More jobs:
Senior Network & Email Security Engineer
Job in
Riyadh, Riyadh Region, Saudi Arabia
Listed on 2025-12-04
Listing for:
proven
Full Time
position Listed on 2025-12-04
Job specializations:
-
IT/Tech
Cybersecurity, Security Manager
Job Description & How to Apply Below
Job Title:
Senior Network & Email Security Engineer
Location:
Riyadh
Job Summary:
Maintain a hardened perimeter and secure enterprise email with full operational evidence for audits and transition stability. This role owns day-to-day operations, hygiene, incident response, and change control across network security controls and the email security gateway in Client’s production environment.
- Network Security:
Next‑Gen Firewalls (e.g., Palo Alto / equivalent), site‑to‑site & remote‑access VPN, IPS/Threat Prevention, URL filtering, Wild Fire/sandboxing (or equivalent), SSL decryption where applicable, HA/failover, logging to SIEM. - Email Security:
Secure Email Gateway (e.g., Proofpoint or equivalent): inbound/outbound policies, anti‑phishing/BEC, impersonation protection, URL rewriting/sandboxing, attachment detonation, quarantine workflows, user digests, SPF/DKIM/DMARC posture checks (with Messaging team).
- Daily health checks for NGFW clusters, threat/content updates, license/status, HA sync/state.
- Rulebase hygiene: reduce unused/overlapping rules, enforce least privilege, maintain application‑based policies, validate security profiles (AV/IPS/URL filtering).
- Remote access posture (e.g., Global Protect or equivalent): portal/gateway policies, MFA integration with IAM team, and user experience SLAs.
- Traffic troubleshooting: ACC/log analysis, PCAPs, policy simulation; coordinate fixes with platform owners.
- Inbound/outbound policy tuning; phishing/BEC controls and executive spoof protection.
- URL and attachment sandboxing effectiveness; manage quarantine queues and approval flows.
- Partner with Messaging team on SPF/DKIM/DMARC alignment; monitor sending reputation and delivery health.
- Provide user‑facing guidance (digests, safe release, false positive/negative handling).
- Lead P1 incidents across perimeter/email; coordinate with SOC (SIEM alerts, playbooks).
- Rapid containment (block rules, URL detonation verdicts, sender throttling), evidence capture, and RCA with corrective actions.
- Prepare CAB‑ready change plans (impact, test, rollback) for signature/content updates, firmware upgrades, and policy changes.
- Post‑change validation and documentation.
- Maintain audit‑ready artifacts: change tickets/approvals, policy exports, content update logs, quarantine reports, incident timelines, and monthly posture reviews.
- Familiarity with SAMA & NCA CSF audit and regulations requirements.
- Support internal/external audits with traceable evidence.
- Own runbooks/SOPs (policy hygiene, incident triage, quarantine workflows, upgrade steps).
- Mentor L1/L2; drive shadow → reverse-shadow.
Required Qualifications:
- 5+ years experience in enterprise network and email security operations.
- Hands‑on with NGFWs (preferably Palo Alto) and a major Secure Email Gateway (e.g., Proofpoint).
- Strong change/incident management discipline; clear written reports in English (Arabic a plus).
- Comfortable with packet analysis, SSL decryption concepts, and mail flow basics with messaging teams.
Preferred Qualifications:
- Banking/regulated‑sector experience.
- Experience integrating controls with SIEM/SOAR.
- Certifications:
PCNSE (or equivalent NGFW), vendor SEG certification, ITIL.
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×