img
نوع العقددوام كامل
طبيعة الوظيفةبالموقع
الموقعالرياض

وصف الوظيفة

About the Role

Accenture Middle East is seeking a Security Delivery Manager to join their team in Riyadh, Saudi Arabia. This full-time role involves strengthening clients' cyber defense capabilities by leading the delivery of SIEM logging and security monitoring enablement within complex enterprise environments. The manager will combine technical knowledge of SIEM and log management with delivery leadership to ensure security-relevant data is onboarded, normalized, and validated for effective threat detection and monitoring.

Key Responsibilities

  • Lead end-to-end delivery of log-source assessment, onboarding, and validation into enterprise SIEM platforms, with a preference for Splunk.
  • Define and govern logging requirements aligned with security monitoring, detection, and investigation use cases.
  • Oversee log onboarding activities including source identification, ingestion, parsing, field extraction, normalization, and validation.
  • Assess log sources for quality, completeness, consistency, and security value, identifying gaps and recommending remediation.
  • Provide technical direction and troubleshooting support for complex log ingestion, parsing, mapping, and data-quality issues.
  • Drive consistent approaches to data normalization and standardization across diverse technology environments.
  • Coordinate dependencies across application, infrastructure, platform, and cybersecurity teams to enable required logging.
  • Lead delivery through batch-based, wave-based, or phased onboarding approaches, balancing delivery priorities, dependencies, and technical readiness.
  • Own delivery planning, progress tracking, risks, issues, dependencies, and stakeholder reporting for assigned logging initiatives.
  • Establish clear quality criteria and ensure onboarding outputs meet agreed technical and operational requirements.
  • Produce high-quality assessments, onboarding documentation, status reporting, and management-level updates.
  • Facilitate working sessions with technical teams and stakeholders to resolve blockers and maintain delivery momentum.
  • Act as a trusted point of coordination between cybersecurity teams and technology stakeholders.

Qualifications and Experience

  • 5-10 years of experience in a relevant field.
  • Strong hands-on understanding of SIEM technologies, preferably Splunk.
  • Demonstrated experience with log onboarding, ingestion pipelines, parsing, and field extraction.
  • Strong understanding of security logging across operating systems, applications, network devices, and security technologies.
  • Knowledge of common log formats and protocols such as syslog, JSON, and Windows events.
  • Experience assessing and improving log quality, completeness, and consistency.
  • Experience defining logging requirements against security monitoring and detection use cases.
  • Working knowledge of detection engineering and the role telemetry plays in effective security detections.
  • Understanding of security-data normalization, standardization, and mapping practices.
  • Strong analytical and troubleshooting capabilities, particularly for ingestion and data-quality issues.
  • Experience coordinating with application, infrastructure, platform, and security teams.
  • Demonstrated experience managing structured, phased, or batch-based technology delivery.
  • Strong documentation, reporting, and presentation capabilities.
  • Excellent stakeholder management and communication skills, with the ability to translate technical issues into clear business and delivery impacts.

Preferred Skills and Certifications

  • Experience delivering SIEM or security-monitoring capabilities in large-scale enterprise environments.
  • Experience with Splunk administration, SPL, data models, or Common Information Model concepts.
  • Exposure to SOC operations, threat detection, incident investigation, or threat hunting.
  • Experience working with cloud and hybrid environments.
  • Familiarity with MITRE ATT&CK and security monitoring frameworks.
  • Relevant cybersecurity, SIEM, Splunk, or service-management certifications.
  • Experience operating within a Managed Security Services environment.

Work Environment

This is a full-time position based in Riyadh, Riyadh, Saudi Arabia. The role involves working closely with security, application, infrastructure, and engineering teams to translate detection and monitoring requirements into actionable logging requirements.


متطلبات الوظيفة

  • تتطلب ٥-١٠ سنوات خبرة

وظائف مشابهة