Job Title: Senior Cybersecurity Specialist (Penetration Testing & Compliance)
Location: Riyadh, Saudi Arabia (On-site)
Working Hours: 8-hour rotational shifts (24/7 coverage)
Job Summary
We are looking for an experienced Cybersecurity Specialist to lead penetration testing, security assessments, and compliance initiatives. The ideal candidate will play a critical role in protecting organizational assets, ensuring regulatory compliance (including NCA), and strengthening overall security posture in a dynamic, high-availability environment.
Key Responsibilities
- Conduct penetration testing and advanced vulnerability assessments across applications, networks, and infrastructure.
- Ensure compliance with Saudi NCA (National Cybersecurity Authority) standards and other cybersecurity frameworks.
- Protect systems, applications, and data from evolving cyber threats.
- Maintain and enforce Confidentiality, Integrity, and Availability (CIA) principles.
- Identify, analyze, and remediate security vulnerabilities in web applications and infrastructure.
- Monitor security events and respond to incidents, threats, and breaches in real time.
- Perform root cause analysis (RCA) for security incidents and recommend preventive measures.
- Collaborate with IT, DevOps, and business teams to enhance the organization's security posture.
- Maintain documentation, reports, and compliance records for audits and internal reviews.
- Stay updated with emerging threats, tools, and cybersecurity best practices.
Qualifications & Requirements
- Bachelor's degree in Computer Science, Cybersecurity, or a related field.
- 7+ years of experience in cybersecurity, with a strong focus on penetration testing and security assessments.
- Mandatory certifications:
- eJPT (eLearnSecurity Junior Penetration Tester)
- CCNA (Cisco Certified Network Associate)
- Strong understanding of cybersecurity frameworks, risk management, and compliance standards (NCA preferred).
- Experience working in 24/7 security operations or rotational shift environments.
- Strong analytical and problem-solving skills with attention to detail.
Preferred Certifications
- CISSP (Certified Information Systems Security Professional)
- CISA (Certified Information Systems Auditor)
- CEH (Certified Ethical Hacker)
Key Skills
- Penetration Testing & Ethical Hacking
- Cybersecurity Compliance (NCA)
- Risk Assessment & Risk Management
- Threat Analysis & Incident Response
- Security Architecture & Hardening
- Vulnerability Management
- SIEM Tools & Security Monitoring
Working Conditions
- On-site role in Riyadh
- 8-hour rotational shifts (including night shifts, weekends, and holidays as per schedule)