SOC Specialist- L3

Keka Technologies Private Limited

Abu Dhabi

On-site

AED 446,000 - 781,000

Full time

3 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Keka Technologies Private Limited is seeking a seasoned SOC Lead to mentor a team of analysts, guide investigations, and drive incident response excellence.

The role focuses on SOPs, threat intelligence, and cross-functional collaboration to strengthen security controls across IT, engineering, and compliance.

Qualifications

  • Bachelors degree in Information Security or equivalent experience.
  • 7–9 years in security operations with increasing leadership responsibility.
  • In-depth knowledge of SIEM, EDR and threat intelligence platforms.
  • Strong networking, OS and cloud understanding with log analysis.
  • Experience leading complex incident responses including forensic work.
  • Excellent leadership and communication to guide cybersecurity teams.
  • Certifications such as CISSP, GCIH or CISM are highly desirable.

Responsibilities

  • Lead and mentor a team of SOC analysts and provide guidance and training.
  • Serve as escalation point for complex security incidents and decisions.
  • Develop and maintain SOPs, playbooks, and incident response plans.
  • Review security alerts, incidents, and metrics to identify trends.
  • Collaborate with IT, engineering and compliance to implement controls.
  • Conduct threat intelligence analysis to enhance defense strategies.
  • Lead incident response exercises and post-incident reviews.
  • Stay updated on cybersecurity technologies and best practices.
  • Act as SME to senior management on strategic security initiatives.
  • Use threat intelligence to identify threats that may have bypassed controls.
  • Perform compromise assessments and vulnerability assessments.
  • Recommend optimization of monitoring tools from findings.
  • Develop indicators to monitor the security environment.
  • Research, collect and analyze data to evaluate intelligence.
  • Expand security monitoring usage based on use cases and threat changes.
  • Prepare focused reporting for advanced cyber threats to leaders.
  • Oversee overall SOC process management.

Skills

Leadership
Communication
Incident response leadership
Log analysis
Cloud environments
Networking protocols
Forensic analysis
Malware reverse engineering

Education

Bachelor's degree, Information Security, or related field

Tools

SIEM
EDR
Threat intelligence platforms
Incident response frameworks

Job description

  • Lead and mentor a team of SOC analysts, providing guidance, training, and support to enhance their technical skills and professional development.
  • Serve as the escalation point for complex security incidents, providing expert-level analysis, guidance, and decision-making to ensure timely and effective incident response.
  • Develop and maintain standard operating procedures (SOPs), playbooks, and incident response plans to streamline security operations and ensure consistency in response processes.
  • Conduct regular reviews and assessments of security alerts, incidents, and operational metrics to identify trends, gaps, and areas for improvement.
  • Collaborate with cross-functional teams, including IT, engineering, and compliance, to implement security controls, configurations, and best practices to mitigate cyber risks.
  • Conduct threat intelligence analysis to identify emerging threats, vulnerabilities, and attack techniques, and incorporate this knowledge into proactive defense strategies.
  • Lead incident response exercises, tabletop simulations, and post-incident reviews to assess and improve the organization's incident response capabilities.
  • Stay abreast of the latest cybersecurity technologies, tools, and industry best practices, and evaluate their potential impact on the SOC's operations and capabilities.
  • Act as a subject matter expert (SME) on cybersecurity matters, providing guidance and recommendations to senior management on strategic initiatives, projects, and investments.
  • Use advanced threat intelligence techniques to identify cyber threats which may have found their way
  • Conducts periodic compromise assessment/ penetration testing and vulnerability assessments to gauge resilience, find vulnerable entry-points, and propose recommendations based on assessments results.
  • Recommends ways to optimize security monitoring tools through threat hunting findings.
  • Develops cyber indicators to maintain awareness of the status of the highly dynamic operating environment.
  • Conduct research, collect & analyze data and evaluate intelligence.
  • Expand the usage of security monitoring tools to improve the security of the environment based on business use cases or changes in threat landscape, root causes from security incident response, or output from security analytics.
  • Develop focused reporting and briefings for advanced cyber threats to various teams and leaders
  • Responsible for overall SOC process management as defined in SOC operations
Qualifications:
  • ​Bachelor's degree, Information Security, or related field (or equivalent work experience).
  • Extensive experience (typically 7-9 years) in a security operations role, with progressively increasing levels of responsibility and leadership.
  • In-depth knowledge of cybersecurity technologies, tools, and methodologies, including SIEM, EDR, threat intelligence platforms, incident response frameworks, etc.
  • Strong understanding of networking protocols, operating systems, and cloud environments, with the ability to analyze and interpret log data and network traffic.
  • Demonstrated experience in leading incident response efforts for complex security incidents, including forensic analysis, malware reverse engineering, and digital investigations.
  • Excellent leadership and communication skills, with the ability to effectively lead and motivate a team of cybersecurity professionals and collaborate with stakeholders at all levels of the organization.
  • Relevant certifications such as Certified Information Systems Security Professional (CISSP), Certified Incident Handler (GCIH), or Certified Information Security Manager (CISM) are highly desirable.
  • Experience working in a regulated industry (e.g., finance, healthcare, government) with knowledge of industry regulations and compliance requirements is a plus.
Required Skills
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Soc Analyst - L2
Soc Analyst - L2

Keka Technologies Private Limited • Abu Dhabi

On-site
AED 200,000 - 320,000
SOC Manager
SOC Manager

Noventiq Seven Seas Technology • Dubai Emirate

On-site
AED 500,000 - 700,000
SOC Manager
SOC Manager

Noventiq Seven Seas Technology • Dubai

On-site
AED 380,000 - 660,000
Services Delivery Manager
Services Delivery Manager

Noventiq Seven Seas Technology • Dubai

On-site
AED 280,000 - 520,000
SOC Team Lead (Tier 1)
SOC Team Lead (Tier 1)

Recenso • Abu Dhabi

On-site
AED 200,000 - 250,000
Professional development opportunities
Leadership roles
Collaborative environment
Lead SOC Engineer (SIEM) (CPX)
Lead SOC Engineer (SIEM) (CPX)

CPX • Abu Dhabi

On-site
AED 300,000 - 420,000
Senior IT Security Operations Engineer
Senior IT Security Operations Engineer

VaporVM • Dubai

On-site
AED 250,000 - 390,000
Senior Information security Analyst
Senior Information security Analyst

K20s Kinetic Technologies Private LImited - India • Dubai Emirate

On-site
AED 240,000 - 360,000
Senior Information security Analyst
Senior Information security Analyst

K20s - Kinetic Technologies Private Limited • Dubai

On-site
AED 360,000 - 560,000
Lead SOC Engineer (Devops)
Lead SOC Engineer (Devops)

CPX • Abu Dhabi

On-site
AED 330,517 - 440,690