SOC L2
2 weeks ago
The SOC Analyst will work on multiple Solutions include SIEM, SOAR, Log management, EDR and vulnerability management solutions and possibly other Security components to investigate and response to security related incidents and alerts.
**Roles and Responsibilities**
- Triage and Investigate the assigned Incidents.
- Create incident reports Include all the investigation steps, lessons learned and recommended actions.
- Modify the use cases for false positive incidents.
- Create and modify use cases, dashboards and reports.
- Threat hunting.
- Integrating with threat intelligence feeds.
- Evaluating security products.
- Vulnerability assessment and penetration testing.
- Creating and modifying Runbooks for L1 and NOC then follow up on their execution.
- Develop and write reports that analyze the Threat and IoCs with impact and recommended actions.
- Provide communication and escalation throughout the incident per the SOC guidelines.
- Communicates directly with the data asset owners and business response plan owners during high severity incidents.
- Performs analysis of log files from different log sources.
- Responsible for support issues from beginning to end and follow the documented escalation procedures.
- Manages and assures threat feeds are received, aggregated, reviewed, and acted upon accordingly.
**Experience and Qualifications**:
- 4+ years of hands on experience in Information Security domain.
- 3+ years of experience in SOC NOC environments.
- Expert knowledge in in SIEM solutions:
- Creating use cases, dashboards, reports.
- Integrating with threat intelligence feeds.
- Running complex queries.
- Advanced hands on experience on vulnerability assessment and penetration testing.
- Advanced knowledge about network attacks such as DoS and their countermeasures.
- Advanced knowledge about Web Application Attacks and their countermeasures.
- Advanced knowledge about hacking tools and their capabilities such as NMAP, Metasploit, etc.
- Advanced Scripting knowledge for configuring automation.
- Advanced knowledge about attack kill chain and incident response procedures.
- Advanced Knowledge about Windows and Linux/Unix OSes.
- Moderate Knowledge about forensic Investigation
- Strong analytical skills which is used in threat hunting and in incident investigation.
**Good to have**:
- +6 Years in Security / +4 years in SOC Operation.
- GIAC Certified Incident Handler (GCIH)
- SANS FOR508 Advanced Digital Forensics, Incident Response, and threat hunting (GCFA).
- SANS FOR610 Reverse Engineering Malware : Malware Analysis Tools and Techniques (GREM).
- OSCP.
- University degree in Computer Science/ Information Technology from a recognized university
**Job Types**: Full-time, Permanent
**Salary**: QAR15,000.00 - QAR17,000.00 per month
**Education**:
- Bachelor's (required)
**Experience**:
- hands-on in Information Security domain.: 4 years (required)
- SOC NOC environments: 3 years (required)
- SIEM solutions: 3 years (required)
**Language**:
- English (required)
License/Certification:
- GIAC Certified Incident Handler (GCIH) (preferred)
- SANS FOR508 Advanced Digital Forensics, (GCFA) (preferred)
- SANS FOR610 Reverse Engineering Malware (GREM) (preferred)
- OSCP (preferred)
-
Consultant - SOC Analyst L2
1 week ago
Doha, Qatar People Dynamics Full time**Roles and Responsibilities** - Triage and Investigate the assigned Incidents. - Create incident reports Include all the investigation steps, lessons learned and recommended actions. - Modify the use cases for false positive incidents. - Create and modify use cases, dashboards and reports. - Threat hunting. - Integrating with threat intelligence feeds. -...
-
Senior SOC Analyst L2
6 days ago
Doha, Qatar People Dynamics Full timeLead and manage Security Operations Center - Responsible for team management, personnel scheduling, overall use of resources and initiation of corrective action where required for Security Operations Center. - Primarily responsible for security event monitoring, management and response - Ensure incident identification, assessment, quantification, reporting,...
-
Senior Engineer
2 weeks ago
Doha, Qatar People Dynamics Full timeResponsible for monitoring cyber security solutions in support of detection and analysis of potentially compromised systems, performing root cause analysis, and supporting remediation efforts. - Responsible for researching the potential impact of threats to the customer organizations and communicating the risks. - Act as Subject Matter Expert (SME) on OT...
-
SOC Analyst L3
2 weeks ago
Doha, Qatar Hot & Cold International Consulting Full timeThe Security Operations Analyst Level 3 role is tasked with evaluating SIEM (Security Incident Event Manager) related events flagged for review by established strategies. **Profile Requirements** - Proposition of specific recommendations - Investigate and solves security breaches and other cyber security incidents and provide incident response. - Incident...
-
Cyber Security Ops Analyst
2 weeks ago
Doha, Qatar AITS Full time**Role** Cyber Security Ops Analyst **Role Brief** This role will support **threat monitoring**, detection, event analysis, incident response/reporting, forensics, and **threat hunting** activities for our Cyber Defense Center (SOC), which is a 24/7 environment. The SOC Analyst must be able to rapidly respond to security incidents and should have...