نحن نبحث عن مهندسين مخضرمين في الأمن السيبراني لإدارة ومراقبة وتكوين واستكشاف أخطاء بنية الأمن السيبراني المؤسسية ودعم الاستجابة للحوادث وإدارة الثغرات وعمليات الأمن.
المسؤوليات الأساسية
- إدارة ودعم حلول NGFW وWAF وEDR وSIEM وIAM وPAM وDLP وNAC وVPN وIDS/IPS وMFA وSecure Web Gateway وبريد إلكتروني آمن.
- تكوين سياسات الأمان، قواعد الجدار الناري، NAT وVPN.
- مراقبة تنبيهات الأمان والسجلات ولوحات التحكم وصحة النظام.
- تحقيق في حوادث الأمان وأداء تحليل السبب الجذري، الاحتواء، الإصلاح والتعافي.
- دعم فحص الثغرات والتصحيح والإصلاح.
- إجراء تقوية النظام وتكوين الأمان.
- استكشاف مشكلات الشبكة والأمان باستخدام أدوات مثل Wireshark وTCPDump.
- التنسيق مع دعم الشركات المصنعة/الموردين للمشكلات الحرجة.
- الحفاظ على SOPs وrunbooks وتقارير الحوادث والوثائق الأمنية.
- دعم إدارة التغيير والتقارير التشغيلية.
المهارات المطلوبة
- خبرة عملية قوية في عدة من التالي:
- Palo Alto / Fortinet / Check Point / Cisco Firewall
- SIEM Splunk / QRadar / Sentinel / ArcSight
- EDR Defender for Endpoint / CrowdStrike / Cortex XDR / SentinelOne
- F5 / FortiWeb / Imperva WAF
- VPN / IPSec / IDS/IPS
- IAM / PAM / DLP / NAC / MFA
- استجابة الحوادث وإدارة الثغرات
- استكشاف أخطاء TCP/IP وأمان الشبكات
المرشح المثالي
المؤهل
درجة البكالوريوس في الأمن السيبراني، أو أمن المعلومات، علوم الحاسوب، تكنولوجيا المعلومات أو مجال ذو صلة.
الشهادات المفضلة
PCNSE، Fortinet FCP/NSE، CCNA/CCNP Security، CISSP، CISM، CISA، CEH، شهادات Microsoft Security، Splunk أو QRadar.
We are looking for experienced Senior Cyber Security Engineers to manage, monitor, configure and troubleshoot enterprise cybersecurity infrastructure and support incident response, vulnerability management and security operations.
Key Responsibilities
- Manage and support NGFW, WAF, EDR, SIEM, IAM, PAM, DLP, NAC, VPN, IDS/IPS, MFA, Secure Web Gateway and Email Security solutions.
- Configure security policies, firewall rules, NAT and VPN.
- Monitor security alerts, logs, dashboards and system health.
- Investigate security incidents and perform RCA, containment, remediation and recovery.
- Support vulnerability scanning, patching and remediation.
- Perform system hardening and security configuration.
- Troubleshoot network and security issues using tools such as Wireshark and TCPDump.
- Coordinate with OEM/vendor support for critical issues.
- Maintain SOPs, runbooks, incident reports and security documentation.
- Support change management and operational reporting.
Required Skills
- Strong hands-on experience in several of the following:
- Palo Alto / Fortinet / Check Point / Cisco Firewall
- SIEM Splunk / QRadar / Sentinel / ArcSight
- EDR Defender for Endpoint / CrowdStrike / Cortex XDR / SentinelOne
- F5 / FortiWeb / Imperva WAF
- VPN / IPSec / IDS/IPS
- IAM / PAM / DLP / NAC / MFA
- Incident Response & Vulnerability Management
- TCP/IP and Network Security troubleshooting
Desired Candidate Profile
Qualification
Bachelor's Degree in Cybersecurity, Information Security, Computer Science, IT or related field.
Preferred Certifications
PCNSE, Fortinet FCP/NSE, CCNA/CCNP Security, CISSP, CISM, CISA, CEH, Microsoft Security, Splunk or QRadar certifications.