Cybersecurity Defense Analyst

1 day ago


Riyadh, Ar Riyāḑ, Saudi Arabia Help AG Full time

Help AG is looking for a talented and enthusiastic Cybersecurity Defense Analyst - Specialist to join our Cybersecurity Operations Center (CSOC) team as part of our Managed Security Services (MSS) business unit. If you have strong knowledge and interest in Cybersecurity, this position might be the right one for you. The Cybersecurity Defense Analyst - Specialist will be responsible for monitoring multiple client environments, guiding, leading other Security Analysts, and conducting forensic analysis and threat hunting to detect and identify Cybersecurity incidents/breaches. The candidate is also expected to be up to date with Cybersecurity intelligence and threat landscape.

This role requires:

  1. 1-4 years of experience in information security, in areas such as security operations, intrusion detection, incident analysis, incident handling, log analysis, or firewall administration.
  2. 1-4 years of experience in one of the following: Network operations or engineering or system administration on Unix, Linux, Windows.

Responsibilities

  • Monitor multiple security technologies, such as IDS/IPS, Firewalls, Switches, VPNs, and other security threat data sources.
  • Correlate and analyze events using SIEM tools to detect security incidents.
  • Create, follow and present detailed operational process and procedures to appropriately analyze, escalate, and assist in remediation of critical information security incidents.
  • Respond to inbound requests via phone and other electronic means for technical assistance with managed services.
  • Respond in a timely manner (within documented SLA) to support, investigate, and other cases.
  • Document actions in cases to effectively communicate information internally and to customers.
  • Resolve problems independently and understand escalation procedure.
  • Maintain a high degree of awareness of current threat landscape and cybersecurity intelligence.
  • Spread the cybersecurity intelligence across the team of analysts and engage in threat hunting activities.
  • Lead delivery, and support others in the delivery, of knowledge sharing with analysts and writing technical articles for Internal knowledge bases, blog posts and reports as requested.
  • Perform other essential duties as assigned.
  • Analysis of log files, includes forensic analysis of system resource access.
  • Create, follow and present customer reports to ensure quality, accuracy, and value to clients.
  • Creation of new content (Use Cases, Queries, Reports) within the SIEM platform.
  • Education and training of other analysts in use and operation of SIEM platform.
  • On-site work with clients as required.

Qualifications and Skills

  • Saudi National will be preferable.
  • Bachelor's or master's degree in Cybersecurity, Computer Science, Information Systems, Electrical Engineering, or a closely related degree.
  • An active interest and passion in cybersecurity, incident detection, network, and systems security.
  • 1+ years of experience in cybersecurity, in areas such as security operations, intrusion detection, incident analysis, incident handling, log analysis, threat intelligence/hunting or digital forensics.
  • A sound knowledge of IT security best practices, common attack types and detection / prevention methods.
  • Demonstrable experience of analyzing and interpreting system, security, and application logs. Knowledge of the type of events that both Firewalls, IDS/IPS and other security related devices produce.
  • Experience in using Splunk as an analyst for Threat and Incident Detection is required.
  • Experience with ArcSight, LogRhythm, QRadar, is preferable but not mandatory.
  • Strong understanding of Cyber Kill Chain and MITRE ATT&CK frameworks and techniques.
  • Solid understanding of TCP/IP and network concepts and principles.
  • Possible attack activities, such as scans, man in the middle, sniffing, DoS, DDoS.
  • Professional certificates are highly preferred (e.g., CCIE, OSCP, CISSP, GSEC, GCIA, GCIH, GMON, GREM, GDAT, GCFE, etc.).
  • An experienced Analyst who aspires to be a leader and is committed to learning the principles of leadership and the role of a leader.
  • Outstanding organizational skills.
  • Exclusive focus and vast experience in IT.
  • Very good communication skills.
  • Strong analytical and problem-solving skills.
  • A motivated, self-managed, individual who can demonstrate exceptional analytical skills and work professionally with peers and customers even under pressure.
  • Strong written and verbal skills.
  • Strong interpersonal skills with the ability to collaborate well with others.
  • Ability to speak and write in English is required; Ability to speak and write in both English and Arabic is preferred.
  • Well-versed in developing content for SIEM (creating, fine tuning) use cases and rules.
  • Experience with automation tools (SOAR) is preferred.
  • Experience in Malware Analysis / Reverse Engineering is preferred.

Benefits

  • Health insurance with one of the leading global providers for medical insurance.
  • Career progression and growth through challenging projects and work.
  • Employee engagement activities throughout the year.
  • Tailored training & development program.

About Us

Help AG is the cyber security arm of e& enterprise and provides leading enterprise businesses across the Middle East with strategic consultancy combined with tailored information security solutions and services that address their diverse requirements, enabling them to evolve securely with a competitive edge.

Present in the Middle East since 2004, Help AG was strategically acquired by Etisalat group in Feb 2020, hence creating a cyber security and digital transformation powerhouse in the region.

Help AG has firmly established itself as the region's trusted IT security advisor by remaining vendoragnostic, trustworthy, independent, and cyber security focused. With best-of-breed technologies from industry-leading vendor partners, expertly qualified service delivery teams and a state-of-the art consulting practice, Help AG delivers unmatched value to its customers by strengthening their cyber defenses and safeguarding their business.

#J-18808-Ljbffr

  • Riyadh, Ar Riyāḑ, Saudi Arabia Help AG Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Defense and Threat Analyst to join our team. As a key member of our Cybersecurity Operations Center (CSOC), you will be responsible for monitoring multiple client environments, guiding and leading other Security Analysts, and conducting forensic analysis and threat hunting to detect and identify...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Arab National Bank Full time

    Arab National Bank is seeking a seasoned Cybersecurity Specialist to lead the development and implementation of advanced cybersecurity measures. The ideal candidate will have a strong background in firewall configurations and threat analysis, ensuring robust defense against cyber threats and compliance with security standards.ResponsibilitiesDevelop and...


  • Riyadh, Ar Riyāḑ, Saudi Arabia CARE Full time

    Job DescriptionCARE seeks a highly skilled Network Defense Expert to design, implement, and manage firewall rules and policies, ensuring robust defense against cyber threats.About the RoleThis critical position involves leading response efforts during security incidents, conducting vulnerability assessments, and ensuring compliance with industry...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Ejada Systems Limited. Full time

    Ejada Systems Limited is committed to ensuring the highest level of network security.Job DescriptionThis role serves as the initial point of contact for security alerts, detecting and responding to potential threats in a timely manner. As a SOC L1 Analyst, you will be responsible for monitoring our systems and networks, identifying security events, and...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Saudi Petroleum Services Polytechnic Full time

    We require a highly skilled Network Defense Expert to protect our systems and networks from cyber threats. The successful candidate will be responsible for developing and implementing strategies to detect, analyze, and mitigate cyber threats.Responsibilities:Develop and implement comprehensive security policies and procedures.Conduct regular vulnerability...

  • IT Risk Analyst

    3 days ago


    Riyadh, Ar Riyāḑ, Saudi Arabia QMet Arabia Cybersecurity Full time

    Required QualificationsProficiency in Application Security and CybersecurityExperience in Information Security Management and Data PrivacyStrong knowledge of Network Security practicesExcellent analytical and problem-solving skillsA bachelor's degree in Computer Science, Information Technology, or a related field is required. Relevant certifications such as...


  • Riyadh, Ar Riyāḑ, Saudi Arabia CARE Full time

    Job OverviewCARE is seeking an exceptional Cybersecurity Manager to lead our cybersecurity initiatives and protect our IT infrastructure from evolving cyber threats.About the PositionThis critical role involves developing and managing security architectures, conducting vulnerability assessments, and ensuring compliance with industry standards.Key...

  • Cybersecurity Expert

    21 minutes ago


    Riyadh, Ar Riyāḑ, Saudi Arabia Saudi Petroleum Services Polytechnic Full time

    Saudi Petroleum Services Polytechnic is committed to providing a secure and compliant IT environment for our stakeholders.Job Overview:We are seeking a skilled IT Security Specialist to oversee our firewall configurations and implement advanced cybersecurity measures.Responsibilities:Develop and manage security architectures, including perimeter defenses,...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Help AG Full time

    About UsHelp AG is the cyber security arm of e& enterprise and provides leading enterprise businesses across the Middle East with strategic consultancy combined with tailored information security solutions and services that address their diverse requirements, enabling them to evolve securely with a competitive edge.Job DescriptionAs a Cybersecurity...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Saudi Petroleum Services Polytechnic Full time

    Saudi Petroleum Services Polytechnic seeks a skilled Security Intelligence Analyst to join our team. The ideal candidate will be responsible for collecting and analyzing multi-source cybersecurity intelligence to predict and prevent incidents.Responsibilities:Analyze and interpret cybersecurity intelligence to identify potential security risks.Develop and...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Qiddiya | القدية Full time

    Cybersecurity is a critical component of our IT infrastructure, and we are seeking a skilled professional to join our team as an Information Assurance Analyst.In this role, you will be responsible for assessing and mitigating security risks, monitoring IT security systems, and supporting the implementation of security policies and procedures.With a...


  • Riyadh, Ar Riyāḑ, Saudi Arabia NOZOM Full time

    We're looking for a highly skilled Cybersecurity GRC Consultant to join our team at NOZOM. The successful candidate will work closely with the Director to carry out engagements related to policy compliance, security requirements governance, and risk management.The ideal candidate will have a strong understanding of risk management, security, and privacy...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Arab National Bank Full time

    Arab National Bank seeks an experienced IT Security Architect to oversee the fortification of its IT infrastructure. The ideal candidate will have a strong background in firewall configurations and advanced cybersecurity measures, ensuring robust defense against cyber threats and compliance with security standards.Key ResponsibilitiesDesign and implement...

  • SOC Manager/ Lead

    4 weeks ago


    Riyadh, Ar Riyāḑ, Saudi Arabia Arab National Bank Full time

    Job Summary:The SOC Lead/Manager will oversee the Security Operations Center (SOC), ensuring efficient operations, effective incident response, and alignment with organizational goals. This role requires extensive cybersecurity experience, team leadership, and expertise in SOC transformation. Fluency in Arabic and English is mandatory.Key Responsibilities:1....


  • Riyadh, Ar Riyāḑ, Saudi Arabia Arab National Bank Full time

    Arab National Bank is seeking a seasoned Security Framework Developer to lead the development and implementation of advanced security frameworks. The ideal candidate will have a strong background in security architecture and threat analysis, ensuring robust defense against cyber threats and compliance with security standards.ResponsibilitiesDevelop and...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Inovasys Full time

    Job SummaryInovasys is hiring a highly skilled SOC Analyst L1 to join our team in a shift-based role within a 24/7 Security Operations Center (SOC) environment. As part of our managed SOC, this role will ensure timely detection, analysis, and escalation of security incidents.Key ResponsibilitiesSecurity Threat Detection: Continuously monitor security...

  • IT Security Specialist

    21 minutes ago


    Riyadh, Ar Riyāḑ, Saudi Arabia Saudi Petroleum Services Polytechnic Full time

    At Saudi Petroleum Services Polytechnic, we are seeking a highly skilled Cybersecurity Expert to join our team.Job Description:The successful candidate will be responsible for fortifying our IT infrastructure by overseeing firewall configurations and implementing advanced cybersecurity measures. This will ensure robust defense against cyber threats and...


  • Riyadh, Ar Riyāḑ, Saudi Arabia CARE Full time

    Job SummaryCARE is seeking a highly skilled IT Security Specialist to fortify our IT infrastructure by overseeing firewall configurations and implementing advanced cybersecurity measures.About the RoleThis critical position ensures robust defense against cyber threats and compliance with industry standards. You will be responsible for designing,...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Arab National Bank Full time

    Arasco's IT infrastructure requires a skilled Firewall Manager Lead to oversee the design and implementation of advanced firewall rules and policies. The ideal candidate will have a strong background in network security protocols and firewall configurations, ensuring robust defense against cyber threats and compliance with security...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Ejada Systems Limited. Full time

    We are seeking an experienced SOC L1 Analyst to join our team at Ejada Systems Limited.About the RoleThis role is ideal for individuals with a passion for cybersecurity and a desire to work in a fast-paced environment. As a SOC L1 Analyst, you will be responsible for monitoring our systems and networks, detecting security threats, and escalating incidents...