Jobmaze FZ LLC
Khobar, Saudi ArabiaPosted yesterday
We are hiring an experienced Security Analyst for our client in Khobar, Saudi Arabia to monitor, investigate, and respond to security alerts across a complex enterprise security environment. The role will work closely with a third-party SOC, validating and actioning escalated security incidents while monitoring security tools and technologies that are not yet fully integrated into the SIEM. Key Responsibilities: • Review and action security alerts escalated by the third-party SOC through Gurucul SIEM • Monitor CrowdStrike EDR and SentinelOne consoles and investigate potential threats • Analyze Vectra AI NDR alerts and identify suspicious network activity • Review BeyondTrust PAM session logs and recordings for anomalous privileged access • Monitor Cisco Duo for suspicious authentication activity involving internal and remote users • Review Proofpoint email security alerts and phishing simulation results • Monitor Cloudflare WAF/DDoS security events • Review and prioritize vulnerabilities identified through CrowdStrike Spotlight and coordinate remediation • Monitor security technologies including Forescout NAC and Nexthink • Periodically review existing security solutions and policies and recommend improvements Required Technical Skills: • EDR investigation and threat triage using CrowdStrike and/or SentinelOne • NDR alert analysis using Vectra AI or equivalent platforms • Familiarity with Forescout NAC • PAM session monitoring using BeyondTrust • MFA platforms such as Cisco Duo and Okta • Email security operations using Proofpoint • WAF/CDN security event monitoring using Cloudflare • Familiarity with F5 technologies • Strong understanding of incident response fundamentals • Knowledge of the MITRE ATT&CK framework Candidates with hands-on experience across SOC operations, EDR, NDR, PAM, NAC, email security, and incident response are encouraged to apply. Only shortlisted candidates will be contacted. Show more Show less
Candidates with hands-on experience across SOC operations, EDR, NDR, PAM, NAC, email security, and incident response.
Review and action security alerts escalated by the third-party SOC through Gurucul SIEM; Monitor CrowdStrike EDR and SentinelOne consoles and investigate potential threats; Analyze Vectra AI NDR alerts and identify suspicious network activity; Review BeyondTrust PAM session logs and recordings for anomalous privileged access; Monitor Cisco Duo for suspicious authentication activity involving internal and remote users; Review Proofpoint email security alerts and phishing simulation results; Monitor Cloudflare WAF/DDoS security events; Review and prioritize vulnerabilities identified through CrowdStrike Spotlight and coordinate remediation; Monitor security technologies including Forescout NAC and Nexthink; Periodically review existing security solutions and policies and recommend improvements.
Not sure you fit this role?
Upload your CV and see how you score against Jobmaze FZ LLC and every other live job. It's free.
Get my free matchesAED 8,820 – 14,700 a monthest.
AED 24,500 – 44,100/mo