  • التقييم المستمر للوضع الأمني للموارد السحابية، بما في ذلك الأجهزة الافتراضية والتخزين وقواعد البيانات وخدمات المنصة.
  • مراقبة أدوات ولوحات أمن السحابة للتنبيهات الأمنية وانتهاكات السياسات والأنشطة المشبوهة ونقاط الضعف في التكوين.
  • التحقيق في حوادث أمن السحابة التي تشمل الوصول غير المصرح به والأنشطة غير الطبيعية والخدمات المكشوفة وانتهاكات السياسات.
  • تحديد الموارد السحابية غير المصرح بها وعمليات النشر وShadow IT التي قد تشكل مخاطر أمنية.
  • مراجعة نتائج أدوات إدارة الوضع الأمني للسحابة (CSPM) والتنسيق مع فرق السحابة والبنية التحتية لمعالجتها.
  • مراقبة عمليات التكامل والخدمات السحابية من طرف ثالث لضمان الامتثال للمتطلبات الأمنية.
  • تتبع الملاحظات الأمنية من خلال عملية المعالجة والتحقق من تنفيذ الإجراءات التصحيحية وإغلاقها بشكل صحيح.
  • ضمان امتثال البيئات السحابية للسياسات والمعايير والمتطلبات الهندسية الأمنية المعتمدة.
  • الإشراف على الوضع الأمني للمنظمة عبر خدمات الحوسبة والتخزين وقواعد البيانات والمنصة.
  • تقييم مخاطر أمن السحابة وضمان تنفيذ أنشطة التخفيف والمعالجة المناسبة.
  • الإشراف على فعالية قدرات المراقبة والكشف عن أمن السحابة.
  • دعم التحقيق والاستجابة لحوادث أمن السحابة بالتنسيق مع أصحاب المصلحة في الأمن السيبراني.
  • الحفاظ على الرؤية والحوكمة على أصول السحابة لمنع عمليات النشر غير المصرح بها والاستخدام غير المعتمد.
  • الإشراف على تقييمات الوضع الأمني للسحابة وضمان معالجة النتائج وفقًا لممارسات إدارة المخاطر التنظيمية.
  • تطبيق مبادئ الهندسة الأمنية عبر بيئات التطبيقات والسحابة والبنية التحتية.
  • إجراء مراجعات لهندسة وتصميم الأمن لتحديد المخاطر الأمنية وثغرات التحكم.
  • تطبيق مبادئ الثقة الصفرية (Zero Trust) وآليات المصادقة والتحكم في الوصول الحديثة.
  • إجراء نمذجة التهديدات وتقييمات المخاطر الأمنية للأنظمة وأحمال العمل السحابية.
  • تقديم التوجيه والتوصيات الأمنية للفرق التقنية والإدارة العليا.
  • تطوير وصيانة وثائق أمنية عالية الجودة وتقارير فنية وتقييمات وتوصيات.
  • دعم تنفيذ ضوابط التشفير والأمن المناسبة عبر بيئات السحابة والمؤسسات.

الشروط والمتطلبات

  • درجة البكالوريوس في علوم الحاسب أو أمن المعلومات أو الأمن السيبراني أو مجال ذي صلة.
  • خبرة لا تقل عن 8 سنوات في هندسة الأمن السيبراني للمؤسسات.
  • خبرة عملية قوية في أمن السحابة والتطبيقات والبنية التحتية.
  • خبرة مثبتة في مراقبة أمن السحابة وإدارة الوضع الأمني والتقييمات الأمنية.
  • خبرة عملية في تطبيق مبادئ الثقة الصفرية (Zero Trust).
  • فهم قوي لتقنيات المصادقة والترخيص الحديثة.
  • خبرة في إجراء نمذجة التهديدات ومراجعات هندسة وتصميم الأمن.
  • خبرة في تحديد سوء التكوين السحابي والثغرات والمخاطر الأمنية وثغرات الامتثال.
  • قدرة قوية على توصيل المخاطر الأمنية والتوصيات للفرق التقنية والإدارة العليا.
  • مهارات ممتازة في التوثيق الفني وكتابة التقارير.

المهارات المطلوبة

  • أمن السحابة (Cloud Security).
  • إدارة الوضع الأمني للسحابة (CSPM).
  • هندسة الأمن (Security Architecture).
  • حوكمة السحابة (Cloud Governance).
  • أمن البنية التحتية (Infrastructure Security).
  • أمن التطبيقات (Application Security).
  • هندسة الثقة الصفرية (Zero Trust Architecture).
  • إدارة الهوية والوصول (Identity & Access Management).
  • نمذجة التهديدات (Threat Modeling).
  • المراقبة الأمنية والاستجابة للحوادث (Security Monitoring & Incident Response).
  • إدارة المخاطر الأمنية (Security Risk Management).
  • ضوابط التشفير والتشفير (Encryption & Cryptographic Controls).
  • الامتثال الأمني (Security Compliance).
  • التوثيق الفني وإعداد التقارير (Technical Documentation & Reporting).
  • الشهادات المفضلة: CCSP، CISSP، GIAC GCSA، SABSA، TOGAF أو ما يعادلها من شهادات الأمن السيبراني أو أمن السحابة المعترف بها.
عرض النص الأصلي للإعلان

About the Role

We are seeking an experienced Cloud Security and Encryption Specialist to support the Ministry of Culture’s cybersecurity operations, with a strong focus on cloud security, security architecture, risk management, and encryption.

The role will be responsible for maintaining and strengthening the security posture of cloud environments, identifying and remediating security weaknesses, monitoring cloud security controls, and ensuring compliance with approved cybersecurity policies, standards, and architecture requirements.

Key Responsibilities

Cloud Security Operations

  • Monitor cloud environments to ensure compliance with approved cloud security policies, standards, and architecture.
  • Continuously assess the security posture of cloud resources, including virtual machines, storage, databases, and platform services.
  • Monitor cloud security tools and dashboards for security alerts, policy violations, suspicious activities, and configuration weaknesses.
  • Investigate cloud security incidents involving unauthorized access, abnormal activities, exposed services, and policy violations.
  • Identify unauthorized cloud resources, deployments, and Shadow IT that may introduce security risks.
  • Review findings from Cloud Security Posture Management (CSPM) tools and coordinate remediation with cloud and infrastructure teams.
  • Monitor third-party cloud integrations and services to ensure compliance with security requirements.
  • Track security observations through remediation and verify that corrective actions are properly implemented and closed.

Cloud Security Governance & Architecture

  • Ensure cloud environments comply with approved security policies, standards, and architectural requirements.
  • Oversee the organization's cloud security posture across compute, storage, database, and platform services.
  • Assess cloud security risks and ensure appropriate mitigation and remediation activities are completed.
  • Govern the effectiveness of cloud security monitoring and detection capabilities.
  • Support the investigation and response to cloud security incidents in coordination with cybersecurity stakeholders.
  • Maintain visibility and governance over cloud assets to prevent unauthorized deployments and unapproved cloud usage.
  • Oversee cloud security posture assessments and ensure findings are addressed in accordance with organizational risk management practices.

Security Architecture & Engineering

  • Apply secure architecture principles across application, cloud, and infrastructure environments.
  • Conduct security architecture and design reviews to identify security risks and control gaps.
  • Apply Zero Trust principles and modern authentication and access-control mechanisms.
  • Conduct threat modeling and security risk assessments for systems and cloud workloads.
  • Provide cybersecurity guidance and recommendations to technical teams and senior management.
  • Develop and maintain high-quality security documentation, technical reports, assessments, and recommendations.
  • Support the implementation of appropriate encryption and security controls across cloud and enterprise environments.

Required Qualifications & Experience

  • Bachelor’s degree in Computer Science, Information Security, Cybersecurity, or a related field.
  • Minimum 8 years of experience in enterprise cybersecurity engineering.
  • Strong hands-on experience in cloud, application, and infrastructure security.
  • Proven experience with cloud security monitoring, posture management, and security assessments.
  • Practical experience applying Zero Trust principles.
  • Strong understanding of modern authentication and authorization technologies.
  • Experience conducting threat modeling and security architecture/design reviews.
  • Experience identifying cloud misconfigurations, vulnerabilities, security risks, and compliance gaps.
  • Strong ability to communicate cybersecurity risks and recommendations to technical teams and senior management.
  • Excellent technical documentation and report-writing skills.

Preferred Certifications

Certifications in cybersecurity architecture, cloud security, or security engineering are highly desirable, including:

  • CCSP (Certified Cloud Security Professional)
  • CISSP
  • GIAC GCSA
  • SABSA
  • TOGAF
  • Equivalent recognized cybersecurity or cloud security certifications.

Key Skills

  • Cloud Security
  • Cloud Security Posture Management (CSPM)
  • Security Architecture
  • Cloud Governance
  • Infrastructure Security
  • Application Security
  • Zero Trust Architecture
  • Identity & Access Management
  • Threat Modeling
  • Security Monitoring & Incident Response
  • Security Risk Management
  • Encryption & Cryptographic Controls
  • Security Compliance
  • Technical Documentation & Reporting

Ideal Candidate

The ideal candidate is a senior cybersecurity professional with strong enterprise and cloud security experience, capable of operating across both technical and governance functions. The candidate should be able to identify complex cloud security risks, provide practical remediation guidance, engage with technical and management stakeholders, and ensure that cloud environments remain secure, compliant, and aligned with the organization's cybersecurity architecture.

المصدر: LinkedIn - أُضيفت للموقع في 19 أغسطس 2026

وظائف أخرى لدى Kualitatem Inc.