Overview
Cyber Security & Data Protection Engineer Jobs in Riyadh, Saudi Arabia at Mint Specialist Recruitment Ltd
Title: Cyber Security & Data Protection Engineer
Company: Mint Specialist Recruitment Ltd
Location: Riyadh, Saudi Arabia
We are actively working with a Riyadh-based technology-forward Real Estate Development Company to hire a Cybersecurity & Data Protection Engineer to join their existing IT team and own the operational security of the entire technology estate, spanning corporate HQ, project sites, IoT, and a cloud platform built end-to-end on Microsoft Azure.
KEY ACCOUNTABILITIES:
- Secure Azure AI workloads (Azure AI Foundry / OpenAI, Azure ML, RAG pipelines, vector stores).
- Govern AI agent identity and access with Microsoft Entra Agent ID / Agent 365.
- Constrain and monitor agent tool / API access; harden the Azure platform, and manage Shadow AI.
- Lead the selection, deployment, and ongoing operation of a SIEM platform, establishing centralized log collection, alert triage, threat hunting, and incident response across endpoints, network, cloud, and AI/agent workloads
- Own vulnerability management end to end
- Configure and maintain perimeter and internal security controls, including NGFW (Fortinet FortiGate), IPS/IDS, network segmentation, and secure remote access (ZTNA / VPN).
- Enforce zero-trust principles across user, device, and workload access.
- Secure all OT/IoT and smart building systems (BMS, access control, CCTV, IoT sensors) through segmentation and monitoring.
- Administer security controls in Entra ID / Active Directory for human, workload, and agent identities.
- Secure Microsoft 365 and Azure workloads.
- Support secure SDLC and review the security of internally developed, AI-enabled, and SaaS-delivered applications.
- Maintain PDPL compliance, covering data classification, data residency, consent, breach-notification readiness, and records of processing.
- Conduct risk assessments, support internal and external audits, and maintain security documentation, policies, and SOPs.
- Coordinate with system integrators and MSSPs; review third-party and vendor security posture.
- Maintain and test the incident response plan; lead containment, eradication, and recovery.
- Validate backup integrity and participate in DR testing aligned to RTO/RPO targets.
- Lead the organization’s data protection and privacy, ensuring compliance with applicable laws, regulations, and policies.
- Develop and maintain data protection policies, procedures, and governance frameworks.
- Oversee data inventories, privacy risk assessments, and third-party data processing arrangements.
- Deliver privacy awareness and training programs and monitor ongoing compliance through audits and reviews.
- Serve as the primary point of contact for data protection matters with internal and external stakeholders.
REQUIRED SKILLS & EXPERIENCE
- Bachelor’s degree in Computer Science, Information Security, or a related field.
- 5-8 years of hands-on cybersecurity engineering experience, with at least 2 years owning security across networks, systems, and applications.
- Proven track record owning cybersecurity operations in an Azure-native enterprise environment.
- Practical experience acting as, or directly supporting, a Data Protection function under PDPL or equivalent.
- Hands-on experience with Microsoft Sentinel / Defender XDR, Fortinet FortiGate, and Entra ID security controls.
- Experience with ISO 27001, NIST, vulnerability management, incident response, and identity & access management (IAM).
- Familiarity with IoT/OT security and smart building environments is an advantage.
If you are an experienced and ambitious Cybersecurity Engineer with Data Protection experience and you’re looking to join a dynamic company, passionate about AI, then we’d love to hear from you!