Mid-Level Cyber Security Engineer

Zohorecruit

Abu Dhabi

On-site

AED 240,000 - 360,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Zohorecruit is seeking a Cyber Security Operations Engineer in Abu Dhabi to monitor, detect, and respond to security incidents across endpoints, networks and applications. You will work with SIEM, SOAR, EDR/XDR/NDR tools and support data protection, vulnerability management and security posture improvements.

The role requires hands-on experience with McAfee ePO, DLP and data classification, plus collaboration with security teams and stakeholders to defend digital assets and ensure regulatory

Qualifications

  • Bachelor's degree or equivalent work experience in Computer Science, Cybersecurity or IT.
  • 3–5 years in security operations with hands-on tooling.
  • Experience with SIEM, SOAR, EDR, XDR, NDR platforms.
  • Strong analytical and incident response skills.

Responsibilities

  • Monitor security alerts from SIEM/NDR/EDR/XDR to detect threats.
  • Lead or participate in incident response: analysis, containment, eradication, recovery.
  • Use SOAR to automate and orchestrate incident workflows.
  • Tune security tools to reduce false positives and improve detection.
  • Coordinate with IT, network and development teams on remediation and security improvements.
  • Produce management reports on incidents and trends.

Skills

Threat detection
Incident response
Security monitoring
Automation scripting

Education

Bachelor's degree

Tools

Splunk
QRadar
ArcSight
Demisto
FortiSOAR
CrowdStrike
Cybereason
Carbon Black
McAfee ePO
DLP
Data Classification
Python
PowerShell
NDR
XDR

Job description

Abu Dhabi, United Arab Emirates

We are seeking a Cyber Security Operations Engineer with a strong background in security operations, threat detection, and incident response. The ideal candidate will have experience with advanced security technologies, including SIEM, SOAR, EDR, XDR, NDR, and more, to help defend against cyber threats and ensure the security of our digital assets. This role requires hands‑on expertise with security tools such as McAfee ePO, Antivirus, EPP, DLP, and Data Classification technologies.

As a Cyber Security Operations Engineer, you will play a critical role in monitoring, detecting, and responding to security incidents, working closely with other security teams and stakeholders to protect the organization's infrastructure.

Key Responsibilities:
Security Monitoring & Incident Detection:
  • Monitor security alerts and data from various security platforms (e.g., SIEM, NDR, EDR, XDR) to detect and respond to potential threats.
  • Utilize SIEM tools (e.g., Splunk, ArcSight, QRadar) to aggregate, analyze, and correlate logs and events for threat detection and incident investigation.
  • Lead or participate in incident response activities, including analysis, containment, eradication, and recovery.
  • Use SOAR platforms (e.g., Demisto, Phantom, Swimlane) to automate and orchestrate incident response workflows.
  • Investigate security incidents across endpoints, networks, and applications and provide recommendations for remediation.
  • Leverage threat intelligence feeds and integrate them with SIEM/XDR platforms to enhance detection capabilities.
  • Continuously tune and optimize security tools to improve detection and response times, minimizing false positives.
Security Tool Management & Optimization:
  • Manage and fine‑tune the configuration of security tools, including McAfee ePO, Antivirus, EPP (Endpoint Protection Platform), and DLP (Data Loss Prevention) solutions.
  • Support the implementation and maintenance of network and endpoint security solutions (EDR, NDR, XDR).
Data Protection & Classification:
  • Ensure data security policies are enforced using Data Loss Prevention (DLP) tools and data classification frameworks.
  • Implement and enforce best practices for protecting sensitive and confidential data, adhering to internal and external compliance requirements.
Vulnerability Management:
  • Work with vulnerability management teams to identify, assess, and remediate security weaknesses across the enterprise infrastructure.
  • Conduct regular assessments to ensure endpoint protection and security tools are up to date and fully operational.
  • Work closely with IT, Network, and Development teams to ensure security measures are incorporated into the infrastructure and applications.
  • Provide regular reports to management on security incidents, trends, and improvements to the security posture.
Security Awareness & Training:
  • Assist in creating and delivering security awareness training for employees, ensuring that security protocols and best practices are understood and followed.
Compliance & Documentation:
  • Maintain documentation of security incidents, investigations, and system configurations in accordance with compliance and audit standards.
  • Assist in compliance efforts for relevant security frameworks and regulations (e.g., GDPR, HIPAA, PCI-DSS).
Requirements
Education:
  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field, or equivalent work experience.
Required experience:
  • 3-5 years of experience in security operations or a related field, with hands‑on experience using a variety of security technologies and tools.
Technical Skills:
  • Security Tools: Extensive experience with SIEM platforms (e.g., Splunk, QRadar, ArcSight), SOAR (e.g., Demisto, FortiSoar), EDR (e.g., CrowdStrike, Cybereason, Carbon Black), XDR, NDR, EPP, DLP, and Data Classification tools.
  • Endpoint Security: Familiarity with McAfee ePO, Antivirus solutions, and endpoint protection tools.
  • Network Security: Experience with network security technologies, firewalls, IDS/IPS, and NDR platforms.
  • Scripting & Automation: Experience with scripting languages (e.g., Python, PowerShell) to automate security workflows and incident response processes.
  • Threat Intelligence & Analysis: Ability to consume and integrate threat intelligence into security operations tools.
  • Cloud Security: Familiarity with cloud platforms (AWS, Azure, GCP) and security considerations for cloud infrastructure.
Certifications (Preferred):
  • Certified Information Systems Security Professional (CISSP)
  • Certified Ethical Hacker (CEH)
  • GIAC Security Operations Certified (GSOC)
  • Certified Incident Handler (GCIH)
  • CompTIA Security+ or equivalent
Key Skills & Attributes:
  • Strong analytical skills with the ability to triage and investigate security events.
  • In-depth understanding of security operations, incident response, and risk management.
  • Strong troubleshooting skills and ability to think critically under pressure.
  • Excellent communication skills, including the ability to explain complex technical concepts to non‑technical stakeholders.
  • Proactive and collaborative mindset, able to work effectively across multiple teams.
  • A deep understanding of emerging security threats and trends, with a passion for continuous learning.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Specialist
Cyber Security Specialist

Hamdan Bin Mohammed Smart University • Dubai

On-site
AED 180,000 - 320,000
Cyber Security Specialist - UAE National
Cyber Security Specialist - UAE National

Confidential Careers • Abu Dhabi

On-site
AED 240,000 - 480,000
Network & Security Engineer
Network & Security Engineer

Zohorecruit • Abu Dhabi

On-site
AED 180,000 - 280,000
Cyber Security Engineer
Cyber Security Engineer

Tanqeeb • Abu Dhabi

On-site
AED 240,000 - 360,000
Incident Response Manager
Incident Response Manager

ADIB Group • Abu Dhabi

On-site
AED 350,000 - 550,000
Information Security Analyst (UAE National) | Corporate Services | Group Tech & Dig Platforms
Information Security Analyst (UAE National) | Corporate Services | Group Tech & Dig Platforms

Tanqeeb • Abu Dhabi

On-site
AED 201,000 - 312,000
Cyber Security Engineer
Cyber Security Engineer

NorthBay Solutions • Abu Dhabi

On-site
AED 270,000 - 480,000
Cloud Security & SIEM Engineer (SOC)
Cloud Security & SIEM Engineer (SOC)

Client of ITHR 360° CONSULTING FZE • Dubai

On-site
AED 240,000 - 360,000
Information Security Consultant
Information Security Consultant

United Al Saqer Group • Abu Dhabi

On-site
AED 180,000 - 260,000
Cybersecurity Pre-Sales & Solutions Consultant – SOC / MXDR / EDR
Cybersecurity Pre-Sales & Solutions Consultant – SOC / MXDR / EDR

Socium - Teams Done Differently • Dubai

On-site
AED 300,000 - 420,000