Senior SOC Analyst
الوصف الوظيفي
Join Our Cybersecurity Team as a Senior SOC Analyst in Saudi Arabia
We are seeking a highly skilled and proactive Senior SOC Analyst to join our dynamic Cybersecurity team in the Kingdom of Saudi Arabia. As a market leader in IT services, we are committed to expanding our capabilities and strengthening our security posture against evolving cyber threats. In this critical role, you will play a pivotal part in maturing our detection capabilities, enhancing threat intelligence integration, and ensuring robust incident response readiness. If you are passionate about cybersecurity and possess the expertise to proactively identify and mitigate sophisticated adversaries, we invite you to apply and take your career to the next level.
Key Responsibilities
The Senior SOC Analyst will be responsible for a wide range of critical functions to safeguard our organization’s digital assets. Your core duties will include:
- Continuous Security Monitoring: Vigilantly monitor security alerts, network traffic, and system logs to detect suspicious activities, potential breaches, and anomalous behavior that may indicate a security incident.
- Proactive Threat Hunting: Conduct advanced threat hunting operations to identify hidden threats, vulnerabilities, and adversary tactics that may evade traditional security controls. Utilize your expertise to uncover sophisticated attack vectors before they escalate into full-blown incidents.
- Incident Response Support: Collaborate closely with the incident response team to provide in-depth technical analysis of detected threats. Assist in the containment, eradication, and recovery phases to minimize impact and restore normal operations swiftly.
- SIEM Management and Optimization: Oversee the configuration, management, and fine-tuning of Security Information and Event Management (SIEM) platforms to enhance detection accuracy, reduce false positives, and improve overall security visibility across the enterprise.
- Comprehensive Log Analysis: Perform detailed log analysis from diverse sources, including firewalls, servers, endpoints, and cloud environments, to reconstruct the timeline of security incidents and identify root causes.
- Detailed Reporting and Documentation: Prepare and present comprehensive technical reports on detected threats, emerging trends, and the effectiveness of current security measures. Deliver actionable insights to management to inform strategic decision-making and resource allocation.
- Regulatory Compliance Assurance: Ensure all detection activities and security operations strictly adhere to Saudi Arabian cybersecurity regulations, including guidelines from the National Cybersecurity Authority (NCA) and the Saudi Central Bank (SAMA) frameworks.
Required Skills & Qualifications
To excel in this role, candidates must meet the following criteria:
- A Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a closely related field from an accredited institution.
- Saudi nationality is required.
- Minimum of 2 to 4 years of specialized experience in Security Operations Center (SOC) environments, with a proven track record in Level 2 (L2) or Level 3 (L3) SOC responsibilities.
- Advanced proficiency in SIEM and Endpoint Detection and Response (EDR) solutions, such as Splunk Enterprise Security, CrowdStrike, Microsoft Sentinel, or equivalent platforms.
- Expert-level knowledge of the MITRE ATT&CK framework to map and detect adversary behavior, tactics, techniques, and procedures (TTPs).
- Strong foundation in memory forensics, network forensics, and log correlation techniques to investigate and analyze complex security incidents.
- Proficiency in scripting languages such as Python or PowerShell to automate repetitive tasks, develop custom detection rules, and enhance operational efficiency.
Preferred Certifications
While not mandatory, the following professional certifications are highly valued and will significantly enhance your candidacy:
- GCIA (GIAC Certified Intrusion Analyst) or GCIH (GIAC Certified Incident Handler)
- GCFA (GIAC Certified Forensic Analyst)
- CHFI (Computer Hacking Forensic Investigator)
- OSCP (Offensive Security Certified Professional) – Demonstrates a deep understanding of attacker methodologies and enhances threat detection capabilities.
- CCTHP (Certified Cyber Threat Hunting Professional)
Why Join Us?
By becoming a part of our team, you will have the opportunity to work in a collaborative and innovative environment where your expertise is valued and your contributions make a tangible impact. We offer a platform for continuous learning, professional growth, and the chance to work alongside industry leaders in the field of cybersecurity. Whether you are an experienced SOC professional looking to take the next step in your career or a passionate cybersecurity enthusiast eager to expand your skill set, this role presents an exciting opportunity to elevate your career in the realm of IT security.
How to Apply
If you are ready to take on this challenging and rewarding role, please submit your updated CV to [email protected]. We look forward to reviewing your application and exploring how your skills and experience can contribute to our mission of delivering world-class IT services and cybersecurity solutions.
يمكن أن يرتكب الذكاء الاصطناعي أخطاءً.