Cybersecurity Incident Response Specialist

3 days ago


Jeddah, Makkah Province, Saudi Arabia Saudi Air Navigation Services Full time

Incident Response and Investigation


• Perform the response to cybersecurity incidents (IT/OT security), managing the lifecycle from CSIRT activation to containment, mitigation, restoration, and post-incident analysis.


• Coordinate with internal and external teams, including asset owners, during major incidents for triage, containment, and recovery efforts.


• Develop short-term containment and long-term eradication strategies to mitigate the impact of cybersecurity threats and prevent future incidents.


• Analyze cybersecurity incidents, including the vulnerabilities exploited and the methods used, and develop response strategies.


• Document and track the steps and procedures followed during incident response activities, ensuring accurate reporting.


• Provide regular updates to leadership on incident status, impact, and recovery strategies, ensuring clear communication of technical and business impacts.


• Collaborate with law enforcement and legal teams on cybercrime investigations (involving forensics investigation) and ensure compliance with legal and regulatory requirements.


• Perform post-incident damage assessment to evaluate the impact on systems and data, and conduct post-incident analysis to identify root causes of attacks.


• Develop post-incident lessons learned reports for continuous improvement of incident response capabilities.


• Automate remediation for low-level incidents to streamline response efforts and improve efficiency.


• Participate in and conduct tabletop exercises and drills to enhance incident response readiness and effectiveness.


• Continuously improve incident response processes by integrating lessons learned, adopting industry best practices, and keeping up with emerging threats.


• Development of cybersecurity Incidents Reports and contributing to internal IR requirements (KPIs status reporting, statistics and dashboard reporting, management and regulatory reports, etc.).


• Supporting other cybersecurity defense functions (VM, TI, IR, TH and Assurance) in accordance with business needs.


• Support cybersecurity defense audit, compliance, risk and regulatory requirements

Digital Forensics Examination and Malware Analysis


• Conduct forensic analysis of systems, networks, and digital artifacts involved in cybersecurity incidents, preserving evidence following forensically sound procedures.


• Use advanced forensic tools to collect and analyze data from compromised devices and perform memory forensics to identify malware or indicators of compromise.


• Perform malware reverse engineering to analyze the behavior of malicious code and identify attack vectors.


• Prepare detailed forensic reports and present findings to stakeholders, including senior leadership, legal teams, and external authorities, as necessary.


• Analyze logs, network traffic, and digital artifacts to reconstruct incidents and assess malicious activity.


• Perform post-incident forensic analysis to identify root causes of attacks and assess damage.


• Ensure that forensic activities follow legal requirements for data collection, evidence preservation (i.e. Chain of Custody), and reporting.


• Collaborate with law enforcement and legal teams on cybercrime investigations, providing detailed forensic reports for legal proceedings.

Policies, Processes and Procedures


• Conduct day-to-day activities while ensuring compliance to policies and procedures


• Contribute to the identification of opportunities for continuous improvement of systems, processes considering leading practices, changes in business environment, cost reduction and productivity improvement



  • Jeddah, Makkah Province, Saudi Arabia Saudi Air Navigation Services Full time

    To run and maintain the cybersecurity operations of IT networks by deploying, monitoring, and optimizing network infrastructure and protocols. This role ensures the protection and compliance of IT networks, supports incident response, and continuously improves security to safeguard critical infrastructure and data assets.Candidates should have experience in...


  • Jeddah, Makkah Province, Saudi Arabia EchoServe Full time 40,000 - 60,000 per year

    About us:EchoServeis a leading IT and Cybersecurity solutions provider, providing services and solution offerings designed to build resilience, mitigate risk, and ensure business continuity. With highly skilled and certified engineers based in both Riyadh and Jeddah, we deliver measurable value through end-to-end services, solution deployment, and security...


  • Jeddah, Makkah Province, Saudi Arabia Saudi Air Navigation Services Full time

    To participate in the design and implementation of IT cybersecurity projects, ensuring secure deployments that align with policies and best practices. Collaborate with IT operations, assess risks, and enhance cybersecurity design processes to support the organization's IT infrastructure and business needs within established KPIs, budgets, and policies.


  • Jeddah, Makkah Province, Saudi Arabia Hudson Manpower Full time 120,000 - 180,000 per year

    Job description Job Title: Certified Incident InvestigatorLocation:  Saudi ArabiaExperience: 7-10 yearsPosition Overview:We are looking for a Certified Incident Investigator with 7-10 years of experience in the oil and gas industry. The ideal candidate will have expertise in conducting thorough incident investigations, with a strong focus on accurate...


  • Jeddah, Makkah Province, Saudi Arabia The Career Magnet Full time

    Role DescriptionThis is a full-time, on-site role for a Cyber Security Supervisor, based in Al Ahsa. The Cyber Security Supervisor will oversee cybersecurity operations, manage threats, and implement security protocols to safeguard the organization's data and systems. Responsibilities include evaluating and improving security policies, conducting risk...


  • Jeddah, Makkah Province, Saudi Arabia Express Food Company Full time 90,000 - 120,000 per year

    About Us:Express Foods Company is a licensed franchisee of ALBAIK Food Systems, a leading food brand in Saudi Arabia. Headquartered in Jeddah, EFC operates across Saudi Arabia and Bahrain, delivering high-quality food, operational excellence, and customer satisfaction. Cybersecurity is essential to protecting its growing technology ecosystem.At EFC, security...


  • Jeddah, Makkah Province, Saudi Arabia Securenass Full time

    Securenass is hiring a Saudi national "Senior Cyber Security Engineer"Work Location: Jeddah, Saudi ArabiaType: Full-timeExperience Level: Intermediate (3 years of experience)Job Requirements:* Minimum of 3 years of experience.* Experience operating and managing cybersecurity systems:MDM – DLP – SIEM – PAM* Strong background in managing and operating...

  • Safety Specialist

    1 day ago


    Jeddah, Makkah Province, Saudi Arabia SABIL | سابل Full time

    Safety Specialist|Jeddah & Al Qassim Silos Branches, Saudi ArabiaReports to:HSSE Section HeadAbout the Role:Ensure safety and compliance within SABIL branches by conducting risk assessments, implementing safety protocols, investigating incidents, and collaborating with local authorities. This includes overseeing safety applications within grain operations...


  • Jeddah, Makkah Province, Saudi Arabia SGS - Saudi Ground Services Full time

    Purpose:Lead, monitor, and analyse safe working practices in Ground Operations; ensure SMS compliance; oversee ramp safety and minimize risks. 8. Safety & Quality Specialist …Key Responsibilities :Oversee ramp operations and S&Q inspections; manage incident/accident reporting & final reviews; analyze injury/damage trends; escalate significant safety...


  • Jeddah, Makkah Province, Saudi Arabia Talent Blueprint FZ LLC Full time 40,000 - 80,000 per year

    IT Specialist – Football Tournament (Riyadh & Jeddah)Duration:1 November 2025 – 31 January months contract)Location:Riyadh & Jeddah, Saudi ArabiaContract Type:Freelance / Project-BasedOnly candidates currently based in Riyadh or Jeddah will be considered.About the RoleWe are seeking an experienced and technically strongIT Specialistto join the delivery...