Senior Security Analyst

2 weeks ago


Riyadh, Saudi Arabia Help AG Full time

**Responsibilities**:

- Monitor multiple security technologies, such as IDS/IPS, Firewalls, Switches, VPNs, and other security threat data sources
- Correlate and analyze events using SIEM tools to detect security incidents
- Create, Follow and Present detailed operational process and procedures to appropriately analyze, escalate, and assist in remediation of critical information security incidents
- Respond to inbound requests via phone and other electronic means for technical assistance with managed services
- Respond in a timely manner (within documented SLA) to support, investigate, and other cases
- Document actions in cases to effectively communicate information internally and to customers
- Resolve problems independently and understand escalation procedure
- Maintain a high degree of awareness of current threat landscape and Cybersecurity intelligence
- Spread the Cybersecurity Intelligence across the team of Analysts and engage in threat hunting activities
- Lead delivery, and support others in the delivery, of knowledge sharing with Analysts and writing technical articles for Internal Knowledge Bases, Blog Posts and Reports as requested
- Perform other essential duties as assigned
- Analysis of log files, includes forensic analysis of system resource access.
- Create, Follow and Present customer reports to ensure quality, accuracy, and value to clients
- Creation of new Content (Use Cases, Queries, Reports) within the SIEM Platform
- Education and Training of other Analysts in use and operation of SIEM Platform
- On-site work with clients as required
- Engage with client Incident Response team as required
- Generate Cybersecurity Threat Intelligence reports

**Qualifications**:

- 5+ years of experience in Cybersecurity, in areas such as security operations, intrusion detection, incident analysis, incident handling, log analysis, threat intelligence/hunting or digital forensics.
- Bachelor’s/Master’s Degree in Cybersecurity, Computer Science, Information Systems, Electrical Engineering, or a closely related degree
- An active interest and passion in Cybersecurity, incident detection, network, and systems security
- A sound knowledge of IT security best practices, common attack types and detection / prevention methods.
- Knowledge of the type of events that both Firewalls, IDS/IPS and other security related devices produce
- Experience in using Splunk as an Analyst for Threat and Incident Detection is required
- Experience with ArcSight, LogRhythm, QRadar, is preferable but not mandatory
- Strong understanding of Cyber Kill Chain and MITRE ATT&CK frameworks and techniques
- Solid understanding of TCP/IP and network concepts and principles
- Possible attack activities, such as scans, man in the middle, sniffing, DoS, DDoS
- Professional certificates are highly preferred (e.g., CCIE, OSCP, CISSP, GSEC, GCIA, GCIH, GMON, GREM, GDAT, GCFE etc.)
- An experienced Analyst who aspires to be a Leader, and is committed to learning the principles of Leadership and the role of a Leader
- Outstanding Organizational Skills
- Exclusive focus and vast experience in IT
- Very good communication skills
- Strong analytical and problem-solving skills
- A motivated, self-managed, individual who can demonstrate exceptional analytical skills and work professionally with peers and customers even under pressure.
- Strong written and verbal skills
- Strong interpersonal skills with the ability to collaborate well with others
- Ability to speak and write in English is required; Ability to speak and write in both English and Arabic is preferred
- Well-versed in developing Content for SIEM (creating, fine tuning) use cases and rules.
- Experience with automation tools (SOAR) is preferred
- Experience in Malware Analysis / Reverse Engineering is preferred

**Benefits**:

- Health insurance with one of the leading global providers for medical insurance
- Career progression and growth through challenging projects and work
- Employee engagement activities throughout the year
- Tailored training & development program
- Corporate discount program (hotels, restaurants etc.)

**About Us**

Help AG is the cybersecurity arm of e& enterprise and provides leading enterprise businesses across the Middle East with strategic consultancy combined with tailored information security solutions and services that address their diverse requirements, enabling them to evolve securely with a competitive edge.

Present in the Middle East since 2004, Help AG was strategically acquired by Etisalat in Feb 2020, hence creating a cyber security and digital transformation powerhouse in the region.

Help AG has firmly established itself as the region's trusted IT security advisor by remaining vendor-agnostic, trustworthy, independent, and cyber security focused. With best-of-breed technologies from industry-leading vendor partners, expertly qualified service delivery teams and a state-of-the art consulting practice, Help AG delivers unmatched value to its



  • Riyadh, Saudi Arabia Eventus Security Pvt. Ltd Full time

    We are seeking a **dynamic and experienced cybersecurity professional** to join our **Security Operations Center (SOC)** team. If you're a **Saudi national** passionate about cybersecurity, incident response, and threat intelligence, this is your opportunity to make a national impact. **Location**: Saudi Arabia **Position**: Senior Security...


  • Riyadh, Saudi Arabia Obrela Security Industries Full time

    The Role - Contributes to the execution of the 24x7 security event management procedures in SOC, and assists in the development of new use cases and content to improve threat detection and incident response for Clients. Accountabilities - Follows the Event Management processes according to MSS practices to provide support to L1 analysts to their 24x7...

  • SOC Analyst

    2 days ago


    Riyadh, Ar Riyāḑ, Saudi Arabia IT Security Training & Solutions - I(TS)² Full time

    SOC Level 1 AnalystLocation: RiyadhJob Description:Level 1 Analysts are the resources with skills and expertise to monitor and report events on a 365x7x24 basis. The Level 1 Analyst shall be responsible for handling alerts and escalation based on the internal escalation protocol.Responsibilities:Level 1 Analyst shall have the following...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Vectra AI Full time

    Vectra is the leader in AI-driven threat detection and response for hybrid and multi-cloud enterprises.The Vectra AI Platform delivers integrated signal across public cloud, SaaS, identity, and data center networks in a single platform. Powered by patented Attack Signal Intelligence, it empowers security teams to rapidly prioritize, investigate and respond...


  • Riyadh, Saudi Arabia Qoyod Full time

    Information Security Analyst Job Summary: We are seeking an Information Security Analyst to join our team. The role directly supports our monitoring tools in ensuring the correct monitoring is being performed against appropriate service level agreements as well as ensuring our tools being monitored are relevant and effective for...


  • Riyadh, Saudi Arabia Unifonic Full time

    Proudly voted a Great Place to Work®, we are a dynamic startup in the SaaS space that is revolutionizing the way businesses communicate. Our team is made up of 500 energetic and passionate Unifones who are dedicated to delivering the best possible experience to 5000+ customer-centric companies. We pride ourselves on our fun and collaborative work...


  • Riyadh, Saudi Arabia Unifonic Full time

    Proudly voted a Great Place to Work®, we are a dynamic startup in the CPaaS (Communication Platform as a Service) space that is revolutionising the way businesses communicate. Our team is made up of 400+ energetic and passionate Unifones who are dedicated to delivering the best possible experience to 5000+ customer-centric companies. We pride ourselves on...

  • Senior Analyst

    1 week ago


    Riyadh, Ar Riyāḑ, Saudi Arabia Müller`s Solutions Full time

    Müller's Solutions is looking for a talented Senior Analyst specializing in Infrastructure Services, specifically in the areas of Storage and Backup, to join our dynamic team. This role is exclusively open to Saudi Nationals. As a Senior Analyst, you will play a vital role in managing and optimizing storage and backup solutions, ensuring data integrity,...


  • Riyadh, Ar Riyāḑ, Saudi Arabia BAE Systems Detica Full time

    Day to day Security Monitoring;Day to day threat hunting;Continuously developing security solutions;Recommend implementing security tools to prevent the same security issues from happening again;Document and educate team members on appropriate reporting procedures.Preform optimization and enhancement of security monitoring tools, regular fine-tuning and...


  • Riyadh, Ar Riyāḑ, Saudi Arabia resilience Full time

    Job Opportunity: SOC Analyst – Level 3 | Banking & Insurance Sector | Riyadh, Saudi ArabiaWe are looking for a highly skilledSOC Analyst – Level 3to join our team. The ideal candidatemusthave strong experience in thebanking sector,insurance domain, and advanced hands-on expertise withQRadar SIEM.Key Requirements:Proven experience as a SOC Analyst –...