وصف الوظيفة
نظرة عامة على الدور
كمهندس في فريق منصات أمان السحابة، ستدعم تصميم وتنفيذ وصيانة أدوات الأمان عبر بيئات السحابة والهجين. يتركز هذا الدور على الدعم التشغيلي للضوابط الأمنية الأساسية مع المساهمة في مبادرات التحسين الأمني المستمرة. ستعمل عن كثب مع مهندسين ذوي خبرة وفِرق وظيفية متقاطعة لدمج الأمن في عمليات وعمليات التطوير. ستبني مهارات متقدمة وخبرة عميقة في إدارة منصات الأمان في بيئة هجينة، بما في ذلك إدارة الجدران النارية، وجدران الحماية لتطبيقات الويب (WAFs) وأدوات الأمان السحابية الأصلية.
ما ستقوم به
- توفير الدعم التشغيلي اليومي لضوابط الأمان، بما في ذلك الجدران النارية للشبكة، وجدران الحماية لتطبيقات الويب، ومجموعات أمان السحابة وخدمات الأمان السحابية الأصلية.
- المشاركة في مراقبة وتوثيق الحوادث الأمنية، وتوفير الاستجابة للحوادث وإدارة التصعيد بشكل مناسب.
- دعم عمليات إدارة الثغرات من خلال الحفاظ على الأنظمة والأدوات حتى أحدث الإصدارات الثابتة، والمشاركة في جهود التصحيح والتنسيق مع فرق الحوكمة.
- المشاركة في تنفيذ ضوابط جديدة، وأتمتة المهام الروتينية، والمساهمة في مشاريع الأمان، ودعم المراجعات والتدقيقات الداخلية.
- التعاون مع InfraOps، والحوكمة، وDevOps وفرق الأعمال لدمج أفضل ممارسات الأمن في تسيير تكنولوجيا المعلومات والعمليات التجارية.
المهارات
المهارات المطلوبة للنجاح
- مهارات تحليلية قوية وحل المشكلات مع الانتباه للتفاصيل.
- اتصالات فعالة وتعاون مع الفرق الفنية وغير الفنية.
- التزام بالتعلم المستمر، والقدرة على العمل بشكل مستقل وفي فريق.
ما يؤهلك للدور
- درجة البكالوريوس في علوم الحاسوب، تكنولوجيا المعلومات، الأمن السيبراني أو مجال ذي صلة.
- 1-3 سنوات من الخبرة العملية في أمان تكنولوجيا المعلومات، إدارة الشبكات، عمليات السحابة أو دور مشابه.
- فهم جيد لمبادئ الأمن السيبراني ومنصات السحابة (Azure، OCI، AWS) وفهم أساسي لميزات الأمان الأصلية للسحابة مثل Defender for Cloud، IAM، مجموعات الأمان، Guard Duty، Sentinel.
- تجربة عملية مع أدوات الأمان مثل الجدران النارية (مثلاً Cisco، Palo Alto، Checkpoint، Fortinet)، WAF (Cloudflare, f5, Imperva)، الضوابط الأمنية السحابية.
- معرفة أساسية بمفاهيم الشبكات ومبادئ الأمن (على سبيل المثال Zero Trust، Lease Privilege) والتهديدات الشائعة (مثل DDoS، حقن SQL).
- خبرة باللغات البرمجية (Python، PowerShell) وأدوات الأتمتة (Terraform) تعتبر ميزة.
Job description
Overview of the role
As an Engineer in the Cloud Security Platforms team, you will be supporting the design, implementation, and maintenance of security tools across cloud and hybrid environments. This role focuses on operational support for key security controls while contributing to ongoing security improvement initiatives. You will work closely with experienced engineers and cross-functional teams to integrate security into operations and development workflows. You will build advanced skills and deep experience managing security platforms in a hybrid environment, managing firewalls, Web Application Firewalls (WAFs) and cloud-native security tools.
What you will do
- Provide day-to-day operational support for security controls, including network firewalls, web application firewalls, cloud security groups and native cloud security services.
- Participate in monitoring and documenting security incidents, provide incident response and manage escalations appropriately.
- Support vulnerability management processes by maintaining systems and tools to their latest stable releases, participating in remediation efforts and coordinating with governance teams.
- Participate in implanting new controls, automate routine tasks, contribute to security projects, support internal reviews and audits.
- Collaborate with InfraOps, governance, DevOps and business teams to integrate security best practices in IT and business operations.
Skills
Required Skills to be successful
- Strong analytical and problem-solving skills with attention to detail.
- Effective communication and collaboration with technical and non-technical teams.
- Commitment to continuous learning, ability to work independently and in a team setting.
What equips you for the role
- Bachelor’s degree in computer science, Information Technology, Cybersecurity or a related field.
- 1-3 years of work experience in IT Security, network administration, cloud ops or a similar role.
- Good understanding of cybersecurity principles and cloud platforms (Azure, OCI, AWS) and basic understanding of cloud-native security features such as Defender for Cloud, IAM, Security Groups, Guard Duty, Sentinel.
- Hands-on Exposure to security tools such as firewalls (e.g. Cisco, Palo Alto, Checkpoint, Fortinet), WAF (Cloudflare, f5, Imperva), cloud security controls.
- Basic knowledge of networking concepts, security principles (e.g. Zero Trust, Lease Privilege) and common threats (e.g. DDoS, SQL injection).
- Experience with scripting languages (Python, PowerShell) and automation tools (Terraform) is a plus.