Senior Security Engineer - EDR & NDR

Help AG
Dubai
Workplace: HybridFull timeFunction: CybersecurityExperience: 5-7 yearsSkills: ["Collaboration","Technical mentoring","Incident response","Threat hunting"]

Design, implement, administer, and optimize Endpoint Detection & Response (EDR) and Network Detection & Response (NDR) platforms across customer environments. Deploy and tune Microsoft Defender for Endpoint and CrowdStrike/other EDRs, manage Vectra AI/ExtraHop NDR sensors, and integrate telemetry with SIEM/SOAR and threat intelligence. Collaborate with SOC, incident response, and engineering teams to improve detections using MITRE ATT&CK, support investigations, and maintain platform health and documentation.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Help AG
Help AG
6 days ago

Senior Security Engineer - EDR & NDR

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 6 hours agoStatus: Live

Job Summary

Design, implement, administer, and optimize Endpoint Detection & Response (EDR) and Network Detection & Response (NDR) platforms across customer environments. Deploy and tune Microsoft Defender for Endpoint and CrowdStrike/other EDRs, manage Vectra AI/ExtraHop NDR sensors, and integrate telemetry with SIEM/SOAR and threat intelligence. Collaborate with SOC, incident response, and engineering teams to improve detections using MITRE ATT&CK, support investigations, and maintain platform health and documentation.
Location: Dubai
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Design, implement, and manage EDR platforms including deployment, health checks, upgrades, prevention policies, detection rules, and lifecycle management.
  • •Administer NDR platforms by configuring sensors, monitoring infrastructure, tuning detections, and investigating suspicious network activity.
  • •Integrate EDR/NDR with SIEM/SOAR, identity systems (Active Directory, Microsoft Entra ID), and threat intelligence; validate telemetry and data quality.
  • •Support SOC/incident response activities including threat hunting, responding to security incidents, and developing detection use cases aligned to MITRE ATT&CK.
  • •Handle operational duties such as upgrades, patching, backup validation, platform health and capacity monitoring, and maintaining runbooks/documentation.

Pay and Benefits

Perks:Health Insurance

Key Requirements

  • •Minimum 5–7 years of experience in cybersecurity engineering or security operations.
  • •4+ years of hands-on experience administering enterprise EDR platforms.
  • •3+ years of experience administering NDR platforms.
  • •Strong SIEM experience, preferably Splunk Enterprise Security and/or Microsoft Sentinel, including onboarding, alert tuning, dashboards, and investigations.
  • •Working experience supporting enterprise security platforms in a SOC or Managed Security Services (MSS) environment.
Experience:5-7 yearsCybersecurity engineeringSecurity operationsSOCManaged Security Services (MSS)
Skills:CollaborationTechnical mentoringIncident responseThreat hunting
Certifications:CrowdStrike Falcon Administrator / ResponderMicrosoft Defender for Endpoint AdministratorVMware Carbon Black AdministratorTrend Micro Vision One ProfessionalVectra AI Certified AdministratorExtraHop Reveal(x) Certified EngineerMicrosoft Certified: Security Operations Analyst (SC-200)Microsoft Certified: Azure Security Engineer (AZ-500)Splunk Core Certified Power UserEnterprise Security AdminMicrosoft Sentinel certificationCISSPGCIHGCEDCySA+Security+
Tech Stack:Microsoft Defender for EndpointCrowdStrike FalconVMware Carbon BlackTrend Micro Vision OneApex OneVectra AIExtraHop Reveal(x)Splunk EnterpriseSplunk Enterprise SecurityMicrosoft SentinelKQLSPLActive DirectoryMicrosoft Entra IDSIEMSOARThreat IntelligenceMITRE ATT&CKIOC/IOAWindows

Company Brief

Help AG
Provides cybersecurity solutions and managed security services including MDR, SOC, threat intelligence, consulting, and compliance for enterprises across the Middle East and APAC. Offers integration, incident response, and risk-management services for complex IT environments.
Industry: Cybersecurity
Company Size: Large (251 to 1,000 employees)
Growth: Established Company
Headquarters: Dubai, United Arab Emirates
WebsiteLinkedIn