img
Contract TypeFull-time
Workplace typeRemote
LocationRiyadh

Job Description

About the Role

Accenture Middle East is seeking a Cyber Defense Consultant to join their team in Riyadh, Saudi Arabia. This full-time position focuses on designing and implementing robust security architectures, requiring 5-10 years of experience in cyber security.

Key Responsibilities

  • Design and maintain enterprise security architecture aligned with business, technology, and compliance requirements.
  • Define security standards, reference architectures, patterns, and guardrails for cloud, network, applications, identity, data, and infrastructure.
  • Review solution designs and ensure security requirements are embedded from the early design stage.
  • Conduct security architecture assessments for new systems, platforms, integrations, and transformation programs.
  • Identify security risks, recommend controls, and support risk treatment plans.
  • Work with infrastructure, cloud, application, network, IAM, SOC, GRC, and OT teams to ensure secure-by-design implementation.
  • Translate business and technical requirements into practical security controls.
  • Support implementation of Zero Trust, defense-in-depth, segmentation, least privilege, secure access, and secure monitoring models.
  • Define security requirements for third-party integrations, APIs, remote access, cloud workloads, and critical systems.
  • Support security governance by reviewing exceptions, deviations, and architecture waivers.
  • Provide technical guidance to project teams during design, build, testing, and deployment phases.
  • Ensure solutions comply with internal policies, regulatory requirements, and relevant standards such as ISO 27001, NIST, CIS, IEC 62443, and other applicable frameworks.
  • Collaborate with SOC and operations teams to ensure security logging, monitoring, detection, and response requirements are included in solution designs.
  • Maintain security architecture documentation, diagrams, decision records, and control mappings.
  • Stay updated on emerging threats, security technologies, and architecture best practices.

Required Qualifications and Experience

Candidates for this role should possess a strong background in cyber security architecture and implementation, with a proven ability to manage complex security challenges. A minimum of 5 to 10 years of experience in a relevant cyber security field is required.

  • Demonstrated ability to design and maintain enterprise security architecture.
  • Proficiency in defining security standards and reference architectures across various domains.
  • Experience in conducting security architecture assessments and identifying risks.
  • Familiarity with security frameworks and standards including ISO 27001, NIST, CIS, and IEC 62443.
  • Strong technical guidance and collaboration skills with diverse technical and operational teams.

Specialization in Operational Technology (OT) Security

A significant component of this role involves expertise in Operational Technology (OT) environments. The consultant will apply cyber defense principles to industrial control systems and critical infrastructure.

OT Domain Expertise

  • Experience with Operational Technology environments, including industrial control systems, SCADA, PLCs, HMIs, engineering workstations, historians, and industrial networks.
  • Understanding of OT network architecture, Purdue Model, industrial zones and conduits, and IT/OT segmentation.
  • Experience designing secure remote access solutions for OT vendors, engineers, and support teams.
  • Knowledge of OT security standards and frameworks, especially IEC 62443, NIST SP 800-82, and relevant critical infrastructure security practices.
  • Ability to assess OT risks while considering safety, availability, production continuity, and operational constraints.
  • Experience with OT asset discovery, visibility tools, network monitoring, and passive detection technologies.
  • Familiarity with industrial protocols such as Modbus, DNP3, OPC, Profinet, EtherNet/IP, BACnet, or similar.
  • Experience supporting OT vulnerability management, compensating controls, and risk-based remediation.
  • Ability to design secure OT network segmentation, firewall rules, jump servers, DMZ architecture, and controlled data flows between IT and OT.
  • Knowledge of secure backup, disaster recovery, patching constraints, and lifecycle management for OT systems.
  • Experience working with plant operations, engineering teams, automation vendors, SOC, and cybersecurity teams.
  • Ability to balance cybersecurity requirements with operational safety, uptime, and site-specific limitations.
  • Experience supporting OT incident response planning, tabletop exercises, and security monitoring use cases.
  • Understanding of physical security, safety systems, and their relationship with cybersecurity in industrial environments.
  • Experience preparing OT security documentation, architecture diagrams, risk assessments, and remediation roadmaps.

Collaboration and Professional Development

The role involves close collaboration with various internal and external teams, including SOC, operations, engineering, and automation vendors. The consultant is expected to stay current with emerging threats and security best practices to continuously enhance cyber defense capabilities.


Requirements

  • Requires 5-10 Years experience

Similar Jobs