SOC Analysis

1 week ago


Doha, Qatar Novel Overseas Corporation Full time

**Job description**

**SOAR Engineer Role Profile Position**:
**SOAR Engineer Location: Doha, the State of Qatar**

**Total Experience: A minimum of 3-years’ experience in SOAR implementation and support, or a minimum of 5-years or more experience in a cyber security engineering role**.

**Description**:
**Required Skills**:

- Strong knowledge of frameworks such as Cyber Kill Chain, the MITRE ATT&CK Framework and Adversary Tools Tactics/Techniques and Procedures
- Understanding of classic and emerging threat actor tactics, techniques and procedures in both pre-exploitation and post-exploitation phases of attack lifecycles
- Experience using Python for the purpose of automating security operations and incident response processes.
- Strong understanding of security architecture, tool integration, API development and automation.
- Deep understanding of Incident Response processes (Detection, Investigation, and response).
- Understanding of common SOC and SOAR processes and workflows.
- Working knowledge of network TCP/IP protocols.
- Experience using ELK and a working knowledge of SIEM tools, EDR/NDR/XDR tools, and other security solutions.
- Exceptional written and verbal communication skills.

**Educational Qualifications**:

- Relevant Degree Additionally, one or more relevant industry certification such as GCIH or vendor certification Swimlane Certified SOAR Administrator (SCSA) Swimlane Certified SOAR Developer (SCSD).

**Desirable**:

- Familiarity and experience working within the region
- Experience working as part of a MSSP or MDR provider
- Experience working with continuous operations (24/7)
- Experience with Security Orchestration, Automation and Response (SOAR) technologies
- Experience with Python scripting language for automation and Working knowledge of REST APIs, JSON, HTML/CSS, JavaScript, XML
- Experience with operating system internals for both Linux and Windows platforms.
- Knowledge of networking and network protocols (TCP/UDP, DNS, HTTP/HTTPS, SSH, FTP, etc.

)
- Experience with log management platforms (Elasticsearch/Logstash/Kibana - ELK / Elastic Stack) and SIEM tools
- Experience with network and host-based monitoring and detection tools e.g., EDR/NDR/XDR solutions.

**Roles and Responsibilities**:

- Act as a Technical Subject Matter Expert, be the primary point of contact for Security Automation, Orchestration, Playbooks, Python Automation, API-based automation, Incident Response lifecycle automation, and Security Automation
- Develop, implement, and execute standard procedures for SOAR platform administration.
- Design, Deployment, and Maintenance of SOAR platforms (including content management, change management, version/patch management, and lifecycle management).
- Work closely with the Security Operations Center (SOC) and Security Engineering teams to improve existing automation and deliver resilient security solutions
- Assess, design, and improve SOC processes and workflows with a focus on integrating automation through Security Orchestration, Automation and Response (SOAR) tools.
- Implement SOC automation and ensure continued compatibility with existing detection and response tools
- Integrate new sources and build playbooks to properly triage and respond to security incidents while reducing the time needed to analyze each event.
- Develop custom scripts to automate current detection and response workflows.
- Build pipelines to enrich logs and alert results to provide a comprehensive view for SOC analysts.
- Operate and help mature a SOC playbook, workflow automations and use cases
- Assist with client setup transition and onboarding, serve as primary point of contact for Managed Security Service client.

**Salary**: QAR6,000.00 - QAR13,000.00 per month

Ability to commute/relocate:

- Doha: Reliably commute or planning to relocate before starting work (required)


  • SOC Analysis

    2 weeks ago


    Doha, Baladīyat ad Dawḩah, Qatar Novel Overseas Corporation Full time

    Job descriptionSOAR Engineer Role Profile Position:SOAR Engineer Location: Doha, the State of QatarTotal Experience: A minimum of 3-years' experience in SOAR implementation and support, or a minimum of 5-years or more experience in a cyber security engineering role.Description:Required Skills: Strong knowledge of frameworks such as Cyber Kill Chain, the...


  • Doha, Baladīyat ad Dawḩah, Qatar MALOMATIA Full time

    Act as a Technical Subject Matter Expert, be the primary point of contact for SecurityAutomation, Orchestration, Playbooks, Python Automation, API-based automation, IncidentResponse lifecycle automation, Security AutomationDevelop, implement, and execute standard procedures for SOAR platform administration.Design, Deployment and Maintenance of SOAR platforms...

  • SOC Analysis Associate

    2 months ago


    Doha, Qatar MALOMATIA Full time

    Act as a Technical Subject Matter Expert, be the primary point of contact for SecurityAutomation, Orchestration, Playbooks, Python Automation, API-based automation, IncidentResponse lifecycle automation, Security AutomationDevelop, implement, and execute standard procedures for SOAR platform administration.Design, Deployment and Maintenance of SOAR platforms...


  • Doha, Baladīyat ad Dawḩah, Qatar MALOMATIA Full time

    Act as a Technical Subject MatterExpert, be the primary point of contact forSecurityAutomation, Orchestration, Playbooks,Python Automation, API-based automation,IncidentResponse lifecycle automation,Security AutomationDevelop, implement, andexecute standard procedures for SOAR platformadministration.Design, Deployment andMaintenance of SOAR platforms...

  • Senior SOC Analyst

    2 weeks ago


    Doha, Qatar Hot & Cold International Consulting Full time

    Senior SOC Analyst Key Responsibilities - Monitoring and analysis of cyber security events with the use of (SIEM) and other tools. - SOAR experience to Design and configure automation and workbooks. - SIEM as MS sentinel and Q-radar and other tools use case management (alerts and reports) as per industry best practices. - Monitor EDR to detect and...

  • Senior SOC Engineer

    2 weeks ago


    Doha, Qatar Techpace Full time

    We are seeking a talented Tier 2 SOC Engineer to join our growing security operations team. As a Tier 2 SOC Engineer, you will be responsible for investigating and resolving security incidents, conducting forensic analysis, and providing technical support to Tier 1 engineers. You will collaborate with cross-functional teams to identify vulnerabilities,...

  • Senior SOC Engineer

    2 weeks ago


    Doha, Baladīyat ad Dawḩah, Qatar Techpace Full time

    We are seeking a talented Tier 2 SOC Engineer to join our growing security operations team. As a Tier 2 SOC Engineer, you will be responsible for investigating and resolving security incidents, conducting forensic analysis, and providing technical support to Tier 1 engineers. You will collaborate with cross-functional teams to identify vulnerabilities,...


  • Doha, Qatar Al Zubarah Information Technology Full time

    _**Role Overview**:_ The SOC Lead Detection and DFIR (Digital Forensics and Incident Response) is responsible for leading a team of cybersecurity analysts in detecting and responding to security incidents. This role involves overseeing the day-to-day operations of the Security Operations Center (SOC), managing incident response activities, and conducting...


  • Doha, Qatar Energy Jobline Full time

    We are looking for a SOC ArchitectEnergy Jobline would like to introduce the role of SOC Architect based in San Jose, CA, USA. If you think you are a suitable match for this role, please hit the apply button for more details.Define the architecture for an LLM SOC to meet specified performance requirements,Partition design into hardware and software. Lead...


  • Doha, Baladīyat ad Dawḩah, Qatar Google Full time

    Preferred qualifications: Experience with systemC.Experience with SoC cycles in SoC performance modeling and analysis.Knowledge of caches, mesh fabric, coherency, memory controllers, DRAM, PCIe, CPU, and/or GPU.Ability to read, debug, and modify RTL and work with design flow, tools, and verilog language.


  • Doha, Baladīyat ad Dawḩah, Qatar Al Zubarah Information Technology Full time

    _Role Overview:_The SOC Lead Detection and DFIR (Digital Forensics and Incident Response) is responsible for leading a team of cybersecurity analysts in detecting and responding to security incidents. This role involves overseeing the day-to-day operations of the Security Operations Center (SOC), managing incident response activities, and conducting digital...


  • Doha, Qatar MBS HR consulting Full time

    Acknowledge, analyze, and validate incidents triggered from correlated events through SIEM solution. - Collection of necessary logs that could help in the incident containment and security investigation. - Escalate validated and confirmed incidents to SOC Analyst. - Undertake first stages of false positive and false negative analysis. - Track and update...


  • Doha, Qatar Google Full time

    Preferred qualifications: Experience with systemC.Experience with SoC cycles in SoC performance modeling and analysis.Knowledge of caches, mesh fabric, coherency, memory controllers, DRAM, PCIe, CPU, and/or GPU.Ability to read, debug, and modify RTL and work with design flow, tools, and verilog language.

  • L1 SOC Analyst

    2 weeks ago


    Doha, Baladīyat ad Dawḩah, Qatar Virtusa Full time

    JobDescriptionMonitoring and analysis of cybersecurity events using Microsoft SentinelSIEM.Monitor internal and external threats,examine logs, events, and alerts generated by multiple platformsfor anomalous activity.Development andexecution of SOC and standard operating procedures(SOP).Triage security events and incidents,detect anomalies, and report/direct...

  • L1 SOC Analyst

    1 month ago


    Doha, Qatar Virtusa Full time

    Job Description Monitoring and analysis of cyber security events using Microsoft Sentinel SIEM.Monitor internal and external threats, examine logs, events, and alerts generated by multiple platforms for anomalous activity.Development and execution of SOC and standard operating procedures (SOP).Triage security events and incidents, detect anomalies, and...

  • L1 SOC Analyst

    2 weeks ago


    Doha, Baladīyat ad Dawḩah, Qatar Virtusa Full time

    Job Description Monitoring and analysis of cyber security events using Microsoft Sentinel SIEM.Monitor internal and external threats, examine logs, events, and alerts generated by multiple platforms for anomalous activity.Development and execution of SOC and standard operating procedures (SOP).Triage security events and incidents, detect anomalies, and...

  • L1 SOC Analyst

    4 weeks ago


    Doha, Qatar Virtusa Full time

    Job Description Monitoring and analysis of cyber security events using Microsoft Sentinel SIEM.Monitor internal and external threats, examine logs, events, and alerts generated by multiple platforms for anomalous activity.Development and execution of SOC and standard operating procedures (SOP).Triage security events and incidents, detect anomalies, and...


  • Doha, Baladīyat ad Dawḩah, Qatar Google Full time

    Preferredqualifications:Experience withsystemC.Experience with SoC cycles in SoCperformance modeling and analysis.Knowledge ofcaches, mesh fabric, coherency, memory controllers, DRAM, PCIe,CPU, and/or GPU.Ability to read, debug, andmodify RTL and work with design flow, tools, and veriloglanguage.


  • Doha, Qatar Cartafella Analytics Full time

    We are looking SOC Analyst-L1 for Qatar. **Description** Monitor the security events detected by the IBM QRadar SIEM system and identify the risks, threats, and attacks. - Analyze the security events to determine the root cause of the security incidents. - Respond to security incidents by providing remediation guidance and recommendations. - Develop and...


  • Doha, Qatar Qatar Airways Full time

    **About Role** **Role and Responsibilities** - Must be able to lead a 24x7 team of SOC Analysts and Senior Analysts. Also you must be able to participate in rotation on call schedule. - Must be able to work collaboratively with Incident Response and Cyber Security Testing teams. Having the ability to work outside of normal working hours as required due to...