Senior SOC Engineer (EDR)

Cpx - UAE - Dubai
OverviewThe SOC Senior Engineer (EDR) is a specialized highly skilled and experienced Senior SOC Engineer with deep expertise in Endpoint Detection and Response (EDR) technologies. This role will be responsible for managing, optimizing, and enhancing our EDR capabilities to ensure rapid detection, investigation, and response to endpoint threats across the organization.ResponsibilitiesEDR Platform Management:Administer and maintain enterprise EDR solutions (e.g., Crowd Strike, Sentinel One, Microsoft Defender for Endpoint). Ensure optimal configuration, performance, and coverage across all endpoints. Define endpoint telemetry strategies, agent deployment models, and data retention policies. Ensure scalability, performance, and resilience of EDR infrastructure across hybrid environments.Platform Deployment & IntegrationLead deployment and configuration of EDR agents across diverse operating systems and environments. Integrate EDR with SIEM, SOAR, and threat intelligence platforms to enable automated detection and response.Detection EngineeringDevelop and fine-tune custom detection rules, behavioral analytics, and response playbooks. Collaborate with threat hunters and incident responders to enhance detection logic and reduce false positives.Operational OptimizationMonitor EDR platform health, performance, and coverage. Conduct regular audits, tuning, and upgrades to maintain optimal functionality.Incident Response EnablementProvide engineering support during endpoint-related security incidents. Working with the SOC Analysts to facilitate and effective Monitoring and analysis of EDR alerts to identify malicious activity. Align with Incident Responders to facilitate investigations into endpoint-related incidents and coordinate response efforts.Documentation & ComplianceMaintain detailed documentation of EDR architecture, configurations, and operational procedures. Ensure alignment with regulatory frameworks and internal security policies.Use Case & Rule DevelopmentDevelop and fine-tune detection rules, behavioral analytics, and response playbooks. Collaborate with threat intelligence, Incident Response, and SOC Monitoring teams to enhance detection capabilities.Automation & IntegrationIntegrate EDR with SIEM and SOAR platforms to streamline workflows. Automate response actions and containment procedures where applicable.Reporting & DocumentationGenerate reports on EDR activity, threat trends, and system health. Maintain detailed documentation of configurations, procedures, and incident handling.Collaboration & MentorshipWork closely with SOC analysts, IT, and security teams to improve endpoint security posture.QualificationsYears of ExperienceA minimum of 5 years of experience in SOC operations, with significant experience in EDR ManagementPrior experience in a technical role within a SOC or similar cybersecurity environment.EducationBachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field.Skills/CertificationsVendor certified EDR Engineer. Endpoint security concepts such as knowledge of persistence attack methods, malware detection indicators amongst others. Technical expertise in one or more of the leading EDR solutions such as Crowd Strike, Microsoft Defender, Sentinel One, Trend Micro etc. Cloud-related certifications like AWS Certified Solutions Architect, Google Professional Cloud Architect, or Microsoft Certified: Azure Solutions Architect Expert
Post date: 12 December 2025
Publisher:
Post date: 12 December 2025
Publisher: