Cyber Security Specialist
Sahm Capital · Riyadh, Saudi Arabia
Apply & track with Apply EdgeJob ObjectiveThe Cybersecurity Specialist is responsible for designing implementing and operating technical cybersecurity controls across the organization. The role focuses on securing infrastructure reviewing system and cloud architectures managing vulnerabilities and supporting penetration testing activities while ensuring alignment with internal security standards and Saudi cybersecurity requirementsDuties and ResponsibilitiesSecurity Engineering and Infrastructure ProtectionDeploy configure and manage cybersecurity tools including DLP EDR firewalls and IAM solutions …etc.Support secure configuration of systems servers endpoints and cloud environmentsMonitor security events and support SOC operations for threat detection and responseArchitecture Security ReviewReview system applications and cloud architectures from a security perspectiveIdentify design weaknesses and recommend security improvementsSupport secure design practices for new systems and integrationsVulnerability Management and Penetration TestingConduct regular vulnerability assessments across infrastructure and applicationsTrack prioritize and support remediation of security vulnerabilitiesCoordinate and support third party penetration testing activities and validate findingsIncident Response and Security OperationsSupport incident detection investigation and response activitiesAssist in maintaining and improving incident response proceduresParticipate in security investigations and root cause analysisSystems and Security HardeningSupport system hardening activities across servers endpoints and network devicesEnsure security baselines and configurations are properly implementedAssist in improving overall security posture across IT environmentsEducationBachelor’s degree in Cybersecurity, Information Security, Computer Science or equivalent degreeQualifications and Experience:3–6 years of experience in cybersecurity operations, SOC or security engineering rolesCertifications (Must have):Security+Certified Ethical Hacker (CEH)CompTIA CySA+OffSec Certified Professional (OSCP)Native Arabic fluent in write and speak English (Saudi National)Proven experience implementing NCA ECC, CMA Cybersecurity Guidelines, SDAIA PDPL rules, and Tadawul security framework is preferable.Knowledge of Brand Protection / Digital Risk Protection (DRP) tools (e.g., BrandShield, PhishLabs, Recorded Future) and domain takedown mechanisms.Knowledge of cybersecurity tools (SIEM, EDR, firewalls, IAM …).Understanding of vulnerability management, incident response and risk management.Basic understanding of email security (DMARC, DKIM, SPF) and phishing defense.Strong documentation and coordination skills.Ability to manage multiple tasks in a structured environment.Team-oriented attitude to help other colleagues and teams with technical problemsStrong interpersonal communication and relationship-building skillsAbility to manage time and effectively prioritize numerous projects at one timeOrganized and attentive to detail, flexible with changing priorities and able to communicate in a polite and professional mannersCMA Register – able FunctionYes