Senior IT Security Operation Architect - Saudi National- Riyadh, KSA

Summary

The Senior IT Security Operations Architect designs and governs security frameworks, SOC architecture, and threat mitigation strategies for hybrid enterprise environments. The role focuses on integrating security tools like SIEM/SOAR and ensuring compliance with Saudi national standards like NCA-ECC and SAMA.

The Senior IT Security Operations Architect designs, builds, and governs the overarching security operations framework, SOC architecture, and threat mitigation strategies across enterprise hybrid infrastructure. This strategic and technical role aligns operational security systems (SIEM/SOAR, EDR, IAM, Network Defense) with business goals, cloud environments, and national compliance standards.

Key Responsibilities

  • Architecture & Strategy Design: Design scalable security architectures for enterprise hybrid environments (On-Premises, AWS, Azure), integrating Zero Trust models and operational security controls.
  • SOC & SOAR Integration: Build and optimize Security Operations Center (SOC) workflows, automation playbooks (SOAR), and SIEM architecture to reduce incident response time and eliminate operational fatigue.
  • Security Tool Engineering Oversight: Architect the deployment and lifecycle management of Next-Gen Firewalls (Palo Alto, Fortinet), EDR/XDR ecosystems, PAM, and Cloud Security Posture Management (CSPM) tools.
  • Threat Intelligence & Resilience: Establish proactive threat-hunting programs, red/blue team operational alignment, and high-availability disaster recovery frameworks.
  • Governance & Regulatory Compliance: Ensure all operational security designs strictly comply with local regulatory frameworks (NCA-ECC, SAMA CSF) and global standards (ISO 27001, NIST).

Requirements

  • 1. Minimum 10+ years of progressive experience in IT security, with at least 4+ years as a Security Architect or Principal Security Engineer managing enterprise SOC frameworks.
  • 2. Deep expertise in designing enterprise SOC pipelines, SIEM/SOAR architectures (Splunk, Sentinel, Cortex), and automated incident response playbooks.
  • 3. Proven track record in hybrid cloud security architecture (Azure, AWS) and Zero Trust Network Architecture (ZTNA) implementations.
  • 4. Hands-on mastery of governance frameworks and local regulatory compliance (NCA-ECC, SAMA, ISO 27001, NIST CSF) in Saudi Arabia or the wider GCC.
  • 5. Hold advanced architecture certifications such as CISSP-ISSAP, CISM, SABSA, TOGAF, or CCSP.

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available