
Roshn
Specialist, Cybersecurity Defense
- Permanent
- Riyadh, Saudi Arabia
- Experience 2 - 5 yrs
Job expiry date: 14/11/2025
Job overview
Date posted
30/09/2025
Location
Riyadh, Saudi Arabia
Salary
SAR 15,000 - 20,000 per month
Compensation
Salary only
Experience
2 - 5 yrs
Seniority
Experienced
Qualification
Bachelors degree
Expiration date
14/11/2025
Job description
The Cybersecurity Monitoring Specialist at ROSHN plays a vital role in protecting the organization's digital infrastructure through proactive monitoring, real-time threat detection, and incident analysis. The role focuses on continuous enhancement of SIEM use cases to improve anomaly and malicious behavior detection. Collaboration with incident response and threat management teams ensures timely mitigation of cybersecurity threats. Responsibilities include investigating phishing techniques and malicious payloads, improving email filtering, identifying emerging threats, enriching incidents with IoCs and external context, and implementing or tuning SIEM rules to increase detection accuracy. The role requires familiarity with frameworks like OWASP, NIST, MITRE ATT&CK, and NCA ECC, and benefits from certifications such as CompTIA Security+, CySA+, GSEC, GSDA, GCTI, GMON, and GREM. This position supports ROSHNâs broader goal of developing high-quality communities aligned with Vision 2030.
Required skills
Key responsibilities
- Investigate suspicious emails reported by users or flagged by automated systems
- Identify phishing techniques, malicious payloads, and targeted campaigns
- Provide recommendations to improve email filtering and user awareness
- Identify emerging threats, campaigns, and attacker tactics relevant to ROSHN
- Enrich incident investigations with IoCs and threat context from external sources
- Design and implement new SIEM use cases to detect anomalies and malicious behavior
- Tune existing rules to reduce noise and improve detection accuracy
- Support incident response teams during investigations and containment efforts
- Provide detailed analysis and documentation of findings related to phishing, malware, or suspicious activity
Experience & skills
- Hold a bachelor's degree in computer science, Information Technology, Software Engineering, Cybersecurity, or a closely related field
- Have 3â5 years of experience in cybersecurity architecture, preferably across multi-platform environments
- Demonstrate familiarity with frameworks like OWASP, NIST, MITRE ATT&CK, and NCA ECC practices
- Possess professional certifications such as CompTIA Security+, CySA+, GSEC, GSDA, GCTI, GMON, or GREM