Cybersecurity Manager

Soar Software Development Company

صاحب عمل نشط

نشرت قبل 14 ساعة

الخبرة

6 - 11 سنوات

موقع العمل

Riyadh - Saudi Arabia

التعليم

بكالوريوس في العلوم(أجهزة الكمبيوتر)

الجنسية

أي جنسية

جنس

غير مذكور

عدد الشواغر

1 عدد الشواغر

الوصف الوظيفي

الأدوار والمسؤوليات

Key Responsibilities:

1. Secure Software Development Life Cycle (SSDLC)

Shift Left Security: Champion the integration of security early in the development phase. Lead Threat Modeling sessions during the design phase of new features to identify risks before code is written. CI/CD Pipeline Security: Automate security gates within our deployment pipelines. Implement and manage SAST (Static Application Security Testing), DAST (Dynamic Application Security Testing), and SCA (Software Composition Analysis) tools. Secure Coding Standards: Establish and enforce secure coding guidelines (OWASP Top 10, SANS 25) for our engineering team. Conduct regular code reviews and security training for developers.

2. AI & Automation Integration

AI-Enhanced AppSec: Utilize AI-powered code analysis tools to reduce false positives in vulnerability scanning and provide auto-remediation suggestions to developers. Automated SOAR: Build and maintain a Security Orchestration, Automation, and Response (SOAR) framework. Create playbooks that automatically isolate compromised assets or block malicious IPs without human intervention. Predictive Defense: Deploy AI-driven network monitoring to detect behavioral anomalies in our self-hosted infrastructure (e.g., zero-day attacks or lateral movement) that traditional rules might miss.

3. Infrastructure & Network Security (Self-Hosted)

Hardening: Oversee the security hardening of our self-hosted environments (Kubernetes clusters, Docker containers, and Linux servers). Traffic Analysis: Manage WAF (Web Application Firewall) rules and DDoS protection layers, ensuring high availability for our customers. Secrets Management: Enforce strict secrets management (e.g., Vault) to ensure no credentials are hardcoded in the application.

4. GRC (Governance, Risk & Compliance)

Regulatory Adherence: Ensure our SSDLC and operations strictly adhere to SAMA s Cybersecurity Framework and NCA s Essential Cybersecurity Controls (ECC). Audit Readiness: Automate evidence collection for compliance audits to minimize manual overhead. Data Residency: Ensure all AI processing and data storage complies with the Personal Data Protection Law (PDPL), keeping critical data within KSA.

Qualifications

Technical Skills:

SSDLC Mastery: Expert knowledge of integrating security tools (SonarQube, Checkmarx, Burp Suite, etc.) into a pipeline.

AI/Automation: Experience implementing AI-based security tools (e.g., Darktrace, Vectra, or AI-enabled SIEMs) and writing automation scripts.

Regulatory Knowledge: Strong understanding of SAMA regulations regarding application security and data protection.

Nice to have skills (Certifications):

CSSLP (Certified Secure Software Lifecycle Professional) - Highly Preferred

CISSP (Certified Information Systems Security Professional)

OSCP (Offensive Security Certified Professional)

الملف الشخصي المطلوب للمرشحين

Education & Experience:

Experience: 6+ years in Cybersecurity, with specific experience in Application Security or DevSecOps.

Managerial: Proven ability to lead technical initiatives and influence engineering teams.

Tech Stack: Deep experience with CI/CD tools (Jenkins, GitLab, GitHub Actions), Container Security (Kubernetes/Docker), and Python/Go scripting.

القطاع المهني للشركة

المجال الوظيفي / القسم

الكلمات الرئيسية

  • Cybersecurity Manager

تنويه: نوكري غلف هو مجرد منصة لجمع الباحثين عن عمل وأصحاب العمل معا. وينصح المتقدمون بالبحث في حسن نية صاحب العمل المحتمل بشكل مستقل. نحن لا نؤيد أي طلبات لدفع الأموال وننصح بشدة ضد تبادل المعلومات الشخصية أو المصرفية ذات الصلة. نوصي أيضا زيارة نصائح أمنية للمزيد من المعلومات. إذا كنت تشك في أي احتيال أو سوء تصرف ، راسلنا عبر البريد الإلكتروني abuse@naukrigulf.com

Soar Software Development Company

About us:

Soar is a global fintech startup that specializes in financing and investment. Currently headquartered in Saudi Arabia, Soar is growing throughout the region with a mission to help people achieve their financial goals with innovative financial and property investment solutions and tools through its multi-purpose platform, designed to offer a simple and seamless user experience.

قراءة المزيد

https://apply.workable.com/soar-software-development-company/j/6ED5287DE4/