Cyber Security Defense Senior Specialist

Alfalak Electronic Equipment & Supplies Co.

Jeddah

On-site

SAR 279,000 - 446,000

Full time

5 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Alfalak Electronic Equipment & Supplies Co. in Jeddah is seeking an experienced cybersecurity professional to lead vulnerability management, penetration testing, and threat hunting initiatives.

The role includes coordinating red team activities, threat intelligence gathering, and incident response support across the organization. The candidate will manage vulnerability scanners, assess threats, and ensure remediation actions are tracked and reported, while aligning with IT security for robust

Qualifications

  • Bachelor’s degree in computer science or information technology is required.
  • Experience with security assessment tools and vulnerability management.
  • Knowledge of SIEM solutions and log formats for investigation.

Responsibilities

  • Develop, review and update penetration testing methodologies and ensure coverage of best practices.
  • Conduct threat modelling and vulnerability assessments with remediation recommendations.
  • Coordinate penetration testing, source code review, application security testing, and red teaming activities.
  • Lead vulnerability scanning, health of scanners, and prepare vulnerability reports for IT.
  • Follow up on remediation status and KPI tracking with IT security.
  • Maintain SIEM health and coordinate with outsourced vendor for SOC functions.
  • Provide use case tuning recommendations based on investigations and threat reviews.
  • Monitor external threat intelligence and updates from authorities to reflect in IT systems.

Skills

Threat hunting
Vulnerability management
Penetration testing
Incident response
Log analysis
SOC monitoring

Education

Bachelor's degree in computer science/Information Technology

Tools

SIEM
Yara
Sigma

Job description

Vulnerability management and Penetration testing
  • Develop, review and update penetration testing methodologies, ensuring comprehensive coverage and adherence to industry best practices.
  • Conduct threat modelling and vulnerability assessments to identify potential weaknesses in infrastructure, applications, and systems and provide recommendations for remediation.
  • Coordinate penetration testing, source code review, application security testing, and red teaming activities.
  • Responsible for vulnerability scanning activities on systems and assets, Vulnerability scanners health and deployment across the different segments of network, configuration review, and all associated activities related to vulnerability management preparation of vulnerability reports to IT.
  • Follow-up on vulnerability remediation status and actions taken in coordination with IT department.
  • Maintain vulnerability management KPI and follow up remediation with IT security for identified vulnerabilities.
Threat Hunting and Threat Management
  • Responsible for threat intelligence activities, and coordination of threat hunting activities.
  • Manage compromise assessment, Yara scanning, and sigma scanning activities to identify and address potential breaches and preparation of reports for IT actions accordingly.
  • Triage and resolve advanced vector attacks such as botnets and advanced persistent threats (APTs).
  • Gather and analyze threat intelligence from internal and external sources.
  • Follow updates on threats posted or received from relevant authorities and ensure these updates are reflected on IT systems as applicable.
  • Monitor external data sources to keep understanding of emerging cybersecurity threats and determine which security issues may have an impact on the organization.
SOC monitoring & Cyber incident management
  • Responsible for the monitoring and investigation of Cybersecurity events and incidents and act as first responder forensics analysis and investigation.
  • Maintain an incident repository for organization incidents with different incident classifications.
  • Correlate incident data to identify vulnerabilities and help in coordinating a mitigation for these vulnerabilities that might impact the company.
  • Use knowledge of threat actors and activities to prepare organization's response to a cyber incident.
  • Implement the containment strategy during data loss or breach events.
  • Analyse malicious activity to determine vulnerabilities exploited, exploitation methods and effects on system and information.
  • Responsible to work with the SOC all raised cyber security incidents.
  • Implement the event management processes.
  • Responsible for onboarding the new assets to extend SOC monitoring over them.
  • Responsible for the SIEM health status and coordinating any required activity related to the SIEM with the outsourced vendor.
  • Provide use case creation/tuning recommendations to administrators based on findings during investigations or threat reviews.
  • Monitor the performance on all outsourced functions to SOC to ensure vendor conformance to agreed SLAs and KPIs.
QUALIFICATIONS:
  • Bachelor’s degree in computer science, Information Technology
  • Experience with Security Assessment tools
  • Experience in Vulnerability management and Penetration testing
  • Knowledge of SIEM solutions
  • Knowledge of log formats and ability to aggregate and parse log data for syslog, http logs, DB logs for investigation purposes.
  • In-depth experience with log search tools
  • Relevant professional certificates in Certified Incident Handler (GCIH), Certified Threat Intelligence Analyst (CTIA), Certified Digital Forensics Examiner (CDFE), Offensive
  • Security Certified Professional, Certified Ethical Hacker (CEH), and Certified Web Assessor (OSWA) certification are highly desirable.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Defense Senior Specialist
Cyber Security Defense Senior Specialist

شركة الفلك للمعدات والتجهيزات الإلكترونية • Jeddah

On-site
SAR 180,000 - 290,000
Information Security Specialist
Information Security Specialist

Tamimi Commercial • Al Khobar

On-site
SAR 150,000 - 200,000
Senior Specialist - Cybersecurity Production Support
Senior Specialist - Cybersecurity Production Support

TAWANTECH • Riyadh

On-site
SAR 180,000 - 280,000
Cybersecurity Consultant
Cybersecurity Consultant

Protech • Riyadh

On-site
SAR 180,000 - 300,000
Specialist I, Cybersecurity
Specialist I, Cybersecurity

AL-AYUNI Investment and Contracting Company • Riyadh

On-site
SAR 240,000 - 360,000
SOC Manager
SOC Manager

Managed • Riyadh

On-site
SAR 240,000 - 360,000
SOC Manager
SOC Manager

Managed Services • Riyadh

On-site
SAR 240,000 - 360,000
Senior Cybersecurity Specialist
Senior Cybersecurity Specialist

Saudi Commission for Health Specialties (SCFHS) • Riyadh

On-site
SAR 180,000 - 240,000
Senior Cyber Defense & Threat Hunter
Senior Cyber Defense & Threat Hunter

شركة الفلك للمعدات والتجهيزات الإلكترونية • Jeddah

On-site
SAR 180,000 - 290,000
IT and Enterprise Cybersecurity Engineer
IT and Enterprise Cybersecurity Engineer

Optimal • Dhahran Compound

On-site
SAR 80,000 - 120,000