About the role
You will be part of the team that watches over our clients' users, devices and cloud accounts around the clock. You will triage alerts, investigate incidents and help contain threats before they cause damage.
What you will do
- Monitor SIEM and EDR alerts and triage them quickly and accurately
- Investigate suspicious activity across endpoints, email and cloud
- Escalate and help contain confirmed incidents following our playbooks
- Write clear incident reports for clients and internal teams
- Help tune detection rules to reduce false positives
What we are looking for
- 1-3 years in a SOC, security or IT operations role
- Understanding of common attack techniques (MITRE ATT&CK)
- Hands-on experience with a SIEM such as Microsoft Sentinel or Splunk
- Willingness to work rotating shifts
- Good written and spoken English
Nice to have
- Security+, CySA+, SC-200 or similar certification
- Scripting in PowerShell or Python
- Arabic language skills
What we offer
- Competitive tax-free salary
- Paid certifications and training
- Medical insurance
- Annual leave and yearly flight home
- UAE visa sponsorship
- Clear career progression
How to apply
Email your CV and a short note about why you are interested to careers@tlrone.com, with the job title in the subject line.
Apply for this role