Senior Cybersecurity Operations Lead (Defender & SIEM)

Tanqeeb

Dubai

On-site

AED 300,000 - 420,000

Full time

7 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Tanqeeb is seeking an experienced cybersecurity leader to drive defense operations in a dynamic Dubai-based environment. You will oversee Defender for Endpoint/Identity/Cloud/O365, manage Sentinel analytics and incident workflows, and deploy Wazuh for endpoint monitoring and threat detection.

You will develop MITRE-aligned detection, conduct threat hunts, and lead investigations while improving web and AD security, network controls, and ISO 27001 program support.

Qualifications

  • 10+ years of professional cybersecurity experience.
  • Hands-on with the Microsoft Defender security suite.
  • Strong experience with Microsoft Sentinel covering SIEM, SOAR, threat hunting, analytics, and incident response.
  • Hands-on experience with Wazuh deployment, configuration, tuning, monitoring, and reporting.
  • Strong practical understanding of MITRE ATT&CK and detection engineering.
  • Strong knowledge of web application security, OWASP Top 10, WAF, and vulnerability remediation.
  • Strong knowledge of Active Directory security, identity attacks, privilege escalation, lateral movement, hardening, and monitoring.
  • Strong knowledge of network security, including firewalls, segmentation, VPN, IDS/IPS, secure protocols, and traffic analysis.
  • Working knowledge of ISO 27001, ISMS, risk management, security controls, and audit requirements.
  • Experience supporting ISO 27001 audits, control implementation, gap assessments, evidence collection, and remediation.
  • Practical experience with security automation and scripting using PowerShell, Python, KQL, Logic Apps, n8n, APIs, or similar technologies.
  • Strong understanding of enterprise security architecture, security operations, incident investigation, and risk management.

Responsibilities

  • Lead cybersecurity operations, threat detection, incident response, threat hunting, and security posture improvement initiatives.
  • Manage and optimize Microsoft Defender for Endpoint, Defender for Identity, Defender for Cloud, Defender for Office 365, and related Microsoft security solutions.
  • Administer and enhance Microsoft Sentinel, including analytics rules, KQL queries, workbooks, playbooks, threat hunting, and incident workflows.
  • Deploy, manage, tune, and monitor Wazuh for endpoint monitoring, log analysis, compliance, and threat detection.
  • Develop detection logic and response processes aligned with the MITRE ATT&CK framework.
  • Conduct security investigations, root cause analysis, threat hunting, and post-incident reporting.
  • Assess and improve web application security, including OWASP Top 10, WAF configuration, secure configurations, and vulnerability remediation.
  • Strengthen Active Directory security, including identity protection, privilege management, hardening, monitoring, and attack-path reduction.
  • Review and improve network security controls, including firewalls, IDS/IPS, segmentation, VPN, secure remote access, and network monitoring.
  • Develop security automation using PowerShell, Python, KQL, APIs, Logic Apps, n8n, and other workflow/automation platforms.
  • Automate alert triage, enrichment, notification, ticketing, containment, and security reporting processes.
  • Support ISO 27001 / ISMS activities, including risk assessments, control reviews, internal audits, evidence collection, gap assessments, corrective actions, and continuous improvement.
  • Collaborate with IT, infrastructure, cloud, network, and application teams to embed security into enterprise systems and processes.
  • Support vulnerability management, security assessments, remediation tracking, documentation, runbooks, and security playbooks.

Skills

Microsoft Defender
Microsoft Sentinel
Wazuh
MITRE ATT&CK
OWASP Top 10
Active Directory
Network security
ISO 27001/ISMS
Scripting
Security automation

Job description

Tanqeeb is seeking an experienced cybersecurity leader to drive defense operations in a dynamic Dubai-based environment. You will oversee Defender for Endpoint/Identity/Cloud/O365, manage Sentinel analytics and incident workflows, and deploy Wazuh for endpoint monitoring and threat detection.

You will develop MITRE-aligned detection, conduct threat hunts, and lead investigations while improving web and AD security, network controls, and ISO 27001 program support.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Director, Cybersecurity Operations & Strategy
Senior Director, Cybersecurity Operations & Strategy

Tanqeeb • Abu Dhabi

On-site
AED 320,000 - 520,000
Cybersecurity Lead: SIEM, IR & Cloud Security
Cybersecurity Lead: SIEM, IR & Cloud Security

Tanqeeb • Dubai

On-site
AED 300,000 - 540,000
SOC & Incident Response Cyber Security Specialist
SOC & Incident Response Cyber Security Specialist

Tanqeeb • Abu Dhabi

On-site
AED 240,000 - 360,000
Senior Network Security Engineer — Firewall & Cloud Defender
Senior Network Security Engineer — Firewall & Cloud Defender

Tanqeeb • Abu Dhabi

On-site
AED 360,000 - 600,000
Junior QRadar Security Analyst – SOC & Incident Response
Junior QRadar Security Analyst – SOC & Incident Response

Tanqeeb • Dubai

On-site
AED 90,000 - 130,000
Strategic Cyber Security Analyst & Incident Response
Strategic Cyber Security Analyst & Incident Response

Tanqeeb • Dubai

On-site
AED 279,000 - 469,000
Municipal Cybersecurity Lead & Defender
Municipal Cybersecurity Lead & Defender

Tanqeeb • Abu Dhabi

On-site
AED 250,000 - 350,000
Senior InfoSec Ops Lead: PAM, XDR & Data Protection
Senior InfoSec Ops Lead: PAM, XDR & Data Protection

Tanqeeb • Abu Dhabi

On-site
AED 250,000 - 420,000
UAE National Information Security Analyst — SIEM & IR
UAE National Information Security Analyst — SIEM & IR

Tanqeeb • Abu Dhabi

On-site
AED 201,000 - 312,000
Senior L3 Security Engineer — Network & Endpoint Defense
Senior L3 Security Engineer — Network & Endpoint Defense

Tanqeeb • Dubai

On-site
AED 300,000 - 540,000