وصف الوظيفة
الأدوار والمسؤوليات
غرض الدور
يتحمل مهندس الأمن السيبراني الأول مسؤولية قيادة تصميم وتنفيذ وتكامل وتحسين ودعم حلول وخدمات الأمن السيبراني عبر بيئات عملاء المؤسسات. يوفر الدور خبرة تقنية متقدمة عبر عدة مجالات الأمن السيبراني بما في ذلك عمليات الأمن، أمان الشبكات، أمان نقاط النهاية، الهوية وإدارة الوصول (IAM)، أمان السحابة، إدارة الثغرات، حماية البيانات، مراقبة الأمن، والاستجابة للحوادث. يعمل مهندس الأمن السيبراني الأول كقائد تقني داخل مشاريع الأمن، مقدمًا إرشادات التصميم، مُرشدًا المهندسين المستجدين والاستشاريين، داعمًا engage العملاء، وضمان تسليم حلول الأمن السيبراني وفقًا لأفضل الممارسات المعمول بها في الصناعة والمتطلبات التنظيمية والمعايير المؤسسية.
ملف الوظيفة
- قيادة تسليم وتنفيذ مشاريع الأمن السيبراني من الأول إلى الأخير في بيئات على نطاق المؤسسة
- تصميم وتطوير وصيانة أطر هندسة آمنة تغطي أمان الشبكة ونقاط النهاية والهوية والأمان السحابي
- إدارة وتطوير عمليات الأمن (SecOps) بما في ذلك المراقبة والكشف والاستجابة
- الإشراف على عمليات التهديد والإدارة الثغرات والاستجابة للحوادث لتقليل مخاطر التعرض
- تحليل وحل مشكلات الأمن والبنية التحتية المعقدة عبر بيئات متكاملة
- التعاون مع الفرق الداخلية والموردين وأصحاب المصلحة لضمان تكامل أمني سلس وتنفيذ المشروع
- توفير القيادة التقنية والتوجيه والإرشاد لفرق الأمن
- تعزيز الالتزام بمعايير الصناعة والسياسات وأطر الامتثال (ISO 27001، NIST، PCI-DSS)
- دعم مبادرات التحسن المستمر من خلال تقييم التهديدات والأدوات والتقنيات الناشئة
- جسر التواصل بين أصحاب المصلحة الفنيين وغير الفنيين لدعم اتخاذ القرار
الكفاءات والمؤهلات
الخبرة والتعليم
- 5-9 سنوات في هندسة الأمن السيبراني أو أدوار التنفيذ
- درجة البكالوريوس في علوم الكمبيوتر أو الهندسة أو تقنية المعلومات أو مجال ذي صلة
المهارات
- مهارات اتصال وعرض تقديمي وإدارة أصحاب المصلحة قوية
- قيادة موثوقة وروح الفريق والقدرات التعاونية
- الطلاقة باللغتين العربية والإنجليزية
الخبرة التقنية
- هندسة الأمن وعملياتها وبيئات على نطاق المؤسسة
- إدارة التهديدات وثغرات الأمان والاستجابة للحوادث
- خبرة عملية في SIEM وحماية endpoints وIAM والجدران النارية
- خبرة مع موردين مثل مايكروسوفت، سيسكو، ما بينو آلتو، فورتينت، Trend Micro
الشهادات
- CISSP، CISM، CEH، CompTIA Security+
- أمن مايكروسوفت، Palo Alto PCNSE، Fortinet NSE، Splunk، CrowdStrike، CyberArk
- ITIL Foundation
الإطارات والأدوات
- ISO 27001، NIST، PCI-DSS
- إدارة خدمات تكنولوجيا المعلومات (ITIL) وممارسات ضمان الجودة
تقنيات الأمن
- SIEM: Sentinel، Splunk، QRadar، Elastic
- النقاط الطرفية: Defender، CrowdStrike، Trend Micro
- الهوية: Entra ID، CyberArk
- الشبكة: Cisco، Fortinet، Palo Alto، F5، Juniper
المرشح المثالي
- 5-9 سنوات في هندسة الأمن السيبراني أو أدوار التنفيذ
- درجة البكالوريوس في علوم الكمبيوتر، الهندسة، IT، أو مجال ذو صلة
- مهارات اتصال وتقديم وعرض وتعاون مع أصحاب المصلحة قوية
- قيادة مثبتة وروح الفريق والقدرات التعاونية
- الطلاقة في العربية والإنجليزية
- هندسة أمان وعمليات وبيئات على نطاق المؤسسة
- إدارة التهديدات وإدارة الثغرات والاستجابة للحوادث
- خبرة عملية مع SIEM، حماية الطرف النهائي، IAM، والجدران النارية
- خبرة مع مزودين مثل مايكروسوفت، سيسكو، Palo Alto، Fortinet، Trend Micro
- الشهادات: CISSP، CISM، CEH، CompTIA Security+، Microsoft Security، Palo Alto PCNSE، Fortinet NSE، Splunk، CrowdStrike، CyberArk، ITIL Foundation
- الإطارات والأدوات: ISO 27001، NIST، PCI-DSS، ITIL
- تقنيات الأمن: SIEM (Sentinel، Splunk، QRadar، Elastic)، الطرف النهائي (Defender، CrowdStrike، Trend Micro)، الهوية (Entra ID، CyberArk)، الشبكة (Cisco، Fortinet، Palo Alto، F5، Juniper)
Job Description
Roles & Responsibilities
Role Purpose
The Senior Security Engineer is responsible for leading the design, implementation, integration, optimization, and support of cybersecurity solutions and services across enterprise customer environments. The role provides advanced technical expertise across multiple cybersecurity domains including Security Operations, Network Security, Endpoint Security, Identity & Access Management (IAM), Cloud Security, Vulnerability Management, Data Protection, Security Monitoring, and Incident Response. The Senior Cyber Security Engineer acts as a technical leader within security projects, providing architecture guidance, mentoring junior engineers and consultants, supporting customer engagements, and ensuring cybersecurity solutions are delivered according to industry best practices, regulatory requirements, and organizational standards.
Job Profile
- Lead the delivery and implementation of end-to-end cybersecurity projects in enterprise-scale environments
- Design, develop, and maintain secure architecture frameworks covering network, endpoint, identity, and cloud security
- Manage and enhance Security Operations (SecOps) including monitoring, detection, and response capabilities
- Oversee threat management, vulnerability management, and incident response processes to minimize risk exposure
- Analyze and troubleshoot complex security and infrastructure issues across integrated environments
- Collaborate with internal teams, vendors, and stakeholders to ensure seamless security integration and project execution
- Provide technical leadership, mentoring, and guidance to security teams
- Drive adherence to industry standards, policies, and compliance frameworks (ISO 27001, NIST, PCI-DSS)
- Support continuous improvement initiatives by evaluating emerging threats, tools, and technologies
- Bridge communication between technical and non-technical stakeholders to support decision-making
Competencies and Qualification
Experience & Education
- 5 9 years in cybersecurity engineering or implementation roles
- Bachelor s degree in Computer Science, Engineering, IT, or related field
Skills
- Strong communication, presentation, and stakeholder management skills
- Proven leadership, teamwork, and collaboration abilities
- Fluency in Arabic and English
Technical Expertise
- Security architecture, operations, and enterprise-scale environments
- Threat management, vulnerability management, and incident response
- Hands-on experience with SIEM, endpoint protection, IAM, and firewalls
- Experience with vendors like Microsoft, Cisco, Palo Alto, Fortinet, Trend Micro
Certifications
- CISSP, CISM, CEH, CompTIA Security+
- Microsoft Security, Palo Alto PCNSE, Fortinet NSE, Splunk, CrowdStrike, CyberArk
- ITIL Foundation
Frameworks & Tools
- ISO 27001, NIST, PCI-DSS
- IT service management (ITIL) and quality assurance practices
Security Technologies
- SIEM: Sentinel, Splunk, QRadar, Elastic
- Endpoint: Defender, CrowdStrike, Trend Micro
- Identity: Entra ID, CyberArk
- Network: Cisco, Fortinet, Palo Alto, F5, Juniper
Desired Candidate Profile
- 5 9 years in cybersecurity engineering or implementation roles
- Bachelor s degree in Computer Science, Engineering, IT, or related field
- Strong communication, presentation, and stakeholder management skills
- Proven leadership, teamwork, and collaboration abilities
- Fluency in Arabic and English
- Security architecture, operations, and enterprise-scale environments
- Threat management, vulnerability management, and incident response
- Hands-on experience with SIEM, endpoint protection, IAM, and firewalls
- Experience with vendors like Microsoft, Cisco, Palo Alto, Fortinet, Trend Micro
- Certifications: CISSP, CISM, CEH, CompTIA Security+, Microsoft Security, Palo Alto PCNSE, Fortinet NSE, Splunk, CrowdStrike, CyberArk, ITIL Foundation
- Frameworks & Tools: ISO 27001, NIST, PCI-DSS, ITIL
- Security Technologies: SIEM (Sentinel, Splunk, QRadar, Elastic), Endpoint (Defender, CrowdStrike, Trend Micro), Identity (Entra ID, CyberArk), Network (Cisco, Fortinet, Palo Alto, F5, Juniper)