Oxyhealth Clinics — Riyadh, Saudi Arabia
Full-time · On-site · Mid-level (3–5 years' experience)
About the Role
You'll be the person who owns IT security and credential management across the clinic — from access controls and confidential document handling to day-to-day systems support. Twelve months in, we should have tighter access controls, documented security procedures, fewer recurring IT fire-drills, and the beginnings of practical AI tooling that makes clinical and administrative staff faster without putting data at risk.
What You'll Do
• Own account access, credentials, and permissions across clinic systems — provisioning, de-provisioning, and enforcing least-privilege access for staff.
• Safeguard confidential documents and patient data, including secure storage, controlled sharing, and audit trails for who accessed what.
• Monitor systems for security risks, respond to incidents, and keep antivirus, firewall, and endpoint protections current.
• Maintain core clinic IT infrastructure — networks, workstations, printers, business software (e.g. Google Workspace), and clinical software integrations.
• Write and maintain security procedures and documentation (password policy, device handling, data retention) so protection doesn't depend on one person's memory.
• Evaluate and pilot AI-powered tools for administrative or operational efficiency, with a clear eye on data privacy and what's safe to automate in a healthcare setting.
• Train staff on basic security hygiene — phishing awareness, password practices, device handling — so the whole clinic isn't the weak link.
What We're Looking For
Required
• 3–5 years of experience in IT support, systems administration, or cybersecurity, ideally including some exposure to healthcare or another regulated environment.
• Solid grasp of access control, credential management, and confidentiality practices for sensitive documents and data.
• Practical cybersecurity fundamentals — endpoint protection, network security basics, incident response, and security best practices (e.g. alignment with frameworks like ISO 27001 or NIST is a plus, not a requirement).
• Comfortable troubleshooting everyday IT issues — Windows/Google Workspace administration, networking, hardware — not just security-specific tools.
• Working familiarity with AI tools (e.g. Microsoft Copilot, Claude, ChatGPT or similar) and genuine interest in applying them responsibly to clinic operations.
• Comfortable being the person who says no to a shortcut when it puts data at risk — and can explain why in plain language.
Preferred
• Experience with healthcare-specific systems (EMR/EHR, dental or clinical imaging software) or handling patient data under privacy regulations.
• A security certification (Security+, CEH, or similar) or equivalent hands-on experience.
• Bachelor's degree in Computer Science, Information Security, or a related field — or equivalent practical experience.
• Arabic and English fluency.
How to Apply
Send your CV and a short note on your relevant experience to []APPLICATION EMAIL]. We review applications on a rolling basis.
me · On-site · Mid-level (3–5 years' experience)
As we grow, patient data, staff credentials, and clinical systems need someone who can be trusted to protect them end-to-end — and who's curious enough to help us use AI tools responsibly along the way. This is a hands-on role for someone who wants ownership over how a healthcare organization secures its information, not just a ticket queue to clear.
About Oxyhealth Clinics
Oxyhealth Clinics is a healthcare provider based in Riyadh, Saudi Arabia, delivering clinical services across multiple specialties. As our patient base and staff grow, so does the volume of sensitive data we're responsible for — medical records, financial information, and internal systems that need to stay secure, compliant, and running smoothly.
Send your cv at [email protected]