# Senior Specialist - Cybersecurity Production Support - Saudi Arabia 🇸🇦

> TAWANTECH · Riyadh, Saudi Arabia · — · Posted 2026-07-19

**Workplace:** on_site

## Description

**Senior Specialist – Cybersecurity Production Support – Saudi Arabia 🇸🇦**

We are looking for a **Senior Specialist – Cybersecurity Production Support** to join our team in Saudi Arabia.

**Job Overview:**  
The Senior Specialist will be responsible for supporting and maintaining cybersecurity platforms, ensuring high availability, operational stability, and effective security monitoring across enterprise environments.

**Key Responsibilities:**

-   Provide production support for cybersecurity platforms including SIEM, SOAR, VPN, and security monitoring solutions.
-   Monitor cybersecurity platforms, dashboards, alerts, and operational activities.
-   Support Splunk SIEM use cases, log ingestion, correlation rules, and performance optimization.
-   Manage and maintain SOAR workflows, playbooks, and automation processes.
-   Support VPN infrastructure including secure remote access and site-to-site connectivity.
-   Perform Incident, Problem, and Change Management activities following ITIL practices.
-   Conduct Root Cause Analysis (RCA) for security incidents and platform issues.
-   Support Cyber Incident Response activities including investigation and remediation.
-   Participate in Disaster Recovery (DR) and Business Continuity Planning (BCP).
-   Maintain security documentation, runbooks, SOPs, and operational reports.
-   Collaborate with security teams, infrastructure teams, and vendors for issue resolution.

**Requirements:**

-   Bachelor’s degree in Cybersecurity, Information Security, Computer Science, or related field.
-   4–8 years of experience in cybersecurity production support within enterprise or financial environments.
-   Hands-on experience with:

-   SIEM platforms (Splunk Enterprise / Splunk ES preferred)
-   SOAR platforms (Cortex XSOAR, Splunk SOAR, or similar)
-   VPN technologies (IPSec / SSL VPN)
-   Security monitoring and incident response

-   Strong understanding of cybersecurity operations, threat detection, and log analysis.
-   Experience with ITIL Incident, Problem, and Change Management.
-   Knowledge of SAMA Cybersecurity Framework, NCA ECC, PDPL, and NDMO is preferred.
-   Basic scripting knowledge (Python, PowerShell, or similar) is preferred.

## Apply

[Apply at TAWANTECH](https://apply.workable.com/tawantech/j/0BB661EBFB/apply)

---
Powered by [Workable](https://www.workable.com)
