Threat Detection and Response Consultant

3 days ago


Riyadh, Ar Riyāḑ, Saudi Arabia Innovative Solutions SA Full time
Company Description

Innovative Solutions (IS) is a leading pure-player Cyber security company in the GCC established in 2003, headquartered in Riyadh with a presence in Al Khobar, Jeddah, Dubai, and Abu Dhabi. Our Cybersecurity Solutions and Services encompass Advisory Services, Technical Assurance, Solution Deployment, Professional Services, and Managed Security Services.

Innovative Solutions is committed to its mission to "Bring Trust to Cyberspace" to ensure "Your Business, Secured."

Role Description

As a Threat Detection and Response Consultant at Innovative Solutions, you will be responsible for providing expert guidance and support to clients in detecting and responding to cybersecurity threats. You will perform security assessments, develop threat detection strategies, and implement response plans. You will work collaboratively with client teams to enhance their security posture and ensure effective incident response processes are in place.

  • Conduct compromise assessment activities
  • Conduct DFIR activities on Windows, Linux, and Cloud
  • Act as subject matter expert and expert witness where required
  • General intelligence advisories and delegate intelligence aggregation tasks to L2
  • Generate new use cases for emerging threats
  • Build detection use cases on SIEM, EDR, NDR, and other security controls
  • Test the detection use cases using threat simulation tools
  • Conduct threat-hunting activities periodically
  • Conduct threat-hunting activities based on intelligence reports
  • Build detection use cases based on intelligence reports
  • Track incident detection and closure
  • Conduct incident response coordination with customers
  • Validate security incidents
  • Conduct audits of logging and correlation
  • Use of sandbox, honeypot, analytics tools, and security testing
  • Build playbooks in SOAR
  • Escalation management
  • Ensure quality of investigations and notifications and direct L2 and L1 accordingly
  • Perform deep analysis of security incidents to identify the full kill chain
  • Respond to clients' requests, concerns, and suggestions
  • Act as subject matter expert for different clients
  • Provide knowledge to L1 and L2 such as guides, cheat sheets, etc.
  • Follow up with the recommendations to the client to contain an incident or mitigate a threat
  • Conduct presentations and updates to the client
  • Respond to incident escalations and provide solid recommendations
  • Conduct threat-hunting exercises on SIEM and EDR platforms
  • Perform threat intelligence analysis and investigations. Search on the dark web and use other platforms such as RF to identify intelligence indicators or threats for a specific client
  • Create reports for threat intelligence as a service
Requirements
  • Bachelor's degree in Computer Science or equivalent field
  • Minimum of 5 years of experience in cybersecurity
  • At least 2 years of direct experience in a DFIR consultant role, with proven ability to deliver Digital Forensics, Incident Response (DFIR), and compromise Assessment (CA) services
  • Strong analytical and critical thinking skills for effectively investigating complex incidents
  • Excellent problem-solving abilities to handle high-pressure situations and adapt to rapidly changing environments
  • Clear and effective communication skills, both written and verbal, for conveying technical findings to non-technical stakeholders
  • High level of attention to detail, essential for forensic accuracy and reporting
  • Team-oriented mindset with the ability to collaborate across departments
  • Self-motivated and proactive in staying updated with the latest cybersecurity threats and tools
  • Has at least 2 of the following certificates: GCFA, GCFE, GEIR, GCFR, GDAT, GREM or OSCP
Benefits
  • Competitive salary package with performance-based incentives
  • Comprehensive training and development programs
  • Opportunity for career growth and advancement
  • Friendly and supportive work environment
#J-18808-Ljbffr

  • Riyadh, Ar Riyāḑ, Saudi Arabia NetWitness Full time

    Threat Detection ExpertWe are seeking a skilled Threat Detection Expert to join our team at NetWitness. As a key member of our advisory team, you will play a critical role in identifying and coordinating opportunities for NetWitness practices (Threat Detection & Response solution, Incident Response, MDR Service, and Cyber Security Consulting).The ideal...


  • Riyadh, Ar Riyāḑ, Saudi Arabia PROVEN Consult Full time

    The ideal candidate for this role is a Threat Detection Engineer who has hands-on experience with Microsoft Intune, Microsoft Defender, and Microsoft Sentinel. You will be responsible for developing and implementing security policies and best practices, conducting threat hunting and forensic analysis, and collaborating with IT and security teams.


  • Riyadh, Ar Riyāḑ, Saudi Arabia Saudi Petroleum Services Polytechnic Full time

    Saudi Petroleum Services Polytechnic is looking for a talented Cyber Threat Detection Specialist to join our team. The ideal candidate will be responsible for detecting, analyzing, and mitigating cyber threats while ensuring the protection of systems and networks from potential attacks.Job Description:Protect company assets by identifying and addressing...


  • Riyadh, Ar Riyāḑ, Saudi Arabia sirar by stc Full time

    We are looking for an Advanced Cybersecurity Professional - SOC L2 to join our team at sirar by stc.The ideal candidate will have experience in detecting and preventing cybersecurity attacks, analyzing network alerts, and developing and maintaining information security metrics.Key Responsibilities:Provide timely detection, identification, and alerting of...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Help AG Full time

    About This OpportunityWe are looking for a Threat Intelligence and Incident Response Professional to join our team. As a key member of our Cybersecurity Operations Center (CSOC), you will be responsible for monitoring multiple client environments, guiding and leading other Security Analysts, and conducting forensic analysis and threat hunting to detect and...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Ejada Systems Limited. Full time

    Ejada Systems Limited is a leading provider of cybersecurity solutions.Job SummaryWe are seeking a highly motivated SOC L1 Analyst to join our team. In this role, you will be responsible for monitoring our systems and networks, detecting security threats, and escalating incidents when necessary.Key ResponsibilitiesThreat Detection: Utilize knowledge of...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Help AG Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Defense and Threat Analyst to join our team. As a key member of our Cybersecurity Operations Center (CSOC), you will be responsible for monitoring multiple client environments, guiding and leading other Security Analysts, and conducting forensic analysis and threat hunting to detect and identify...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Ejada Systems Limited. Full time

    We are committed to providing a secure environment for our customers and employees.About the RoleIn this role, you will be responsible for monitoring our systems and networks, detecting security threats, and escalating incidents when necessary. As a SOC L1 Analyst, you will be the first point of contact for security alerts and will be responsible for...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Environment Fund | صندوق البيئة Full time

    Cyber Threat Intelligence AnalystThe Environment Fund is seeking a skilled Cyber Threat Intelligence Analyst to join our team. As a key member of our cybersecurity team, you will be responsible for analyzing and mitigating security threats to our networks and systems.Main Responsibilities:Develop and implement threat intelligence approaches and plans,...


  • Riyadh, Ar Riyāḑ, Saudi Arabia NETS-International Group Full time

    NETS-International Group is a global leader in providing innovative solutions and systems integration. We empower the future by delivering integrated approaches and committing to excellence. Our service portfolio covers three verticals: infrastructure, digital, and managed solutions. We offer a range of services, including access networks, enterprise data...


  • Riyadh, Ar Riyāḑ, Saudi Arabia NETS-International Group Full time

    NETS-International Group is a leading global provider of innovative solutions and systems integration. We empower the future by delivering integrated approaches and committing to excellence. Our service portfolio covers three verticals: infrastructure, digital, and managed solutions. We offer a range of services, including access networks, enterprise data...


  • Riyadh, Ar Riyāḑ, Saudi Arabia CodeNinja Inc. Full time

    Job OverviewWe are seeking a highly skilled Vulnerability Assessment & Penetration Testing (VAPT) Specialist to join our Cybersecurity Team at CodeNinja Inc. in Riyadh, Saudi Arabia. The ideal candidate will have 3+ years of hands-on experience in performing penetration testing, security assessments, and exploit development across web applications, networks,...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Arthur Lawrence Full time

    Job OverviewWe are an management and technology consulting firm providing enterprise-wide business transformation and business applications implementation services. Our in-depth technical knowledge and broad experience enable organizations to leverage our capabilities in developing winning strategies and cost-effective solutions.ResponsibilitiesDesign and...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Help AG Full time

    About UsHelp AG is the cyber security arm of e& enterprise and provides leading enterprise businesses across the Middle East with strategic consultancy combined with tailored information security solutions and services that address their diverse requirements, enabling them to evolve securely with a competitive edge.Job DescriptionAs a Cybersecurity...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Palo Alto Networks Full time

    About the PositionPalo Alto Networks' Unit 42 is seeking a seasoned Consulting Director to lead our proactive cybersecurity consulting services. This role requires a professional with extensive experience in cybersecurity consulting, team leadership, and stakeholder engagement.In this position, you will oversee the delivery of our threat-led and...


  • Riyadh, Ar Riyāḑ, Saudi Arabia NetWitness Full time

    Advisory Service ManagerWe are looking for a highly experienced Advisory Service Manager to join our team at NetWitness. The successful candidate will have expertise in threat detection & response technologies, as well as Managed Detection & Response (MDR) and Cyber Security Consulting, with strong business development skills.As a manager in our advisory...


  • Riyadh, Ar Riyāḑ, Saudi Arabia sirar by stc Full time

    Advanced technology and cybersecurity company (sirar) established by stc, the region's ICT and digital services provider, sirar by stc is a cutting-edge cybersecurity provider that empowers organizations to take control of their cyber capabilities and digital environments.As experts in business security and privacy, we offer a comprehensive range of...


  • Riyadh, Ar Riyāḑ, Saudi Arabia NetWitness Full time

    NetWitness Advisory LeaderWe are looking for a highly experienced NetWitness Advisory Leader to join our team. The successful candidate will have expertise in threat detection & response technologies, as well as Managed Detection & Response (MDR) and Cyber Security Consulting, with strong business development skills.As a leader in our advisory team, you will...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Help AG Full time

    About Our TeamWe are a dynamic team of professionals dedicated to delivering exceptional service to our clients. As a Security Monitoring and Analysis Expert, you will play a key role in helping us achieve this goal.Job DescriptionYou will be responsible for monitoring multiple client environments, guiding and leading other Security Analysts, and conducting...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Ejada Systems Limited. Full time

    Ejada Systems Limited is committed to ensuring the highest level of network security.Job DescriptionThis role serves as the initial point of contact for security alerts, detecting and responding to potential threats in a timely manner. As a SOC L1 Analyst, you will be responsible for monitoring our systems and networks, identifying security events, and...