We are hiring an experienced Security Analyst for our client in Khobar, Saudi Arabia to monitor, investigate, and respond to security alerts across a complex enterprise security environment.
The role will work closely with a third-party SOC, validating and actioning escalated security incidents while monitoring security tools and technologies that are not yet fully integrated into the SIEM.
Key Responsibilities:
- Review and action security alerts escalated by the third-party SOC through Gurucul SIEM
- Monitor CrowdStrike EDR and SentinelOne consoles and investigate potential threats
- Analyze Vectra AI NDR alerts and identify suspicious network activity
- Review BeyondTrust PAM session logs and recordings for anomalous privileged access
- Monitor Cisco Duo for suspicious authentication activity involving internal and remote users
- Review Proofpoint email security alerts and phishing simulation results
- Monitor Cloudflare WAF/DDoS security events
- Review and prioritize vulnerabilities identified through CrowdStrike Spotlight and coordinate remediation
- Monitor security technologies including Forescout NAC and Nexthink
- Periodically review existing security solutions and policies and recommend improvements
Required Technical Skills:
- * EDR investigation and threat triage using CrowdStrike and/or SentinelOne
- NDR alert analysis using Vectra AI or equivalent platforms
- Familiarity with Forescout NAC
- PAM session monitoring using BeyondTrust
- MFA platforms such as Cisco Duo and Okta
- Email security operations using Proofpoint
- WAF/CDN security event monitoring using Cloudflare
- Familiarity with F5 technologies
- Strong understanding of incident response fundamentals
- Knowledge of the MITRE ATT&CK framework
Candidates with hands-on experience across SOC operations, EDR, NDR, PAM, NAC, email security, and incident response are encouraged to apply.
Only shortlisted candidates will be contacted.