
IBM
Managing Consultant - Cyber Threat Management Consultant
- Permanent
- Riyadh, Saudi Arabia
- Experience 10 - 15 yrs
Job expiry date: 05/03/2026
Job overview
Date posted
19/01/2026
Location
Riyadh, Saudi Arabia
Salary
SAR 30,000 - 40,000 per month
Compensation
Comprehensive package
Job description
The Managing Consultant – Cyber Threat Management at IBM Consulting in Riyadh is a senior cybersecurity consulting role responsible for designing, implementing, operating, and improving cyber threat management and cyber defense capabilities for enterprise clients. The role supports IBM Cyber Threat Management’s holistic approach to security intelligence, operations, incident response, and regulatory compliance by combining robust methodologies, industry expertise, and market-leading technologies. The consultant works directly with clients to ensure security solutions align with business requirements, develops capabilities to identify, analyze, and respond to cyber attacks, violations, and abuse, and manages or leads day-to-day cyber defense operations where required. The role includes developing threat models, business-led use cases, correlation rules, incident management processes, and information workflows, while ensuring projects are delivered on time through effective project planning, risk management, and stakeholder communication. The consultant engages in business development by building proposals, shaping business cases, opening new opportunities, and maintaining trusted senior-level client relationships. The position requires deep expertise in SIEM platforms such as PAN XSIAM, Splunk, and Microsoft Sentinel, SOC design and operations, threat intelligence and hunting, security assessments using tools like NMAP, Nessus, Metasploit, and Netcat, and governance models spanning people, processes, and technology. The role operates within IBM Consulting’s global professional services environment, collaborating with diverse global teams and supporting client transformation initiatives across security operations and cyber resilience.
Required skills
Key responsibilities
- Manage day-to-day interactions with business groups, executive management, and key stakeholders
- Lead or manage day-to-day operations of client cyber defense and security operations center capabilities
- Develop solution processes, procedures, and information workflows for cyber threat management
- Develop threat models, business-led use cases, and correlation rules
- Assist clients and consultant teams to ensure all project deliverables are completed on time
- Establish and manage detailed project plans for cybersecurity engagements
- Communicate project progress, risks, challenges, and dependencies to clients and IBM leadership
- Manage engagement risk and define and approve deliverable content
- Support team selection through recruiting and interviewing activities
- Manage skill development, training, and career progression of client solution staff when required
- Develop staffing schedules and training plans for client security operations teams
- Serve as the primary IBM approver for solution processes, procedures, and workflows
- Engage in peer-to-peer discussions with clients regarding industry challenges and cybersecurity posture
- Identify, open, and develop new business opportunities and client relationships
- Build and validate business cases using appropriate tools and methodologies
- Plan and lead delivery of workshops and facilitated client events
Experience & skills
- Hold a Bachelor's Degree
- Possess at least 12 years of experience in information security with emphasis on security operations, incident management, intrusion detection, firewall deployment, compliance, and security event analysis
- Have a minimum of 6 years of experience leading a security operations center team
- Demonstrate experience designing and building security or network operations centers
- Exhibit experience designing, implementing, and managing security processes, technology, governance models, and teams
- Show expertise in threat modeling, use cases, and response runbooks
- Demonstrate experience building threat intelligence and threat hunting capabilities
- Be proficient with SIEM platforms including PAN XSIAM, Splunk, and Microsoft Sentinel
- Have experience with log management and security information management tools
- Demonstrate experience using security assessment tools such as NMAP, Nessus, Metasploit, and Netcat
- Possess strong project management skills and experience managing client engagements
- Hold or be eligible for professional certifications such as CISSP, SANS GCIA, GMON, or cloud certifications such as AWS (preferred)