JobsAisle
H

Network Security Engineer (m/f/d)

Halian

Riyadh, Saudi ArabiaAED 7,000-18,000/moSAR 7.1K-18.4K/moYesterday
Saudi ArabiaIT & TechnologyFull Time

Skills Required

ErpArabicEnglish

Job Description

Senior Network & Email Security EngineerMaintain a hardened perimeter and secure enterprise email with full operational evidence for audits and transition stability. This role owns day-to-day operations, hygiene, incident response, and change control across network security controls and the email security gateway in Client’s production environment.In-scope technologiesNetwork Security: Next-Gen Firewalls (e.g., Palo Alto / equivalent), site-to-site & remote-access VPN, IPS/Threat Prevention, URL filtering, WildFire/sandboxing (or equivalent), SSL decryption where applicable, HA/failover, logging to SIEM.Email Security: Secure Email Gateway (e.g., Proofpoint or equivalent): inbound/outbound policies, anti-phishing/BEC, impersonation protection, URL rewriting/sandboxing, attachment detonation, quarantine workflows, user digests, SPF/DKIM/DMARC posture checks (with Messaging team).ResponsibilitiesOperational Ownership (Network)Daily health checks for NGFW clusters, threat/content updates, license/status, HA sync/state.Rulebase hygiene: reduce unused/overlapping rules, enforce least privilege, maintain application-based policies, validate security profiles (AV/IPS/URL filtering).Remote access posture (e.g., GlobalProtect or equivalent): portal/gateway policies, MFA integration with IAM team, and user experience SLAs.Traffic troubleshooting: ACC/log analysis, PCAPs, policy simulation; coordinate fixes with platform owners.Operational Ownership (Email Security)Inbound/outbound policy tuning; phishing/BEC controls and executive spoof protection.URL and attachment sandboxing effectiveness; manage quarantine queues and approval flows.Partner with Messaging team on SPF/DKIM/DMARC alignment; monitor sending reputation and delivery health.Provide user-facing guidance (digests, safe release, false positive/negative handling).Incident Response & Threat HandlingLead P1 incidents across perimeter/email; coordinate with SOC (SIEM alerts, playbooks).Rapid containment (block rules, URL detonation verdicts, sender throttling), evidence capture, and RCA with corrective actions.Change, Patch & UpgradesPrepare CAB-ready change plans (impact, test, rollback) for signature/content updates, firmware upgrades, and policy changes.Post-change validation and documentation.Compliance & EvidenceMaintain audit-ready artifacts: change tickets/approvals, policy exports, content update logs, quarantine reports, incident timelines, and monthly posture reviews.Familiarity with SAMA & NCA CSF audit and regulations requirements.Support internal/external audits with traceable evidence.Documentation & KTOwn runbooks/SOPs (policy hygiene, incident triage, quarantine workflows, upgrade steps).Mentor L1/L2; drive shadow → reverse-shadow.Required Qualifications5+ years in enterprise network and email security operations.Hands‑on with NGFWs (preferably Palo Alto) and a major Secure Email Gateway (e.g., Proofpoint).Strong change/incident management discipline; clear written reports in English (Arabic a plus).Comfortable with packet analysis, SSL decryption concepts, and mail flow basics with messaging teams.PreferredBanking/regulated‑sector experience.Experience integrating controls with SIEM/SOAR.Certifications: PCNSE (or equivalent NGFW), vendor SEG certification, ITIL.We encourage applications from all qualified candidates, regardless of race, gender, disability, or any other characteristic that makes them unique.#J-18808-Ljbffr