The purpose of this role is to design the organisation’s computer and network security infrastructure and protect its systems and sensitive information from cyber threats.
Responsibilities include:
- Design and develop enterprise cyber security strategy and architecture.
- Understand security requirements by evaluating business strategies and conducting system security vulnerability and risk analyses.
- Identify risks associated with business processes, operations, information security programs, and technology projects.
- Identify and communicate current and emerging security threats and design security architecture elements to mitigate threats.
- Identify security design gaps in existing and proposed architectures and recommend improvements.
- Provide product best-fit analysis to ensure end-to-end security covering various facets such as layered security, zoning, integration, API, endpoint security, data security, and compliance.
- Demonstrate experience in security assessments against frameworks like NIST, SANS, CIS, etc.
- Support during deployment, configuration, integration, and administration of security technologies.
- Apply knowledge of ITIL or similar process domains for incident, change, configuration, and problem management.
- Assist in disaster recovery planning and response to security breaches and attacks.
- Develop solutions for RFPs and ensure overall design assurance.
- Manage a portfolio of solutions aligning with business outcomes.
- Analyze technology environments and client requirements to develop architectural frameworks.
- Create comprehensive RFPs based on client standards and technology stacks.
- Provide technical leadership in designing, developing, and implementing custom solutions.
- Evaluate and recommend solutions for integration with existing ecosystems.
- Stay updated on industry trends and relate them to current and future IT needs.
- Coordinate with stakeholders and assist in audits and compliance activities.
- Maintain security risk registers and support security audits.
- Promote cybersecurity awareness and training within the organization.
Stakeholder Interaction:
- Internal: Program Manager/Director, CIS team
- External: Customers for breach resolution and security coordination
Competencies Required:
- Knowledge of current security technologies and compliance requirements (e.g., Firewalls, IPS, DDoS, SIEM, WAF, Endpoint).
- Understanding of systems thinking and complex problem solving.
- Mastery in security ecosystem technology and certifications like CISSP, Cloud Architect (AWS, Azure), ToGAF, SABSA.
Behavioral Competencies:
- Effective communication, managing complexity, client centricity, technology acumen, innovation, problem solving, collaboration, execution excellence.
Performance Parameters:
- Customer-centric security breach resolution, proposal support, and lead generation.
OT Security Engineer / Lead Role:
- Manage operations and quality teams, maintain SLAs, review reports, conduct interviews, and facilitate audits.
- Ensure smooth operations, workforce planning for 24x7 coverage, escalate high-priority issues.
Security Engineer Location:
Al Jubail, Saudi Arabia