IT Security Engineer📣 Job Ad
| Contract Type | Full-time | |
| Workplace type | On-site | |
| Location | Riyadh |
About the Role
SiFi is a Saudi B2B fintech licensed by the Saudi Central Bank (SAMA), providing wallet, disbursement, and payment services to enterprises across the Kingdom. The Cybersecurity function at SiFi operates in alignment with the SAMA Cybersecurity Framework and collaborates closely with the Technology and Engineering departments. This role is designed to serve as a technical bridge between Cybersecurity and the Technology department, focusing on the hands-on execution of security controls across production and corporate infrastructure to enhance the security posture and ensure compliance with SAMA CSF requirements. This is a technically focused, hands-on position, not a policy or advisory role.
Key Responsibilities
- Own the technical remediation of infrastructure vulnerabilities across Windows, Linux, and network platforms, tracking Critical and High findings to closure within defined remediation SLAs.
- Coordinate patching windows with Site Reliability Engineering (SRE), application teams, and business owners for timely and effective patch deployment.
- Apply and maintain hardening baselines for servers, endpoints, network devices, and cloud workloads to meet security standards.
- Maintain and ensure coverage of Endpoint Detection and Response (EDR), Mobile Device Management (MDM), and Data Loss Prevention (DLP) solutions across all in-scope assets, identifying and closing any gaps.
- Remediate security gaps identified across server, endpoint, network, and cloud environments.
- Investigate Security Operations Center (SOC) and Managed Detection and Response (MDR) cases requiring infrastructure action, determining the root cause on affected assets.
- Apply technical fixes and close remediation actions in coordination with the SOC/MDR partner.
- Onboard privileged accounts into the enterprise Privileged Access Management (PAM) platform.
- Remediate privileged access gaps across infrastructure, including addressing shared accounts, standing access, and weak credential handling.
- Support secure administrative access practices for SRE, Database Administrators (DBAs), and infrastructure operators.
- Operate Oracle Cloud Infrastructure (OCI) security controls, including Identity and Access Management (IAM) policies, network security lists, and security zones.
- Continuously review and remediate OCI Cloud Guard findings.
- Support secure cloud configuration during build and change activities within OCI.
- Own technical security controls on backup and restore infrastructure, focusing on access control, encryption, immutability, and segmentation across backup and recovery paths.
- Validate the hardening of backup repositories and restore targets, and verify that restored systems return to baseline before release.
- Execute security validation during restore-testing exercises, confirming backup integrity, detecting tampering, and ensuring recovered systems are safe for return to service.
- Raise security-related change requests in the IT Service Management (ITSM) system, attaching security impact assessments, test results, and rollback evidence.
- Support emergency changes when a security incident necessitates accelerated execution.
- Extract access reports from infrastructure systems such as Active Directory, cloud platforms, PAM, and network devices.
- Implement approved access removals or modifications based on user access reviews.
- Provide evidence of completion for access review actions to the review owner.
- Implement approved technical remediation on infrastructure for Segregation of Duties (SoD) violations.
- Support the investigation of suspected SoD violations on infrastructure assets.
- Identify non-compliant or unenrolled devices for MDM compliance.
- Coordinate device enrollment and remediation with IT Support for MDM compliance.
- Support application security remediation efforts when the fix requires infrastructure, IAM, network, cloud, or server changes.
Qualifications and Requirements
- 3–5 years of experience in IT security operations, infrastructure security, or security engineering.
- Hands-on experience with Oracle Cloud Infrastructure (OCI) security controls, IAM, network security, and Cloud Guard.
- Proficiency with Qualys VMDR for vulnerability and patch management.
- Experience with ManageEngine Password Manager Pro (PMP) for privileged access management.
- Experience with ManageEngine Endpoint Central for endpoint management and patching.
- Strong Linux and Windows server administration, hardening, and patching experience.
- Working knowledge of identity and access management principles, including Active Directory, Multi-Factor Authentication (MFA), Role-Based Access Control (RBAC), and Segregation of Duties (SoD) principles.
- Ability to work effectively across different teams, as this role sits within Technology but serves security objectives.
- Strong written and verbal communication skills in English.
Required Skills
- Oracle Cloud Infrastructure (OCI)
- Identity and Access Management (IAM)
- Network Security
- Cloud Guard
- Qualys VMDR
- ManageEngine Password Manager Pro (PMP)
- ManageEngine Endpoint Central
- Linux Server Administration
- Windows Server Administration
- Server Hardening
- Server Patching
- Active Directory
- Multi-Factor Authentication (MFA)
- Role-Based Access Control (RBAC)
- Segregation of Duties (SoD) principles
- Communication (written and verbal)
- CIS Benchmarks
- ManageEngine ServiceDesk Plus (familiarity with ITSM platforms)
Additional Information
This is a full-time position for an IT Security Engineer at SiFi, located in Riyadh, Saudi Arabia. The role requires 2-5 years of experience. Proficiency in Arabic is considered a plus. Experience in a regulated financial institution or fintech environment is preferred. Familiarity with CIS Benchmarks or vendor hardening guides is also preferred.
Requirements
- Requires 2-5 Years experience
Similar Jobs
You may also like
- Related IT Security Engineer Opportunities
- General Accountant Jobs in Medina
- Receptionist Jobs in Medina
- Social Media Campaign Specialist Jobs in Medina
- Business Development Specialist Jobs in Medina
- Human Resources Specialist Jobs in Medina
- Other Job Fields in Riyadh
- General Accountant Jobs in Riyadh
- Business Development Supervisor Jobs in Riyadh
- Sales Representative Jobs in Riyadh
- Receptionist Jobs in Riyadh
- Waiter Jobs in Riyadh
- Business Development Manager Jobs in Riyadh
- Regional Sales Manager Jobs in Riyadh
- Lifeguard Jobs in Riyadh
- Digital Marketing Specialist Jobs in Riyadh
- Personal Assistant Jobs in Riyadh
- Explore Jobs Across Saudi Arabia
- Sales Manager Jobs in Riyadh
- Operations Manager Jobs in Dammam
- Barista Jobs in Al Mubarraz
- Sales Representative Jobs in Al Wajh
- Production Supervisor Jobs in Makkah
- Physical Therapist Jobs in Dammam
- General Accountant Jobs in Jeddah
- Optician Jobs in Jeddah
- Restaurant Manager Jobs in Khamis Mushayt
- Barista Jobs in Abha