Cyber Security Analyst
Trade Bank of Iraq – Saudi Arabia
Riyadh, Riyadh Province, Saudi Arabia · Full Time
Be the first to apply
- Experience
- 1+ yrs
- Salary
- —
- Openings
- 1
- Posted
- منذ ساعتين
- Work mode
- In office
- Education
- Bachelor's degree
- Eligibility
- Candidates with relevant educational background, certifications, and experience in cybersecurity or information security roles are invited to apply. Fresh graduates with strong academic records and internship experience are also eligible.
- Resume
- Required to apply
Where you'll work
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
Overview
Trade Bank of Iraq's Saudi Arabia branch is seeking a Cyber Security Analyst to join its Information Security team. This role is crucial in maintaining the confidentiality, integrity, and availability of the bank's information assets. The analyst will ensure compliance with standards such as the Saudi Central Bank (SAMA) Cyber Security Framework and the National Cybersecurity Authority (NCA) controls.
Key Responsibilities
- Continuously monitor security events and alerts from SIEM and other security tools, prioritizing them according to their severity.
- Perform investigations of suspected security breaches, responsibly gathering evidence, documenting findings, and escalating as per incident response protocols.
- Assist in executing the Cyber Incident Response and Recovery Plan, including handling incidents, containment, and conducting post-incident analyses.
- Manage vulnerability processes by reviewing scan outcomes, prioritizing remediation efforts, coordinating with IT and service providers, and tracking their resolution.
- Review penetration test findings and aid in implementing corrective measures.
- Monitor user access rights and privileged accounts, supporting periodic audits.
- Ensure adherence to SAMA and NCA cybersecurity requirements by maintaining evidence, updating self-assessments, and addressing identified weaknesses.
- Help prepare cybersecurity reports and metrics for management and regulatory bodies.
- Contribute to reviewing security configurations, including change requests from a security standpoint.
- Coordinate with IT and Managed Service Providers on patch management, security tool administration, and resolving security issues.
- Support third-party security risk assessments through vendor questionnaire review and evidence collection.
- Assist in cybersecurity training and phishing simulations, monitoring participant engagement and outcomes.
- Collaborate with Anti-Fraud and Compliance units on incidents involving fraud, data leakage, or misuse.
- Maintain comprehensive, confidential documentation in compliance with record-retention policies.
Candidate Profile
- Academic background: Bachelor's degree in Cybersecurity, Computer Science, IT, Information Systems, or related disciplines.
- Preferred certifications: CompTIA Security+, CEH, CySA+, Microsoft SC-200, Cisco CyberOps, or willingness to obtain equivalent qualifications.
- Professional experience: Minimum one year in cybersecurity, security operations, IT infrastructure, or related fields; experience in banking or regulated environments is advantageous.
- Hands-on experience with SIEM, endpoint protection, firewalls, or vulnerability scanning tools is beneficial.
- Familiarity with SAMA Cyber Security Framework, NCA Controls, ISO 27001, or NIST standards is an asset.
- Fresh graduates with strong academics, relevant certifications, or internships may be considered.
Required Skills
- Proficient understanding of network technologies, operating systems, common attack methods, and threat vectors.
- Excellent analytical and problem-solving capabilities with a focus on evidence-based investigations.
- Ability to maintain composure and make definitive decisions under incident pressure.
- Strong documentation and report-writing skills.
- High integrity, professionalism, discretion, and attention to detail.
- Flexibility to participate in on-call duties and handle incidents beyond typical work hours.
- Strong interpersonal and coordination skills to liaise with internal IT and external providers.
- Proficiency with Microsoft Office applications; scripting knowledge is a plus.
- Good command of Arabic and English, both written and spoken.
Minimum education
Bachelor's Degree
Industry
Banking