وظيفة مهندس دفاع - مشغل أنظمة لدى Innovative Solutions SA في الرياض
Defense Engineer - System Operator (RE)
تفاصيل الوظيفة
شركة Innovative Solutions SA، شركة رائدة في مجال الأمن السيبراني تأسست عام 2003 ويقع مقرها الرئيسي في الرياض، تبحث عن مهندس دفاع - مشغل أنظمة (RE) للعمل في مكتب الرياض.
نبذة عن الوظيفة
مهندس الدفاع - مشغل الأنظمة (RE) مسؤول عن المراقبة المستمرة لتهديدات الأمن السيبراني والحوادث الأمنية عبر أنظمة الشركة. يركز الدور على اكتشاف وتحليل وتوثيق والاستجابة لحوادث الأمن السيبراني مع الحفاظ على أمن وسلامة أنظمة الشركة ومعلوماتها.
المهام والمسؤوليات
- مراقبة وإدارة أنظمة الأمن السيبراني والضوابط الأمنية بما في ذلك EDR و AV و SIEM و WAF و Firewall و NAC و Proxy و HX.
- المراقبة المستمرة للتنبيهات والأحداث الأمنية، وتصنيف الحوادث بناءً على شدتها وتأثيرها، واتخاذ الإجراء المناسب.
- تقييم الحوادث الأمنية واتباع إجراءات الاستجابة للحوادث المحددة، بما في ذلك: إخطار مالكي الأنظمة المعنيين، وبدء إجراءات الاستجابة المناسبة، وتصعيد الحوادث وفقاً للإجراءات المحددة، وتوثيق تفاصيل الحادث والنتائج والإجراءات المتخذة.
- التحقيق في حوادث الأمن السيبراني والهجمات الإلكترونية وتحليل الأحداث والمؤشرات الأمنية ذات الصلة.
- توثيق وتتبع وإبلاغ حوادث الأمن السيبراني وفقاً للإجراءات المحددة.
- معالجة ومتابعة طلبات الخدمة المتعلقة بأمن المعلومات المقدمة من المستخدمين.
- إنشاء وتطوير وتحديث حالات الاستخدام الأمني لأنظمة وتطبيقات الأمن الحالية والمنفذة حديثاً.
- تحليل حوادث الأمن السيبراني والأحداث الأمنية وإبلاغها عبر قنوات الهيئة السعودية للأمن السيبراني عند الاقتضاء.
- إجراء فحوصات أمنية منتظمة لتحديد الثغرات الأمنية والثغرات والتهديدات المحتملة.
- ضمان الامتثال لمعايير وسياسات ومتطلبات الأمن السيبراني المعتمدة من قبل إدارة تقنية المعلومات.
- التنسيق مع الإدارات المعنية ومالكي الأنظمة أثناء التحقيقات في الأمن السيبراني وأنشطة الاستجابة للحوادث.
- إعداد تقارير شهرية تلخص الحوادث السيبرانية الرئيسية والنتائج والاتجاهات والإجراءات المتخذة.
- صيانة وتشغيل الأنظمة الأمنية وضمان تحديثها إلى أحدث الإصدارات المعتمدة.
- تحديد وتصنيف وترتيب أولويات الأحداث والحوادث الأمنية التي يتم جمعها من خلال الضوابط الأمنية بما في ذلك جدران الحماية وأجهزة الشبكة والبروكسي وأنظمة كشف التسلل ومنع الاختراق وحلول مكافحة الفيروسات وقواعد البيانات ونقاط النهاية.
- دعم التحسين المستمر لعمليات المراقبة الأمنية واكتشاف الحوادث والاستجابة لها.
- أداء مهام أخرى تتعلق بالمراقبة والتحقيق والاستجابة للحوادث الأمنية حسب التكليف.
الشروط والمتطلبات
- خبرة لا تقل عن 5 سنوات في مجال الأمن السيبراني أو عمليات الأمن أو مجال ذي صلة.
- شهادات مطلوبة: CISSP أو CASP+ بالإضافة إلى CCNA.
المهارات المطلوبة
- معرفة قوية بمراقبة الأمن السيبراني، وكشف التهديدات، والتحقيق في الحوادث، والاستجابة للحوادث.
- خبرة عملية مع تقنيات المراقبة والحماية الأمنية بما في ذلك SIEM و EDR/AV و WAF و Firewalls و NAC و Proxy و HX و IDS/IPS وقواعد البيانات وحلول أمن نقاط النهاية.
- القدرة على تحليل التنبيهات والأحداث الأمنية، وتقييم المخاطر، وترتيب أولويات الحوادث، واتباع إجراءات الاستجابة المحددة.
- معرفة بتقييم الثغرات الأمنية والفحص الأمني والضوابط الأمنية.
- مهارات تحليلية قوية، وحل المشكلات، والتوثيق، وإعداد التقارير، والتواصل، والتنسيق.
- الكفاءات الأساسية: مراقبة الأمن السيبراني، عمليات الأمن، الاستجابة للحوادث الأمنية، كشف التهديدات وتحليلها، إدارة المعلومات والأحداث الأمنية (SIEM)، تقييم الثغرات والفحص الأمني، التحقيق في الأمن السيبراني، توثيق الحوادث وإعداد التقارير، تقييم المخاطر وتصنيف الحوادث، إدارة الضوابط الأمنية، التواصل بين الإدارات.
عرض النص الأصلي للإعلان
Company Overview
Innovative Solutions (IS) is a leading Cybersecurity company established in 2003, with its headquarters in Riyadh and additional offices in Al Khobar, Jeddah, Dubai, and Abu Dhabi. We specialize in delivering Comprehensive Cybersecurity Solutions and Services encompassing Advisory Services, Technical Assurance, Solution Deployment, Professional Services, and Managed Security Services.
Our mission is "Delivering secure and intelligent digital services that empower organizations"
Role Summary
The Defense Engineer - System Operator (RE) is responsible for continuously monitoring cybersecurity threats and security incidents across the company's systems. The role focuses on detecting, analyzing, documenting, and responding to cybersecurity incidents while maintaining the security and integrity of the company's systems and information.
Key Responsibilities
Core Competencies
Innovative Solutions (IS) is a leading Cybersecurity company established in 2003, with its headquarters in Riyadh and additional offices in Al Khobar, Jeddah, Dubai, and Abu Dhabi. We specialize in delivering Comprehensive Cybersecurity Solutions and Services encompassing Advisory Services, Technical Assurance, Solution Deployment, Professional Services, and Managed Security Services.
Our mission is "Delivering secure and intelligent digital services that empower organizations"
Role Summary
The Defense Engineer - System Operator (RE) is responsible for continuously monitoring cybersecurity threats and security incidents across the company's systems. The role focuses on detecting, analyzing, documenting, and responding to cybersecurity incidents while maintaining the security and integrity of the company's systems and information.
Key Responsibilities
- Monitor and manage cybersecurity systems and security controls, including EDR, AV, SIEM, WAF, Firewall, NAC, Proxy, and HX
- Continuously monitor security alerts and events, classify incidents based on severity and impact, and take appropriate action
- Assess security incidents and follow established incident response procedures, including:
- Notifying relevant system owners
- Initiating appropriate incident response actions
- Escalating incidents according to defined procedures
- Documenting incident details, findings, and actions taken
- Investigate cybersecurity incidents and cyberattacks and analyze relevant security events and indicators
- Document, track, and report cybersecurity incidents in accordance with established procedures
- Handle and follow up on users' Service Requests related to information security
- Create, develop, and update security use cases for existing and newly implemented security systems and applications
- Analyze cybersecurity incidents and security events and report them through the Saudi Cybersecurity Authority channels, where applicable
- Conduct regular security scans to identify vulnerabilities, security gaps, and potential threats
- Ensure compliance with applicable cybersecurity standards, policies, and requirements approved by the Information Technology Administration
- Coordinate with relevant departments and system owners during cybersecurity investigations and incident response activities
- Prepare monthly reports summarizing major cybersecurity incidents, findings, trends, and actions taken
- Maintain and operate security systems and ensure they are updated to the latest approved versions
- Identify, classify, and prioritize security events and incidents collected through security controls, including firewalls, network and proxy devices, IDS/IPS systems, antivirus solutions, databases, and endpoints
- Support the continuous improvement of security monitoring, incident detection, and response processes
- Perform other cybersecurity monitoring, investigation, and incident response duties as assigned
- Minimum Experience: 5+ years of relevant experience in cybersecurity, security operations, or a related field
- Required Certifications: CISSP or CASP+ and CCNA
- Strong knowledge of cybersecurity monitoring, threat detection, incident investigation, and incident response
- Hands-on experience with security monitoring and protection technologies, including SIEM, EDR/AV, WAF, Firewalls, NAC, Proxy, HX, IDS/IPS, databases, and endpoint security solutions
- Ability to analyze security alerts and events, assess risks, prioritize incidents, and follow established incident response procedures
- Knowledge of vulnerability assessment, security scanning, and cybersecurity controls
- Strong analytical, problem-solving, documentation, reporting, communication, and coordination skills
Core Competencies
- Cybersecurity Monitoring
- Security Operations
- Security Incident Response
- Threat Detection and Analysis
- Security Information and Event Management (SIEM)
- Vulnerability Assessment and Security Scanning
- Cybersecurity Investigation
- Incident Documentation and Reporting
- Risk Assessment and Incident Classification
- Security Controls Management
- Cross-functional Communication
المصدر: LinkedIn - أُضيفت للموقع في 25 أغسطس 2026
رقم الإعلان لدى المصدر: 4458724336
رقم الإعلان لدى المصدر: 4458724336