وصف الوظيفة
نبحث عن محلل SOC من المستوى L1 مع خبرة من 1 إلى 3 سنوات لمراقبة أحداث الأمن الإلكتروني، وتحديد التهديدات المحتملة، ودعم مركز العمليات الأمنية (SOC) في الاستجابة لحوادث الأمن.
يجب أن يكون المرشح المثالي لديه فهم جيد لأساسيات الأمن السيبراني والمراقبة الأمنية.
المسؤوليات الرئيسية مراقبة تنبيهات وأحداث الأمن باستخدام أدوات مراقبة SOC.
إجراء التحليل الأولي وفرز الحوادث الأمنية.
تصعيد الأنشطة المشتبهة إلى محللي SOC من المستوى الأعلى عندما يكون ذلك مطلوباً.
التحقيق في التنبيهات الأمنية وتوثيق النتائج.
مراقبة سجلات النظام والشبكة بحثاً عن تهديدات أمنية محتملة.
اتباع إجراءات الاستجابة للحوادث ودفاتر تشغيل SOC.
الحفاظ على وثائق دقيقة للأحداث والحوادث الأمنية.
العمل closely مع فريق الأمن السيبراني لدعم عمليات SOC اليومية.
درجة البكالوريوس في علوم الكمبيوتر، الأمن السيبراني، تكنولوجيا المعلومات، أو مجال ذو صلة.
خبرة من 1 إلى 3 سنوات في مركز عمليات الأمن (SOC) أو دور في الأمن السيبراني.
فهم أساسي لمفاهيم الأمن السيبراني ومراقبة الأمن.
الإلمام بالحوادث والتهديدات والثغرات الأمنية.
مهارات تحليلية وحل المشكلات قوية.
مهارات اتصال والعمل الجماعي جيدة.
الرغبة في العمل ضمن بيئة دوام على مدار 24/7 إذا لزم الأمر.
حسن وجود معرفة بأدوات SIEM.
الإلمام بأنظمة Windows وLinux وأسس الشبكات.
الشهادات مثل Security+، CEH، أو SC-200 تعتبر ميزة.
Job description
We are looking for an L1 SOC Analyst with 1–3 years of experience to monitor security events, identify potential threats, and support the Security Operations Center (SOC) in responding to security incidents.
The ideal candidate should have a good understanding of cybersecurity fundamentals and security monitoring.
Key Responsibilities Monitor security alerts and events using SOC monitoring tools.
Perform initial analysis and triage of security incidents.
Escalate suspicious activities to higher-level SOC analysts when required.
Investigate security alerts and document findings.
Monitor system and network logs for potential security threats.
Follow incident response procedures and SOC playbooks.
Maintain accurate documentation of security events and incidents.
Work closely with the cybersecurity team to support daily SOC operations.
Bachelor's degree in Computer Science, Cyber Security, Information Technology, or a related field.
1–3 years of experience in a Security Operations Center (SOC) or cybersecurity role.
Basic understanding of cybersecurity concepts and security monitoring.
Familiarity with security incidents, threats, and vulnerabilities.
Strong analytical and problem-solving skills.
Good communication and teamwork skills.
Willingness to work in a 24/7 shift environment if required.
Nice to Have Knowledge of SIEM tools.
Familiarity with Windows, Linux, and networking fundamentals.
Certifications such as Security+, CEH, or SC-200 are an advantage.