SOC Analysis
7 months ago
**Job description**
**SOAR Engineer Role Profile Position**:
**SOAR Engineer Location: Doha, the State of Qatar**
**Total Experience: A minimum of 3-years’ experience in SOAR implementation and support, or a minimum of 5-years or more experience in a cyber security engineering role**.
**Description**:
**Required Skills**:
- Strong knowledge of frameworks such as Cyber Kill Chain, the MITRE ATT&CK Framework and Adversary Tools Tactics/Techniques and Procedures
- Understanding of classic and emerging threat actor tactics, techniques and procedures in both pre-exploitation and post-exploitation phases of attack lifecycles
- Experience using Python for the purpose of automating security operations and incident response processes.
- Strong understanding of security architecture, tool integration, API development and automation.
- Deep understanding of Incident Response processes (Detection, Investigation, and response).
- Understanding of common SOC and SOAR processes and workflows.
- Working knowledge of network TCP/IP protocols.
- Experience using ELK and a working knowledge of SIEM tools, EDR/NDR/XDR tools, and other security solutions.
- Exceptional written and verbal communication skills.
**Educational Qualifications**:
- Relevant Degree Additionally, one or more relevant industry certification such as GCIH or vendor certification Swimlane Certified SOAR Administrator (SCSA) Swimlane Certified SOAR Developer (SCSD).
**Desirable**:
- Familiarity and experience working within the region
- Experience working as part of a MSSP or MDR provider
- Experience working with continuous operations (24/7)
- Experience with Security Orchestration, Automation and Response (SOAR) technologies
- Experience with Python scripting language for automation and Working knowledge of REST APIs, JSON, HTML/CSS, JavaScript, XML
- Experience with operating system internals for both Linux and Windows platforms.
- Knowledge of networking and network protocols (TCP/UDP, DNS, HTTP/HTTPS, SSH, FTP, etc.
)
- Experience with log management platforms (Elasticsearch/Logstash/Kibana - ELK / Elastic Stack) and SIEM tools
- Experience with network and host-based monitoring and detection tools e.g., EDR/NDR/XDR solutions.
**Roles and Responsibilities**:
- Act as a Technical Subject Matter Expert, be the primary point of contact for Security Automation, Orchestration, Playbooks, Python Automation, API-based automation, Incident Response lifecycle automation, and Security Automation
- Develop, implement, and execute standard procedures for SOAR platform administration.
- Design, Deployment, and Maintenance of SOAR platforms (including content management, change management, version/patch management, and lifecycle management).
- Work closely with the Security Operations Center (SOC) and Security Engineering teams to improve existing automation and deliver resilient security solutions
- Assess, design, and improve SOC processes and workflows with a focus on integrating automation through Security Orchestration, Automation and Response (SOAR) tools.
- Implement SOC automation and ensure continued compatibility with existing detection and response tools
- Integrate new sources and build playbooks to properly triage and respond to security incidents while reducing the time needed to analyze each event.
- Develop custom scripts to automate current detection and response workflows.
- Build pipelines to enrich logs and alert results to provide a comprehensive view for SOC analysts.
- Operate and help mature a SOC playbook, workflow automations and use cases
- Assist with client setup transition and onboarding, serve as primary point of contact for Managed Security Service client.
**Salary**: QAR6,000.00 - QAR13,000.00 per month
Ability to commute/relocate:
- Doha: Reliably commute or planning to relocate before starting work (required)
-
Engineer - SOC Analysis (L2)
3 days ago
Doha, Qatar Tradify Services Full timea cybersecurity services provider with a focus on high-profile, high-threat private and public-sector customers who demand experience and proven security models to protect their data. we are seeking a SOC L2 Analyst Engineer who has experience in SOC Operations, Log Analysis, Incident Response and Triage. a motivated, career and customer-oriented SOC...
-
SOC Analyst
1 week ago
Doha, Qatar Mekdam Technical Services Full timeRole - Information Security Analyst (SOC Analyst) for a Long-term contract opportunity (Secondment through Mekdam) with Qatar base Infrastructure company. **Job Purpose Statement**: - Responsible for acting on alerts, events, and incidents escalated from the Level 1/2 Analyst. - Maintain a strong understanding of network protocols, security appliances, and...
-
SOC Operator
3 months ago
Doha, Qatar Proztec Full time**Job Title**: SOC Operator (SOC L1 Analyst) **Reports to**: SOC Manager **Department**: Information Technology Services **Job Purpose** The SOC L1 Analyst plays a crucial role in monitoring and protecting both IT and Operational Technology (OT) environments, providing 24/7 support to detect and address security threats. The main tasks include initial...
-
SOC Senior Analyst
3 months ago
Doha, Qatar Proztec Full time**Job Title**: SOC Senior Analyst **Department**: Information Technology Services **Job Purpose** The SOC Senior Analyst (L3) is responsible for leading the investigation and response to complex security incidents, particularly those affecting Operational Technology (OT) systems like SCADA, ICS, and PLCs. You’ll be the go-to expert for handling major...
-
Senior SOC Analyst
7 months ago
Doha, Qatar Hot & Cold International Consulting Full timeSenior SOC Analyst Key Responsibilities - Monitoring and analysis of cyber security events with the use of (SIEM) and other tools. - SOAR experience to Design and configure automation and workbooks. - SIEM as MS sentinel and Q-radar and other tools use case management (alerts and reports) as per industry best practices. - Monitor EDR to detect and...
-
Senior SOC Analyst
4 weeks ago
Doha, Qatar Mannai Corporation Full time**Role**: Senior SOC Analyst **- Monitoring and analysis of cyber security events with the use of (SIEM) and other tools. - SOAR experience to Design and configure automation and workbooks. - SIEM as MS sentinel and Q-radar and other tools use case management (alerts and reports) as per industry best practices. - Monitor EDR to detect and investigate...
-
Senior SOC Engineer
7 months ago
Doha, Qatar Techpace Full timeWe are seeking a talented Tier 2 SOC Engineer to join our growing security operations team. As a Tier 2 SOC Engineer, you will be responsible for investigating and resolving security incidents, conducting forensic analysis, and providing technical support to Tier 1 engineers. You will collaborate with cross-functional teams to identify vulnerabilities,...
-
SOC Lead Detection and Dfir
7 months ago
Doha, Qatar Al Zubarah Information Technology Full time_**Role Overview**:_ The SOC Lead Detection and DFIR (Digital Forensics and Incident Response) is responsible for leading a team of cybersecurity analysts in detecting and responding to security incidents. This role involves overseeing the day-to-day operations of the Security Operations Center (SOC), managing incident response activities, and conducting...
-
SOC Analyst Level 2
2 weeks ago
Doha, Qatar JOB HUB GLOBAL Full time**Job Title**: SOC Analyst-Level 2 Our client, a global engineering technology company is committed to delivering innovative cybersecurity solutions that protect their clients’ critical infrastructure. Join the dynamic team as **SOC Analyst **Job Summary**: We are seeking a skilled SOC Analyst -Level 2 to join our dynamic cybersecurity team. In this...
-
SOC Analyst Level 1
2 weeks ago
Doha, Qatar JOB HUB GLOBAL Full time**Job Title**: SOC Analyst - L1 Our client, a global engineering technology company is committed to delivering innovative cybersecurity solutions that protect their clients’ critical infrastructure. Join the dynamic team as **SOC Analyst **Job Summary**: We are seeking a motivated **Level 1 SOC Analyst** to join our Security Operations Center (SOC) team....
-
SOC Analyst-l1 for QAtar
7 months ago
Doha, Qatar Cartafella Analytics Full timeWe are looking SOC Analyst-L1 for Qatar. **Description** Monitor the security events detected by the IBM QRadar SIEM system and identify the risks, threats, and attacks. - Analyze the security events to determine the root cause of the security incidents. - Respond to security incidents by providing remediation guidance and recommendations. - Develop and...
-
Senior Engineer
3 days ago
Doha, Qatar Novel Overseas Corporation Full timeRoles and Responsibilities: - Act as Subject Matter Expert (SME) on OT cyber security related issues providing advice and support to Clients and the business as necessary - Provide On-Call support to identify and manage cybersecurity incidents - Assists in the development and knowledge transfer to team members - Serves as the escalation point for security...
-
Cyber Security Manager
6 months ago
Doha, Qatar Qatar Airways Full time**About Role** **Role and Responsibilities** - Must be able to lead a 24x7 team of SOC Analysts and Senior Analysts. Also you must be able to participate in rotation on call schedule. - Must be able to work collaboratively with Incident Response and Cyber Security Testing teams. Having the ability to work outside of normal working hours as required due to...
-
Analyst Software Soc
7 days ago
Doha, Qatar Ooredoo Group of Companies Full time**About Us**: Ooredoo is a dynamic global Telecommunications player operating in 10 countries serving more than 138 million customers. Ooredoo Qatar employs approximately 1,600 people driving Ooredoo to be the number one choice for world-class communications services in Qatar, and it is a team that you can be part of! **About the Business Unit**: The...
-
Cyber Security Analyst
7 months ago
Doha, Qatar Qatar Airways Full timeAbout Role Role and Responsibilities - Hands-on administration of the various cyber security products in Qatar Airways such as Distributed Denial of Service (DDOS) appliances, Intrusion Prevention Systems (IPS), Web Application Firewalls (WAF), Endpoint Detection and Response (EDR) solutions, Application Whitelisting Solutions etc. - Carry out Malware...
-
Senior Security Engineer Developer
7 months ago
Doha, Qatar Techpace Full timeWe are seeking a skilled and innovative SOC Developer to join our dynamic security operations team. As a SOC Developer, you will be responsible for developing and maintaining security operations center (SOC) tools, automating SOC processes, and creating use cases and parsers for log analysis. You will collaborate with cross-functional teams to enhance SOC...
-
Associate - SOC Analysis (L2) - Elastic Endgame
2 weeks ago
Doha, Qatar People Dynamics Full timeIncident Handling: experience conducting or managing incident response for organizations, investigating targeted threats such as the Advanced Persistent Threat, Organized Crime, and Hacktivists. - Computer Forensic Analysis: a background using a variety of forensic analysis tools in incident response investigations to determine the extent and scope of...
-
L1 Analyst
4 months ago
Doha, Qatar Swan Global WLL Full time**L1 Analyst** **Job Summary**: The Level 1 Incident Monitoring and Analysis Specialist is responsible for real-time monitoring and initial analysis of security events. This role serves as the first line of defense in identifying potential security incidents and plays a crucial part in the security operations center (SOC) by ensuring that incidents are...
-
Senior Cybersecurity Expert
7 months ago
Doha, Qatar Techpace Full timeJob Description: We are seeking a highly skilled and experienced SOC Tier 4 Cybersecurity Expert to join our esteemed security operations team. As a Tier 4 Cybersecurity Expert, you will be responsible for providing advanced cybersecurity expertise, overseeing complex security operations, and guiding the SOC team in managing and responding to sophisticated...
-
Incident Response Analyst
1 week ago
Doha, Qatar ENT Full timeThe Incident Response Analyst is responsible for handing security incidents received/escalated from the SOC Analyst and performs a business impact analysis on the security incident. This function may add contextual information to the security incident, perform additional analysis and based on the business impact will recommend the response actions and...