📍 المملكة العربية السعودية تحديث مستمر على مدار الساعة

وظيفة مهندس أمن سيبراني لتقنية المعلومات والتحول الرقمي (IT/DT Cybersecurity Engineer) لدى Air Products في تبوك ضبا

IT/DT Cybersecurity Engineer
🕒 نُشرت: (منذ 4 أيام) 📍 تبوك وظائف الهندسة والتقنية

تفاصيل الوظيفة

شركة Air Products الرائدة عالميًا في مجال الغازات الصناعية تعلن عن حاجتها لشغل وظيفة مهندس أمن سيبراني لتقنية المعلومات والتقنية الرقمية (IT/DT Cybersecurity Engineer) في موقعها بتبوك، ضبا (المملكة العربية السعودية).

المهام والمسؤوليات

  • دعم تنفيذ والتحقق من وتوثيق ضوابط الأمن السيبراني عبر أنظمة الموقع وبيئات OT/ICS والشبكات الصناعية وأدوات الأمن السيبراني والبنية التحتية الداعمة لتقنية المعلومات.
  • دعم أنشطة اختبار قبول الموقع السيبراني بما في ذلك الإعداد ودعم التنفيذ والتقاط الأدلة وتسجيل العيوب وتتبع المشكلات والتوثيق الختامي.
  • المساعدة في جمع أدلة الامتثال والتحقق من صحتها وفهرستها ومراجعتها من حيث الجودة.
  • مراجعة ودعم أدلة الأمن السيبراني المتعلقة بمخططات الشبكات وهندسة الأنظمة وقواعد جدار الحماية ومعايير التصلب (hardening) ومصفوفات التحكم في الوصول وقوائم جرد الأصول وتكوينات SIEM/المراقبة ومخرجات امتثال البائعين.
  • دعم أنشطة النظافة السيبرانية (cyber hygiene) مع البائعين الخارجيين والمقاولين من الباطن وفرق الموقع.
  • المساهمة في تتبع معالجة الفجوات السيبرانية ونتائج اختبارات (Cyber SAT) وتوصيات تقييم المخاطر السيبرانية وفجوات أدلة الإثبات (POC) ونواقص وثائق البائعين.
  • دعم أنشطة أمن OT/ICS بما في ذلك تصلب الأنظمة ومراجعة تكوين جدار الحماية ومعايير إدارة كلمات المرور وضوابط الوصول عن بُعد الآمن والتحقق من أدوات الأمن/النهاية ودعم تنفيذ DMZ والتحقق من تجزئة الشبكة.
  • المشاركة في عمليات التفتيش الميداني والمراجعات الفنية وأنشطة التحقق من صحة الضوابط السيبرانية.
  • دعم تقييم مخرجات البائعين والمقاولين من الباطن للامتثال لمتطلبات الأمن السيبراني للمشروع ومعايير Air Products وتوقعات NCA/HCIS والهندسة المعتمدة.
  • التنسيق مع فرق التحكم في العمليات والبنية التحتية لتقنية المعلومات وحوسبة المصنع والبائعين لحل مشكلات الأمن السيبراني التي تؤثر على التشغيل أو بدء التشغيل أو جاهزية التسليم.
  • جمع وتنظيم وصيانة أدلة الأمن السيبراني الفنية اللازمة لإثبات الامتثال والجاهزية التنظيمية.
  • دعم إعداد حزم وثائق CSAT و POC لمراجعتها من قبل قائد الأمن السيبراني وفريق OT Cybersecurity و DT و NGHC والمقيمين الخارجيين.
  • التنسيق مع بائعي الأمن السيبراني ومقاولي EPC من الباطن و OEMs وشركاء التنفيذ الخارجيين أثناء أنشطة التنفيذ الميداني والاختبار والتوثيق.
  • تقديم تحديثات الحالة لقائد الأمن السيبراني حول التقدم التقني والعوائق والمخاطر وفجوات التوثيق والإجراءات المفتوحة.
  • المشاركة في اجتماعات التنسيق الأسبوعية مع فرق OT Cybersecurity و DT وإدارة مشاريع الموقع وأصحاب المصلحة الآخرين في الأمن السيبراني.

الشروط والمتطلبات

  • فهم قوي لمبادئ أمن OT/ICS والشبكات الصناعية وأنظمة المصانع و DMZ الصناعي والوصول عن بُعد الآمن وتصلب الأنظمة والتحكم في الوصول والمراقبة والنظافة السيبرانية.
  • معرفة عملية بمتطلبات الأمن السيبراني في المملكة العربية السعودية المتعلقة بـ NCA و HCIS، أو القدرة على تطبيق هذه المتطلبات بسرعة في بيئة مشروع صناعي.
  • خبرة في دعم اختبارات الأمن السيبراني والجاهزية للتدقيق وأدلة إثبات الامتثال أو جمع الأدلة التنظيمية.
  • خبرة في مراجعة الوثائق الفنية للأمن السيبراني مثل مخططات الشبكات وقواعد جدار الحماية وهندسة الأنظمة ومصفوفات التحكم وقوائم جرد الأصول وقوائم التصلب وتكوينات المراقبة.
  • القدرة على إدارة مهام فنية متعددة ومسارات عمل توثيقية في وقت واحد.
  • مهارات اتصال كتابية وشفهية قوية باللغة الإنجليزية؛ مهارات اللغة العربية مفضلة.
  • القدرة على العمل بفعالية مع فرق الموقع وفرق الهندسة والبائعين والمقاولين من الباطن وموارد تقنية المعلومات وأصحاب المصلحة الكبار في الأمن السيبراني.
  • القدرة على العمل في بيئة مشروع سريعة الخطى مع أولويات متغيرة وتوقعات تنظيمية وتبعيات متعلقة بالتشغيل.
  • يفضل خبرة مع NCA ECC أو OTCC أو HCIS/SAIS أو IEC 62443 أو ISO 27001 أو NIST أو CIS Controls أو أطر ضوابط أمن سيبراني مماثلة.
  • يفضل خبرة في مشاريع الطاقة أو الغازات الصناعية أو الكيماويات أو المرافق أو توليد الطاقة أو الطاقة المتجددة أو البنية التحتية الحيوية.
  • يفضل خبرة مع SIEM ومراقبة OT ومراجعة قواعد جدار الحماية و PAM وإدارة الثغرات وجرد الأصول وأمن النقاط الطرفية والوصول عن بُعد الآمن وتجزئة الشبكة الصناعية.
  • يفضل الشهادات المهنية مثل GICSP أو IEC 62443 أو Security+ أو CISSP Associate أو CISM أو CEH أو ما يعادلها.
  • يفضل خبرة سابقة في المملكة العربية السعودية أو دول الخليج أو مشاريع NEOM أو البنية التحتية الحيوية.
عرض النص الأصلي للإعلان
At Air Products, we reimagine what’s possible. By tapping into the motivation of our people and our collective experience, we create the ideas and innovations that drive us forward. When we come together - where every voice is heard and everyone knows they belong and matter - we create solutions that launch people into space, support lifesaving care in hospitals, and enable the construction of groundbreaking, world scale production facilities.

Reimagine What’s Possible 

Technical Cybersecurity Execution

  • Support implementation, validation, and documentation of cybersecurity controls across GHE site systems, OT/ICS environments, industrial networks, cybersecurity tools, and supporting DT infrastructure.
  • Support cyber site acceptance testing activities, including preparation, execution support, evidence capture, defect logging, issue tracking, and closeout documentation.
  • Assist with proof-of-compliance documentation collection, validation, indexing, and quality review.
  • Review and support cybersecurity evidence related to network diagrams, system architecture, firewall rules, hardening standards, access control matrices, asset inventories, SIEM/monitoring configurations, and vendor compliance deliverables.
  • Support cyber hygiene activities with third-party vendors, subcontractors, and site teams.
  • Assist in tracking remediation of cybersecurity gaps, Cyber SAT findings, Cyber Risk Assessment recommendations, POC evidence gaps, and vendor documentation deficiencies.

OT/ICS and Site Technical Support

  • Support OT/ICS cybersecurity activities including system hardening, firewall configuration review, password management standards, secure remote access controls, endpoint/security tooling validation, DMZ implementation support, and network segmentation verification.
  • Participate in walkthroughs, field verification, technical reviews, and cybersecurity control validation activities.
  • Support evaluation of vendor and subcontractor deliverables for compliance with project cybersecurity requirements, Air Products standards, NCA/HCIS expectations, and approved architecture.
  • Work with process controls, DT infrastructure, plant computing, and vendor teams to resolve cybersecurity issues impacting commissioning, start-up, or handover readiness.
  • Support documentation of technical decisions, implementation status, deviations, risk acceptance items, compensating controls, and open action items.

Compliance Documentation and Evidence Management

  • Collect, organize, and maintain technical cybersecurity evidence needed for proof of compliance and regulatory readiness.
  • Support preparation of CSAT and POC documentation packages for review by the Cyber Lead, OT Cybersecurity, DT, NGHC, and external assessors.
  • Ensure documentation is complete, technically accurate, consistent, and traceable to applicable requirements.
  • Support responses to NGHC comments, third-party assessor findings, and follow-up requests related to cybersecurity evidence.
  • Maintain accurate trackers for cyber issues, documentation gaps, evidence status, and remediation actions.

Vendor and Third-Party Support

  • Coordinate with cybersecurity vendors, EPC subcontractors, OEMs, and external implementation partners during onsite execution, testing, and documentation activities.
  • Support external partners responsible for cybersecurity solution implementation, testing, documentation, and transition support.
  • Review vendor-submitted evidence and escalate incomplete, inconsistent, or non-compliant documentation to the Cyber Lead.
  • Support site supervision of third-party activities when required, including validation that field work aligns with approved cyber design and project requirements.

Coordination and Reporting

  • Provide status updates to the Cyber Lead on technical progress, blockers, risks, documentation gaps, and open actions.
  • Participate in weekly coordination meetings with OT Cybersecurity, DT, site project management, and other cyber stakeholders.
  • Support preparation of concise technical updates for project reporting, cyber oversight meetings, and senior management summaries.
  • Coordinate with DT infrastructure teams and site teams to ensure cybersecurity activities are integrated with broader implementation and commissioning work.

Required Qualifications And Experience

  • Strong understanding of OT/ICS cybersecurity principles, industrial networks, plant systems, industrial DMZs, secure remote access, system hardening, access control, monitoring, and cyber hygiene.
  • Working knowledge of KSA cybersecurity requirements related to NCA and HCIS, or ability to rapidly apply these requirements in an industrial project environment.
  • Experience supporting cybersecurity testing, audit readiness, proof-of-compliance documentation, or regulatory evidence collection.
  • Experience reviewing technical cybersecurity documentation such as network diagrams, firewall rules, system architecture, control matrices, asset inventories, hardening checklists, and monitoring configurations.
  • Ability to manage multiple technical tasks and documentation workstreams at the same time.
  • Strong written and verbal communication skills in English; Arabic language skills preferred.
  • Ability to work effectively with site teams, engineering teams, vendors, subcontractors, DT resources, and senior cybersecurity stakeholders.
  • Ability to operate in a fast-paced project environment with changing priorities, regulatory expectations, and commissioning dependencies.

Preferred Qualifications

  • Experience with NCA ECC, OTCC, HCIS/SAIS, IEC 62443, ISO 27001, NIST, CIS Controls, or similar cybersecurity control frameworks.
  • Experience in energy, industrial gas, chemical, utility, power generation, renewable energy, or critical infrastructure projects.
  • Experience with SIEM, OT monitoring, firewall rule review, PAM, vulnerability management, asset inventory, endpoint security, secure remote access, and industrial network segmentation.
  • Certifications such as GICSP, IEC 62443, Security+, CISSP Associate, CISM, CEH, or equivalent are preferred.
  • Prior Saudi Arabia, GCC, NEOM, or critical infrastructure project experience is preferred.

Success Measures

  • CSAT and POC evidence are collected, validated, organized, and maintained in a usable format.
  • Cybersecurity documentation gaps, technical issues, and remediation actions are tracked and closed.
  • Vendor and subcontractor cybersecurity deliverables are reviewed for completeness and quality.
  • Technical cybersecurity controls are validated against approved design, project requirements, and compliance expectations.
  • Cyber Lead, DT Project Manager, PDO Cybersecurity, and NGHC stakeholders receive accurate technical status updates.
  • Site cybersecurity activities support commissioning, start-up readiness, and regulatory compliance objectives.

Founded in 1940, Air Products is a world-leading industrial gases company and has a proud history of innovation, operational excellence, with an unwavering commitment to safety and environmental stewardship. Working together, we are taking our passion and diverse backgrounds forward to reimagine what’s possible and generate a cleaner future for our customers, our communities, and the world.
المصدر: LinkedIn - أُضيفت للموقع في 25 أغسطس 2026
رقم الإعلان لدى المصدر: 4448152656