Senior Technology Expert - End-User Device Protection
Ministry of Communications and Information Technology of Saudi Arabia
Riyadh, Riyadh Province, Saudi Arabia · Full Time
Be the first to apply
- Experience
- 6+ yrs
- Salary
- —
- Openings
- 1
- Posted
- 3 weeks ago
- Work mode
- In office
- Education
- Bachelor's degree
- Resume
- Required to apply
Where you'll work
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
Overview
This role is critical to enhancing the cybersecurity defenses of the Ministry of Communications and Information Technology by protecting end-user devices and endpoints. The position focuses on the deployment and continuous improvement of endpoint security measures to safeguard technology assets and uphold seamless service delivery.
Key Responsibilities
- Deploy and sustain security measures for end-user devices and endpoints to reduce cybersecurity risks and guarantee adequate protection levels.
- Oversee and maintain endpoint security setups, ensuring consistent enforcement of security policies and controls across all systems.
- Manage network access controls including firewall rule modifications, port-access requests, device isolation, and corresponding network restrictions aligned with established security standards.
- Operate and supervise endpoint security technologies such as Endpoint Protection platforms, Endpoint Detection and Response (EDR/XDR), and anti-malware solutions.
- Conduct routine updates on security signatures, system configurations, and hardening procedures to improve security solutions' efficiency, availability, and resilience.
- Safeguard web-based applications and digital services by applying appropriate security controls, overseeing deployment processes, troubleshooting access issues, and collaborating with relevant parties to implement fixes.
- Investigate security incidents and vulnerabilities, assisting in root cause analysis and coordinating timely remediation with internal teams and security service providers.
- Assess and trial emergent cybersecurity technologies through technical evaluation and phased deployment, assessing their potential impact on the organization's technology landscape.
- Ensure organizational adherence to cybersecurity policies, frameworks, and regulatory guidelines, maintaining necessary documentation, evidence, and audit materials.
- Implement approved cybersecurity policies, procedures, tools, and operational standards within the function.
- Make routine operational decisions and escalate significant risks or issues as needed.
- Drive continuous enhancement initiatives across security systems, processes, and operational practices based on best industry practices.
- Define and manage key activities, milestones, and deliverables to meet the section's operational plans and goals.
- Monitor performance metrics at the section level, aligning key performance indicators with broader institutional objectives.
- Provide regular updates to senior management on operational status, initiatives, risks, and goal achievement.
- Facilitate knowledge sharing, on-the-job training, and technical growth within the team, offering constructive feedback to boost capabilities.
- Partner with Human Resources to support workforce planning, hiring efforts, and training programs according to approved organizational plans.
- Represent the section in committees, working groups, and cross-functional projects to ensure effective cooperation and execution.
- Compile and present routine operational and performance reports detailing activity outcomes, risks, and progress aligned with objectives.
- Maintain thorough records of technical processes, configuration changes, security operations, and related documentation in compliance with organizational policies.
Qualifications & Experience
- Bachelor’s degree or higher in Cybersecurity, Information Technology, Computer Science, Information Systems, or Computer Engineering, or related area.
- At least 6 years of relevant cybersecurity experience with substantial practical involvement in endpoint and device security management.
- Proficiency in administering Endpoint Protection platforms, EDR/XDR tools, and anti-malware systems.
- Experience handling firewall management, network access controls, port requests, device isolation, and secure connectivity measures.
- Knowledgeable in Web Application Firewall (WAF) technologies and security protocols for web applications and digital services.
- Deep understanding of cybersecurity frameworks, policies, and regulatory standards, especially those promulgated by the Saudi National Cybersecurity Authority (NCA).
- Skilled in security patch management, signature updates, system hardening, configuration tuning, and optimization of security controls.
- Strong troubleshooting, analytical, stakeholder engagement, and technical coordination capabilities.
Preferred Certifications
- CISSP (Certified Information Systems Security Professional)
- CISM (Certified Information Security Manager)
- CompTIA Security+
- CEH (Certified Ethical Hacker)
- Microsoft Certified: Security Operations Analyst Associate
- Microsoft Certified: Cybersecurity Architect Expert
- Certifications in Endpoint Security, EDR, XDR, or equivalent endpoint protection technologies