📍 المملكة العربية السعودية تحديث مستمر على مدار الساعة

Cloud Consultancy - CCDS تعلن عن وظيفة متخصص أمن السحابة والتشفير في الرياض

Cloud Security & Encryption Specialist
🕒 نُشرت: (أمس) 📍 الرياض وظائف الهندسة والتقنية

تفاصيل الوظيفة

Cloud Consultancy - CCDS تعلن عن وظيفة Cloud Security & Encryption Specialist في الرياض (على رأس العمل) بعقد خدمات أمن سيبراني قائم على المشاريع لمدة 13 شهرًا، وتتطلب خبرة لا تقل عن 8 سنوات.

نبذة عن الوظيفة

  • إدارة وتحسين الوضع الأمني للبيئات السحابية وضوابط التشفير، وضمان التخزين الآمن والمعالجة والنقل والمراقبة لبيانات الجهة.

المهام والمسؤوليات

  • مراقبة البيئات السحابية للتأكد من الامتثال لسياسات الأمن المعتمدة والمعايير ومتطلبات البنية.
  • مراجعة الوضع الأمني لخدمات الحوسبة والتخزين وقواعد البيانات والمنصة والخدمات السحابية الداعمة.
  • مراقبة أدوات ولوحات الأمن السحابي، والتحقيق في الأنشطة المشبوهة، والتنسيق مع فرق الأمن السيبراني للاستجابة.
  • مراجعة نتائج CSPM والتكوينات الخاطئة والخدمات المكشوفة وانتهاكات السياسات ونشر IT الظل.
  • تقييم خدمات الجهات الخارجية وعمليات التكامل السحابي ومتابعة معالجة الملاحظات الأمنية السحابية حتى الإغلاق.
  • تحديد ومراجعة متطلبات التشفير للبيانات الحساسة في حالة السكون والانتقال وأثناء المعالجة.
  • دعم حوكمة الضوابط التشفيرية والمفاتيح والشهادات وعمليات التكامل الآمنة وفقًا لمتطلبات الوزارة.
  • الحفاظ على رؤية الأصول السحابية والتقارير التشغيلية وحالة المخاطر والمساءلة عن المعالجة.

الشروط والمتطلبات

  • درجة البكالوريوس في علوم الحاسب أو أمن المعلومات أو مجال ذي صلة.
  • خبرة لا تقل عن 8 سنوات في مجال أمن السحابة أو بنية الأمن أو التشفير.
  • يفضل امتلاك شهادات مهنية مثل: CCSP، CISSP، SABSA، TOGAF، GIAC GCSA، أو ما يعادلها، بالإضافة إلى شهادة أمن سحابي رئيسية من منصة سحابية كبرى.

المهارات المطلوبة

  • معرفة قوية بأمن السحابة عبر الحوسبة والتخزين وقواعد البيانات وخدمات المنصة وIAM والتسجيل والمراقبة وضوابط الشبكة وعمليات التكامل مع الجهات الخارجية.
  • خبرة عملية مع CSPM وأدوات المراقبة الأمنية السحابية الأصلية.
  • معرفة متعمقة بتشفير البيانات في حالة السكون والانتقال، والضوابط التشفيرية، وإدارة المفاتيح والشهادات، وهندسة السحابة الآمنة.
  • معرفة بمتطلبات NCA، ونموذج الثقة الصفري، ومبدأ الامتياز الأقل، وممارسات إدارة المخاطر السحابية.
  • حكم قوي على المخاطر والمسؤولية عن متابعة المعالجة.
  • مهارات تحليلية واستكشافية وتنسيق ممتازة عبر الوظائف.
  • توثيق فني واضح وتواصل مع أصحاب المصلحة.
  • مبادر، مهتم بالتفاصيل، ومريح في العمل عبر فرق السحابة والبنية التحتية وSOC وIAM والهندسة المعمارية.
عرض النص الأصلي للإعلان
Location: On-site - Riyadh, Saudi Arabia

Contract/engagement: Project-based managed cybersecurity services (13-month)

Minimum experience: 8+ years

Role Purpose

Govern and improve the security posture of cloud environments and encryption controls, ensuring secure storage, processing, transmission, and monitoring of entity data.

Key Responsibilities

  • Monitor cloud environments for compliance with approved security policies, standards, and architecture requirements
  • Review the security posture of compute, storage, database, platform, and supporting cloud services
  • Monitor cloud-security tools and dashboards, investigate suspicious activity, and coordinate response with cybersecurity teams
  • Review CSPM findings, misconfigurations, exposed services, policy violations, and unauthorized deployments or Shadow IT
  • Assess third-party cloud services and integrations and track remediation of cloud-security findings through closure
  • Define and review encryption requirements for sensitive data at rest, in transit, and during processing
  • Support governance of cryptographic controls, keys, certificates, and secure integrations in line with Ministry requirements
  • Maintain cloud asset visibility, operational reports, risk status, and remediation accountability

Requirements

Technical and Professional Requirements

  • Bachelor's degree in Computer Science, Information Security, or a related field
  • At least 8 years of relevant cloud security, security architecture, or encryption experience, as specified in the workforce table
  • Strong cloud-security knowledge across compute, storage, databases, platform services, IAM, logging, monitoring, network controls, and third-party integrations
  • Hands-on experience with CSPM and cloud-native security monitoring tools
  • Strong knowledge of data encryption at rest and in transit, cryptographic controls, key and certificate management, and secure cloud architecture
  • Knowledge of NCA requirements, Zero Trust, least privilege, and cloud risk-management practices

Personal Requirements

  • Strong risk judgment and ownership of remediation follow-through
  • Excellent analytical, troubleshooting, and cross-functional coordination skills
  • Clear technical documentation and stakeholder communication
  • Proactive, detail-oriented, and comfortable working across cloud, infrastructure, SOC, IAM, and architecture teams

Professional Certifications

Preferred: CCSP, CISSP, SABSA, TOGAF, GIAC GCSA, or equivalent. A major cloud-platform security certification is also highly relevant.

Application Note

Candidates should clearly state their nationality, years of relevant experience, current location, notice period, and valid professional certifications in their application. Shortlisted candidates may be asked to provide supporting documents and participate in technical interviews.
المصدر: LinkedIn - أُضيفت للموقع في 28 أغسطس 2026
رقم الإعلان لدى المصدر: 4460349247