الوصف الوظيفي
Cybersecurity Strategy and Architecture:
Support the development of a business-based information security strategy in close cooperation with the Cybersecurity GRC Manager.
Develop and maintain a security architecture process that enables the enterprise to develop and implement security solutions and capabilities that are clearly aligned with business, technology, and threat drivers.
Influence and guide the wider IT & OT strategy, and provide input to the business/corporate strategy based on security requirements, principles and frameworks.
Research, design, and advocate new technologies, architectures, and security products that will support security requirements for the enterprise and its customers, business partners and vendors.
Contribute to the alignment of security governance with the organization’s architecture governance.
Develop and maintain security architecture artifacts (e.g., models, templates, standards and procedures) that can be used to leverage security capabilities in projects and operations.
Track developments and changes in the digital business and threat environments to ensure that they are adequately addressed in security strategy plans and architecture artifacts.
Determine baseline security configuration standards for operating systems (e.g., OS hardening), network segmentation, and identity and access management (IAM).
Coordinate with the internal audit (IA) team to review and evaluate the design and operational effectiveness of security-related controls.
Review security technologies, tools and services, and make recommendations to the broader security team for their use, based on security, financial and operational metrics.
Coordinate with operational and facility management teams to assess the security of operational technology (OT).
Coordinate with the business continuity management (BCM) team to validate security practices for BCM testing and operations when a failover occurs.
Project Management:
Provide the cybersecurity requirements during the RFP cycle for services required from third parties such as vendors and IT/security services.
Provide projects with cybersecurity architecture requirements during requirements gathering.
Perform design and implementation reviews to ensure adherence with information security requirements.
Operate as a security expert in application development, database design, network and/or platform (operating system) efforts, helping project teams comply with enterprise and IT security policies, industry regulations, and best practices.
Security risk Management:
Provide advice for security risk mitigation and remediation solutions during risk management activities, across the IT and OT environments.
Oversee the security incident management process and engage in security incident response and post-event analysis.
Communicate security risks and potential risk mitigation solutions with internal and external stakeholders.
Lead the evaluation of security solutions based on the agreed security architecture policies and standards and regulatory requirements.
Lead the evaluation of third party service providers (for IT and OT) during service delivery.
Manage the execution of security risks assessments on systems and infrastructure (IT and OT environments.
Analyze business impact and potential exposure based on emerging security threats, vulnerabilities and risks, and recommend mitigating actions.
Business Continuity:
Develop business, information and technical artefacts that constitute the enterprise information security architecture and solutions including policies, standards, processes, procedures and guidelines (as required).
Oversee the security awareness program to ensure SANS end-users understand the significance of information security and their responsibilities regarding behavior and conduct.
Define, document and lead the implementation of business continuity for information security.
Enhance the organization’s and department’s reputation by accepting ownership for the identification of opportunities for continuous improvements of systems and processes.
Consider industry-leading practices, changes in the business environment, cost reduction and productivity improvements.
Training:
Provide regular training on information security architecture matters at all staff levels in SANS (as required).
Train and supervise Junior Security Architects.
Establish alignment with technology architecture functions within SANS.
Reporting:
Prepare information security reports based on the definition, maintenance and adoption of the information security architecture and supporting components.
Prepare information security reports by collecting, analyzing and summarizing data and trends from SANS’ security events and incidents in close cooperation with the security analyst and security operation teams.
Policies, Processes and Procedures:
Conduct day-to-day activities while ensuring compliance to policies and procedures.
Contribute to the identification of opportunities for continuous improvement of systems, processes taking into account leading practices, changes in business environment, cost reduction and productivity improvement.
المهارات
• Operational Excellence
• Safety Awareness
• Teamwork
• Communication
• Project Management
• Planning & Organizing
• Risk Management
• Training & Certification Management
• Regulation & Compliance
• Cyber Intelligence
• Information Governance
• Information Risk Management
Knowledge and Experience:
• 6 to 9 years of experience in cyber or information security.
• Previous engagements in organizations managing critical infrastructure is preferred.
Education and Certifications:
• A bachelor’s degree in Computer Science, IT, Systems Engineering or equivalent is required.
• Master’s degree in computer science or similar degree of education preferred.
• TOGAF or SABSA certification is preferred.
تفاصيل الوظيفة
منطقة الوظيفة جدة, المملكة العربية السعودية
قطاع الشركة --
طبيعة عمل الشركة صاحب عمل (القطاع الخاص)
الدور الوظيفي تكنولوجيا المعلومات
نوع التوظيف دوام كامل
الراتب الشهري غير محدد
عدد الوظائف الشاغرة 1
المرشح المفضل
المستوى المهني إدارة
عدد سنوات الخبرة الحد الأدنى: 6
الشهادة بكالوريوس/ دبلوم عالي
https://www.bayt.com/ar/saudi-arabia/jobs/cybersecurity-architect-specialist-4279233/