📍 المملكة العربية السعودية تحديث مستمر على مدار الساعة وظائف تناسب سيرتك الذاتيةمجاناً قناة تيليجرام

وظيفة محلل أمن سيبراني شاغرة لدى Trade Bank of Iraq - Saudi Arabia في الرياض

Cyber Security Analyst
🕒 نُشرت: (منذ 7 أيام) 📍 الرياض وظائف الهندسة والتقنية

تفاصيل الوظيفة

مصرف التجارة للعراق - فرع السعودية يعلن عن وظيفة محلل أمن سيبراني في الرياض، ضمن قسم أمن المعلومات، تحت إشراف كبير مسؤولي أمن المعلومات.

نبذة عن الوظيفة

يبحث مصرف التجارة للعراق (TBI) عن محلل أمن سيبراني ذي قدرات تقنية وحافز عالٍ للانضمام إلى وظيفة أمن المعلومات في فرعه بالسعودية. تشمل المسؤوليات مراقبة الأمن، كشف الحوادث والاستجابة لها، إدارة الثغرات، ودعم التزام الفرع بمتطلبات الامتثال السيبراني. يهدف هذا الدور إلى حماية سرية وسلامة وتوفر أصول المعلومات، وضمان المواءمة المستمرة مع إطار الأمن السيبراني للبنك المركزي السعودي (SAMA)، وضوابط الهيئة الوطنية للأمن السيبراني (NCA)، ومتطلبات حماية البيانات. سيراقب المحلل أحداث الأمن والتنبيهات، ويحقق في الحوادث ويُصعّدها، ويتابع معالجة الثغرات، ويعمل عن كثب مع تقنية المعلومات ومقدمي الخدمات المدارة لتعزيز الوضع الأمني للفرع. المرشح المثالي يتمتع بمهارات تحليلية قوية، واهتمام حقيقي بالأمن السيبراني، ونزاهة عالية، وقدرة على العمل تحت الضغط أثناء الحوادث الأمنية في بيئة مصرفية سريعة ومنظمة.

المهام والمسؤوليات

  • مراقبة أحداث الأمن والتنبيهات الصادرة عن SIEM، حماية نقاط النهاية، أمن البريد الإلكتروني، جدار الحماية، وأدوات الأمن الأخرى، وفرزها حسب الخطورة.
  • التحقيق في الحوادث الأمنية المشتبه بها، وجمع الأدلة وحفظها، وتوثيق النتائج، والتصعيد وفقاً للإجراءات المعتمدة للاستجابة للحوادث والتصعيد.
  • دعم تنفيذ خطة الاستجابة للحوادث السيبرانية والتعافي، بما في ذلك المشاركة في التعامل مع الحوادث واحتوائها، ومراجعات ما بعد الحادث والدروس المستفادة.
  • دعم عملية إدارة الثغرات، بما في ذلك مراجعة نتائج فحص الثغرات، وتحديد الأولويات بناءً على المخاطر، والتنسيق مع تقنية المعلومات ومقدمي الخدمات للمعالجة، والمتابعة حتى الإغلاق.
  • دعم مراجعة ومتابعة نتائج اختبار الاختراق وتنفيذ إجراءات المعالجة المتفق عليها.
  • مراجعة ومراقبة حقوق وصول المستخدمين والحسابات المميزة وسجلات الوصول، ودعم تمارين مراجعة وصول المستخدمين الدورية.
  • دعم الامتثال لإطار الأمن السيبراني للبنك المركزي السعودي (SAMA) وضوابط الهيئة الوطنية للأمن السيبراني (NCA)، بما في ذلك حفظ الأدلة وتحديث التقييمات الذاتية للضوابط ومتابعة الثغرات المحددة.
  • المساعدة في إعداد تقارير الأمن السيبراني والمقاييس ولوحات المعلومات لرئيس أمن المعلومات والإدارة العليا والتقارير التنظيمية.
  • دعم مراجعة تكوينات الأمن ومعايير التصلب وطلبات التغيير من منظور أمن المعلومات.
  • التنسيق مع تقنية المعلومات ومقدمي الخدمات المدارة بشأن التصحيح الأمني وإدارة أدوات الأمن وحل المشكلات المتعلقة بالأمن.
  • دعم تقييمات مخاطر الأمن للجهات الخارجية والتعاقد من الباطن، بما في ذلك مراجعة استبيانات أمن البائعين والأدلة الداعمة.
  • المساهمة في تقديم التدريب على التوعية الأمنية وتمارين محاكاة التصيد، ومتابعة مشاركة الموظفين والنتائج.
  • التنسيق مع وظائف مكافحة الاحتيال والامتثال بشأن الحوادث التي تنطوي على احتيال أو تسريب بيانات أو إساءة استخدام مشتبه بها لأنظمة المصرف.
  • الحفاظ على وثائق أمنية دقيقة وكاملة وسرية، وسجلات الحوادث، والأدلة بما يتوافق مع متطلبات الاحتفاظ بالسجلات في المصرف.

الشروط والمتطلبات

  • درجة البكالوريوس في الأمن السيبراني، علوم الحاسب، تقنية المعلومات، نظم المعلومات، أو مجال ذي صلة من مؤسسة معتمدة.
  • شهادة مثل CompTIA Security+ أو CEH أو CySA+ أو Microsoft SC-200 أو Cisco CyberOps أو مؤهل مكافئ في الأمن السيبراني (مفضل) أو الاستعداد للحصول على واحدة.
  • خبرة لا تقل عن سنة واحدة في الأمن السيبراني أو عمليات الأمن أو البنية التحتية لتقنية المعلومات أو دور تقني ذي صلة.
  • خبرة في العمل المصرفي أو مؤسسة مالية أو بيئة منظمة أخرى (مفضلة).
  • خبرة في أدوات SIEM أو حماية نقاط النهاية أو جدار الحماية أو أدوات فحص الثغرات (ميزة إضافية).
  • الإلمام بإطار الأمن السيبراني للبنك المركزي السعودي (SAMA) أو ضوابط الهيئة الوطنية للأمن السيبراني (NCA) أو ISO 27001 أو NIST (ميزة إضافية).
  • يمكن النظر في الخريجين الجدد الحاصلين على سجل أكاديمي قوي أو شهادات ذات صلة أو خبرة تدريبية ذات صلة.

المهارات المطلوبة

  • فهم جيد للشبكات وأنظمة التشغيل وتقنيات الهجوم الشائعة ونواقل التهديد.
  • مهارات تحليلية قوية وحل المشكلات مع القدرة على التحقيق في التنبيهات والوصول إلى استنتاجات قائمة على الأدلة.
  • القدرة على البقاء هادئاً واتخاذ القرارات الحاسمة تحت الضغط أثناء الحوادث الأمنية.
  • مهارات قوية في كتابة التقارير والتوثيق.
  • مستوى عالٍ من النزاهة والاحترافية والسرية والاهتمام بالتفاصيل.
  • الاستعداد للمشاركة في المناوبات عند الطلب ودعم الحوادث خارج ساعات العمل العادية عند الحاجة.
  • مهارات تواصل شخصية قوية والقدرة على التنسيق مع فرق تقنية المعلومات ومقدمي الخدمات الخارجيين.
  • إتقان استخدام Microsoft Office؛ مهارات البرمجة النصية (scripting) ميزة إضافية.
  • إجادة جيدة للغتين العربية والإنجليزية (كتابة وتحدثاً).
عرض النص الأصلي للإعلان

Job Announcement: Cybersecurity Analyst - Trade Bank of Iraq, Saudi Arabia Branch (Saudization)

Job Title: Cybersecurity Analyst

Location: Riyadh, Saudi Arabia

Department: Information Security

Reporting to: Chief of Information Security Officer (CISO) - Saudi Arabia Branch

 

How to Apply

Interested candidates should submit their resume to: ( jobs@tbisa.sa )

Closing date for applications: 10 September 2026

Only shortlisted candidates will be contacted.

 

Job Brief

The Trade Bank of Iraq (TBI) is seeking a motivated and technically capable Cybersecurity Analyst to join the Information Security function at its Saudi Arabia Branch, with responsibilities spanning security monitoring, incident detection and response, vulnerability management, and support for the Branch's cybersecurity compliance obligations.

This role is essential to protecting the confidentiality, integrity, and availability of the Branch's information assets, and to ensuring continued alignment with the Saudi Central Bank (SAMA) Cyber Security Framework, National Cybersecurity Authority (NCA) controls, and applicable data protection requirements. The Cybersecurity Analyst will monitor security events and alerts, investigate and escalate incidents, track the remediation of vulnerabilities, and work closely with IT and Managed Service Providers to strengthen the Branch's security posture.

The ideal candidate will demonstrate strong analytical and troubleshooting skills, genuine interest in cybersecurity, high integrity and discretion, and the ability to work under pressure during security incidents in a fast-paced, highly regulated banking environment.


Key Responsibilities

•      Monitor security events and alerts generated by SIEM, endpoint protection, email security, firewall, and other security tools, and triage them according to severity.

•      Investigate suspected security incidents, gather and preserve evidence, document findings, and escalate in line with the approved incident response and escalation procedures.

•      Support the execution of the Cyber Incident Response and Recovery Plan, including participation in incident handling, containment, and post-incident reviews and lessons learned.

•      Support the vulnerability management process, including the review of vulnerability scan results, risk-based prioritization, coordination of remediation with IT and service providers, and tracking to closure.

•      Support the review and follow-up of penetration testing findings and the implementation of agreed remediation actions.

•      Review and monitor user access rights, privileged accounts, and access logs, and support periodic user access review exercises.

•      Support compliance with the SAMA Cyber Security Framework and NCA controls, including maintaining evidence, updating control self-assessments, and tracking identified gaps.

•      Assist in the preparation of cybersecurity reports, metrics, and dashboards for the Head of Information Security, senior management, and regulatory submissions.

•      Support the review of security configurations, hardening standards, and change requests from an information security perspective.

•      Coordinate with IT and Managed Service Providers on security patching, security tool administration, and the resolution of security-related issues.

•      Support third-party and outsourcing security risk assessments, including the review of vendor security questionnaires and supporting evidence.

•      Contribute to the delivery of security awareness training and phishing simulation exercises, and track staff participation and results.

•      Coordinate with the Anti-Fraud and Compliance functions on incidents involving fraud, data leakage, or suspected misuse of Bank systems.

•      Maintain accurate, complete, and confidential security documentation, incident records, and evidence in line with the Bank's record-retention requirements.


Applicant Requirements


Education:

•      Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Information Systems, or a related field from an accredited institution.


Professional Certifications:

•      Certification such as CompTIA Security+, CEH, CySA+, Microsoft SC-200, Cisco CyberOps, or an equivalent cybersecurity qualification is preferred, or the willingness to obtain one.


Experience:

•      Minimum of 1 year of experience in cybersecurity, security operations, IT infrastructure, or a related technical role.

•      Experience within banking, a financial institution, or another regulated environment is preferred.

•      Exposure to SIEM, endpoint protection, firewall, or vulnerability scanning tools is an advantage.

•      Familiarity with the SAMA Cyber Security Framework, NCA Essential Cybersecurity Controls, ISO 27001, or NIST is an advantage.

•      Fresh graduates with strong academic records, relevant certifications, or relevant internship experience may be considered.


Skills:

•      Sound understanding of networking, operating systems, and common attack techniques and threat vectors.

•      Strong analytical and troubleshooting skills, with the ability to investigate alerts and reach evidence-based conclusions.

•      Ability to remain composed and act decisively under pressure during security incidents.

•      Strong report-writing and documentation skills.

•      High level of integrity, professionalism, discretion, and attention to detail.

•      Willingness to participate in on-call arrangements and to support incidents outside normal working hours when required.

•      Strong interpersonal skills and the ability to coordinate with IT teams and external service providers.

•      Proficiency in Microsoft Office; scripting skills are an advantage.

•      Good command of Arabic and English (written and spoken).



المصدر: LinkedIn - أُضيفت للموقع في 3 سبتمبر 2026
رقم الإعلان لدى المصدر: 4460724978