Senior SOC Analyst

Salla
Jeddah
Workplace: OnsiteFull timeFunction: CybersecurityExperience: 5+ yearsEducation: bachelorsSkills: ["Analytical","Investigation","Incident handling","Communication"]

Lead advanced SOC monitoring and investigations across cloud, endpoint, network, and edge environments. Triage L2/L3 alerts using SIEM to validate incidents, reduce noise, and assess impact, while investigating edge events such as WAF, DDoS, bot activity, and Zero Trust. Build and tune SIEM detections aligned to MITRE ATT&CK, perform root-cause analysis, and mentor junior analysts in playbooks and incident response runbooks.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Salla
Salla
1 day ago

Senior SOC Analyst

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 20 hours agoStatus: Live

Job Summary

Lead advanced SOC monitoring and investigations across cloud, endpoint, network, and edge environments. Triage L2/L3 alerts using SIEM to validate incidents, reduce noise, and assess impact, while investigating edge events such as WAF, DDoS, bot activity, and Zero Trust. Build and tune SIEM detections aligned to MITRE ATT&CK, perform root-cause analysis, and mentor junior analysts in playbooks and incident response runbooks.
Location: Jeddah
Workplace: Onsite
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Perform advanced L2/L3 alert triage and investigations across endpoint, network, cloud, and edge security platforms.
  • •Lead incident investigations using SIEM tools to validate incidents, reduce noise, and determine impact.
  • •Investigate edge security events including WAF, DDoS, bot activity, and Zero Trust alerts; serve as an escalation point for confirmed incidents.
  • •Conduct root cause analysis and threat investigations, including identifying attacker behavior and scoping impact.
  • •Design, tune, and maintain SIEM detection rules aligned to MITRE ATT&CK; mentor junior SOC analysts and help maintain investigation playbooks and runbooks.

Key Requirements

  • •5+ years of experience as a SOC Analyst at L2/L3 level, including alert triage, incident investigation, and escalation.
  • •Hands-on experience with SIEM platforms such as Splunk or Graylog.
  • •Strong networking knowledge (TCP/IP, DNS, HTTP/HTTPS, BGP) and experience analyzing AWS security logs (CloudTrail, CloudWatch, VPC Flow Logs).
  • •Experience with container/Kubernetes runtime security, including Kubernetes and Amazon EKS.
  • •Experience with Cloudflare security tools (WAF, DDoS, Bot Management, Zero Trust) and developing/tuning SIEM detection rules.
Experience:5+ yearsSOC
Education:Bachelor's
Skills:AnalyticalInvestigationIncident handlingCommunication
Certifications:GCIAGCIHCompTIA CySA+AWS Security Specialty
Tech Stack:SIEMSplunkGraylogAWS CloudTrailAWS CloudWatchVPC Flow LogsTCP/IPDNSHTTP/HTTPSBGPKubernetesAmazon EKSCloudflareWAFDDoSBot ManagementZero TrustIDS/IPSFirewallsProxies

Company Brief

Salla
Provides an e-commerce platform that helps merchants create, manage, and grow online stores. The product includes storefront setup, payments, order management, shipping integrations, and tools for sales and customer engagement.
Industry: SaaS
Company Size: Large (251 to 1,000 employees)
Growth: Scaleup
Headquarters: Riyadh, Saudi Arabia
Founded: 2016
WebsiteLinkedIn