Mid-Level Cyber Security Engineer
On-siteAbu Dhabi, Abu Dhabi, United Arab Emirates
Job Summary
Monitor security alerts and data from SIEM, NDR, EDR, and XDR platforms to detect and respond to potential threats. Utilize tools like Splunk, ArcSight, and QRadar to aggregate logs for incident investigation, while leading response activities involving analysis, containment, and recovery. Automate workflows using SOAR platforms such as Demisto and Phantom to optimize detection and minimize false positives. Manage configurations for McAfee ePO, Antivirus, EPP, and DLP solutions, ensuring compliance with frameworks like GDPR and HIPAA. Collaborate with IT, Network, and Development teams to integrate security measures and provide regular reports on security posture.
Required Qualifications
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field, or equivalent work experience
- 3-5 years of experience in security operations or a related field
- hands-on experience using a variety of security technologies and tools
- Extensive experience with SIEM platforms (e.g., Splunk, QRadar, ArcSight)
- Extensive experience with SOAR (e.g., Demisto, FortiSoar)
- Extensive experience with EDR (e.g., CrowdStrike, Cybereason, Carbon Black)
- Experience with XDR
- Experience with NDR
- Experience with EPP
- Experience with DLP
- Experience with Data Classification tools
- Familiarity with McAfee ePO
- Familiarity with Antivirus solutions
- Familiarity with endpoint protection tools
- Experience with network security technologies
- Experience with firewalls
- Experience with IDS/IPS
- Experience with NDR platforms
- Experience with scripting languages (e.g., Python, PowerShell)
- Ability to consume and integrate threat intelligence into security operations tools
- Familiarity with cloud platforms (AWS, Azure, GCP)
- Strong analytical skills with the ability to triage and investigate security events
- In-depth understanding of security operations, incident response, and risk management
- Strong troubleshooting skills and ability to think critically under pressure
- Excellent communication skills, including the ability to explain complex technical concepts to non-technical stakeholders
- Proactive and collaborative mindset, able to work effectively across multiple teams
- A deep understanding of emerging security threats and trends
- passion for continuous learning
Desired Qualifications
- Certified Information Systems Security Professional (CISSP)
- Certified Ethical Hacker (CEH)
- GIAC Security Operations Certified (GSOC)
- Certified Incident Handler (GCIH)
- CompTIA Security+ or equivalent
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.