Cyber Security Defense Senior Specialist

Alfalak Electronic Equipment & Supplies Co.

Saudi Arabia

On-site

SAR 300,000 - 520,000

Full time

5 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Alfalak Electronic Equipment & Supplies Co. is seeking a cybersecurity professional to manage vulnerability assessments, conduct penetration testing, and coordinate red team activities.

The role includes threat intelligence coordination, SOC monitoring, and incident response support within a Saudi Arabian context. The ideal candidate will have a Bachelor's degree in Computer Science or IT, strong experience with security assessment tools, SIEM, and log analysis, plus relevant certifications.

Qualifications

  • Bachelor's degree in computer science or information technology.
  • Experience with security assessment tools.
  • Experience in vulnerability management and penetration testing.
  • Knowledge of SIEM solutions.
  • Knowledge of log formats and ability to parse and correlate logs for investigations.
  • Proficient with log search tools.
  • Certifications such as GCIH, CTIA, CDFE, CEH, and OSWA are desirable.

Responsibilities

  • Develop, review and update penetration testing methodologies aligning with industry best practices.
  • Conduct threat modelling and vulnerability assessments to identify weaknesses and remediation.
  • Coordinate penetration testing, source code review, application security testing, and red teaming activities.
  • Lead vulnerability scanning program and prepare vulnerability reports for IT.
  • Follow-up on remediation actions with IT and track KPI health.
  • Lead threat intelligence and threat hunting initiatives and report findings to IT.

Skills

Security Assessment Tools
Vulnerability Management
Penetration Testing
SIEM Knowledge
Log Analysis
Threat Intelligence

Education

Bachelor's degree in Computer Science or IT
GCIH
CTIA
CDFE
CEH
OSWA

Job description

Key Responsibilities:
Vulnerability management and Penetration testing
  • Develop, review and update penetration testing methodologies, ensuring comprehensive coverage and adherence to industry best practices.
  • Conduct threat modelling and vulnerability assessments to identify potential weaknesses in infrastructure, applications, and systems and provide recommendations for remediation.
  • Coordinate penetration testing, source code review, application security testing, and red teaming activities.
  • Responsible for vulnerability scanning activities on systems and assets, Vulnerability scanners health and deployment across the different segments of network, configuration review, and all associated activities related to vulnerability management preparation of vulnerability reports to IT.
  • Follow-up on vulnerability remediation status and actions taken in coordination with IT department.
  • Maintain vulnerability management KPI and follow up remediation with IT security for identified vulnerabilities.
Threat Hunting and Threat Management
  • Responsible for threat intelligence activities, and coordination of threat hunting activities.
  • Manage compromise assessment, Yara scanning, and sigma scanning activities to identify and address potential breaches and preparation of reports for IT actions accordingly.
  • Triage and resolve advanced vector attacks such as botnets and advanced persistent threats (APTs).
  • Gather and analyze threat intelligence from internal and external sources.
  • Follow updates on threats posted or received from relevant authorities and ensure these updates are reflected on IT systems as applicable.
  • Monitor external data sources to keep understanding of emerging cybersecurity threats and determine which security issues may have an impact on the organization.
SOC monitoring & Cyber incident management
  • Responsible for the monitoring and investigation of Cybersecurity events and incidents and act as first responder forensics analysis and investigation.
  • Maintain an incident repository for organization incidents with different incident classifications.
  • Correlate incident data to identify vulnerabilities and help in coordinating a mitigation for these vulnerabilities that might impact the company.
  • Use knowledge of threat actors and activities to prepare organization's response to a cyber incident.
  • Implement the containment strategy during data loss or breach events.
  • Analyse malicious activity to determine vulnerabilities exploited, exploitation methods and effects on system and information.
  • Responsible to work with the SOC all raised cyber security incidents.
  • Implement the event management processes.
  • Responsible for onboarding the new assets to extend SOC monitoring over them.
  • Responsible for the SIEM health status and coordinating any required activity related to the SIEM with the outsourced vendor.
  • Provide use case creation/tuning recommendations to administrators based on findings during investigations or threat reviews.
  • Monitor the performance on all outsourced functions to SOC to ensure vendor conformance to agreed SLAs and KPIs.
QUALIFICATIONS:
  • Bachelor's degree in computer science, Information Technology
  • Experience with Security Assessment tools
  • Experience in Vulnerability management and Penetration testing
  • Knowledge of SIEM solutions
  • Knowledge of log formats and ability to aggregate and parse log data for syslog, http logs, DB logs for investigation purposes.
  • In-depth experience with log search tools
  • Relevant professional certificates in Certified Incident Handler (GCIH), Certified Threat Intelligence Analyst (CTIA), Certified Digital Forensics Examiner (CDFE), Offensive
  • Security Certified Professional, Certified Ethical Hacker (CEH), and Certified Web Assessor (OSWA) certification are highly desirable.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Defense Senior Specialist
Cyber Security Defense Senior Specialist

Alfalak Electronic Equipment & Supplies Co. • Jeddah

On-site
SAR 279,000 - 446,000
Security Delivery Consultant
Security Delivery Consultant

Accenture PLC • Riyadh

On-site
SAR 240,000 - 360,000
Information Security Specialist
Information Security Specialist

Tamimi Commercial • Al Khobar

On-site
SAR 150,000 - 200,000
Security Delivery Senior Analyst
Security Delivery Senior Analyst

Accenture PLC • Riyadh

On-site
SAR 180,000 - 300,000
Senior Specialist - Cybersecurity Production Support
Senior Specialist - Cybersecurity Production Support

TAWANTECH • Riyadh

On-site
SAR 180,000 - 280,000
SOC Manager
SOC Manager

Managed Services • Riyadh

On-site
SAR 240,000 - 360,000
SOC Manager
SOC Manager

Managed • Riyadh

On-site
SAR 240,000 - 360,000
Cybersecurity Consultant
Cybersecurity Consultant

Protech • Riyadh

On-site
SAR 180,000 - 300,000
Cyber Defense Specialist - Detection & Monitoring
Cyber Defense Specialist - Detection & Monitoring

cloud consultancy - ccds • Saudi Arabia

On-site
OMR 31,000 - 62,000
Senior IT Security Operations Engineer
Senior IT Security Operations Engineer

Deepsource Technologies • Riyadh

On-site
SAR 250,000 - 390,000