Role at a glance
- Job function
-
Software Engineering & IT Cybersecurity
- Salary
- Not Disclosed
- Location
- Riyadh
- Work arrangement
- On-site
- Employment
- Full-time
Spotted an issue?
We’ll check it against the original posting.
Role Summary
The Security Delivery Specialist delivers and enhances Security Operations Center capabilities across Incident Response, SIEM, EDR and NDR. The role combines hands-on security operations and detection work with technical leadership, stakeholder communication and reporting.
What You'll Do
- Develop and improve Incident Response plans, SOC policies, procedures and operational playbooks, and support SOC process maturity.
- Lead or support security-event and incident detection, investigation, containment and response, including technical guidance during...
- Develop, tune and optimize SIEM, EDR and NDR detection and correlation rules using security telemetry.
- Administer EDR and NDR technologies, including endpoint-agent deployment and maintenance, policy configuration, platform integration and...
- Produce cyber intelligence and security reports that communicate technical findings, risks and recommendations to technical and...
- Provide technical leadership and coaching, collaborate across security and technology teams, and participate in on-call or after-hours...
Generated from the employer's posting. Verify important details before applying.
View full postingQualifications
Strong experience in Security Operations and Incident Response; hands-on experience with SIEM, EDR and NDR technologies, detection-rule development and tuning, endpoint-agent deployment and maintenance, and integrating security platforms. Requires knowledge of security-event analysis, investigation, detection and response; analytical, troubleshooting, organizational, leadership, communication, documentation and reporting skills; and ability to provide on-call support when required.
Preferred
- GIAC Certified Incident Handler (GCIH)
- GIAC Continuous Monitoring Certification (GMON)
- GIAC Certified Forensic Analyst (GCFA)
- Equivalent industry-recognized cybersecurity, SOC, digital forensics or Incident Response certifications
- Experience within large-scale enterprise Security Operations Centers
- Exposure to threat hunting, cyber threat intelligence and detection engineering
- Experience supporting complex or managed cybersecurity environments
Original job description
Content provided by the employer
Original job description
Content provided by the employer
Join Accenture Security and help organizations strengthen their ability to detect, investigate and respond to sophisticated cyber threats.
As a Security Delivery Specialist, you will serve as a senior cybersecurity practitioner responsible for delivering and enhancing Security Operations Center capabilities across Incident Response, SIEM, Endpoint Detection and Response (EDR), and Network Detection and Response (NDR).
You will combine hands-on technical expertise with leadership and stakeholder management, guiding security teams through complex investigations, improving detection capabilities, and helping mature cyber defense processes and technologies.
What You’ll Do
Incident Response & SOC Operations
- Develop, maintain and continuously improve Incident Response plans, SOC policies, processes, procedures and operational playbooks.
- Lead and support the detection, investigation, containment and response to cybersecurity events and incidents.
- Perform detailed analysis of security events and provide technical guidance to analysts and other security team members.
- Support the development and continuous maturity of Cybersecurity Operations Center processes and procedures.
- Provide technical leadership during complex incidents, investigations and escalations.
- Participate in on-call and after-hours security support when required.
SIEM & Detection Engineering
- Work closely with SIEM engineers and other cybersecurity teams to develop, refine and optimize security correlation rules.
- Analyze security telemetry and events to identify suspicious activity, attack patterns and potential threats.
- Develop and tune custom correlation and detection rules leveraging SIEM, EDR and NDR telemetry.
- Identify opportunities to enhance security detection coverage and monitoring effectiveness.
- Support the integration of endpoint, network and other security technologies with enterprise SIEM platforms.
EDR Administration
- Administer and optimize enterprise Endpoint Detection and Response (EDR) technologies.
- Deploy, upgrade and maintain EDR agents across Windows, macOS and Linux environments.
- Monitor endpoint agent health and troubleshoot systems that are not reporting as expected.
- Develop, maintain and optimize EDR security policies and configurations.
- Integrate EDR technologies with SIEM and other cybersecurity platforms.
- Periodically review EDR configurations and recommend enhancements to strengthen endpoint detection and response capabilities.
- Coordinate and manage technical support cases with EDR technology vendors as required.
NDR Administration
- Administer and optimize Network Detection and Response (NDR) technologies.
- Develop, maintain and enhance NDR policies and configurations.
- Integrate NDR technologies with SIEM and the broader security technology ecosystem.
- Develop custom correlation rules utilizing EDR and NDR security telemetry.
- Review existing NDR configurations and identify potential improvements and enhancements.
- Troubleshoot platform issues and coordinate vendor support through resolution.
Cyber Intelligence, Leadership & Reporting
- Produce clear, actionable cyber intelligence and security reports communicating technical findings, risks and recommendations.
- Translate complex security issues for audiences ranging from security practitioners to non-technical business stakeholders and senior management.
- Provide technical leadership, coaching and guidance to cybersecurity team members.
- Collaborate effectively across SOC, infrastructure, network, application and broader security teams.
- Communicate technical and strategic cybersecurity matters clearly to stakeholders at different organizational levels.
What You’ll Need
- Strong experience in Security Operations and Incident Response.
- Experience developing or maintaining Incident Response plans and SOC policies, procedures and processes.
- Strong hands-on experience with Security Information and Event Management (SIEM) technologies.
- Experience developing, tuning or refining security correlation and detection rules.
- Hands-on expertise administering EDR and NDR technologies.
- Experience deploying and maintaining endpoint security agents across Windows, macOS and Linux.
- Experience integrating EDR/NDR platforms with SIEM and other security technologies.
- Strong knowledge of security-event analysis, investigation, detection and response.
- Strong analytical, troubleshooting and organizational capabilities.
- Ability to technically lead teams and provide guidance during complex cybersecurity investigations.
- Excellent verbal and written communication skills, with the ability to engage both technical and non-technical stakeholders.
- Strong documentation and security-reporting capabilities.
- Ability to participate in on-call or after-hours support when required.
Bonus Points If You Have
- GIAC Certified Incident Handler (GCIH)
- GIAC Continuous Monitoring Certification (GMON)
- GIAC Certified Forensic Analyst (GCFA)
- Equivalent industry-recognized cybersecurity, SOC, digital forensics or Incident Response certifications.
- Experience within large-scale enterprise Security Operations Centers.
- Exposure to threat hunting, cyber threat intelligence and detection engineering.
- Experience supporting complex or managed cybersecurity environments.
About Accenture
Accenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services—creating tangible value at speed and scale. We are a talent- and innovation-led company with approximately 791,000 people serving clients in more than 120 countries. Technology is at the core of change today, and we are one of the world’s leaders in helping drive that change, with strong ecosystem relationships. We combine our strength in technology and leadership in cloud, data and AI with unmatched industry experience, functional expertise and global delivery capability. Our broad range of services, solutions and assets across Strategy & Consulting, Technology, Operations, Industry X and Song, together with our culture of shared success and commitment to creating 360° value, enable us to help our clients reinvent and build trusted, lasting relationships. We measure our success by the 360° value we create for our clients, each other, our shareholders, partners and communities.Visit us at www.accenture.com
Equal Employment Opportunity Statement
We believe that no one should be discriminated against because of their differences. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, sexual orientation, gender identity or expression, marital status, citizenship status or any other basis as protected by applicable law. Our rich diversity makes us more innovative, more competitive, and more creative, which helps us better serve our clients and our communities.
About the company
Accenture
Large Enterprise
Accenture is a global professional services company that specializes in providing consulting, technology, and outsourcing services. With a diverse range of industries served, including financial services, healthcare, and telecommunications, Accenture leverages advanced technologies and data analytics to help organizations improve their performance and drive innovation. Committed to sustainable progress, the company emphasizes its dedication to inclusivity, digital transformation, and building a more sustainable future for its clients and communities. With a presence in over 120 countries, Accenture is known for its expertise in integrating cutting-edge solutions that address complex business challenges.