Expert Engineer/Security Operation Centre

e&
Dubai
Full timeFunction: Solutions Engineering & Sales EngineeringExperience: 8-10 yearsEducation: bachelorsSkills: ["Technical guidance","Mentoring","Incident validation","Documentation","Communication"]

Oversee 24x7 advanced security monitoring and advanced incident investigation within the SOC. Serve as the primary escalation point for complex/high-severity incidents, validating investigations and leading deep-dive analysis across SIEM, IDS/IPS, firewalls, endpoint detection, and network telemetry. Design, tune, and validate detection rules; build SOC playbooks/runbooks; drive threat hunting using MITRE ATT&CK/DEFEND; and mentor SOC engineers while supporting automation via SOAR playbooks.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
e&
e&
2 days ago

Expert Engineer/Security Operation Centre

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 8 hours agoStatus: Live

Job Summary

Oversee 24x7 advanced security monitoring and advanced incident investigation within the SOC. Serve as the primary escalation point for complex/high-severity incidents, validating investigations and leading deep-dive analysis across SIEM, IDS/IPS, firewalls, endpoint detection, and network telemetry. Design, tune, and validate detection rules; build SOC playbooks/runbooks; drive threat hunting using MITRE ATT&CK/DEFEND; and mentor SOC engineers while supporting automation via SOAR playbooks.
Location: Dubai
Employment Type: Full time
Job Function: Solutions Engineering & Sales Engineering
Seniority: Manager level

Key Responsibilities

  • •Lead and supervise SOC engineers to ensure effective incident detection and response.
  • •Serve as the primary contact for advanced monitoring, threat detection, and investigation methodologies; provide escalation support for complex incidents.
  • •Act as final technical validation authority before escalating to Incident Response teams and ensure investigation report quality before closure.
  • •Develop and maintain SOC playbooks and runbooks, and drive detection coverage improvements including tuning to reduce false positives.
  • •Monitor threat intelligence feeds and translate emerging threats into operational detection priorities; lead purple-team workshops and support RFP technical recommendations.

Key Requirements

  • •Bachelor’s degree in Cybersecurity, Computer Science, or a related field (or equivalent work experience).
  • •8–10 years of cybersecurity/security operations experience, including SIEM monitoring, alert triage, and threat prioritization.
  • •Experience designing, tuning, and validating detection rules and alerts across SIEM/EDR/NDR/IDS-IPS and firewalls.
  • •Proficiency with SIEM and SOAR technologies, including Splunk and Microsoft Sentinel; building complex detection queries (KQL, SPL, or vendor languages).
  • •Cybersecurity-related certifications, with preferences for CISM, CISSP, Microsoft Sentinel training, and Splunk training.
Experience:8-10 yearsCybersecuritySOCThreat detection
Education:Bachelor's
Skills:Technical guidanceMentoringIncident validationDocumentationCommunication
Certifications:CISMCISSP
Tech Stack:SIEMSplunkMicrosoft SentinelEDRNDRIDS/IPSFirewallsKQLSPLSOARFortiSOARSplunk SOARMITRE ATT&CKDEFENDTCP/IPHTTP/SDNSFTPSMTPAnti-DDoS

Company Brief

e&
Emirates Telecommunications (Etisalat, now e&) is a UAE-based multinational telecom operator providing mobile, fixed-line, broadband, IPTV and digital services across the Middle East, Africa and Asia, with extensive infrastructure and enterprise solutions.
Industry: Telecommunications
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Abu Dhabi, United Arab Emirates
Founded: 1976
Glassdoor
Glassdoor: 3.7
WebsiteLinkedInGlassdoor