Talent.com
This job offer is not available in your country.
Cybersecurity Assurance Specialist

Cybersecurity Assurance Specialist

Saudi Air Navigation ServicesJeddah, Saudi Arabia
8 days ago
Job description

Description for Internal Candidates Role Purpose To ensure the effectiveness of cybersecurity measures by validating security controls, identifying gaps in security controls (including technology, processes, configurations, etc.), and developing mitigative strategies. This role focuses on ensuring various assessments are conducted regularly, aligning security capabilities with organizational policies, and driving continuous improvement in cybersecurity practices to protect the organization's assets within the set KPIs, agreed budgets and adopted policies and procedures. Responsibilities for Internal Candidates Key Accountability Areas Key Activities Security Controls Validation Perform cybersecurity reviews to identify gaps in security controls and architecture and conduct comprehensive annual audits of all SANS IT / OT assets, security controls, and databases to ensure adherence to organizational standards. Ensure protection and detection capabilities are aligned with the organization's cybersecurity defense strategy and are compliant with relevant regulations. Maintain an inventory of all security controls, ensuring comprehensive tracking and updating of their capabilities, while adhering to SANS-approved templates and branding guidelines for documentation. Develop a capabilities matrix for each security control, detailing their preventive, detective, and corrective features, and outline steps for securing sensitive information obtained during testing activities. Cybersecurity Assurance Assure vulnerability and penetration assessments are conducted regularly, utilizing detailed methodologies for whitebox, graybox, and blackbox testing, followed by appropriate remedial action verification. Lead cybersecurity analysis of the technology environment to detect critical deficiencies and recommend solutions for improvement, responding to architecture design changes as necessary. Research, recommend, and evaluate cybersecurity solutions that identify and protect against potential threats, while continuously assessing for emerging threats. Contribute to the identification of opportunities for continuous improvement of systems and processes, considering leading practices, changes in the business environment which could lead to cost reduction, and productivity enhancement. Conduct offensive and passive security controls reviews and simulations to effectively measure the effectiveness of security controls, including assessing configurations, rules, coverage, and permissions to identify gaps. Validate the health of security controls through periodic checks of infrastructure, system performance, and licenses, ensuring full utilization by performing code reviews to identify vulnerabilities. Measure security controls' efficiency by mapping them to organizational risks and calculating Return on Investment (ROI), ensuring effective implementation of security control recommendations originating from risk assessments or incidents. Auditing, Reporting, and Communication Conduct day-to-day activities while ensuring compliance with policies and procedures Regularly assess and report on cybersecurity trends, including the effectiveness and efficacy of implemented security controls. Establish appropriate communication channels with stakeholders to inform them of key security control performance metrics. Gather role-based feedback from both business and technical owners regarding the usage and efficacy of security controls to enhance their performance. Implement and automate security control management processes to track issues, assess gaps, and optimize control performance on an ongoing basis. Manage the platform and ensure comprehensive asset coverage while conducting regular reviews of the scanning schedule. Enhance and automate the vulnerability assessment process, including the development of reports and key performance indicators (KPIs). Support cybersecurity defense audit, compliance, risk and regulatory requirements. Supporting other cybersecurity defense functions (VM, TI, IR, TH and Assurance) in accordance with business need. Qualifications for Internal Candidates Knowledge and Experience A minimum of 6 years of experience is required. Preferred experience & Knowledge : experience in risk assessment, mitigation, and management, including risk scoring and the development of comprehensive risk management plans aligned with organizational risk appetite. Strong understanding of cybersecurity threats, vulnerabilities, and application security risks, with the ability to recommend and implement effective mitigative strategies. Proven experience with authentication and access control methods, ensuring alignment of security practices with organizational policies and compliance requirements. Familiarity with cybersecurity compliance, legal requirements, and aligning controls with industry frameworks such as NIST, ISO, or similar standards. Significant experience conducting security reviews, audits, and assurance activities, including configuration reviews of security controls and systems. In-depth knowledge of code reviews and strategies for addressing vulnerabilities in applications, promoting secure coding practices across development teams. Strong skills in cybersecurity communication, reporting, and stakeholder management, ensuring clarity and transparency in reporting security metrics and trends. Demonstrated experience in measuring the effectiveness, efficiency, and utilization of security controls, with the ability to map controls to organizational risks. Ability to automate and optimize security control processes, gathering feedback from stakeholders to enhance performance and compliance. Knowledge of industry best practices in service delivery, utilizing appropriate measurement metrics and techniques to assess service performance continuously. Familiarity with the implementation and configuration of various security controls (e.g., Firewalls, IPS / IDS, Email Security, DLP, Cloud Security) to ensure robust security posture across the organization. Education and Certifications Bachelor’s degree in computer science, Engineering, Information Systems (or other relevant technical disciplines). Preferred Certifications (minimum one is required) : GIAC Certified Incident Handler (GCIH) GIAC Cyber Threat Intelligence (GCTI) GIAC Defensible Security Architecture (GDSA) GIAC Penetration Tester (GPEN) GIAC Systems and Network Auditor (GSNA) GIAC Cloud Security Automation (GCSA) Any relevant certifications focused on Security Controls Implementation and Assurance

#J-18808-Ljbffr

Create a job alert for this search

Cybersecurity Specialist • Jeddah, Saudi Arabia

Related jobs
  • Promoted
Cybersecurity Threat Intelligence Analyst (Saudi Only)

Cybersecurity Threat Intelligence Analyst (Saudi Only)

Dar Al TamleekJeddah, Saudi Arabia
Cybersecurity Threat Intelligence Analyst (Saudi Only) — Jeddah Job summary.Collects and analyzes multi-source information about cybersecurity threats to develop deep understanding and awareness of...Show moreLast updated: 9 days ago
  • Promoted
Cyber Security Jobs in Jeddah (Oct 2025) - Bayt.com

Cyber Security Jobs in Jeddah (Oct 2025) - Bayt.com

Saudi Petroleum Services PolytechnicJeddah, Saudi Arabia
A Cybersecurity Consultant position is available in Jeddah, Saudi Arabia, focused on assessing risks, developing solutions, and ensuring compliance with national frameworks.Responsibilities include...Show moreLast updated: 7 days ago
  • Promoted
Professional Services Principal Consultant - Red Team (Remote, SAU)

Professional Services Principal Consultant - Red Team (Remote, SAU)

CrowdStrikeJeddah, Saudi Arabia
The Principal Red Team Consultant will execute and lead Red Team and penetration testing engagements, working with CrowdStrike customers to test their ability to prevent, detect, and respond to att...Show moreLast updated: 30+ days ago
  • Promoted
IT Security Specialist

IT Security Specialist

confidentialJeddah, Saudi Arabia
Job summary The Cyber Security Specialist will assist the information security team in protecting the organization's information assets from cyber threats, with a specific focus on maintaining and ...Show moreLast updated: 3 days ago
  • Promoted
Technical Product Marketing Manager - Cybersecurity

Technical Product Marketing Manager - Cybersecurity

CanonicalJeddah, Saudi Arabia
Technical Product Marketing Manager - Cybersecurity.Technical Product Marketing Manager - Cybersecurity.Canonical Technical Product Marketing Manager - Cybersecurity. Be among the first 25 applicant...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Engineer Jobs in Saudi Arabia (Oct 2025) - Bayt.com

Cyber Security Engineer Jobs in Saudi Arabia (Oct 2025) - Bayt.com

CAREJeddah, Makkah Region, Saudi Arabia
Cyber Security Engineer Jobs in Saudi Arabia.Create a job alert for similar positions.Summary : An IT Security Specialist position is open in Jeddah, Saudi Arabia, focusing on protecting information...Show moreLast updated: 8 days ago
  • Promoted
Security Risk Management Specialist

Security Risk Management Specialist

CanonicalJeddah, Saudi Arabia
In security risk management we're looking to harness the power of industry best practice combined with driving new innovation on how we do security risk assessments and modelling.Our security risk ...Show moreLast updated: 30+ days ago
  • Promoted
Risk Management Specialist

Risk Management Specialist

Islamic Development Bank (IsDB)Jeddah, Saudi Arabia
Title : Risk Management Specialist Requisition ID : 5363 Complex : President Complex Department : Risk Management Division / Section : Credit & Investment Risk Country : Saudi Arabia Location : Jeddah, King...Show moreLast updated: 8 days ago
  • Promoted
Faculty in Cybersecurity

Faculty in Cybersecurity

Baas International GroupJeddah, Saudi Arabia
Teach assigned courses as per contract prepare course syllabus for course taught prepare course file and course report for course taught Give regular feedback to students for course taught Post cou...Show moreLast updated: 26 days ago
  • Promoted
Security Engineer

Security Engineer

FNRCOJeddah, Saudi Arabia
Get AI-powered advice on this job and more exclusive features.Direct message the job poster from FNRCO.Overview Overview content retained from original listing. Identity & Access Management (IAM) co...Show moreLast updated: 8 days ago
  • Promoted
Project Specialist

Project Specialist

confidentialJeddah, Saudi Arabia
Job Description JobDescription : .Developprojectplans,includinggoals,objectives,deliverables,andtimelines.Strongproblem-solvinganddecision-makingabilities.Show moreLast updated: 12 days ago
  • Promoted
Cybersecurity Consultant

Cybersecurity Consultant

confidentialJeddah, Saudi Arabia
We are seeking a skilled and motivated Cybersecurity Consultant to join our team.The consultant will be responsible for assessing cybersecurity risks, developing solutions, and ensuring compliance ...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Incidents Response Specialist

Cyber Incidents Response Specialist

CYBER سايبرJeddah, Saudi Arabia
Cyber Incidents Response Specialist — Riyadh & Jeddah, Saudi Arabia.We are looking for a motivated.Cyber Incidents Response Specialist. You will help investigate, analyze, and respond to cybersecuri...Show moreLast updated: 12 days ago
  • Promoted
Threat Intelligence Lead

Threat Intelligence Lead

CanonicalJeddah, Saudi Arabia
Canonical Join to apply for the.Canonical Get AI-powered advice on this job and more exclusive features.The Threat Intelligence Lead will own Canonical's threat intelligence strategy and execution,...Show moreLast updated: 30+ days ago
  • Promoted
Senior Security Operations Engineer

Senior Security Operations Engineer

CanonicalJeddah, Saudi Arabia
Senior Security Operations Engineer.Canonical Join to apply for the.Senior Security Operations Engineer.Canonical Get AI-powered advice on this job and more exclusive features.We have opened severa...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Engineer Jobs in Jeddah (Oct 2025) - Bayt.com

Cyber Security Engineer Jobs in Jeddah (Oct 2025) - Bayt.com

CAREJeddah, Saudi Arabia
A Cybersecurity Consultant position is available in Jeddah, Saudi Arabia, focused on assessing risks, developing solutions, and ensuring compliance with national frameworks.Responsibilities include...Show moreLast updated: 8 days ago
  • Promoted
  • New!
Cyber Security Specialist

Cyber Security Specialist

The Saudia Dairy and Foodstuff CompanyJeddah, Saudi Arabia
To support on keeping the availability, security, and reliability of SADAFCO's information systems, core system and business applications. Provides general cybersecurity support.Assists in cybersecu...Show moreLast updated: 1 hour ago
Cyber Defense Center Analyst (Saudi Arabia)

Cyber Defense Center Analyst (Saudi Arabia)

Eram TalentJeddah, Makkah Province, SA
Quick Apply
A leading Talent Acquisition Company in Saudi Arabia is looking for a talented Cyber Defense Center Analyst to join our esteemed team in Saudi Arabia. In this critical role, you will play a key...Show moreLast updated: 30+ days ago
  • Promoted
Enterprise Account Manager (Cybersecurity)

Enterprise Account Manager (Cybersecurity)

OpswatJeddah, Saudi Arabia
Enterprise Account Manager (Cybersecurity).Protecting the World’s Critical Infrastructure.OPSWAT, a global leader in IT, OT, and ICS critical infrastructure cybersecurity, delivers an end-to-end pl...Show moreLast updated: 30+ days ago
  • Promoted
Sr. Cyber Security Engineer

Sr. Cyber Security Engineer

Total-TECH Co.Jeddah, Saudi Arabia
Bachelor’s degree in Cyber Security, Computer Science, Information Technology, or related field.Resident Engineer for 3 months experienced in implementing, configuring and maintaining QRADA SIEM.At...Show moreLast updated: 30+ days ago