وزارة الاتصالات وتقنية المعلومات تعلن عن وظيفة خبير تقنية أول (حماية أجهزة المستخدم النهائي) في الرياض
تفاصيل الوظيفة
تعلن وزارة الاتصالات وتقنية المعلومات عن توفر وظيفة "Senior Technology Expert (End-User Device Protection)" في مدينة الرياض، بهدف دعم وتعزيز الحماية السيبرانية للوزارة عبر حماية أجهزة المستخدمين والنقاط النهائية وتشغيل وتحسين تقنيات الأمن المرتبطة بها.
المهام والمسؤوليات
- تنفيذ وصيانة الضوابط الأمنية لأجهزة المستخدمين النهائيين والنقاط النهائية لتقليل المخاطر السيبرانية وضمان المستوى المناسب من الحماية.
- إدارة ومراقبة تكوينات الأمن للنقاط النهائية، وضمان تطبيق سياسات وضوابط الأمن باستمرار عبر البيئة.
- تنفيذ والإشراف على ضوابط الوصول إلى الشبكة والاتصال، بما في ذلك تغييرات قواعد جدار الحماية وطلبات فتح المنافذ وعزل الأجهزة وقيود الوصول الأخرى وفقًا للمعايير الأمنية المعتمدة.
- تشغيل ومراقبة منصات حماية النقاط النهائية والتقنيات السيبرانية المرتبطة، بما في ذلك (Endpoint Protection, EDR/XDR, anti-malware).
- إجراء التحديثات الأمنية الدورية وتحديثات التوقيعات وضبط الإعدادات وتقوية الأمان للحفاظ على فعالية وتوافر ومرونة حلول الأمن.
- دعم حماية تطبيقات الويب والخدمات الرقمية من خلال تنفيذ الضوابط الأمنية ذات الصلة ومراقبة نشر التطبيقات وحل مشكلات الوصول والتنسيق مع الأطراف المعنية لاتخاذ الإجراءات التصحيحية.
- التحقيق في الحوادث والثغرات الأمنية وتحليلها، ودعم تحليل الأسباب الجذرية، والتنسيق لأنشطة المعالجة والإغلاق مع الفرق الداخلية ومزودي حلول الأمن.
- تقييم التقنيات والحلول السيبرانية الجديدة من خلال التقييمات الفنية واختبارات الإثبات والمفاهيم والتنفيذ المرحلي، مع تقييم أثرها على البيئة التقنية للوزارة.
- مراقبة الامتثال لسياسات الأمن السيبراني والمعايير والمتطلبات التنظيمية، والحفاظ على الوثائق والإثباتات والتقارير الداعمة المطلوبة للامتثال وأنشطة المراجعة.
- تنفيذ السياسات والإجراءات والعمليات والأدوات والقوالب والمعايير التشغيلية المعتمدة ضمن نطاق القسم.
- اتخاذ القرارات التشغيلية ضمن نطاق القسم، ورفع المخاطر والقضايا الجوهرية عند الاقتضاء.
- تحديد ودفع فرص التحسين المستمر عبر أنظمة الأمن السيبراني والعمليات والضوابط والممارسات التشغيلية وفقًا للممارسات الرائدة في المجال.
- تحديد الأنشطة الرئيسية والمعالم والتسليمات المطلوبة لتحقيق الخطط والأهداف التشغيلية للقسم.
- تطبيق ومراقبة مقاييس الأداء ومؤشرات الأداء الرئيسية للقسم، وضمان التوافق مع أهداف المنظمة.
- تقديم تحديثات منتظمة للمدير حول الأداء التشغيلي والمبادرات الرئيسية والمخاطر وتحقيق الأهداف.
- دعم نقل المعرفة والتدريب أثناء العمل والتطوير التقني لأعضاء الفريق، وتقديم ملاحظات بناءة لتعزيز قدرات الفريق.
- التنسيق مع الموارد البشرية بشأن تخطيط القوى العاملة والتوظيف والتدريب ومتطلبات تطوير القدرات بما يتماشى مع الهيكل التنظيمي المعتمد.
- تمثيل القسم في فرق العمل واللجان والمبادرات متعددة الوظائف، وضمان التنسيق الفعال وتنفيذ المهام الموكلة.
- إعداد وتقديم تقارير دورية عن الأداء التشغيلي والأداء تغطي أنشطة القسم وإنجازاته ومخاطره والتقدم نحو الأهداف.
- الحفاظ على التوثيق والسجلات الدقيقة للإجراءات التقنية والأنشطة الأمنية والتكوينات والبيانات التشغيلية وفقًا للسياسات والمعايير المعتمدة.
الشروط والمتطلبات
- درجة البكالوريوس أو أعلى في الأمن السيبراني أو تقنية المعلومات أو علوم الحاسب أو نظم المعلومات أو هندسة الحاسب أو أي تخصص ذي صلة.
- خبرة لا تقل عن 6 سنوات في مجال الأمن السيبراني، مع خبرة عملية موثقة في أمن النقاط النهائية وأجهزة المستخدمين.
- خبرة قوية في إدارة وتشغيل تقنيات (Endpoint Protection, EDR/XDR, anti-malware).
- خبرة عملية في إدارة ضوابط جدار الحماية وقواعد الوصول إلى الشبكة وطلبات فتح المنافذ وعزل الأجهزة وضوابط الاتصال الآمن.
- فهم جيد لتقنيات (Web Application Firewall - WAF) والضوابط الأمنية لتطبيقات الويب والخدمات الرقمية.
- معرفة قوية بأطر الأمن السيبراني والسياسات والمتطلبات التنظيمية، لا سيما الضوابط والمعايير الصادرة عن الهيئة الوطنية للأمن السيبراني (NCA).
- خبرة في تصحيح الثغرات الأمنية وإدارة التوقيعات وتقوية الأنظمة وإدارة التكوين وتحسين الضوابط الأمنية.
- الشهادات المهنية المرغوبة: (CISSP, CISM, CompTIA Security+, CEH, Microsoft Certified: Security Operations Analyst Associate, Microsoft Certified: Cybersecurity Architect Expert، أو شهادات مهنية في Endpoint Security, EDR, XDR أو تقنيات مكافئة).
المهارات المطلوبة
- مهارات تحليلية قوية وقدرة على حل المشكلات.
- مهارات التعامل مع أصحاب المصلحة والتنسيق التقني.
- القدرة على العمل ضمن فرق متعددة التخصصات والتواصل الفعال.
عرض النص الأصلي للإعلان
Job Purpose
Support the Ministry’s cybersecurity posture by safeguarding end-user devices and endpoints through the effective operation and enhancement of security technologies and controls. The role is responsible for strengthening endpoint protection, managing access and network security controls, supporting incident and vulnerability remediation, and ensuring compliance with applicable cybersecurity requirements to protect technology assets and maintain service continuity.
Key Responsibilities
- Implement and maintain security controls for end-user devices and endpoints to minimize cybersecurity risks and ensure appropriate levels of protection.
- Manage and monitor endpoint security configurations, ensuring security policies and controls are consistently applied across the environment.
- Implement and oversee network access and connectivity controls, including firewall rule changes, port-opening requests, device isolation, and related access restrictions in accordance with approved security standards.
- Operate and monitor endpoint protection platforms and associated cybersecurity technologies, including Endpoint Protection, EDR/XDR, and anti-malware solutions.
- Perform regular security updates, signature updates, configuration tuning, and security hardening to maintain the effectiveness, availability, and resilience of security solutions.
- Support the protection of web applications and digital services by implementing relevant security controls, monitoring application deployments, resolving access-related issues, and coordinating corrective actions with relevant stakeholders.
- Investigate and analyze cybersecurity incidents and vulnerabilities, support root-cause analysis, and coordinate remediation and closure activities with internal teams and security solution providers.
- Evaluate new cybersecurity technologies and solutions through technical assessments, proof-of-concept testing, and phased implementation, while assessing their impact on the Ministry’s technology environment.
- Monitor compliance with cybersecurity policies, standards, and regulatory requirements, and maintain the supporting documentation, evidence, and reports required for compliance and audit activities.
- Implement approved policies, procedures, processes, tools, templates, and operational standards within the function.
- Make operational decisions within the scope of the section and escalate material risks and issues where required.
- Identify and drive continuous improvement opportunities across cybersecurity systems, processes, controls, and operational practices in line with industry leading practices.
- Define key activities, milestones, and deliverables required to achieve the section’s operational plans and objectives.
- Apply and monitor section-level performance measures and KPIs, ensuring alignment with organizational objectives.
- Provide regular progress updates to the Department Manager on operational performance, key initiatives, risks, and achievement of objectives.
- Support knowledge transfer, on-the-job training, and technical development of team members, and provide constructive feedback to strengthen team capabilities.
- Coordinate with Human Resources on workforce planning, recruitment, training, and capability development requirements in line with the approved organizational structure.
- Represent the section in working groups, committees, and cross-functional initiatives, ensuring effective coordination and execution of assigned activities.
- Prepare and submit periodic operational and performance reports covering section activities, achievements, risks, and progress against objectives.
- Maintain accurate documentation and records of technical procedures, security activities, configurations, and operational data in accordance with approved policies and standards.
Qualifications & Experience
- Bachelor’s degree or higher in Cybersecurity, Information Technology, Computer Science, Information Systems, Computer Engineering, or a related discipline.
- Minimum of 6 years of relevant experience in cybersecurity, with demonstrated hands-on experience in endpoint and end-user device security.
- Strong experience in the administration and operation of Endpoint Protection, EDR/XDR, and anti-malware technologies.
- Hands-on experience in managing firewall controls, network access rules, port-opening requests, device isolation, and secure connectivity controls.
- Good understanding of Web Application Firewall (WAF) technologies and security controls for web applications and digital services.
- Strong knowledge of cybersecurity frameworks, policies, and regulatory requirements, particularly the controls and standards issued by the Saudi National Cybersecurity Authority (NCA).
- Experience in security patching, signature management, system hardening, configuration management, and security control optimization.
- Strong analytical, troubleshooting, stakeholder management, and technical coordination skills.
Preferred Professional Certifications
- CISSP - Certified Information Systems Security Professional
- CISM - Certified Information Security Manager
- CompTIA Security+
- CEH - Certified Ethical Hacker
- Microsoft Certified: Security Operations Analyst Associate
- Microsoft Certified: Cybersecurity Architect Expert
- Professional certifications in Endpoint Security, EDR, XDR, Endpoint Detection & Response, or equivalent technologies
رقم الإعلان لدى المصدر: 4457234701