الاتصالات السعودية تعلن عن وظيفة خبير أول عمليات الأمن
تفاصيل الوظيفة
يدير ويعزز عمليات الأمن السيبراني عبر شبكات وأنظمة وتطبيقات الشركة المتخصصة (Specialized) لضمان المراقبة الفعالة للتهديدات، والاستجابة للحوادث، وإدارة الثغرات، وتخفيف المخاطر، مع الالتزام بالسياسات والإجراءات المتبعة.
المهام والمسؤوليات
- قيادة أنشطة المراقبة المستمرة عبر شبكات وتطبيقات وأنظمة الشركة المتخصصة ونقاط التكامل مع العملاء ذوي المهام الحرجة؛ لتحديد التهديدات والثغرات الأمنية والاستجابة لها بشكل استباقي.
- الإشراف على تنفيذ وفعالية الضوابط الأمنية عبر أصول الشبكة والأنظمة ومنصات الأمان، وضمان توافقها مع أطر الأمن السيبراني والمتطلبات التنظيمية وأفضل الممارسات.
- قيادة الأنشطة التشغيلية لمركز عمليات الأمن (SOC)، وضمان الكشف الفعال عن التهديدات، وفرز الحوادث، وتنسيق الاستجابة وحلها وفق مستويات الخدمة المحددة.
- تحليل حوادث الأمن السيبراني وأنماط الهجمات واتجاهات التهديدات لتحديد الأسباب الجذرية، والتوصية بالإجراءات التصحيحية، وتعزيز الوضع الأمني العام.
- قيادة تقييمات الأمن واختبارات الثغرات والاختراق عبر الشبكات والأنظمة والأجهزة والتطبيقات ذات المهام الحرجة، والتخطيط للمعالجة.
- إدارة أنشطة معالجة الثغرات بالتنسيق مع جهود الإصلاح وإدارة التصحيحات وتصلب الأنظمة ومراجعة تكوينات الأمان لتقليل التعرض للمخاطر.
- التنسيق مع إدارة الاستراتيجية والحوكمة وأصحاب المصلحة المعنيين لضمان توثيق الأمن السيبراني والأدلة والسجلات التشغيلية لدعم الامتثال وعمليات التدقيق والمراجعات التنظيمية.
- تقديم رؤى حول مخاطر الأمن السيبراني وتحديثات الحوادث والتوصيات الأمنية للإدارة وأصحاب المصلحة لدعم اتخاذ القرارات.
- تقييم وتطبيق معلومات التهديدات ومؤشرات التهديدات الناشئة والتنبيهات الأمنية لتعزيز القدرات الوقائية والكشفية.
- مراقبة مؤشرات أداء الأمن السيبراني واتجاهات الحوادث والفعالية التشغيلية، والتوصية بالتحسينات لتعزيز نضج مركز العمليات الأمنية وأداء عمليات الأمن.
- دعم تعزيز وتحسين أطر الأمن السيبراني والإجراءات التشغيلية وقدرات الاستجابة للحوادث عبر الشركة المتخصصة.
- قيادة أنشطة التوعية وتبادل المعرفة في مجال الأمن السيبراني ضمن الفرق التشغيلية لتعزيز الجاهزية وفعالية الاستجابة.
الشروط والمتطلبات
- درجة البكالوريوس في أمن المعلومات أو هندسة النظم أو أي مجال ذي صلة.
- خبرة لا تقل عن 6 سنوات في مجال الأمن السيبراني أو عمليات الأمن.
- إجادة اللغة الإنجليزية بطلاقة (مستوى متحدث أصلي تقريباً).
عرض النص الأصلي للإعلان
Job Purpose
|
The role holder is responsible for managing and enhancing cybersecurity operations across Specialized’s networks, systems, and applications to ensure effective threat monitoring, incident response, vulnerability management, and risk mitigation. The role focuses on strengthening cybersecurity controls, driving continuous improvement of security operations, conducting security assessments, and ensuring compliance with cybersecurity frameworks, regulatory requirements, and industry best practices. The role holder shall carry out their duties in accordance with the stipulated business policies and procedures. |
Key Functional Accountability
- Lead continuous monitoring activities across Specialized’s networks, applications, systems, and integration points with Mission-Critical clients to proactively identify, assess, and respond to cybersecurity threats and vulnerabilities. -Oversee the implementation and effectiveness of security controls across network assets, systems, and security platforms, ensuring alignment with cybersecurity frameworks, regulatory requirements, and industry best practices. -Lead SOC operational activities, ensuring effective threat detection, incident triage, response coordination, and resolution in accordance with defined service levels and operational requirements. -Analyze cybersecurity incidents, attack patterns, and threat trends to identify root causes, recommend corrective actions, and strengthen overall security posture. -Lead security assessments, vulnerability assessments, penetration testing activities, and remediation planning across Mission-Critical networks, systems, devices, and applications. -Drive vulnerability management activities by coordinating remediation efforts, patch management, system hardening, and security configuration reviews to reduce organizational risk exposure. -Coordinate with Strategy & Governance and relevant stakeholders to ensure cybersecurity documentation, evidence, and operational records are maintained to support compliance, audits, and regulatory reviews. -Provide cybersecurity risk insights, incident updates, and security recommendations to management and relevant stakeholders to support informed decision-making. -Evaluate and apply threat intelligence, emerging threat indicators, and security advisories to strengthen preventive and detective security capabilities. -Monitor cybersecurity performance metrics, incident trends, and operational effectiveness, recommending improvements to enhance SOC maturity and security operations performance. -Support the enhancement and continuous improvement of cybersecurity frameworks, operational procedures, and incident response capabilities across Specialized. -Lead cybersecurity awareness and knowledge-sharing activities within operational teams to strengthen security readiness and response effectiveness.
Qualifications:
Bachelor's Degree
Years of Experience:
6 Years
Most Preferred Education Field
Information Security, System Engineering, or any related field
Business Language Skills:
English language proficiency level is fluent
رقم الإعلان لدى المصدر: 857361123