Established in 2008, Geidea epitomizes customer focused empowerment and commercial success through continuous innovation.
Geidea makes best in class digital payment solutions available for all by attracting and leveraging the best creative & entrepreneurial talent in the market
Our solutions give any business the chance to get ahead and reach for more no matter their size or maturity.
Our technology mirrors our people - Smart, Innovative & Forward Thinking
www.geidea.net
To maintain a competitive advantage as we grow, we are currently looking for a new IT Security Specialist
Job purpose:
The IT Security Specialist is responsible for the day-to-day operation, monitoring, and maintenance of enterprise IT security tools and controls across Geidea's infrastructure. Acting as a hands-on technical executor within the IT Security team, this role ensures the availability, effectiveness, and compliance of security platforms including EDR, DLP, email security, IAM, PAM, NDR, AV, and data classification tools. The Specialist works under the guidance of the IT Security Team Lead, responding to alerts, maintaining security configurations, supporting audits, and contributing to the continuous improvement of Geidea's security posture in line with SAMA, NCA, and PCI-DSS requirements.
Responsibilities:
- Operate, monitor, and maintain IT security platforms on a daily basis — ensuring 99.99% availability and effectiveness across EDR, AV, NDR, DLP, Email Security, IAM, PAM, and Data Classification tools deployed across Geidea's on-premises, cloud, and hybrid infrastructure.
- Triage, investigate, and respond to security alerts from EDR, AV, NDR, DLP, Email Security, and SIEM platforms within defined SLA targets. Escalate incidents to the Senior Specialist or Team Lead as required.
- Perform day-to-day administration of IT security tools: applying policies, managing agent deployments, updating signatures, reviewing alert queues, and maintaining platform health across all assigned systems.
- Support IAM and PAM operations: process user access requests, execute joiner/mover/leaver workflows in Active Directory and SailPoint, and assist in quarterly access certification reviews per PCI-DSS Requirement 8.
- Monitor DLP alerts and email security events: review quarantined emails, investigate data loss incidents, apply approved policy exceptions, and escalate confirmed breaches to the Team Lead.
- Assist in vulnerability management: execute scheduled Nessus scans, compile scan reports, track remediation tickets in the ITSM system, and follow up with asset owners to close findings within SLA.
- Support compliance and audit activities: collect and organize evidence for PCI-DSS, SAMA, and NCA audit cycles, maintain security operations logs and documentation, and ensure assigned tools are audit-ready at all times.
- Contribute to security documentation: update runbooks, operational procedures, and incident response checklists. Participate in post-incident reviews and implement lessons learned to improve team response capabilities.
Qualifications:
- 2–4 years of hands-on experience in IT Security operations, SOC, or network security roles
- Bachelor's degree in IT, Computer Science, Engineering or related field (or equivalent technical certifications)
- Hands-on knowledge of 2–3 of the following: EDR/AV (Symantec, Kaspersky, Trend Micro), DLP (Symantec), Email Security (FortiMail), IAM/AD administration, NAC (Cisco ISE), SIEM basics, Firewall operations (FortiGate, Palo Alto). PCI-DSS and SAMA/NCA awareness preferred.
- Fintech or banking background preferred. Awareness of SAMA, NCA, and PCI-DSS compliance requirements. 1–2 certifications: CEH, CompTIA Security+, Fortinet NSE4, CyberOps Associate, or equivalent.
Our values guide how we think and act - They describe what we care about the most
Customer first - It's embedded in our design thinking and customer service approach
Open - Openness allows us to constantly improve and evolve
Real - No jargon and no excuses!
Bold - Constantly challenging ourselves and our way of thinking.
Resilient – If we fail, we bounce back stronger than before.
Collaborative - We know that we can achieve a lot more as a team.
We are changing lives by constantly striving for a better solution.