Cyber Security Analyst - Dubai
22 hours ago

Job description
- Lead and coordinate Incident Response (IR) activities from detection through containment, eradication, and recovery—ensuring zero-delay execution and clear communication across technical and executive stakeholders
- Architect, tune, and manage enterprise-wide SIEM solutions (Splunk, QRadar, Sentinel, Chronicle, or similar) to optimize detection coverage, reduce false positives, and enable real-time threat visibility
- Drive Cyber Resilience initiatives: design and test business continuity plans, conduct tabletop exercises, and validate organizational readiness against ransomware, supply chain attacks, and APT campaigns
- Establish and enforce streamlined workflows for alert triage, escalation, and remediation—eliminating bottlenecks and ensuring SLA adherence during critical incidents
- Handle unexpected security events with composure, rapidly assessing impact, mobilizing resources, and adapting tactics in dynamic threat landscapes
- Develop and maintain threat detection use cases, correlation rules, and automated response playbooks
- Produce post-incident reports with actionable intelligence and root cause analysis to continuously improve security posture
- Facilitate tabletop exercises and crisis simulations to stress-test organizational response capabilities and identify coordination gaps before real incidents occur
- Coordinate crisis communications during active incidents, translating technical developments into clear briefings for legal, PR, and executive leadership
- Conduct proactive threat hunting operations beyond automated alerts to identify latent adversaries and advanced persistent threats
- Map security controls and detection capabilities to DESC ISR and MITRE ATT&CK framework, identifying coverage gaps and prioritizing defensive improvements
Desired Candidate Profile
- 4+ years in information security with demonstrated hands-on incident response and digital forensics experience
- Deep expertise with enterprise SIEM platforms (Splunk ES, Microsoft Sentinel, IBM QRadar, Chronicle SIEM, or Elastic Security)—including log source onboarding, parsing, and advanced correlation logic
- Proven track record of coordinating security workflows across SOC, IT, legal, and executive teams with precision timing and accountability
- Experience building and testing cyber resilience frameworks: disaster recovery, backup integrity validation, and crisis communication protocols
- Ability to operate decisively during high-pressure, ambiguous situations with limited initial information
- Hands-on purple teaming or attack simulation experience—ability to think like an adversary to strengthen defensive controls and detection logic
- Practical knowledge of supply chain security risks and third-party vendor assessment methodologies
- Experience with chaos engineering or failure injection testing to validate system recovery and organizational response under simulated duress.
Preferred Certifications & Skills
- Splunk Core Certified Power User or Splunk Enterprise Security Certified Admin
- Microsoft Certified: Security Operations Analyst Associate
- EC-Council Certified Incident Handler (ECIH) or Certified SOC Analyst (CSA)
- GIAC Certified Intrusion Analyst (GCIA)
- Certified Threat Intelligence Analyst (CTIA) or GIAC Cyber Threat Intelligence (GCTI)
- Familiarity with SOAR platforms (Splunk SOAR, Palo Alto XSOAR, Chronicle SOAR) for workflow automation
- Experience with threat intelligence platforms (MISP, ThreatConnect, Mandiant Advantage, Recorded Future)
- Purple teaming tools (Atomic Red Team, Caldera, Prelude Operator) for adversary emulation
- Supply chain security frameworks (SLSA, SSDF, or vendor risk management platforms)
- Scripting abilities (Python, PowerShell, KQL, SPL) for automation, custom detection logic, and threat hunting
- Understanding of cloud security (AWS GuardDuty, Azure Sentinel, GCP Security Command Center) and hybrid architectures
- Knowledge of regulatory resilience requirements (DESC ISR, ISO 27001)
Similar jobs
Help AG is looking for a talented Security Analyst who will have a strong knowledge and interest in network security. · ...
1 day ago
The Security Analyst will follow response procedures based on incident impact analysis & predetermined response actions procedures. · ...
3 weeks ago
Protecting computer systems and networks from cyber threats. · Monitor network traffic for suspicious activity. · Conduct thorough security assessments. · ...
1 week ago
Cyber Security Analyst will continuously monitor security systems networks and applications for threats vulnerabilities or suspicious activity assist in detecting analyzing and responding to cyber incidents perform basic threat analysis to identify emerging risks support vulnerab ...
2 weeks ago
Key ResponsibilitiesSecurity MonitoringContinuously monitor security systems networks and applications for threats vulnerabilities or suspicious activity. · ...
2 weeks ago
We are seeking a motivated and detail‑oriented Cyber Security Analyst (Entry Level) to join our security organization. This role is designed for recent graduates who are passionate about cybersecurity and eager to gain hands‑on experience while contributing to the protection of c ...
2 weeks ago
Zon IT Solutions busca un especialista en seguridad cibernética para proteger sus sistemas informáticos. · ...
2 days ago
We are currently looking for Junior information security analyst. · ...
1 month ago
The primary function of this role is to monitor the ENOC environment on 24*7 basis and conduct initial analysis's for events to identify any cyber security threats or attacks on ENOC IT/OT assets. · Follow response procedures and other CIC related SOPs based on the incident impac ...
3 days ago
The Senior Security Analyst plays a key role in strengthening security operations, incident management, and compliance within Mediclinic Middle East. · ...
1 month ago
Job summaryVAM Systems is currently looking for Information Security Analyst for our UAE operations with the following skillsets & terms and conditions: · 3 years of experience in analysing logs and vulnerabilities. · ...
1 month ago
Information Technology Security Business Analyst (Ref: 195705)
Only for registered members
Contract Role - · Title: · Information Security Business Analyst (Ref: · Location: · Dubai · Brief Overview: · A leading retail group in the GCC is hiring a · Security · Business Analyst · to support the SAP S4 Hana Transformation. The role will operate at the intersection of In ...
22 hours ago
Cyber Security Analyst position available at VAM Systems in Dubai with immediate joining time frame. · ...
1 month ago
Help AG is looking for a talented and enthusiastic Security Analyst who will have a strong knowledge and interest in network security. · ...
1 month ago
We are looking for a talented and enthusiastic Security Analyst who will have a strong knowledge and interest in network security. · Follow detailed operational process and procedures to appropriately analyse, escalate, and assist in remediation of critical information security i ...
2 weeks ago
Job summary: · Help AG is looking for a talented and enthusiastic Emirati national to join our Security Operations Centre (SOC) team as a · Security Analyst. Responsibilities include monitoring multiple security technologies and events using the Security Information Event Managem ...
2 weeks ago
We are seeking a skilled and dedicated Security Analyst to join our growing team. · ...
1 month ago
The Analyst supports the Credit Risk Management Head in managing credit risk associated with mortgage and wealth management portfolios. · ...
1 month ago
VAM Systems is currently looking for Cyber Security Analyst for our UAE operations. · ...
1 month ago
We are seeking a skilled and dedicated Security Analyst to join our growing team. · ...
1 month ago