Назад
Company hidden
24 дня назад

IT Operations and Security Lead - KSA

Формат работы
onsite
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
SA
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
IT Operations and Security Lead - KSA (IT Operations and Information Security): Owning IT operations, information security, network infrastructure, Microsoft 365 administration, and support for a regulated market office with an accent on incident response, endpoint hardening, identity security, and audit controls. Focus on leading local IT operations, responding to security incidents, maintaining regulatory evidence, and securing office infrastructure across networks, endpoints, and cloud services.

Location: KSA (Saudi Arabia); existing right to work in the country is required

Company

hirify.global operates a market office requiring local IT operations, information security, regulatory controls, and office infrastructure support.

What you will do

  • Own the market's information security baseline, including vulnerability management, endpoint hardening, EDR/XDR, identity security, email protection, phishing defence, and security awareness.
  • Respond to security incidents through detection, triage, containment, evidence preservation, escalation, and post-incident review.
  • Manage office networking, including routing and switching, VLAN segmentation, next-generation firewalls, IDS/IPS, VPN, Wi-Fi, and ISP relationships.
  • Administer Microsoft 365, Entra ID, Intune/MDM, identity lifecycles, conditional access, MFA, device compliance, and onboarding/offboarding.
  • Provide primary IT support for the GCC market, manage vendors and assets, and lead office projects, expansions, and a small local IT team or managed-service partners.
  • Maintain controls and audit-ready evidence required by the market's financial regulator and data protection law, reporting risks and remediation progress to senior operations and security leadership.

Requirements

  • 6–8+ years of progressive IT operations experience, including 2–3 years as the primary IT decision-maker for a site or market.
  • Hands-on expertise in information security, incident response, EDR, vulnerability and patch management, hardening, email and phishing defence, and security alert triage.
  • Strong network engineering and security experience with routing, switching, VLANs, NGFWs, IDS/IPS, VPNs, and Wi-Fi controller deployments.
  • Strong Microsoft 365 and Entra ID administration experience, including Exchange Online, SharePoint, Intune/MDM, conditional access, and MFA.
  • Experience with Windows and macOS endpoint management, security control frameworks such as ISO 27001, SOC 2, NIST CSF, or CIS Controls, and regulated financial services environments.
  • Professional working proficiency in English, the primary business language of the market, and an existing right to work in the country of the role are required. Visa sponsorship is not available.

Nice to have

  • Security, networking, or Microsoft certifications such as CISSP, CISM, GCIH, CCNA/CCNP, SC-200, SC-300, MD-102, MS-102, or AZ-104.
  • SIEM/SOAR experience with Microsoft Sentinel, Splunk, or Elastic.
  • Familiarity with financial regulatory frameworks such as BNM RMiT, MAS TRM, or HKMA TM-G-1 and applicable data protection law.
  • AWS or GCP administration and security experience, plus PowerShell, Bash, or Python scripting.
  • Experience establishing an office and its security baseline from scratch as the first IT hire in a market.

Culture & Benefits

  • Ownership of the complete local IT operations and information security function.
  • Leadership responsibility for a small local IT team and/or managed-service partners.
  • Direct exposure to financial regulation, compliance, audit, and data protection requirements.
  • Responsibility for local vendors, procurement, IT assets, office expansions, and service quality.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →