All links to official websites of government agencies in the Kingdom of Saudi Arabia end with gov.sa.
Secure websites in the Kingdom of Saudi Arabia use the HTTPS protocol for encryption.
Registered with the Digital Government Authority under number :
20250616605Designs, performs and manages cybersecurity audits independently to assess an organization’s compliance with applicable requirements, policies, standards and controls. Prepares audit reports and communicates them to authorized parties
Some or all of the following licenses, certificates or degrees may be required to work in this career.
The system, network, hardware and software applications and components, as well as devices and proce...
The security risk factors, such as hardware and software components, devices, interfaces and policie...
The quality models for ICT services which address the maturity of the processes, the adoption of rec...
The techniques for recovering hardware or software components and data, after failure, corruption or...
The set of legislative rules that safeguards information technology, ICT networks and computer syste...
The standards regarding ICT security such as ISO and the techniques required to ensure compliance of...
The process intended to match user and organization's needs with system components and services, by ...
Provide information and guidance to clients on how to prevent security threats and incidents.
Analyze the functioning and performance of information systems in order to define their goals, archi...
Study the contribution of the work processes to the business goals and monitor their efficiency and ...
Study clients' needs and expectations for a product or service in order to identify and resolve inco...
Study the external and internal environment of an organization by identifying its strengths and weak...
The techniques and methods that support a systematic and independent examination of data, policies, ...
Establish a positive, long-term relationship between organizations and interested third parties such...
Cloud security and compliance concepts, including shared responsibility model, cloud access manageme...
Collect data for cyber defense using various data collection tools. Data may be gathered from a numb...
Ensure you are properly informed of the legal regulations that govern a specific activity and adhere...
The techniques and principles of software development, such as analysis, algorithms, coding, testing...
Organize the personal, technical and organizational security requirements.
Give instructions to colleagues and other cooperating parties in order to reach the desired outcome ...
Gather all the information, analyze the variables and create reports where the detected risks of the...
The strategies, techniques and tools that can be used to detect and avert malicious attacks against ...
The methods that protect ICT systems, networks, computers, devices, services, digital information an...
Design and execute a written set of rules and policies that have the aim of securing an organization...
Specify technical properties of goods, materials, methods, processes, services, systems, software an...
Compose procedures outlining specific actions to be taken in the event of an emergency, taking into ...
Create company strategy related to the safety and security of information in order to maximize infor...
Organize and execute audits in order to evaluate ICT systems, compliance of components of systems, i...
The study of the behavior and interaction between digital devices and human beings.
Apply methods and techniques to identify potential security threats, security breaches and risk fact...
Analyze the system and network architecture, hardware and software components and data in order to i...
Create, manage and implement ICT system recovery plan in case of crisis in order to retrieve informa...
Develop and implement procedures for identifying, assessing, treating and mitigating ICT risks, such...
The plan defined by a company which sets the information security objectives and measures to mitigat...
The internal risk management policies that identify, assess and prioritize risks in an IT environmen...
Head exercises which educate people on what to do in case of an unforeseen disastrous event in the f...
Guide application and fulfillment of relevant industry standards, best practices and legal requireme...
Prepare, test and execute, when necessary, a plan of action to retrieve or compensate lost informati...
Select appropriate authentication and authorization mechanisms. Design, implement and troubleshoot k...
Analyze the critical assets of a company and identify weaknesses and vulnerabilities that lead to in...
The strategies, methods and techniques that increase the organization's capacity to protect and sust...
Execute types of security testing, such as network penetration testing, wireless testing, code revie...
Undertake ordering of services, equipment, goods or ingredients, compare costs and check the quality...
Identify and assess factors that may jeopardize the success of a project or threaten the organizatio...
Display results, statistics and conclusions to an audience in a transparent and straightforward way.
Prepare, compile and communicate reports with broken down cost analysis on the proposal and budget p...
Prepare documentation for existing and upcoming products or services, describing their functionality...
Troubleshoot issues with the cloud and determine how to restore operations. Design and automate disa...
The process of identifying, assessing, and prioritizing of all types of risks and where they could c...
The body of regulations, legal procedures and policies regarding security and safety management.
Identify potential component malfunctions. Monitor, document and communicate about incidents. Deploy...
The procedures related to preparing for recovery or continuation of technology infrastructure vital ...
Lead and guide employes through a process in which they are taught the necessary skills for the pers...
The attacks, vectors, emergent threats on websites, web applications and web services, the rankings ...
Compile data on inspections, patrols and security incidents into a report for management purposes.
Compose technical customer reports understandable for people without technical background.