Job Description
- Architect, deploy and maintain Tenable SC environment including Nessus scanners, agents, and connectors across IT and OT/ICS segments.
- Manage scan policies, schedules, credentials, and scanner zones to maximize coverage.
- Integrate Tenable with CMDB, ticketing, ServiceNow, Jira and SIEM platforms.
- Maintain scanner health, plugin updates, license compliance and capacity planning; own upgrade and patch cycles.
- Define and enforce end-to-end vulnerability management process: discovery, identification, risk scoring, SLA assignment, remediation, verification and exception handling.
- Apply risk‑based prioritization using CVSS, EPSS, VPR, Tenable Vulnerability Priority Rating, asset criticality and threat intelligence feeds.
- Drive remediation efforts by collaborating with system owners, publishing clear remediation guidance and tracking SLA adherence in dashboards.
- Develop, maintain and review vulnerability management policy, standards and procedures documentation.
- Administration of NDR, Endpoint Detection and Response and Darktrace platform.
- Develop and manage NDR policies; integrate NDR with SIEM and other security tools; fine‑tune detection models, adjust sensitivity and reduce false positives.
- Monitor NDR appliance health, sensor connectivity and ensure continuous visibility across the network.
- Apply NDR updates, manage configuration changes and ensure alignment with security policies.
- Manage day‑to‑day operations of ThreatQ Threat Intelligence Platform, including data ingestion, enrichment and workflow configuration.
- Configure and maintain integrations with threat‑intel feeds; apply scoring models, enrichment rules and prioritization logic.
- Build and optimize automated workflows; maintain integrations of TIP with SIEM, security controls or other platforms.
Skills and Qualifications
- 5–8 years of hands‑on experience in information security, with at least 3 years focused on vulnerability management.
- 2+ years of hands‑on experience administering Tenable SC.
- Solid understanding of common vulnerability classes (OWASP Top10, CWE Top25, CVE ecosystem) and patch management workflows.
- Hands‑on experience administering NDR Darktrace is recommended.
- Hands‑on experience administering TIP ThreatQ is recommended.
Work Location: Jazan, KSA.
Equal Employment Opportunity Statement: We believe that no one should be discriminated against because of their differences. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, sexual orientation, gender identity or expression, marital status, citizenship status or any other basis as protected by applicable law. Our rich diversity makes us more innovative, more competitive and more creative, which helps us better serve our clients and our communities.