Security Engineer

Confidential Company

Multiple VacanciesEmployer Active

Posted 28 min ago

Experience

8 - 15 Years

Education

Bachelor of Technology/Engineering

Nationality

Any Arab National, Indian

Gender

Any

Vacancy

4 Vacancies

Job Description

Roles & Responsibilities

  • Perform customer asset onboarding, including asset inventory validation and Crown Jewel identification (CIA-based).

  • Define and implement log baselines for various device types and ensure proper log ingestion.

  • Configure and integrate customer environments with SIEM platforms, including tenant setup, security profiling, and log retention.

  • Develop, validate, and fine-tune security use cases.

  • Conduct 24x7 monitoring of customer environments and handle incident alerting (TTA).

  • Perform incident analysis (TTN, TTDN) and manage complete ticket lifecycle (TTC).

  • Prepare and present daily, weekly, monthly, and ad-hoc reports to stakeholders.

  • Review logs, optimize use cases, and update SOP documentation.

  • Generate and share Threat Intelligence reports.

  • Perform daily health checks, backup validation, and administrative activities for CDC tools.

  • Handle troubleshooting, firmware upgrades, and operational maintenance.

  • Update IOC feeds and enhance or create new detection use cases.

  • Lead incident response and forensic investigations.

  • Conduct root cause analysis, post-incident reviews, and malware analysis.

  • Perform threat hunting using MITRE ATT&CK framework.

  • Analyze threat actor TTPs and integrate findings into detection strategies.

  • Collect, analyze, and operationalize threat intelligence.

Desired Candidate Profile

  • SIEM Tools: IBM QRadar, Splunk, Microsoft Azure Sentinel

  • SOAR Tools: Palo Alto Cortex SOAR, Fortinet FortiSOAR

  • Threat Intelligence Platforms: Cyware or similar tools

  • Ticketing Tools: ManageEngine ServiceDesk Plus or equivalent

  • Strong knowledge of incident response, threat hunting, and SOC/CDC operations

  • Familiarity with MITRE ATT&CK framework and malware analysis

  • Understanding of network security, logging, and security event correlation

  • Basic scripting/automation knowledge (Python, PowerShell) is an advantage

Employment Type

    Full Time

Company Industry

Department / Functional Area

Keywords

  • Qradar
  • Soar
  • Splunk
  • Azure Sentinel
  • Siem
  • Palo Alto
  • Security Engineer
  • Network Security Engineer
  • Cybersecurity

Disclaimer: Naukrigulf.com is only a platform to bring jobseekers & employers together. Applicants are advised to research the bonafides of the prospective employer independently. We do NOT endorse any requests for money payments and strictly advice against sharing personal or bank related information. We also recommend you visit Security Advice for more information. If you suspect any fraud or malpractice, email us at abuse@naukrigulf.com

Confidential Company