img
نوع العقددوام كامل
طبيعة الوظيفةبالموقع
الموقعالرياض

وصف الوظيفة

About the Role

Qiddiya is seeking a Senior Specialist Asset Security Operations to join its team. This full-time position is based in Riyadh, Saudi Arabia, and focuses on maintaining the security posture of business applications across Qiddiya's diverse asset environments.

Role Overview

The Senior Specialist will be responsible for the day-to-day security operations of business applications. This involves managing application security controls, overseeing vulnerability remediation, ensuring secure configurations, handling access management, and coordinating patching activities. The role serves as the primary point of contact with the Cybersecurity Team to facilitate penetration testing and code scanning, drive the timely resolution of identified vulnerabilities, and ensure applications remain secure, compliant, and operational throughout their lifecycle.

Key Responsibilities

  • Manage WAF/API security policies, including rule tuning and virtual patching (Cloudflare).
  • Track and drive the remediation of application vulnerabilities identified through penetration testing and SAST/DAST, ensuring compliance with established SLAs via ServiceNow.
  • Coordinate application and service account access provisioning through BeyondTrust PAM.
  • Oversee application patching, secure configurations, and dependency updates.
  • Maintain application security baselines, covering WAF, access controls, secrets, and certificates for new application go-lives.
  • Manage the lifecycle of application secrets and certificates.
  • Collaborate with the Cybersecurity Team on penetration testing, code scanning, and remediation efforts.
  • Monitor application security compliance and generate regular security reports.

Required Qualifications and Experience

  • A minimum of 2 years of experience in cybersecurity, with a preference for experience in application or web security.
  • Demonstrated experience with WAF platforms, ITSM tools, and vulnerability remediation processes.
  • Understanding of secure SDLC principles and the ability to interpret findings from penetration testing and SAST/DAST.
  • Familiarity with application patching, access management, and security configuration best practices.

Work Type and Location

This is a full-time position based in Riyadh, Saudi Arabia.

Application Information

Candidates who meet the outlined qualifications and requirements are encouraged to apply.


متطلبات الوظيفة

  • تتطلب ٥-١٠ سنوات خبرة

وظائف مشابهة