• As a Cyber Security Architect, responsibility is to manage security architecture, cybersecurity operations and protection information.
• Responsible for identifying security gaps and providing recommendations to close the gaps.
• Implement and operate multiple security systems such as Identity and Access Management, Privilege Access Management, Multifactor Authentication, Microsoft Active Directory, Digital Rights Management, Integration Remote access solutions (VPN and Citrix) and Azure Cloud solutions with 2FA, FireEye, IPS, Symantec EPP, DLP, Citrix WAFs, Arbor DDOS, O365 security, Azure RMS, Azure IaaS Security, ADFS for Single Sign-on, Microsoft EMS, email ATP.
• Ensured that cloud systems such as O365, SuccessFactors, Ariba, Salesforces, Azure IaaS, Wombat etc are secured.
• Provided Technical insight to select, review designs and implement QRADAR SIEM for security monitoring.
• Develop strong use cases to detect security incidents for APTs, authentication failures, Data leakage, brute force attacks, unauthorized access, reconnaissance etc.
• Lead efforts to develop Incident Response process and plans.
• Lead and implemented cloud based Intsight threat intelligence platform to receive intelligence for organizations external digital assets.
• Enforce and maintain Saudi National Cybersecurity Authority controls for critical infrastructure security.
• Enforce and maintain Aramco Critical Cybersecurity Controls mandated for their JVs.
• Implemented and operated Tenable Vulnerability Solution.
• Accountable for patch management process and KPIs.
• Responsible for running vulnerability scans both within and from cloud.
• Responsible for managing and operating managed security services via outsourced partners.
• Responsible for timely closure of cybersecurity audit observations identified by internal and external auditing entities such as PWC, IBM, SecureWorks, Boston Consulting Group, Saudi Aramco, DOW Chemical’s etc.
• Define policies and processes for Identity, Access and Privilege Access Management services.
• Provide and evaluate Security requirements in all IT RFPs.
• Ensure availability of critical IT systems through proper disaster recovery and business continuity planning.
• Work closely with Enterprise and Solution architects to analyze business requirements and then come up with secure, highly available and scalable IT solution.
• Handle complex projects and assignments, such as recurring application, service, or operational problems, and use expertise to recommend solutions to management.
• Responsible for enforcing and maintaining controls to protect Sadara intellectual property and data.
• Responsible for enforcing and maintaining CIS based hardening controls on security devices.
• Develop project and service rationale and perform scoping assessments to determine feasibility, provide guidance and advice regarding vendor selection and implementation process.
• Plan and conduct workshops and presentations to senior business and IT management to demonstrate new IT solutions and capabilities.
• Develop comprehensive requirement specifications that will determine the estimate of cost, time and resources to deploy solutions.
• Research and recommend high level functional and/or technical solutions.
• Ensure that relevant business stakeholders are involved in specification of new services and/or major upgrades to existing services.
• Oversee the implementation of new systems/services.
• Keep abreast of trends and developments throughout the computer industry to recommend new IT solutions that would improve the performance of certain functions or the company as a whole.
• Defining and maintaining system, product and security architectures in alignment with the company’s business architecture.
• Providing technical direction for cybersecurity on strategic IT systems.
• Train and direct IT staff by sharing expertise and experience to develop the knowledge of the IT staff.
- مجال الشركة:
- صناعة البتروكيماويات والمنتجات البترولية المكررة
- الدور الوظيفي:
-
التصنيع