Elm Company

Senior Application Architecture Analyst Job

Elm Company  •  Riyadh, SA (Onsite)  •  3 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Job Title

Senior Analyst

Job Code

555657

Grade

I 2

Group

-

Division

Legal, Risk & Governance

Department

Cybersecurity

Unit

Application Architecture

ROLE PURPOSE

The aim is to state the overall significance of the job from the organization’s perspective.

The role exists to support cybersecurity architecture and configuration assurance activities by reviewing system and solution designs, assessing security configurations, identifying architectural risks, and supporting the implementation of security-by-design principles to ensure technology solutions comply with cybersecurity requirements and standards.

KEY ACCOUNTABILITIES & ACTIVITIES

This section describes the principal outputs required from the job.

Key Accountabilities

Key Activities

  1. Security Architecture Review
  • Conduct security architecture reviews for new and existing systems and solutions.
  • Assess solution designs against cybersecurity requirements and standards.
  • Document security observations and recommended actions.
  1. Secure Configuration Assessment
  • Review system, infrastructure, and application configurations against approved security baselines.
  • Identify configuration weaknesses and security gaps.
  • Support stakeholders in implementing required configuration improvements.
  1. Infrastructure & Cloud Security Review
  • Assess infrastructure, cloud, and network designs against security requirements and best practices.
  • Support the identification of security risks associated with technology architectures.
  • Document assessment results and required remediation actions.
  1. Architecture Risk Assessment
  • Identify and assess cybersecurity risks associated with proposed architectures and technical solutions.
  • Evaluate existing security controls and identify potential gaps.
  • Recommend appropriate mitigation measures based on identified risks.
  1. Security-by-Design Enablement
  • Support the incorporation of security requirements during solution design and implementation.
  • Collaborate with technical teams to clarify security requirements and controls.
  • Verify alignment with security-by-design principles throughout implementation activities.
  1. Security Assessment & Sign-off Support
  • Perform assigned technical security assessments required for solution approvals.
  • Maintain assessment evidence and security review documentation.
  • Support security sign-off activities for systems and solutions.
  1. Regulatory Technical Assessment Support
  • Support technical cybersecurity assessments conducted by regulatory authorities, including NCA-related assessments.
  • Coordinate required technical evidence and documentation.
  • Follow up on observations and remediation requirements resulting from assessments.
  1. Architecture Security Documentation & Improvement
  • Maintain architecture security requirements, assessment records, and configuration standards.
  • Monitor developments in architecture and cloud security practices.
  • Contribute to improving architecture security assessment methods and controls.
  1. Policies, Processes & Procedures
  • Follow all relevant departmental policies, processes, standard operating procedures, and instructions so that work is carried out in a controlled and consistent manner.
  • Comply with all relevant safety, quality, and environmental management policies, procedures, and controls to ensure a healthy and safe work environment.
  1. Information Security
  • Comply with all relevant information security practices and standards to ensure data integrity and confidentiality.

JOB SPECIFICATIONS

Academic and professional qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Computer Engineering, or a related field.
  • Professional certifications in cybersecurity, cloud security, or security architecture are considered an advantage.

Years and Nature of Experience

  • 2–4 years of experience in cybersecurity, security architecture, technical security assessments, cloud security, or related cybersecurity domains.
Elm Company

About Elm Company

Elm is the leading provider of innovative secure services & solutions to both public and private sectors in Saudi Arabia. We provide readymade e-services, customized IT solutions, governmental support services and consultations. Elm’s customer base currently comprises over 60,000 private & public organizations on top of individual customers, helping them achieving remarkable results in increased efficiency in addition to cost & time reduction.

Industry
IT & Software
Company Size
5,001-10,000 employees
Headquarters
Riyadh, SA
Year Founded
1986
Website
elm.sa
Social Media