L3 Network Security Engineer – Network Security Device Management (m / f / d) Riyadh, Saudi Arabia
Responsibilities
Network Security Architecture :
Design and implement secure cloud network architectures, including segmentation (VPCs, subnets), advanced firewall controls (GCP Cloud Armor, OCI WAF), DDoS protection, and secure hybrid connectivity (VPN, Interconnect).
Threat & Vulnerability Management :
Identify, assess, prioritize, and remediate vulnerabilities across cloud network environments.
Identity & Access Management (IAM) :
Configure and enforce IAM roles and policies for network resources using least‑privilege and zero‑trust principles.
Network Traffic Monitoring :
Monitor network traffic, analyze logs for anomalies, and lead response to security incidents such as intrusions and DDoS attacks.
SIEM Management :
Integrate cloud security data sources into the SIEM, develop and tune detection rules, create dashboards, and investigate network security alerts.
EDR Operations :
Manage the EDR platform to detect and respond to endpoint‑level threats, and enforce network‑related security policies.
Compliance & Governance :
Ensure cloud network configurations align with internal security frameworks and external regulatory requirements.
Collaboration with DevOps :
Partner with DevOps and Infrastructure teams to guide secure network design for new and existing applications.
Qualifications
3+ years of hands‑on experience in cloud security or network security.
Strong expertise in cloud networking concepts (VPCs, subnets, routing, DNS security, load balancers).
Hands‑on experience with cloud‑native firewalls, DDoS mitigation, and secure remote / hybrid connectivity.
Solid understanding of core information security principles, with a focus on network security.
Experience with
SIEM
platforms (configuration, tuning, investigation).
Experience with
EDR
platforms (configuration, detection, response).
Proven experience securing network infrastructures in
GCP
and
OCI .
Experience securing container networking and implementing network policies (Kubernetes – OKE / GKE).
Familiarity with SAST / DAST tools is a plus (not a core requirement).
Job Details
Seniority level : Mid‑Senior level
Employment type : Full‑time
Job function :
Information Technology
Industries : Insurance
#J-18808-Ljbffr
Network Engineer • Riyadh, Saudi Arabia