Network Security Analyst
Requisition ID:27180
Job Country: [[country]]
Job City: [[filter3]]
Group Overview:
Headquartered in Riyadh, Saudi Arabia, we operate construction and manufacturing businesses, design & development centers and a host of facilities in the Middle East and other countries.
alfanar is involved in:
• Electrical, Electromechanical and Civil Engineering Construction
• Manufacturing and Marketing Electrical Construction Products
• Allied Engineering Services
Our Main Divisions:
• alfanar electric
• alfanar Construction
• alfanar Building Systems
Job Purpose
The Network Security Engineer is responsible for the daily administration, maintenance, and monitoring of the organization’s security infrastructure. This role focuses on ensuring that firewalls, NAC systems, and WAFs are configured correctly to protect company assets and support secure business operations.
Key Accountability Areas
Network Security Operations
• Configure and maintain enterprise firewalls (Palo Alto/Fortinet/Cisco), IDS/IPS, and VPN gateways.
• Administer Aruba ClearPass for Network Access Control (NAC), including managing guest access, BYOD policies, and 802.1X troubleshooting.
• Monitor and tune WAF policies to protect web applications, ensuring regular signature updates and analyzing blocked traffic logs.
System Hardening & Implementation
• Apply security baselines to network devices and ensure its compliance.
• Execute network segmentation tasks as directed, ensuring internal traffic is restricted according to the principle of least privilege.
• Perform regular firewall rule reviews to identify and decommission unused or risky policies.
Vulnerability & Incident Support
• Perform vulnerability scans using tools like Nessus or Qualys and assist in the technical remediation of identified risks.
• Ticket Resolution: Timely resolution of security-related service requests and troubleshooting incidents.
• Policy Accuracy: Successful implementation of firewall and WAF changes with zero unauthorized downtime.
• NAC Stability: Ensuring seamless authentication for corporate and guest devices via Aruba ClearPass.
• Documentation Quality: Keeping all security asset inventories and diagrams up to date.
• Act as Tier 2 supports security incidents, analyzing SIEM alerts and escalating complex threats to the Senior Engineer or SOC lead.
• Coordinate with vendors (e.g., following up on support tickets with Vendor side) to resolve hardware or software defects.
Compliance & Documentation
• Maintain technical documentation for all security configurations, network diagrams, and standard operating procedures (SOPs).
• Collect evidence for security audits to demonstrate compliance with NCA ECC and internal policies.
• Ticket Resolution: Timely resolution of security-related service requests and troubleshooting incidents.
• Policy Accuracy: Successful implementation of firewall and WAF changes with zero unauthorized downtime.
• NAC Stability: Ensuring seamless authentication for corporate and guest devices via Aruba ClearPass.
• Documentation Quality: Keeping all security asset inventories and diagrams up to date.
Sucess Criteria:
- Ticket Resolution: Timely resolution of security-related service requests and troubleshooting incidents.
- Policy Accuracy: Successful implementation of firewall and WAF changes with zero unauthorized downtime.
- NAC Stability: Ensuring seamless authentication for corporate and guest devices via Aruba ClearPass.
- Documentation Quality: Keeping all security asset inventories and diagrams up to date.
Role Accountability
Leadership
• Assist in daily operational tasks and collaborate effectively within the team to meet functional objectives, supporting efforts to enhance workflow efficiency and team productivity.
Strategy and Planning
• Provide operational support in executing strategy plans, ensuring tasks are completed in alignment with the broader organizational objectives.
Policy, Systems and Procedures
• Support the implementation and maintenance of operational policies and procedures, ensuring compliance with standards and contributing to the efficiency and effectiveness of daily operations.
Certifications (Required): Cisco Certified CyberOps Associate, CompTIA Security+, or Aruba Certified ClearPass Associate (ACCA).
Certifications (Preferred): Fortinet NSE 4, CCNA Security, or CySA+).
Academic Qualification
Work Experience
Technical / Functional Competencies