SOC L1 Analyst – SIEM Integration (Emirati National Only)

Talents of Endearment

Dubai

On-site

AED 100,000 - 167,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Career growth potential
Emirati talent development program
Hands-on SIEM exposure

Job summary

Talents of Endearment is seeking a SOC L1 Analyst (SIEM Integration Focus) in Dubai to monitor real-time security, validate log ingestion, and perform first-level incident triage. This Emirati-national role supports national workforce development and compliance requirements.

You will onboard log sources, maintain parsers and detection use cases, and coordinate with SOC teams to ensure telemetry for investigations.

Qualifications

  • Understanding of SIEM architecture and log flow.
  • Experience with log types: Windows, Linux, firewall, cloud audit logs.

Responsibilities

  • Monitor SIEM dashboards, alerts, and rules for potential incidents.
  • Validate log ingestion from various sources including firewalls, EDR/XDR, servers, cloud platforms, IAM, and network devices.
  • Assist in onboarding new log sources using Syslog, API, agents, connectors, and event hubs.
  • Maintain parsers, field extractions, normalization rules, and basic detection use cases.
  • Perform first-level triage: classify alerts, elevate incidents, and document findings.
  • Troubleshoot ingestion issues like missing fields, timestamp errors, duplicates, and parsing failures.
  • Coordinate with SOC L2/L3, security architects, and infra teams for issue resolution.
  • Ensure critical telemetry is available for investigations and threat monitoring.
  • Maintain documentation for integration procedures, onboarding checklists, and runbooks.

Skills

SIEM architecture
Log ingestion troubleshooting
Incident triage
TCP/IP/DNS/HTTP knowledge
Regex/JSON/XML parsing
Security concepts MITRE ATT&CK
On-call collaboration
Cloud logs familiarity

Education

Bachelor’s degree in CS/Cybersecurity/IT

Tools

Microsoft Sentinel
Splunk
QRadar
ArcSight
Elastic Security

Job description

About Us

We offer dynamic solutions that create recruitment opportunities.

Role Overview

The SOC L1 Analyst (SIEM Integration Focus) supports real‑time security monitoring, log ingestion validation, and first‑level incident triage. The role blends SOC operations with SIEM onboarding and data quality assurance to strengthen enterprise threat visibility.

This position is exclusively open to Emirati Nationals, supporting national workforce development and compliance requirements.

Key Responsibilities
  • Monitor SIEM dashboards, alerts, and correlation rules for potential security incidents.
  • Validate log ingestion from firewalls, IDS/IPS, EDR/XDR, servers, cloud platforms, IAM, and network devices.
  • Support onboarding of new log sources using Syslog, API, agents, connectors, and event hubs.
  • Assist in maintaining parsers, field extractions, normalization rules, and basic detection use cases.
  • Perform first‑level triage: classify alerts, elevate incidents, and document findings.
  • Troubleshoot ingestion issues such as missing fields, timestamp errors, duplicate logs, and parsing failures.
  • Coordinate with SOC L2/L3, security architects, and infrastructure teams for issue resolution.
  • Ensure critical telemetry is available for investigations and threat monitoring.
  • Maintain documentation for integration procedures, onboarding checklists, and runbooks.
Requirements
Required Skills & Knowledge
  • Understanding of SIEM architecture, log flow, and event correlation.
  • Experience with SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight, LogRhythm, Elastic Security .
  • Familiarity with security log types: Windows Event Logs, Linux syslog, firewall/proxy logs, AD logs, cloud audit logs, EDR telemetry.
  • Basic hands‑on experience with log parsing, regex, JSON/XML formats, syslog protocols, and REST APIs.
  • Foundational knowledge of MITRE ATT&CK, incident response, detection engineering, and threat monitoring.
  • Understanding of TCP/IP, DNS, HTTP/HTTPS, VPN, authentication protocols, and IAM concepts.
  • Ability to analyze ingestion issues and support correlation troubleshooting.
Preferred Skills
  • Exposure to cloud SIEM integrations (AWS, Azure, GCP).
  • Familiarity with SOAR workflows.
  • Understanding of compliance logging requirements (ISO 27001, PCI‑DSS, HIPAA, GDPR).
  • Experience creating basic detections or use cases.
  • Exposure to threat intelligence feed integration.
  • Awareness of SIEM retention, storage, and licensing considerations.
Qualifications
  • Bachelor’s degree in Computer Science, Cybersecurity, IT, or related field.
  • 1–4 years of experience in SOC, SIEM operations, or log management.
  • Relevant certifications (advantage):
    • Microsoft Sentinel
    • Splunk Core
    • QRadar
    • Security+ / CySA+
Benefits
  • Opportunity to grow from SOC L1 to L2/L3 roles.
  • Hands‑on exposure to enterprise SIEM integrations and detection engineering.
  • Supportive environment for Emirati talent development in cybersecurity.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC L1 Analyst: SIEM Onboarding & Triage
SOC L1 Analyst: SIEM Onboarding & Triage

Talents of Endearment • Dubai

On-site
AED 100,000 - 167,000
Career growth potential
Emirati talent development program
Hands-on SIEM exposure
Cyber Security Analyst (UAE National)
Cyber Security Analyst (UAE National)

Inspira Enterprise • Dubai

On-site
AED 67,000 - 112,000
SIEM Security Analyst SOC L3 Analyst
SIEM Security Analyst SOC L3 Analyst

Epergne Solutions • Dubai

On-site
AED 180,000 - 300,000
SIEM Security Analyst
SIEM Security Analyst

Epergne Solutions • Dubai

On-site
AED 240,000 - 360,000
L2 SOC Engineer (UAE National)
L2 SOC Engineer (UAE National)

Talents of Endearment • Abu Dhabi

On-site
AED 201,000 - 234,000
Competitive salary (AED)
Career growth opportunities
Collaborative environment
Senior Engineer – SOC (SIEM)
Senior Engineer – SOC (SIEM)

CPX • Abu Dhabi

On-site
AED 223,000 - 234,000
SOC Specialist - Cyber Threats
SOC Specialist - Cyber Threats

DiceTek UAE • Al Ruways Industrial City

On-site
SOC Team Lead (Tier 1)
SOC Team Lead (Tier 1)

Recenso • Abu Dhabi

On-site
AED 200,000 - 250,000
Professional development opportunities
Leadership roles
Collaborative environment
SOC Analyst L1 - 24/7 Cyber Defense
SOC Analyst L1 - 24/7 Cyber Defense

Inspira Enterprise • Dubai

On-site
AED 67,000 - 112,000
Associate Security Analyst
Associate Security Analyst

Keka Technologies Private Limited • Dubai Emirate

On-site
AED 60,000 - 90,000