Overview

Manager, Digital Forensics & Incident Response Jobs in Jeddah, Makkah, Saudi Arabia at The Saudi National Bank – SNB

Title: Manager, Digital Forensics & Incident Response

Company: The Saudi National Bank – SNB

Location: Jeddah, Makkah, Saudi Arabia

Job Purpose

Manage digital forensics and incident response efforts to detect, contain, and remediate cyber threats, while strengthening SNB’s cybersecurity posture.

Key Accountabilities

  • Implement approved Information Security Risk IAM governance and compliance policies, processes, procedures and instructions to subordinates and monitor their adherence so that work is carried out in a controlled manner.
  • Adhere to the Bank’s AML/CTF policy, guidelines and all SAMA’s regulations relating to account opening, KYC and Customer Due Diligence.
  • Adhere to the Bank’s Cyber Security policies, and all SAMA regulations. Ensure to support SNB to comply with internal, national, and international Cyber Security controls and regulations.
  • Manage and coordinate SNB’s response to cyber incidents, ensuring timely containment, mitigation, and recovery.
  • Oversee breach scoping, response planning, and execution of eradication strategies in alignment with internal protocols and business priorities.
  • Ensure cross-functional collaboration during incidents, acting as the central escalation point.
  • Supervise the collection, preservation, and analysis of digital evidence across various environments
  • Guide the forensic team in identifying the nature, origin, and impact of incidents to support investigations and legal requirements.
  • Ensure that all findings and activities are properly documented and reported.
  • Oversee the efforts in malware analysis and reverse engineering to uncover behavior patterns, IOCs, and attack mechanisms.
  • Use findings to inform detection logic, prevention strategies, and threat intelligence enrichment.
  • Manage the development and implementation of automation workflows and SOAR playbooks to enhance efficiency and reduce manual intervention.
  • Ensure seamless orchestration across security platforms to improve response times and operational consistency.
  • Conduct and lead post-incident reviews to evaluate effectiveness, identify gaps, and drive continuous improvement in processes and capabilities.
  • Champion the development of response strategies that align with evolving threat landscapes and business needs.
  • Manage the incident response and forensics team, setting clear goals and performance expectations.
  • Foster a culture of accountability and collaboration across the security operations function.
  • Ensure all stakeholder communication during incidents is timely, accurate, and aligned with regulatory and business requirements.

Qualifications, Experience, Skills & Competencies

Education:

  • Bachelor's degree in CS, IT, IS or any related field; or an acceptable educational level accompanied by a strong banking experience.

Experience:

  • 6-8 years of Experience in the Identity and Access management or a related field

Skills & Competencies:

  • Knowledge of leading incident response, digital forensics, malware analysis, and threat mitigation programs.
  • Strong grasp of industry-standard IR methodologies (e.g., NIST, SANS) and their practical application across enterprise environments.
  • Proficient in guiding forensic investigations, ensuring proper evidence collection, preservation, and analysis while maintaining legal and compliance integrity.
  • Provides strong leadership and calm direction during high-pressure incidents, promoting resilience and structured response.

Upload your CV/resume or any other relevant file. Max. file size: 800 MB.