ΠΎΠ±Π½ΠΎΠ²Π»Π΅Π½ΠΎ 11 ΡΠ°ΡΠΎΠ² Π½Π°Π·Π°Π΄
Information Security Engineer (SOC L2)
ΠΡΡΡ & Π‘ΠΎΠΏΡΠΎΠ²ΠΎΠ΄
ΠΠ»Ρ ΠΌΡΡΡΠ° Ρ ΡΡΠΎΠΉ Π²Π°ΠΊΠ°Π½ΡΠΈΠ΅ΠΉ Π½ΡΠΆΠ΅Π½ Plus
ΠΠΏΠΈΡΠ°Π½ΠΈΠ΅ Π²Π°ΠΊΠ°Π½ΡΠΈΠΈ
Π’Π΅ΠΊΡΡ:
TL;DR
Information Security Engineer (SOC L2) (Fintech/Cybersecurity): Monitoring and defending infrastructure, applications, and cloud environments against cyber threats with an accent on security monitoring, incident response, and detection engineering. Focus on investigating complex security events, developing threat-driven detections, performing forensic root cause analysis, and coordinating high-severity incident handling.
Location: KSA; onsite
Company
is a fintech company providing flexible payment solutions that allow shoppers to split payments online and in stores.
What you will do
- Monitor and correlate logs and alerts from firewalls, IDS/IPS, endpoints, servers, and cloud platforms.
- Respond to security incidents through detection, containment, eradication, recovery, and lessons learned.
- Investigate security events using endpoint and network artifacts, including root cause and forensic analysis.
- Develop and tune detection rules, threat-hunting queries, and cloud security use cases.
- Maintain threat intelligence integrations, dashboards, incident documentation, and security reporting.
- Coordinate incident response with IT, DevOps, Risk, Compliance, vendors, and management while mentoring junior analysts.
Requirements
- 2β3 years of experience in a SOC or cybersecurity operations role.
- Strong knowledge of incident handling, alert triage, log analysis, threat modeling, and security best practices.
- Experience with SIEM platforms, SOAR tools, EDR/XDR, threat intelligence platforms, and cloud-native monitoring.
- Understanding of REST APIs, microservices, modern application architectures, DLP, antivirus, anti-malware, phishing detection, and user behavior analytics.
- Scripting experience with Python to automate SOC tasks.
- Strong communication skills for incident coordination and clear incident reporting.
Nice to have
- Security+ certification.
- CySA+, eCIR, eCTHPv2, GCIA, or GMON certification.
Culture & Benefits
- Work in a culturally diverse and collaborative environment.
- Collaborate across InfoSec Monitoring, IT, DevOps, Risk, and Compliance functions.
- Contribute to security awareness, training, and mentoring initiatives.
Hiring process
- Application and review.
- HR call with .
- Technical interview, final interview, and hiring decision.
ΠΡΠ΄ΡΡΠ΅ ΠΎΡΡΠΎΡΠΎΠΆΠ½Ρ: Π΅ΡΠ»ΠΈ ΡΠ°Π±ΠΎΡΠΎΠ΄Π°ΡΠ΅Π»Ρ ΠΏΡΠΎΡΠΈΡ Π²ΠΎΠΉΡΠΈ Π² ΠΈΡ ΡΠΈΡΡΠ΅ΠΌΡ, ΠΈΡΠΏΠΎΠ»ΡΠ·ΡΡ iCloud/Google, ΠΏΡΠΈΡΠ»Π°ΡΡ ΠΊΠΎΠ΄/ΠΏΠ°ΡΠΎΠ»Ρ, Π·Π°ΠΏΡΡΡΠΈΡΡ ΠΊΠΎΠ΄/ΠΠ, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡΠ΅ ΡΡΠΎΠ³ΠΎ - ΡΡΠΎ ΠΌΠΎΡΠ΅Π½Π½ΠΈΠΊΠΈ. ΠΠ±ΡΠ·Π°ΡΠ΅Π»ΡΠ½ΠΎ ΠΆΠΌΠΈΡΠ΅ "ΠΠΎΠΆΠ°Π»ΠΎΠ²Π°ΡΡΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡΠΈΡΠ΅ Π² ΠΏΠΎΠ΄Π΄Π΅ΡΠΆΠΊΡ. ΠΠΎΠ΄ΡΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β