More jobs:
IT Security Engineer
Job in
Riyadh, Riyadh Region, Saudi Arabia
Listed on 2026-06-02
Listing for:
Sifi
Full Time
position Listed on 2026-06-02
Job specializations:
-
IT/Tech
Cybersecurity, Network Security, Systems Engineer, IT Support
Job Description & How to Apply Below
The Cybersecurity function sets security standards, monitors compliance, and reports to governance. The Technology department owns and operates the infrastructure those standards apply to. This role bridges the two by executing security controls on production and corporate infrastructure under the direction of Technology, with priorities aligned to security posture improvement and SAMA CSF requirements. This is a hands‑on technical role, not a policy or advisory position.
CoreResponsibilities
- Vulnerability & Patch Remediation:
Own technical remediation of infrastructure vulnerabilities across Windows, Linux, and network platforms; track Critical and High findings to closure within remediation SLAs; coordinate patching with SRE, application, and business owners. - Infrastructure Security Operations:
Apply and maintain hardening baselines for servers, endpoints, network devices, and cloud workloads. Maintain EDR, MDM, and DLP coverage across all in‑scope assets; identify and close gaps. Remediate security gaps across server, endpoint, network, and cloud surfaces. - SOC & MDR Case Remediation:
Investigate SOC and MDR cases that require action on infrastructure; determine root cause on affected assets; apply technical fixes and close remediation actions in coordination with the SOC & MDR partner. - PAM & Privileged Access Implementation:
Onboard privileged accounts into the enterprise PAM platform; remediate privileged access gaps across infrastructure, shared accounts, standing access, and weak credential handling. Support secure administrative access practices for SRE, DBAs, and infrastructure operators. - Cloud Security Operations:
Operate OCI security controls, IAM policy, network security lists, and security zones. Review and remediate OCI Cloud Guard findings continuously. Support secure cloud configuration during build and change activities. - Backup & Restore Security:
Own technical security controls on backup and restore infrastructure (access control, encryption, immutability, segmentation). Validate hardening of backup repositories and restore targets; verify restored systems return to baseline before release. Execute security validation during restore‑testing exercises; verify backup integrity, detect tampering, and confirm recovered systems are safe to return to service.
- Change Management:
Raise security‑related change requests in the ITSM system; attach security impact assessments, test results, and rollback evidence. Support emergency changes when a security incident requires accelerated execution. - User Access Reviews:
Extract access reports from infrastructure, AD, cloud, PAM, and network devices. Implement approved access removals or modifications; provide evidence of completion to the review owner. - Segregation of Duties:
Implement approved technical remediation on infrastructure. Support investigation of suspected violations on infrastructure assets. - MDM Compliance:
Identify non‑compliant or unenrolled devices; coordinate enrollment and remediation with IT Support. - Application Security Remediation:
Support remediation only when the fix requires infrastructure, IAM, network, cloud, or server changes.
- 3–5 years in IT security operations, infrastructure security, or security engineering.
- Hands‑on experience with Oracle Cloud Infrastructure (OCI) security controls, IAM, network security, and Cloud Guard.
- Experience with Qualys VMDR for vulnerability and patch management.
- Experience managing privileged access with Manage Engine Password Manager Pro (PMP).
- Experience with Manage Engine Endpoint Central for endpoint management and patching.
- Strong Linux and Windows server administration, hardening, and patching experience.
- Working knowledge of identity and access management (Active Directory, MFA, RBAC, SoD principles).
- Ability to work across teams: this role sits in Technology but serves security objectives.
- Strong written and verbal communication in English;
Arabic a plus.
- Experience in a regulated financial institution or fintech environment.
- Familiarity with CIS Benchmarks or vendor hardening guides.
- Exposure to ITSM platforms (e.g., Manage Engine Service Desk Plus) for change and incident workflows.
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×