SOC Engineer

CPX


Date: 1 day ago
City: Abu Dhabi
Contract type: Full time
Overview

Job Description: The SOC Platform Engineer with a minimum of 5 years of total experience to oversee the administrative functions of Threat Intelligence Platforms and other solutions within our Security Operations Center (SOC). In this role, you will manage and administrate the day-to-day operations of numerous SOC systems, ensuring effective integration and alignment with our security objectives. This includes user access and performance monitoring, while collaborating with technical teams to implement enhancements that improve our security posture. Additionally, you will maintain comprehensive documentation of processes and procedures and monitor the effectiveness of threat intelligence initiatives, providing insights for optimization. Strong organizational and communication skills are essential, as you will work closely with diverse teams to ensure the SOC operates efficiently and effectively in safeguarding the organization against cyber threats.

Responsibilities

Responsibilities:

  • Threat Intelligence Platform Management: Manage and maintain enterprise and open-source threat intelligence platforms and solutions, including configuration, optimization, and integration with other SOC tools.
  • Threat Intelligence Consumption: Manage the ingestion and consumption of threat intelligence in the TIP, ensuring information is available and correctly organized for analysis.
  • Threat Intelligence Dissemination: Manage the integration and dissemination of threat intelligence feeds into the SOC internal and external environment, ensuring compatibility with existing tools and workflows.
  • Integration with SOC Tools: Collaborate with other SOC engineering teams to tightly integrate threat intelligence solutions with existing SOC tools (SIEM, SOAR, EDR, NDR) and workflows for enhanced threat detection and service excellence.
  • Automation Development: Develop and implement automation scripts and processes to streamline the collection, normalization, and dissemination of threat intelligence data.
  • Customization and Enhancement: Customize and enhance threat intelligence platforms to meet the specific requirements of the SOC, including the development of custom parsers, connectors, and integrations.
  • OS, Network, and API Skills: Leverage your strong technical skills in operating systems, networking, and APIs to troubleshoot and resolve any issues related to Threat Intelligence platforms (TIP), Network Detection and Response (NDR), and other systems.
  • Threat Intelligence Analysis Support: Provide day to day support to threat intelligence analysts by ensuring they have access to relevant threat feeds and assisting in the analysis and interpretation of threat data.
  • Performance Optimization: Continuously monitor, optimize, and report on the performance of threat intelligence solutions, identifying and resolving any issues or bottlenecks.
  • Documentation and Reporting: Maintain comprehensive documentation of threat intelligence platform configurations, processes, and procedures. Generate regular reports on threat intelligence activities and findings for stakeholders.
  • Collaboration and Knowledge Sharing: Collaborate with other SOC engineering teams to share knowledge, best practices, and lessons learned in threat intelligence management. Provide training and guidance to junior engineers as needed.
  • Participate in special projects as needed to support the evolving needs of the Security Operations Center (SOC).

Skills

  • Solid understanding of cloud platforms (AWS, Azure, Google Cloud) and their services.
  • Solid knowledge of operating systems (Windows, Linux, macOS) and their security configurations.
  • Thorough understanding of network protocols, architecture, and security
  • Eager learner with strong analytical and problem-solving abilities.
  • Proficiency in scripting languages (e.g., Python, Bash) for automation.
  • Deep understanding of API design, development, and integration.
  • Experience with microservices architecture and containerization technologies (e.g., Docker,
  • Kubernetes).
  • Ability to collaborate effectively with a variety of team members, including interfacing with customers to resolve issues.
  • High proficiency in written and verbal communication

Qualifications

  • Bachelor’s or master’s degree in computer science, Information Technology, or a related field.
  • At least 5 years of experience in Systems Engineering in complex environments.

Certifications (preferred)

  • Cloud-related certifications like AWS Certified Solutions Architect - Associate, Google Professional Cloud Architect - Associate, or Microsoft Certified: Azure Administrator Associate.

Networking certifications such as CCNA or CCNP are advantageous

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

Post a resume

Similar jobs

Project Secretary

J10 Consulting, Abu Dhabi
4 hours ago
The Role Our Tier 1 Main Contracting Client has a new requirement for a well experienced Project Secretary to join their team in Abu Dhabi to work on a high profile new villa and mansion project. Successful candidates will have a proven background as a Project Secretary working on high profile projects in the UAE with preference given to those...

Financial Controller

Time Out Group plc, Abu Dhabi
AED 28,000 per month
5 hours ago
Title: Financial ControllerLocation: Abu DhabiDepartment: FinanceReporting to: General ManagerBrand Video: Time Out Market_Brand Video_MAR2022.mp4Time Out Market is a global food and cultural market leveraging the editorial curation of Time Out Media to bring the best of the city together under one roof: its best chefs, restaurants, bars, and cultural experiences.Role OverviewThe Market financial controller will oversee the BAU transactional accounting...

Supervisor

Yokogawa, Abu Dhabi
22 hours ago
Not just a job, but a career Yokogawa, award winner for ‘Best Asset Monitoring Technology’ and ‘Best Digital Twin Technology’ at the HP Awards, is a leading provider of industrial automation, test and measurement, information systems and industrial services in several industries. Our aim is to shape a better future for our planet through supporting the energy transition, (bio)technology, artificial...