34 Cybersecurity Analysts jobs in Riyadh
INFORMATION SECURITY ANALYST
Posted 10 days ago
Job Viewed
Job Description
Admin Section - Information Security Department
SummaryResponsible for executing and maintaining the operational components of the Organization's security strategy, ensuring a secure, efficient, and effective technology environment. This role aims to protect all Organization data by maintaining a secure information environment.
Essential Responsibilities and Duties- Assist in implementing cybersecurity methodologies, procedures, and tools within the Information Security Management Division.
- Assist in drafting information security policies across the Organization in accordance with the laws and regulations of the Kingdom of Saudi Arabia.
- Assist in building and maintaining a catalog of available security services aligned with security policies and in compliance with industry standards such as ISO 27001.
- Support periodic assessments to evaluate how well security services align with and meet business objectives, determining if services should be decommissioned or new services added.
- Issue NCA and CVE bulletins to stakeholders and provide guidance to the remediation team.
- Conduct regularly scheduled reviews of security service quality.
- Participate in planning, executing, and reporting security audits and network vulnerability assessments with minimal supervision.
Qualifications: One (1) year of related experience with a Master’s degree, or three (3) years with a Bachelor’s degree.
#J-18808-LjbffrInformation Security Analyst
Posted today
Job Viewed
Job Description
We pride ourselves on our fun and collaborative work environment, where creativity and new ideas are constantly encouraged. As shareholders in the business, we’re so much more than a group of passionate communicators. We are Unifones. Join our team and be a part of something big!
**Meet the team!**
Our Engineering team is responsible for designing, developing, and maintaining the systems and technologies that drive Unifonic’s solutions. We work closely with other departments to ensure our products and services meet the needs of our customers. If you are passionate about technology and are excited about working on cutting-edge communication and engagement solutions, we want you on our team.
As an Information Security Analyst, you will collaborate with cross-functional teams (security engineers and analysts, technical program managers, business stakeholders, and risk & compliance teams) to help maintain security controls and policies within Unifonic.
**Help us shape the future of communications by**:
- Understanding how security is crucial for operations across the organization and advising on best practices.
- Maintaining security controls and policies within Unifonic.
- Working with stakeholders across the organization to make sure compliance needs are met. Also, implementing the information security roadmap.
- Maintenance of ISMS and all related systems.
- Performing security reviews and gap analysis.
- Maintaining risk registers and assisting in treating security risks.
- Maintaining up-to-date knowledge of ISO standards, security threats, countermeasures, industry good practices, and assistive technologies.
- Assisting in replying to Unifonic’s customers’ security due diligence and RFI.
- Supporting the Legal team when there’s the need to respond to security incidents.
- Supporting the Compliance team when needed to provide input on everything related to Information Security.
- Understanding how data should be managed so that an organization can be compliant with security standards.
**What you will bring**:
- Hands-on 3+ years of work experience in information security, program/project management, or similar capacities.
- Knowledge of ISO 27001, 27017, 27018 (preferably certified practitioner).
- Knowledge of SOC2 (has gone through at least one audit process).
- Understanding of IT (systems, cloud, etc).
- Experience working with start-ups while helping them on their information security journey while they scale up is a plus.
- Knowledge of GDPR, ISO9000, CSA, and PCI is nice to have.
- Superb communication skills with an ability to describe technical and security issues/solutions to technically and non-technically minded people.
- Excellent written language skills to be used both in technical and non-technical contexts.
- An inquisitive, analytical mind.
- Great organizational skills.
- Ability to work on projects concurrently and under tight deadlines.
- Self-motivated with a determination to provide solutions.
- Ability to follow procedures as well as suggest improvement ideas.
- BA/BS in Computer Science, Information Systems, or equivalent work experience.
**As a Unifone, you will receive a range of benefits**:
- Competitive salary and bonus.
- Unifonic share scheme (we are all owners!).
- 30 holiday days after your first anniversary.
- Your Birthday off!
- We pay all the GOSI costs on your behalf.
- Flexible working arrangements.
- Spend up to 10 weeks per year working from anywhere in the world!
- Paid leave for new parents.
- Linkedin learning license.
Information Security Specialist
Posted 18 days ago
Job Viewed
Job Description
” The Job Description”
- Design, implement, and maintain information security solutions and policies.
- Monitor and protect networks, systems, and applications from cyber threats.
- Manage and maintain F5 Load Balancers, including configuration, troubleshooting, and optimization.
- Administer Privileged Access Management (PAM) and Identity & Access Management (IAM) tools to ensure secure access control.
- Implement and manage Network Access Control (NAC) solutions, particularly Cisco ISE.
- Oversee Mobile Device Management (MDM) policies to secure mobile endpoints.
- Deploy and monitor Endpoint Detection and Response (EDR) tools for threat detection and incident response.
- Ensure compliance with NCA cybersecurity regulations and requirements.
- Conduct regular security assessments, audits, and risk evaluations.
- Collaborate with IT and business teams to respond to security incidents and develop mitigation strategies.
- Maintain up-to-date documentation of security processes, systems, and incident reports.
Requirements:
- Bachelor’s degree in Information Security, Computer Science, Cybersecurity, or a related field.
- 3+ years of experience in an information security role.
- Strong knowledge of network security principles and practices.
- Hands-on experience with:
– F5 Load Balancers.
– PAM/IAM solutions (e.g., CyberArk, Azure AD, Okta).
– NAC (Cisco ISE) systems.
– MDM platforms (e.g., Intune, MobileIron).
– EDR tools (e.g., CrowdStrike, SentinelOne, Microsoft Defender).
– Familiarity with NCA (National Cybersecurity Authority) guidelines and compliance requirements. - Saudi national (this role is open to Saudi citizens only).
Chief Information Security Officer (CISO)
Posted 12 days ago
Job Viewed
Job Description
Get AI-powered advice on this job and more exclusive features.
We are seeking a seasoned and strategic Chief Information Security Officer (CISO) to lead our cybersecurity vision, strategy, and execution. This executive role is central to driving enterprise-wide security initiatives and safeguarding both internal and client-facing environments. The successful candidate must be a Saudi national with deep expertise in regulatory compliance, enterprise risk management, and operational cybersecurity, particularly in alignment with national frameworks such as SAMA , NCA , and CITC .
Key Responsibilities
- Develop and lead the organization's overall information security strategy
- Ensure full adherence to local cybersecurity regulations, including SAMA, NCA ECC/CCC, and CITC guidelines
- Oversee the planning, execution, and continuous improvement of incident response and threat detection capabilities
- Establish and maintain cybersecurity governance, risk policies, and awareness programs
- Provide strategic cybersecurity guidance to executive leadership and the board, including risk posture assessments and security investment planning
- Saudi nationality is mandatory, in line with national employment regulations
- Bachelor's degree in Cybersecurity, Information Technology, or a related field (Master's degree preferred)
- Minimum of 10 years' experience in cybersecurity, with at least 5 years in a senior leadership capacity
- Industry-recognized certifications such as CISSP, CISM, CISA, or equivalent
- In-depth understanding of both local regulatory requirements and global standards (e.g., ISO 27001, NIST)
- Proven background in regulated industries such as finance, government, telecommunications, or critical infrastructure
- Strong leadership and team-building capabilities, with a track record of leading high-performing security teams
- Bilingual fluency in Arabic and English, with excellent communication and presentation skills
- Competitive salary and performance-based bonuses
- Professional development opportunities and certifications
- Flexible work schedule and semi-remote work options
- Collaborative and innovative work environment
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Other
- Industries IT Services and IT Consulting
Referrals increase your chances of interviewing at Obrela by 2x
Sign in to set job alerts for “Chief Information Security Officer” roles. Virtual Chief Information Security Officer (vCISO) / Compliance Officer Chief Security Officer (Indian Subcontinent)We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrSenior Information Security Presales Engineer
Posted 18 days ago
Job Viewed
Job Description
Get AI-powered advice on this job and more exclusive features.
Job Summary
We are looking for a highly skilled Senior Information Security Presales Engineer to join our team. This role requires a strong technical background with hands-on experience in cybersecurity and IT infrastructure. The ideal candidate will play a key role in engaging with clients, designing solutions, and supporting the sales process with technical expertise. The role is 70% technical (solution design, POC, implementation) and 30% presales (client meetings, proposal support, presentations).
- Design and architect cybersecurity solutions tailored to client requirements.
- Lead technical workshops, solution demos, and proof-of-concepts (PoCs).
- Evaluate and recommend appropriate technologies based on client needs.
- Collaborate with delivery and engineering teams to ensure solution feasibility and smooth handover.
- Deep knowledge and hands-on implementation experience with SIEM, SOAR, XDR/EDR, NDR, Threat Intelligence Platforms, PAM, IAM, Database encryption, SAST/DAST, Vulnerability management, DRM, and GRC.
- Stay up to date on emerging cybersecurity technologies, threats, and compliance frameworks.
- Create detailed technical documentation, solution designs, and both high-level and low-level designs.
- Support sales team in meetings with technical presentations and product walkthroughs.
- Respond to RFPs, RFQs, and technical questionnaires.
- Prepare solution proposals in collaboration with account managers and technical teams.
- Build and maintain relationships with clients and vendors.
- Present solutions to stakeholders, including technical and non-technical audiences.
- Bachelor’s degree in computer science, Information Security, or a related field.
- Minimum 5–7 years of experience in cybersecurity and network engineering.
- Strong hands-on expertise in SIEM, SOAR, XDR/EDR, NDR, TIP, PAM, IAM, DRM, Database Encryption, SAST/DAST, Vulnerability management, and GRC tools.
- Excellent communication and presentation skills.
- Relevant certifications such as CISSP, CISM, CISA, CEH, CCSP, GIAC are preferred.
- Seniority level: Mid-Senior level
- Employment type: Full-time
- Job function: Analyst
- Industries: IT Services and IT Consulting
Senior Information Security Engineer | Riyadh, SA
Posted 2 days ago
Job Viewed
Job Description
Saudi National - Senior Information Security Engineer (Level 3 SOC)
Saudi National - Senior Information Security Engineer (Level 3 SOC)
Department: InfoSec Monitoring
Employment Type: Full Time
Location: KSA
Reporting To: Weam Munshi
Description
We're looking for an experienced and proactive Senior Information Security Engineer to serve as a senior member of our cybersecurity operations team. You'll lead complex investigations, shape our detection capabilities, and provide strategic input into incident response and threat management. As a technical authority in the SOC, you'll mentor junior analysts, collaborate across teams, and help drive continuous improvement in our security posture.
Key Responsibilities
Advanced Threat Detection & Monitoring
- Lead the analysis and triage of high-fidelity alerts and complex event correlations across firewalls, IDS/IPS, endpoints, servers, and cloud platforms.
- Identify and investigate sophisticated threats, advanced persistent threats (APTs), and anomalous behavior patterns.
- Continuously refine detection logic, SIEM rules, and alerting thresholds to optimize SOC effectiveness.
- Design and maintain operational dashboards and KPIs to track security trends and SOC performance.
Incident Response & Forensics
- Act as the primary incident commander for major security incidents, coordinating technical response and stakeholder communication.
- Conduct root cause analysis, full-scope investigations, and forensic analysis using endpoint and network-based artifacts.
- Drive post-incident reviews and deliver actionable recommendations to reduce future risk.
- Oversee incident documentation quality and ensure consistency in reporting and knowledge transfer.
Detection Engineering & Threat Intelligence
- Research and operationalize threat intelligence into custom detection rules, threat hunting queries, and playbooks.
- Develop and tune detection use cases aligned with MITRE ATT&CK and evolving threat actor techniques.
- Contribute to the development and enhancement of SOAR workflows and automation to improve SOC efficiency.
Vulnerability & Risk Management
- Collaborate with infrastructure and DevOps teams to assess and prioritize vulnerabilities in context with threat intelligence.
- Support patch validation and track remediation efforts for critical exposures.
- Guide vulnerability lifecycle processes, ensuring risks are addressed in a timely and measurable way.
Collaboration & Mentorship
- Serve as a technical mentor and escalation point for Tier 1 and Tier 2 SOC analysts.
- Lead training initiatives and tabletop exercises to strengthen SOC readiness and maturity.
- Work closely with IT, Engineering, Compliance, and Risk teams to ensure alignment during investigations and threat mitigation efforts.
- Communicate clearly and effectively with stakeholders, including drafting concise executive summaries during major incidents.
Skills, Knowledge and Expertise
- 3-5+ years of hands-on experience in a SOC or cybersecurity operations role, including incident handling and threat detection.
- Deep understanding of security operations, threat hunting, attack vectors, and cyber kill chains.
- Proven expertise in log analysis, endpoint telemetry, and cloud-native security tools (e.g., AWS CloudTrail, Azure Sentinel).
- Strong scripting experience (e.g., Python, PowerShell) for automation and detection engineering.
- Experience with SIEMs (e.g., Splunk, Elastic, Sentinel), SOAR platforms, EDR/XDR tools, and Threat Intelligence platforms.
- Familiarity with DevSecOps, APIs, microservices, and modern application architectures.
- Security certifications such as GCIA, GCIH, CySA+, or equivalent (preferred).
- Clear and confident communicator with the ability to lead during high-pressure situations and present findings to technical and non-technical audiences.
Boost your career Find thousands of job opportunities by signing up to eFinancialCareers today.
#J-18808-LjbffrVirtual Chief Information Security Officer (vCISO) / Compliance Officer
Posted 18 days ago
Job Viewed
Job Description
We are looking for a virtual cybersecurity or compliance expert to guide our security posture, particularly as we move into regulated spaces like auto-financing. The role is ideal for someone with extensive regulatory familiarity and previous experience operating in a strategic advisory capacity.
Key Responsibilities- Lead compliance audits aligned with KSA regulations , especially SAMA frameworks
- Review and implement data security strategies across departments
- Support regulatory submissions and responses for fintech operations
- Oversee documentation and data protection practices
- Coordinate with product and legal teams to maintain standards
- Saudi national6+ years experience
- Deep understanding of SAMA regulatory requirements and KSA cybersecurity law
- Prior role as vCISO or senior security/compliance consultant
- Experience operating through or with an agency setup (ideal)
- Familiarity with ISO 27001, NIST, SOC 2 compliance standards
- Ability to lead cross-functional audit and compliance efforts across departments
Be The First To Know
About the latest Cybersecurity analysts Jobs in Riyadh !
Virtual Chief Information Security Officer (vCISO) / Compliance Officer
Posted 19 days ago
Job Viewed
Job Description
We are looking for a virtual cybersecurity or compliance expert to guide our security posture, particularly as we move into regulated spaces like auto-financing. The role is ideal for someone with extensive regulatory familiarity and previous experience operating in a strategic advisory capacity.
Key Responsibilities- Lead compliance audits aligned with KSA regulations , especially SAMA frameworks
- Review and implement data security strategies across departments
- Support regulatory submissions and responses for fintech operations
- Oversee documentation and data protection practices
- Coordinate with product and legal teams to maintain standards
- Saudi national6+ years experience
- Deep understanding of SAMA regulatory requirements and KSA cybersecurity law
- Prior role as vCISO or senior security/compliance consultant
- Experience operating through or with an agency setup (ideal)
- Familiarity with ISO 27001, NIST, SOC 2 compliance standards
- Ability to lead cross-functional audit and compliance efforts across departments
Virtual Chief Information Security Officer (vCISO) / Compliance Officer
Posted today
Job Viewed
Job Description
We are looking for a virtual cybersecurity or compliance expert to guide our security posture, particularly as we move into regulated spaces like auto-financing. The role is ideal for someone with extensive regulatory familiarity and previous experience operating in a strategic advisory capacity.
Key Responsibilities- Lead compliance audits aligned with KSA regulations , especially SAMA frameworks
- Review and implement data security strategies across departments
- Support regulatory submissions and responses for fintech operations
- Oversee documentation and data protection practices
- Coordinate with product and legal teams to maintain standards
- Saudi national6+ years experience
- Deep understanding of SAMA regulatory requirements and KSA cybersecurity law
- Prior role as vCISO or senior security/compliance consultant
- Experience operating through or with an agency setup (ideal)
- Familiarity with ISO 27001, NIST, SOC 2 compliance standards
- Ability to lead cross-functional audit and compliance efforts across departments
Cyber Security Analyst
Posted 16 days ago
Job Viewed
Job Description
Join to apply for the Cyber Security Analyst role at Dkhoon Emirates
Join to apply for the Cyber Security Analyst role at Dkhoon Emirates
Get AI-powered advice on this job and more exclusive features.
We are looking for a proactive and skilled Cyber Security Analyst to join our in-house IT team. The ideal candidate will be responsible for strengthening our organisation’s security posture, ensuring systems are secure, compliant, and resilient against evolving threats.
Key Responsibilities:
Conduct network vulnerability assessments and penetration testing (VAPT) to identify and mitigate security risks.
Perform firewall configuration reviews and internal network assessments to maintain a strong security infrastructure.
Deliver web and mobile application security assessments, ensuring alignment with OWASP Top 10 standards.
Support implementation of data protection and privacy frameworks, including Personal Data Protection Act (PDPA) or similar regulations relevant to our operations.
Prepare and present technical reports and executive summaries, outlining security observations, risk analysis, and actionable remediation plans.
Collaborate with IT and compliance teams to ensure alignment with CIS Controls, ISO 27001, and GDPR basics.
Manage and monitor endpoint protection, IDS/IPS systems, and SIEM tools to proactively detect and respond to threats.
Assist in incident response procedures, root cause analysis, and implementing preventive measures.
Automate routine security tasks using PowerShell, Bash, or Python scripting to improve efficiency.
Required Skills & Expertise:
️ Firewall & VPN configuration: FortiGate, Cisco ASA, Palo Alto
️ Penetration testing tools: Nmap, Metasploit, Burp Suite, Nessus, Wireshark
️ Identity and Access Management (IAM)
️ Incident Response procedures and frameworks
️ Good scripting knowledge in PowerShell, Bash, and Python for automation and security analysis
️ Strong understanding of cloud security fundamentals and compliance frameworks (e.g. PDPA, ISO 27001, GDPR basics)
Qualifications:
Bachelor’s Degree in IT or Cyber Security (or equivalent work experience)
Relevant certifications such as CompTIA Security+, CEH, eJPT, or INE Certified Cloud Associate are preferred.
Who You Are:
Analytical with strong problem-solving abilities
Excellent communicator with skills to collaborate across IT, compliance, and management teams
Passionate about cyber security best practices and continuous learning
Able to work independently to proactively identify and address security issues within the organization
Seniority level- Seniority level Entry level
- Employment type Full-time
- Job function Information Technology
- Industries Retail
Referrals increase your chances of interviewing at Dkhoon Emirates by 2x
Get notified about new Cyber Security Analyst jobs in Riyadh, Riyadh, Saudi Arabia .
Information Security Specialist-Assessment and Compliance Auditor Application Security Engineer (Onsite, Riyadh) Senior Information Security Presales Engineer Cybersecurity Governance, Risk and Compliance Manager Cybersecurity Sales & Presales SpecialistWe’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr