Cyber Defense Analyst
2 weeks ago
**Responsibilities**
- Monitor multiple security technologies, such as IDS/IPS, Firewalls, Switches, VPNs, and other security threat data sources.
- Correlate and analyze events using SIEM tools to detect security incidents.
- Create, follow and present detailed operational process and procedures to appropriately analyze, escalate, and assist in remediation of critical information security incidents.
- Respond to inbound requests via phone and other electronic means for technical assistance with managed services.
- Respond in a timely manner (within documented SLA) to support, investigate, and other cases.
- Document actions in cases to effectively communicate information internally and to customers.
- Resolve problems independently and understand escalation procedure.
- Maintain a high degree of awareness of current threat landscape and cybersecurity intelligence.
- Spread the cybersecurity intelligence across the team of analysts and engage in threat hunting activities.
- Lead delivery, and support others in the delivery, of knowledge sharing with analysts and writing technical articles for Internal knowledge bases, blog posts and reports as requested.
- Perform other essential duties as assigned.
- Analysis of log files, includes forensic analysis of system resource access.
- Create, follow and present customer reports to ensure quality, accuracy, and value to clients.
- Creation of new content (Use Cases, Queries, Reports) within the SIEM platform.
- Education and training of other analysts in use and operation of SIEM platform.
- On-site work with clients as required.
- Engage with client Incident Response team as required.
- Generate cybersecurity Threat Intelligence reports.
**Qualifications**
- 2-5 years of experience in cybersecurity, in areas such as security operations, intrusion detection, incident analysis, incident handling, log analysis, threat intelligence/hunting or digital forensics.
- Bachelor’s/Master’s Degree in Cybersecurity, Computer Science, Information Systems, Electrical Engineering, or a closely related degree.
- An active interest and passion in cybersecurity, incident detection, network, and systems security.
- A sound knowledge of IT security best practices, common attack types and detection / prevention methods.
- Knowledge of the type of events that both Firewalls, IDS/IPS and other security related devices produce.
- Experience in using Splunk as an analyst for Threat and Incident Detection is required.
- Experience with ArcSight, LogRhythm, QRadar, is preferable but not mandatory.
- Strong understanding of Cyber Kill Chain and MITRE ATT&CK frameworks and techniques.
- Solid understanding of TCP/IP and network concepts and principles.
- Possible attack activities, such as scans, man in the middle, sniffing, DoS, DDoS.
- Professional certificates are highly preferred (e.g., CCIE, OSCP, CISSP, GSEC, GCIA, GCIH, GMON, GREM, GDAT, GCFE etc.).
- An experienced Analyst who aspires to be a leader, and is committed to learning the principles of leadership and the role of a leader.
- Outstanding organizational skills.
- Exclusive focus and vast experience in IT.
- Very good communication skills.
- Strong analytical and problem-solving skills.
- A motivated, self-managed, individual who can demonstrate exceptional analytical skills and work professionally with peers and customers even under pressure.
- Strong written and verbal skills.
- Strong interpersonal skills with the ability to collaborate well with others.
- Ability to speak and write in English is required; Ability to speak and write in both English and Arabic is preferred.
- Well-versed in developing content for SIEM (creating, fine tuning) use cases and rules.
- Experience with automation tools (SOAR) is preferred.
- Experience in Malware Analysis / Reverse Engineering is preferred.
**Benefits**
- Health insurance with one of the leading global providers for medical insurance.
- Career progression and growth through challenging projects and work.
- Employee engagement activities throughout the year.
- Tailored training & development program.
**About Us**
Help AG is the cybersecurity arm of e& enterprise and provides leading enterprise businesses across the Middle East with strategic consultancy combined with tailored information security solutions and services that address their diverse requirements, enabling them to evolve securely with a
competitive edge.
Present in the Middle East since 2004, Help AG was strategically acquired by Etisalat in Feb 2020, hence creating a cyber security and digital transformation powerhouse in the region.
Help AG has firmly established itself as the region's trusted IT security advisor by remaining vendor dagnostic, trustworthy, independent, and cyber security focused. With best-of-breed technologies from industry-leading vendor partners, expertly qualified service delivery teams and a state-of-the art consulting practice, Help AG delivers unmatched value to its customers by strengthe
-
Cyber Defense Analyst
2 weeks ago
Riyadh, Ar Riyāḑ, Saudi Arabia Help AG Full time $60,000 - $120,000 per yearJob description Help AG is looking for a talented and enthusiastic individual to join our Cybersecurity Operations Center (CSOC) team as part of the Managed Security Services (MSS) business unit. If you have strong knowledge and interest in Cybersecurity, this position might be the right one for you. The Cyber Defense Analyst (L2/L3) will be responsible for...
-
Senior Cyber Security Analyst
1 week ago
Riyadh, Saudi Arabia Mozn Full timeMozn is a rapidly growing technology firm revolutionizing the field of Artificial Intelligence and Data Science headquartered in Riyadh, Saudi Arabia and it’s working to realize Vision 2030 with a proven track record of excellence in supporting and growing the tech ecosystem in Saudi Arabia and the GCC region. Mozn is the trusted AI technology partner for...
-
Threat Intelligence Analyst
2 weeks ago
Riyadh, Ar Riyāḑ, Saudi Arabia Innovative Solutions Full time 600,000 - 1,200,000 per yearCompany DescriptionInnovative Solutions (IS) is a leading pure-player Cyber security company in the GCC established in 2003 headquartered in Riyadh with presence in Al Khobar, Jeddah, Dubai, and Abu Dhabi. Our Cybersecurity Solutions and Services encompasses Advisory Services, Technical Assurance, Solution Deployment, Professional Services and Managed...
-
Threat Intelligence Analyst
2 weeks ago
Riyadh, Ar Riyāḑ, Saudi Arabia Innovative Solutions SA Full time 45,000 - 90,000 per yearCompany DescriptionInnovative Solutions (IS) is a leading pure-player Cyber security company in the GCC established in 2003 headquartered in Riyadh with presence in Al Khobar, Jeddah, Dubai, and Abu Dhabi. Our Cybersecurity Solutions and Services encompasses Advisory Services, Technical Assurance, Solution Deployment, Professional Services and Managed...
-
Cyber Defense Center Analyst
2 days ago
Riyadh, Ar Riyāḑ, Saudi Arabia Socium - Teams Done Differently Full timeGeneral Description:Join a dynamic cybersecurity team responsible for monitoring, analyzing, and responding to security events across enterprise systems. The CDC L2 Analyst will conduct in-depth investigations of escalated alerts, perform triage to identify real threats, and take initial containment actions, helping maintain a secure and resilient IT...
-
Senior Intelligence Analyst
2 weeks ago
Riyadh, Saudi Arabia Google Full time**Minimum qualifications**: - Bachelor's degree or equivalent practical experience. - 7 years of experience in an investigative role involved in the production of threat intelligence for decision-makers/customers and involved in direct customer support. - Experience in an operational role involved in the research and writing of threat intelligence products...
-
Cyber Security Analyst
1 week ago
Riyadh, Ar Riyāḑ, Saudi Arabia تعميد | Tameed Full time 40,000 - 80,000 per yearOpening : Closing : About TameedTameed is the first Debt Based Crowd Lending Platform specializing in financing Purchase Order licensed by Saudi Central Bank, Tameed offers fast financing for your PO. Placed in Riyadh, Saudi Arabia.Job Description:We are looking for aCyber security analystto join our talented team in Riyadh, Saudi Arabia.Key...
-
Cyber Security Specialist
2 days ago
Riyadh, Ar Riyāḑ, Saudi Arabia Course Full timeJob brief:We are looking for a Cyber Security Specialist to join our team to work closely with the stakeholders to ensure that cyber security projects meet objectives across our organization. They are responsible for various tasks, including process re-engineering and documentation of activities related to this area.A Cyber Security Specialist's...
-
Senior Intelligence Analyst
2 days ago
Riyadh, Ar Riyāḑ, Saudi Arabia Google Full timeMinimum qualifications:Bachelor's degree or equivalent practical experience.5 years of experience in an investigative role involved in the production of threat intelligence for decision-makers/customers and in direct customer support.Experience in an operational role involved in the research and writing of threat intelligence products for...
-
Cyber Security Specialist
2 days ago
Riyadh, Ar Riyāḑ, Saudi Arabia 2P Perfect Presentation Full timeWe are looking for a highly skilledCybersecurity Threat Detection Specialistto join our team and play a key role in identifying, analyzing, and responding to cyber threats across our environment.Key Responsibilities:Collect and analyze incident data from multiple sources to detect threats and generate detailed reports.Analyze confirmed threats across the...