SOC Analyst L2
7 months ago
Help AG is looking for a talented and enthusiastic SOC Analyst to join our dynamic team on the customer side (resident). If you have a strong knowledge and interest in network security, this position might be the right one for you. MSS SOC Analyst will be responsible for monitoring multiple security technologies and events using the Security Information Event Management (SIEM) tool in order to detect and identify IT security related incidents.
This role requires:
❖ 2-4 years of experience in information security, in areas such as security operations, intrusion detection, incident analysis, incident handling, log analysis, or firewall administration
❖ 2-4 years of experience in one of the following: Network operations or engineering or system administration on Unix, Linux, Windows
**Responsibilities
- Follow detailed operational process and procedures to appropriately analyze, escalate, and assist in remediation of critical information security incidents.
- Correlate and analyze events using the Splunk/Log Rhythm/Qradar SIEM tool to detect IT security incidents.
- Conduct analysis of log files, including forensic analysis of system resource access.
- Review customer reports to ensure quality and accuracy.
- Monitor multiple security technologies, such as SIEM, IDS/IPS, Firewalls, Switches, VPNs, and other security threat data sources.
- Respond to inbound requests via phone and other electronic means for technical assistance with managed services.
- Respond in a timely manner (within documented SLA) to support, threat, and other cases.
- Document actions in cases to effectively communicate information internally and to customers.
- Resolve problems independently and understand escalation procedure.
- Maintain a high degree of awareness of the current threat landscape.
- Participate in knowledge sharing with other analysts and writing technical articles for Internal Knowledge Bases.
- Perform other essential duties as assigned.
- Able to work in rotating shifts within a 24/7 operating environment.
**Qualifications & Skills**
- A Degree in Computer Science, Information Systems, Electrical Engineering, or a closely related degree.
- An active interest in internet security, incident detection, network, and systems security.
- A sound knowledge of IT security best practices, common attack types and detection/prevention methods.
- Knowledge of the type of events that both Firewalls, IDS/IPS, and other security related devices produce.
- Experience in using SIEM tools such as Splunk, Log Rhythm, Qradar, Alien Vault, NitroSecurity, etc.
- TCP/IP knowledge, networking, and security product experience.
- Knowledge of Cyber Kill Chain and MITRE ATT&CK frameworks.
- Possible attack activities, such as scans, man in the middle, sniffing, DoS, DDoS, etc. and possible abnormal activities, such as worms, Trojans, viruses, etc.
- CCNA, CISSP, GCA, GCIA, GCIH, CEH certification would be preferable.
- Outstanding organizational skills.
- Exclusive focus and vast experience in IT.
- Strong analytical and problem-solving skills.
- A motivated, self-managed, individual who can demonstrate above average analytical skills and work professionally with peers and customers even under pressure.
- Very good communication skills.
- Strong written and verbal skills.
- Strong interpersonal skills with the ability to collaborate well with others.
- Ability to speak and write in English is required; Arabic is preferred.
**Benefits**
- Health insurance with one of the leading global providers for medical insurance
- Career progression and growth through challenging projects and work
- Employee engagement activities throughout the year
- Tailored training & development program
- Corporate discount program (hotels, restaurants etc.)
**About Us**
Help AG is the cybersecurity arm of e& enterprise and provides leading enterprise businesses across the Middle East with strategic consultancy combined with tailored information security solutions and services that address their diverse requirements, enabling them to evolve securely with a
competitive edge.
Present in the Middle East since 2004, Help AG was strategically acquired by Etisalat in Feb 2020, hence creating a cyber security and digital transformation powerhouse in the region.
Help AG has firmly established itself as the region's trusted IT security advisor by remaining vendor dagnostic, trustworthy, independent, and cyber security focused. With best-of-breed technologies from industry-leading vendor partners, expertly qualified service delivery teams and a state-of-the art consulting practice, Help AG delivers unmatched value to its customers by strengthening their cyber defenses and safeguarding their business
-
Security Analyst
6 months ago
Riyadh, Saudi Arabia Specialized Technical Services – STS Full time**Our Culture**: At STS we are proud of our culture and how it drives everything we do. We are looking for individuals who share our values and want to be part of a unique and engaging culture that revolves around collaboration and innovation. If you are looking for a role where you can drive engagement and excellence across teams through commitment and...
-
Senior Cybersecurity Analyst
6 months ago
Riyadh, Saudi Arabia Network Intelligence Full time**Designation**: Senior Cybersecurity Analyst - Solutions **Job Code**: HR1175 **Location**: Saudi Riyadh **Experience**: 3-5 years - Act as an L2 resource for managing IAM One Identity solution. - Expert in One Identity and should be able to perform user life cycle management, perform user access provisioning and de-provisioning. - On-boarding accounts...
-
Security Operation Center Analyst
6 months ago
Riyadh, Saudi Arabia Innovative Solutions Full time**Company Description**: Innovative Solutions (IS) is a leading pure-player Cyber security company in the GCC established in 2003 headquartered in Riyadh with presence in Al Khobar, Jeddah, Dubai, and Abu Dhabi. Our Cybersecurity Solutions and Services encompasses Advisory Services, Technical Assurance, Solution Deployment, Professional Services and Managed...
-
Security Operation Center Analyst
6 months ago
Riyadh, Saudi Arabia Innovative Solutions Full time**Company Description**: Innovative Solutions (IS) is a leading pure-player Cybersecurity company established in 2003. With headquarters in Riyadh and presence in Al Khobar, Jeddah, Dubai, and Abu Dhabi, our mission is to bring trust to cyberspace and ensure your business is secured. We offer a wide range of cybersecurity solutions and services including...
-
Senior Cybersecurity Engineer
6 months ago
Riyadh, Saudi Arabia Help AG Full timeHelp AG is looking for a talented and experienced Senior Cybersecurity Engineer who will be responsible for the creation of procedures, implementation of process development, and maintenance of security systems across internal and client environments. The Senior Cybersecurity Engineer will work closely with Management, Security Operation Center Analysts,...
-
Sales Engineer, Managed Services
6 months ago
Riyadh, Saudi Arabia Trend Micro Full timeWhen you join Trend, you become part of a unique and diverse global family and you get to work towards a world safe for exchanging digital information. ABOUT TREND MICRO Trend Micro, a global cybersecurity leader, helps make the world safe for exchanging digital information. Fueled by decades of security expertise, global threat research, and continuous...
-
Cybersecurity Operations Manager
8 months ago
Riyadh, Saudi Arabia Professional Recruitment Full time**Responsibilities** - Developing a cybersecurity operations strategy and aligning it with cybersecurity strategies - Supervising the tasks and responsibilities carried out by the cybersecurity operations team and evaluating performance. - Develop, build and implement cyber incident response plans and ensure effective response to cyber security incidents -...
-
Customer Success Manager with Siem Expertise, Emea
6 months ago
Riyadh, Saudi Arabia Anomali Full time**Company Description** Anomali delivers earlier detection and identification of adversaries in your organization’s network by making it possible to correlate tens of millions of threat indicators against your real time network activity logs and up to a year or more of forensic log data. Anomali’s approach enables detection at every point along the kill...
-
Threat Detection and Respond Level 2
6 months ago
Riyadh, Saudi Arabia Innovative Solutions Full time**Company Description**: Innovative Solutions (IS) is a leading pure-player Cyber security company in the GCC established in 2003 headquartered in Riyadh with presence in Al Khobar, Jeddah, Dubai, and Abu Dhabi. Our Cybersecurity Solutions and Services encompasses Advisory Services, Technical Assurance, Solution Deployment, Professional Services and Managed...
-
Threat Detection and Respond Team Lead
6 months ago
Riyadh, Saudi Arabia Innovative Solutions Full time**Company Description**: Innovative Solutions (IS) is a leading pure-player Cyber security company in the GCC established in 2003 headquartered in Riyadh with presence in Al Khobar, Jeddah, Dubai, and Abu Dhabi. Our Cybersecurity Solutions and Services encompasses Advisory Services, Technical Assurance, Solution Deployment, Professional Services and Managed...
-
Security / Logistics Officer (Saudi National)
6 months ago
Riyadh, Saudi Arabia Talent Pal Full timeSECURITY / LOGISTICS OFFICER Specific Responsibilities - Facilitates administrative needs such as documentation review, editing, publishing, reporting, threat briefings, gap analysis, and budget reviews. - Captures and analyzes security metrics, this role provides input and recommendations regarding staffing requirements, resource allocation, technology...
-
Professional Services Dedicated Engineer- Soar
6 months ago
Riyadh, Saudi Arabia Fortinet Full time**Role location: ON-SITE (customer premises) in Riyadh, Saudi Arabia** The SOAR Professional Services Consultant works with clients and partners onsite on engagements of medium-to-high complexity. He/she may be working in on multiple engagements, or be dedicated to one particular customer or project for a specific duration. He/she focuses on SOAR...