Senior Analyst - Cyber Defense

Advanced Search

Bahrain

On-site

BHD 23,000 - 34,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Bapco Energies is seeking a seasoned cybersecurity professional to join its Cyber Defense Center in Bahrain. The role focuses on incident containment, advanced forensics, and threat remediation, with responsibilities spanning vulnerability assessments and playbook development.

You will mentor CDC/NOC analysts and coordinate with IT/OT teams on security initiatives. Applicants should have 6–8 years in cybersecurity, a relevant degree, and certifications; experience with SIEM/EDR is preferred.

Qualifications

  • 6–8 years of experience in cybersecurity, with focus on security operations, incident response, threat hunting or related domains.
  • Bachelor’s degree in Computer Science, Information Security, or related field; relevant industry certifications preferred.
  • Proficiency with security technologies including SIEM, EDR, IDS/IPS, and network monitoring.

Responsibilities

  • Contribute to containment and recovery strategies, including advanced forensics and mitigations.
  • Lead incident response actions and communicate high-severity incident requirements to stakeholders.
  • Perform vulnerability assessments and remediate weaknesses to ensure continuity of operations.
  • Review alerts and threat intelligence; conduct threat hunting to identify and eliminate threats.
  • Develop incident playbooks and automation to improve CDC/NOC productivity.
  • Assist in design of security infrastructure and guidance for projects.
  • Participate in development of security plans, risk assessments, and cybersecurity policies.
  • Train and mentor CDC/NOC analysts in tools and threat intelligence.

Skills

Cybersecurity operations
Incident response
Threat hunting
Security monitoring
Analytical thinking

Education

Bachelor's degree in Computer Science or Information Security
CISSP/CISM/GIAC preferred

Tools

SIEM platforms
EDR
IDS/IPS
Network security monitoring

Job description

Industry Cybersecurity and IT Risk Management

Key Result Areas:

  • Contribute to the development and implement strategies for containment and recovery, including advanced forensics and mitigating actions to contain malicious activity. Facilitate further remedial actions and identification of threat campaigns to strengthen the overall security posture.
  • Prioritize and manage actions during incident response, carry out analysis for the containment of cybersecurity incidents, and communicate any special requirements of high severity incidents to internal stakeholders to ensure comprehensive threat mitigations.
  • Respond to incidents raised by Security Operations Analysts by following Bapco Energies’ Incident Response process. Carry out advanced technical tasks such as forensics and malware reverse-engineering to identify threat scope and remediate the most difficult incidents to restore the services.
  • Perform regular vulnerability assessments to assess the effectiveness of security systems. Isolate and remediate areas of weakness to ensure continuous and optimal protection for integrity and availability.
  • Review alerts, threat intelligence and other security data, and perform Threat Hunting to identify threats and take the appropriate steps to eliminate them.
  • Develop incident playbooks, custom scripts, or utility applications to process repetitive tasks and increase CDC/NOC team productivity; develop use cases to support CDC operations.
  • Support the creation of business continuity/disaster recovery plans, including conducting disaster recovery tests, publishing test results, and making changes necessary to address deficiencies for ensuring the business continuity
  • Assist in the design of systems security infrastructure and provide technical security guidance as needed for projects.
  • Participate in development of security plans, risk assessment plans, business continuity plans, incident response plans, and cybersecurity policies and standards
  • Train and mentor CDC/NOC analysts in utilizing security tools and understanding security threats and intelligence.
  • Contribute to the development and implement strategies for containment and recovery, including advanced forensics and mitigating actions to contain malicious activity. Facilitate further remedial actions and identification of threat campaigns to strengthen the overall security posture.
  • Prioritize and manage actions during incident response, carry out analysis for the containment of cybersecurity incidents, and communicate any special requirements of high severity incidents to internal stakeholders to ensure comprehensive threat mitigations.
  • Respond to incidents raised by Security Operations Analysts by following Bapco Energies’ Incident Response process. Carry out advanced technical tasks such as forensics and malware reverse-engineering to identify threat scope and remediate the most difficult incidents to restore the services.
  • Perform regular vulnerability assessments to assess the effectiveness of security systems. Isolate and remediate areas of weakness to ensure continuous and optimal protection for integrity and availability.
  • Review alerts, threat intelligence and other security data, and perform Threat Hunting to identify threats and take the appropriate steps to eliminate them.
  • Develop incident playbooks, custom scripts, or utility applications to process repetitive tasks and increase CDC/NOC team productivity; develop use cases to support CDC operations.
  • Support the creation of business continuity/disaster recovery plans, including conducting disaster recovery tests, publishing test results, and making changes necessary to address deficiencies for ensuring the business continuity
  • Assist in the design of systems security infrastructure and provide technical security guidance as needed for projects.
  • Participate in development of security plans, risk assessment plans, business continuity plans, incident response plans, and cybersecurity policies and standards
  • Train and mentor CDC/NOC analysts in utilizing security tools and understanding security threats and intelligence.

Communications and Working Relationships:

Internal

Interacts frequently with Manager Cyber Defense Center to discuss operational issues and to provide daily status updates for ongoing work, as well as other relevant compliance reports and performance metrics as required.

Communicates regularly and aligns actions with all IT/OT technical groups to ensure that all systems and networks are operated securely.

Liaises with other IT/OT groups and ITD sections and – if needed - with business units, to identify and validate attempts at intrusion or compromise, and provides high quality investigation and response actions.

Liaises closely with IT Governance section to ensure that all formally documented processes, policies, procedures, and guidelines remain commensurate with the current security threat environment.

External

Acts as focal point of communication with relevant service providers in the event of high severity Incident Response.

Liaises with cybersecurity agencies to collect and exchange threat intelligence and coordinate incident response activities.

Works with vendors to ensure any upgrades or patches to security solutions are implemented in a timely manner.

Job description

Key Result Areas:

  • Contribute to the development and implement strategies for containment and recovery, including advanced forensics and mitigating actions to contain malicious activity. Facilitate further remedial actions and identification of threat campaigns to strengthen the overall security posture.
  • Prioritize and manage actions during incident response, carry out analysis for the containment of cybersecurity incidents, and communicate any special requirements of high severity incidents to internal stakeholders to ensure comprehensive threat mitigations.
  • Respond to incidents raised by Security Operations Analysts by following Bapco Energies’ Incident Response process. Carry out advanced technical tasks such as forensics and malware reverse-engineering to identify threat scope and remediate the most difficult incidents to restore the services.
  • Perform regular vulnerability assessments to assess the effectiveness of security systems. Isolate and remediate areas of weakness to ensure continuous and optimal protection for integrity and availability.
  • Review alerts, threat intelligence and other security data, and perform Threat Hunting to identify threats and take the appropriate steps to eliminate them.
  • Develop incident playbooks, custom scripts, or utility applications to process repetitive tasks and increase CDC/NOC team productivity; develop use cases to support CDC operations.
  • Support the creation of business continuity/disaster recovery plans, including conducting disaster recovery tests, publishing test results, and making changes necessary to address deficiencies for ensuring the business continuity
  • Assist in the design of systems security infrastructure and provide technical security guidance as needed for projects.
  • Participate in development of security plans, risk assessment plans, business continuity plans, incident response plans, and cybersecurity policies and standards
  • Train and mentor CDC/NOC analysts in utilizing security tools and understanding security threats and intelligence.

Bapco Energies operates a portfolio spanning the entire energy value chain in the Kingdom of Bahrain. The portfolio includes wholly-owned subsidiaries and specialized operating companies. Together, these companies drive Bapco Energies' mission to power the next generation.

Responsibilities:

Communications and Working Relationships:

Internal

  • Interacts frequently with Manager Cyber Defense Center to discuss operational issues and to provide daily status updates for ongoing work, as well as other relevant compliance reports and performance metrics as required.
  • Communicates regularly and aligns actions with all IT/OT technical groups to ensure that all systems and networks are operated securely.
  • Liaises with other IT/OT groups and ITD sections and – if needed - with business units, to identify and validate attempts at intrusion or compromise, and provides high quality investigation and response actions.
  • Liaises closely with IT Governance section to ensure that all formally documented processes, policies, procedures, and guidelines remain commensurate with the current security threat environment.

External

  • Acts as focal point of communication with relevant service providers in the event of high severity Incident Response.
  • Liaises with cybersecurity agencies to collect and exchange threat intelligence and coordinate incident response activities.
  • Works with vendors to ensure any upgrades or patches to security solutions are implemented in a timely manner.

Qualifications:

  • Minimum 6–8 years of experience in cybersecurity, with a strong focus on security operations, incident response, threat hunting, or related domains.
  • Bachelor’s degree in Computer Science, Information Security, or a related field. Relevant industry certifications (e.g., CISSP, CISM, GIAC) are preferred.
  • Advanced proficiency with security technologies, including SIEM platforms, intrusion detection/prevention systems, endpoint detection and response (EDR) solutions, and network security monitoring tools.
  • Demonstrated ability to analyze complex security event data, identify patterns and anomalies, and make data-driven decisions to detect and respond to threats effectively.
  • Deep understanding of cybersecurity principles, technologies, and best practices, with working knowledge of industry standards and frameworks such as the NIST Cybersecurity Framework and MITRE ATT&CK.
  • Proven experience in leading or mentoring SOC teams or junior analysts, with the ability to coordinate and guide incident response activities.
  • Strong analytical, problem-solving, and communication skills, with the ability to document findings and present technical information clearly to both technical and non-technical audiences.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cyber Defense & Incident Response Specialist
Senior Cyber Defense & Incident Response Specialist

Advanced Search • Bahrain

On-site
BHD 23,000 - 34,000
Cyber Assurance Analyst
Cyber Assurance Analyst

Client of 6 Pence • Bahrain

On-site
BHD 12,000 - 24,000
Analyst ESG Reporting
Analyst ESG Reporting

Apply on the Job Website • Bahrain

On-site
BHD 12,000 - 18,000
Engineer Environment
Engineer Environment

Category • Bahrain

On-site
BHD 17,000 - 27,000
Manager - Cyber Security
Manager - Cyber Security

Advanced Search • Manama

On-site
BHD 32,000 - 52,000
Infrastructure Specialist
Infrastructure Specialist

Employment • Capital Governorate

On-site
BHD 12,000 - 18,000
Cyber Security Lead: Threat Detection & Cloud Defense
Cyber Security Lead: Threat Detection & Cloud Defense

Advanced Search • Manama

On-site
BHD 32,000 - 52,000
Security Operations Manager - Financial Sevices
Security Operations Manager - Financial Sevices

Aventus • Capital Governorate

On-site
BHD 26,000 - 41,000
IT Infrastructure & Security Specialist
IT Infrastructure & Security Specialist

Alzayani Investments • Manama

On-site
BHD 18,000 - 30,000
Cyber Assurance Analyst: DLP, Compliance & Risk
Cyber Assurance Analyst: DLP, Compliance & Risk

Client of 6 Pence • Bahrain

On-site
BHD 12,000 - 24,000