Back to board
tawantech·17 days ago

Senior Specialist - Cybersecurity Production Support - Saudi Arabia 🇸🇦

Riyadh, Saudi ArabiaRemoteMid · 4-8 yearsH1B likely

About this role

Senior Specialist – Cybersecurity Production Support – Saudi Arabia 🇸🇦

We are looking for a Senior Specialist – Cybersecurity Production Support to join our team in Saudi Arabia.

Job Overview:
The Senior Specialist will be responsible for supporting and maintaining cybersecurity platforms, ensuring high availability, operational stability, and effective security monitoring across enterprise environments.

Key Responsibilities:

  • Provide production support for cybersecurity platforms including SIEM, SOAR, VPN, and security monitoring solutions.
  • Monitor cybersecurity platforms, dashboards, alerts, and operational activities.
  • Support Splunk SIEM use cases, log ingestion, correlation rules, and performance optimization.
  • Manage and maintain SOAR workflows, playbooks, and automation processes.
  • Support VPN infrastructure including secure remote access and site-to-site connectivity.
  • Perform Incident, Problem, and Change Management activities following ITIL practices.
  • Conduct Root Cause Analysis (RCA) for security incidents and platform issues.
  • Support Cyber Incident Response activities including investigation and remediation.
  • Participate in Disaster Recovery (DR) and Business Continuity Planning (BCP).
  • Maintain security documentation, runbooks, SOPs, and operational reports.
  • Collaborate with security teams, infrastructure teams, and vendors for issue resolution.

Requirements:

  • Bachelor’s degree in Cybersecurity, Information Security, Computer Science, or related field.
  • 4–8 years of experience in cybersecurity production support within enterprise or financial environments.
  • Hands-on experience with:
    • SIEM platforms (Splunk Enterprise / Splunk ES preferred)
    • SOAR platforms (Cortex XSOAR, Splunk SOAR, or similar)
    • VPN technologies (IPSec / SSL VPN)
    • Security monitoring and incident response
  • Strong understanding of cybersecurity operations, threat detection, and log analysis.
  • Experience with ITIL Incident, Problem, and Change Management.
  • Knowledge of SAMA Cybersecurity Framework, NCA ECC, PDPL, and NDMO is preferred.
  • Basic scripting knowledge (Python, PowerShell, or similar) is preferred.