Senior Specialist - Cybersecurity Production Support - Saudi Arabia ๐Ÿ‡ธ๐Ÿ‡ฆ

Location
Riyadh
Workplace
On-site

About this role

Senior Specialist โ€“ Cybersecurity Production Support โ€“ Saudi Arabia ๐Ÿ‡ธ๐Ÿ‡ฆ

We are looking for a Senior Specialist โ€“ Cybersecurity Production Support to join our team in Saudi Arabia.

Job Overview:
The Senior Specialist will be responsible for supporting and maintaining cybersecurity platforms, ensuring high availability, operational stability, and effective security monitoring across enterprise environments.

Key Responsibilities:

  • Provide production support for cybersecurity platforms including SIEM, SOAR, VPN, and security monitoring solutions.
  • Monitor cybersecurity platforms, dashboards, alerts, and operational activities.
  • Support Splunk SIEM use cases, log ingestion, correlation rules, and performance optimization.
  • Manage and maintain SOAR workflows, playbooks, and automation processes.
  • Support VPN infrastructure including secure remote access and site-to-site connectivity.
  • Perform Incident, Problem, and Change Management activities following ITIL practices.
  • Conduct Root Cause Analysis (RCA) for security incidents and platform issues.
  • Support Cyber Incident Response activities including investigation and remediation.
  • Participate in Disaster Recovery (DR) and Business Continuity Planning (BCP).
  • Maintain security documentation, runbooks, SOPs, and operational reports.
  • Collaborate with security teams, infrastructure teams, and vendors for issue resolution.

Requirements:

  • Bachelorโ€™s degree in Cybersecurity, Information Security, Computer Science, or related field.
  • 4โ€“8 years of experience in cybersecurity production support within enterprise or financial environments.
  • Hands-on experience with:
    • SIEM platforms (Splunk Enterprise / Splunk ES preferred)
    • SOAR platforms (Cortex XSOAR, Splunk SOAR, or similar)
    • VPN technologies (IPSec / SSL VPN)
    • Security monitoring and incident response
  • Strong understanding of cybersecurity operations, threat detection, and log analysis.
  • Experience with ITIL Incident, Problem, and Change Management.
  • Knowledge of SAMA Cybersecurity Framework, NCA ECC, PDPL, and NDMO is preferred.
  • Basic scripting knowledge (Python, PowerShell, or similar) is preferred.

Tired of cold applications?

Sign up with Clera and we'll reach out the moment a role actually fits you โ€” no more spraying applications into the void.

Know someone who'd be great for this?