IT and Enterprise Cybersecurity Engineer

Dhahran, المملكة العربية السعودية

Job Summary

Responsible for designing, implementing, and maintaining secure IT and enterprise network environments. Develops cybersecurity strategies, policies, and technical controls aligned with ISO 27001 and NIST frameworks to protect OSCO and client information assets from internal and external threats.

Job Description and Responsibilities

  • Design, implement, and maintain enterprise IT security architecture including network security, cloud security, and endpoint protection.
  • Develop and enforce cybersecurity policies, standards, and procedures aligned with ISO 27001 and NIST Cybersecurity Framework.
  • Perform risk assessments, vulnerability scanning, and penetration testing to identify and prioritize security risks.
  • Monitor enterprise systems using SIEM platforms and manage security alerts, triage, and escalation.
  • Handle incident detection, investigation, response, and recovery activities.
  • Manage identity and access control, directory services, and privileged access management (PAM).
  • Oversee system hardening, patch management, and secure configuration baselines across enterprise IT infrastructure.
  • Conduct security awareness training and phishing simulation exercises.
  • Support ISO 27001 certification and audit readiness activities.
  • Collaborate with IT, operations, and compliance teams to maintain a secure and compliant infrastructure.

Basic Qualifications

  • Bachelor's degree in Cybersecurity, Computer Engineering, Information Technology, or Network Engineering.
  • Minimum 4 years of IT/enterprise cybersecurity experience.
  • CISSP, CISM, CEH, CompTIA Security+, or equivalent certification is required.
  • Hands-on experience with SIEM platforms, endpoint detection, and enterprise firewall administration.
  • Experience with cloud security (Azure or AWS) is an advantage.

SKILLS AND COMPETENCIES

  • Proficiency with SIEM platforms (Splunk, Microsoft Sentinel, or equivalent).
  • Network security and enterprise firewall administration experience.
  • Vulnerability management and penetration testing skills.
  • Identity and access management, including PAM solutions.
  • Strong knowledge of ISO 27001, NIST CSF, and related frameworks.
  • Incident response planning and execution capability.