Overview
Manager, Digital Forensics & Incident Response Jobs in Jeddah, Makkah, Saudi Arabia at The Saudi National Bank – SNB
Title: Manager, Digital Forensics & Incident Response
Company: The Saudi National Bank – SNB
Location: Jeddah, Makkah, Saudi Arabia
Job Purpose
Manage digital forensics and incident response efforts to detect, contain, and remediate cyber threats, while strengthening SNB’s cybersecurity posture.
Key Accountabilities
- Implement approved Information Security Risk IAM governance and compliance policies, processes, procedures and instructions to subordinates and monitor their adherence so that work is carried out in a controlled manner.
- Adhere to the Bank’s AML/CTF policy, guidelines and all SAMA’s regulations relating to account opening, KYC and Customer Due Diligence.
- Adhere to the Bank’s Cyber Security policies, and all SAMA regulations. Ensure to support SNB to comply with internal, national, and international Cyber Security controls and regulations.
- Manage and coordinate SNB’s response to cyber incidents, ensuring timely containment, mitigation, and recovery.
- Oversee breach scoping, response planning, and execution of eradication strategies in alignment with internal protocols and business priorities.
- Ensure cross-functional collaboration during incidents, acting as the central escalation point.
- Supervise the collection, preservation, and analysis of digital evidence across various environments
- Guide the forensic team in identifying the nature, origin, and impact of incidents to support investigations and legal requirements.
- Ensure that all findings and activities are properly documented and reported.
- Oversee the efforts in malware analysis and reverse engineering to uncover behavior patterns, IOCs, and attack mechanisms.
- Use findings to inform detection logic, prevention strategies, and threat intelligence enrichment.
- Manage the development and implementation of automation workflows and SOAR playbooks to enhance efficiency and reduce manual intervention.
- Ensure seamless orchestration across security platforms to improve response times and operational consistency.
- Conduct and lead post-incident reviews to evaluate effectiveness, identify gaps, and drive continuous improvement in processes and capabilities.
- Champion the development of response strategies that align with evolving threat landscapes and business needs.
- Manage the incident response and forensics team, setting clear goals and performance expectations.
- Foster a culture of accountability and collaboration across the security operations function.
- Ensure all stakeholder communication during incidents is timely, accurate, and aligned with regulatory and business requirements.
Qualifications, Experience, Skills & Competencies
Education:
- Bachelor's degree in CS, IT, IS or any related field; or an acceptable educational level accompanied by a strong banking experience.
Experience:
- 6-8 years of Experience in the Identity and Access management or a related field
Skills & Competencies:
- Knowledge of leading incident response, digital forensics, malware analysis, and threat mitigation programs.
- Strong grasp of industry-standard IR methodologies (e.g., NIST, SANS) and their practical application across enterprise environments.
- Proficient in guiding forensic investigations, ensuring proper evidence collection, preservation, and analysis while maintaining legal and compliance integrity.
- Provides strong leadership and calm direction during high-pressure incidents, promoting resilience and structured response.