وصف الوظيفة
نظرة عامة على الدور
باعتبارك مهندساً في فريق منصات أمن السحابة، ستدعم تصميم وتنفيذ وصيانة أدوات الأمان عبر بيئات السحابة والهجين. يركز هذا الدور على الدعم التشغيلي لضوابط الأمان الأساسية مع المساهمة في مبادرات تحسين الأمان المستمرة. ستعمل عن كثب مع مهندسين ذوي خبرة وفِرَق متعددة التخصصات لدمج الأمان في العمليات وتدفقات التطوير. ستبني مهارات متقدمة وخبرة عميقة في إدارة منصات الأمان في بيئة هجينة، مع إدارة الجدران النارية (Firewalls) وجدران حماية التطبيقات الويب (WAFs) وأدوات الأمان السحابية الأصلية.
ما ستقوم به
- توفير الدعم التشغيلي اليومي لضوابط الأمان، بما في ذلك جدران الحماية الشبكية وجدران حماية تطبيقات الويب ومجموعات أمان السحابة وخدمات الأمان السحابية الأصلية.
- المشاركة في رصد وتوثيق حوادث الأمان، وتقديم الاستجابة للحوادث وإدارة التصعيدات بشكل مناسب.
- دعم عمليات إدارة الثغرات من خلال الحفاظ على الأنظمة والأدوات حتى أحدث الإصدارات المستقرة، والمشاركة في جهود الإصلاح والتنسيق مع فرق الحوكمة.
- المشاركة في تطبيق ضوابط جديدة، وأتمتة المهام الروتينية، والمساهمة في مشاريع الأمان، ودعم المراجعات والتدقيقات الداخلية.
- التعاون مع InfraOps والحوكمة وDevOps وفِرَق الأعمال لدمج أفضل ممارسات الأمان في IT وعمليات الأعمال.
المهارات
المهارات المطلوبة للنجاح
- مهارات تحليلية قوية وحل المشكلات مع دقة في التفاصيل.
- اتصال فعال وتعاون مع الفرق التقنية وغير التقنية.
- الالتزام بالتعلم المستمر، والقدرة على العمل بشكل مستقل وفي فريق.
ما يؤهلك للدور
- درجة البكالوريوس في علوم الحاسوب أو تكنولوجيا المعلومات أو الأمن السيبراني أو مجال ذي صلة.
- 1-3 سنوات خبرة عملية في أمان تكنولوجيا المعلومات، إدارة الشبكات، عمليات السحابة أو دور مماثل.
- فهم جيد لمبادئ الأمن السيبراني ومنصات السحابة (Azure وOCI وAWS) وفهم أساسي لميزات الأمان الأصلية في السحابة مثل Defender for Cloud وIAM وSecurity Groups وGuard Duty وSentinel.
- خبرة عملية في أدوات الأمان مثل جدران الحماية (مثل Cisco وPalo Alto وCheckpoint وFortinet)، وWAF (Cloudflare وf5 وImperva)، وضوابط أمان السحابة.
- معرفة أساسية بمفاهيم الشبكات ومبادئ الأمن (مثل Zero Trust وLeast Privilege) والتهديدات الشائعة (مثل DDoS وSQL injection).
- تجربة في لغات البرمجة النصية (Python وPowerShell) وأدوات الأتمتة (Terraform) تعتبر ميزة إضافية.
Job description
Overview of the role
As an Engineer in the Cloud Security Platforms team, you will be supporting the design, implementation, and maintenance of security tools across cloud and hybrid environments. This role focuses on operational support for key security controls while contributing to ongoing security improvement initiatives. You will work closely with experienced engineers and cross-functional teams to integrate security into operations and development workflows. You will build advanced skills and deep experience managing security platforms in a hybrid environment, managing firewalls, Web Application Firewalls (WAFs) and cloud-native security tools.
What you will do
- Provide day-to-day operational support for security controls, including network firewalls, web application firewalls, cloud security groups and native cloud security services.
- Participate in monitoring and documenting security incidents, provide incident response and manage escalations appropriately.
- Support vulnerability management processes by maintaining systems and tools to their latest stable releases, participating in remediation efforts and coordinating with governance teams.
- Participate in implanting new controls, automate routine tasks, contribute to security projects, support internal reviews and audits.
- Collaborate with InfraOps, governance, DevOps and business teams to integrate security best practices in IT and business operations.
Skills
Required Skills to be successful
- Strong analytical and problem-solving skills with attention to detail.
- Effective communication and collaboration with technical and non-technical teams.
- Commitment to continuous learning, ability to work independently and in a team setting.
What equips you for the role
- Bachelor’s degree in computer science, Information Technology, Cybersecurity or a related field.
- 1-3 years of work experience in IT Security, network administration, cloud ops or a similar role.
- Good understanding of cybersecurity principles and cloud platforms (Azure, OCI, AWS) and basic understanding of cloud-native security features such as Defender for Cloud, IAM, Security Groups, Guard Duty, Sentinel.
- Hands-on Exposure to security tools such as firewalls (e.g. Cisco, Palo Alto, Checkpoint, Fortinet), WAF (Cloudflare, f5, Imperva), cloud security controls.
- Basic knowledge of networking concepts, security principles (e.g. Zero Trust, Lease Privilege) and common threats (e.g. DDoS, SQL injection).
- Experience with scripting languages (Python, PowerShell) and automation tools (Terraform) is a plus.