img
نوع العقددوام كامل
طبيعة الوظيفةبالموقع
الموقعجدة

وصف الوظيفة

About the Role

Alfalak Electronic Equipment & Supplies Co. is seeking a Cyber Security Defense Senior Specialist to join their team in Makkah, with locations in Jeddah and Makkah. This full-time role requires 2-5 years of experience and focuses on strengthening the organization's cybersecurity posture through proactive defense strategies and incident management.

Vulnerability Management and Penetration Testing

  • Develop, review, and update penetration testing methodologies to ensure comprehensive coverage and adherence to industry best practices.
  • Conduct threat modeling and vulnerability assessments to identify potential weaknesses in infrastructure, applications, and systems, providing recommendations for remediation.
  • Coordinate penetration testing, source code review, application security testing, and red teaming activities.
  • Manage vulnerability scanning activities on systems and assets, including scanner health, deployment across network segments, and configuration review, preparing vulnerability reports for IT.
  • Follow up on vulnerability remediation status and actions taken in coordination with the IT department.
  • Maintain vulnerability management KPIs and track remediation efforts with IT security for identified vulnerabilities.

Threat Hunting and Threat Management

  • Lead threat intelligence activities and coordinate threat hunting operations.
  • Manage compromise assessment, Yara scanning, and Sigma scanning activities to identify and address potential breaches, preparing reports for IT actions.
  • Triage and resolve advanced vector attacks such as botnets and Advanced Persistent Threats (APTs).
  • Gather and analyze threat intelligence from internal and external sources.
  • Monitor updates on threats from relevant authorities and ensure these are reflected on IT systems as applicable.
  • Monitor external data sources to maintain an understanding of emerging cybersecurity threats and their potential impact on the organization.

SOC Monitoring and Cyber Incident Management

  • Monitor and investigate cybersecurity events and incidents, acting as a first responder for forensics analysis and investigation.
  • Maintain an incident repository for organizational incidents with various classifications.
  • Correlate incident data to identify vulnerabilities and assist in coordinating mitigation strategies.
  • Utilize knowledge of threat actors and activities to prepare the organization's response to cyber incidents.
  • Implement containment strategies during data loss or breach events.
  • Analyze malicious activity to determine exploited vulnerabilities, exploitation methods, and effects on systems and information.
  • Collaborate with the SOC on all raised cybersecurity incidents.
  • Implement event management processes.
  • Onboard new assets to extend SOC monitoring coverage.
  • Monitor SIEM health status and coordinate related activities with outsourced vendors.
  • Provide use case creation/tuning recommendations to administrators based on investigation findings or threat reviews.
  • Monitor the performance of all outsourced SOC functions to ensure vendor conformance to agreed SLAs and KPIs.

Experience and Work Type

This is a full-time position requiring 2-5 years of experience in cybersecurity defense, vulnerability management, threat hunting, or SOC operations. The salary for this role will be discussed during the interview process.


متطلبات الوظيفة

  • تتطلب ٢-٥ سنوات خبرة

وظائف مشابهة