Senior Specialist SOC

Experience

Muscat

On-site

OMR 12,000 - 18,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Experience is seeking a Senior Specialist SOC to lead advanced security event analysis, coordinate complex incident investigations, and drive continuous improvement of detection and response capabilities across SIEM, SOAR, and EDR.

As a Tier-3 analyst and technical SME, you will mentor junior staff, develop advanced use cases, and partner with threat intelligence and vulnerability teams to strengthen the organization’s proactive defense.

Qualifications

  • Bachelor's degree in Information Technology, Cybersecurity, or related discipline.
  • Certifications such as GCIA, GCIH, CEH, CHFI, CompTIA CySA+, or SANS Threat Hunting preferred.
  • Minimum 5–7 years in SOC operations or incident response, with at least 2 years in Tier-3 analysis or advanced forensics.

Responsibilities

  • Lead advanced incident investigations across multiple security domains including network, endpoint, application, and cloud environments.
  • Perform in-depth root cause analysis (RCA) and support major incident response and forensics as part of L3 escalation.
  • Design and optimize detection logic and correlation rules within SIEM, SOAR, and EDR platforms.
  • Develop automation playbooks to streamline triage and containment activities, reducing MTTD and MTTR.
  • Conduct proactive threat hunting based on intelligence reports, behavioral analytics, and anomaly detection.
  • Coordinate with internal and external threat intelligence sources to contextualize alerts and enhance detection maturity.
  • Validate and integrate threat feeds and ensure enrichment of SOC alerting with contextual indicators (IOCs, TTPs, threat campaigns).

Skills

SOC management
Threat response
Governance
Customer reporting
Team leadership
Service management
Incident response
Forensics

Education

Bachelor's degree in IT / Cybersecurity
GCIA
GCIH
CEH
CHFI
CompTIA CySA+
SANS Threat Hunting

Job description

Education Bachelor of Technology/Engineering(Computers)

Category Information Technology

Industry Software Development / Backend Engineering

ROLE OBJECTIVE Senior Specialist SOC is responsible for advanced security event analysis, complex incident investigation, and continuous improvement of SOC detection and response capabilities. Acting as a Tier-3 analyst and technical SME, the role provides guidance to junior analysts, develops advanced use cases, and ensures that all detection mechanisms and incident workflows are optimized for accuracy, speed, and resilience. The incumbent also collaborates with threat intelligence and vulnerability management teams to build a proactive defense posture across all monitored environments.

RESPONSIBILITIES
Strategic and Technical Leadership
  • Lead advanced incident investigations across multiple security domains including network, endpoint, application, and cloud environments.
  • Perform in-depth root cause analysis (RCA) and support major incident response and forensics as part of L3 escalation.
  • Design and optimize detection logic and correlation rules within SIEM, SOAR, and EDR platforms.
  • Develop automation playbooks to streamline triage and containment activities, reducing MTTD and MTTR.
  • Conduct proactive threat hunting based on intelligence reports, behavioral analytics, and anomaly detection.
  • Coordinate with internal and external threat intelligence sources to contextualize alerts and enhance detection maturity.
  • Validate and integrate threat feeds and ensure enrichment of SOC alerting with contextual indicators (IOCs, TTPs, threat campaigns).
Governance and Process Management
  • Maintain and enhance SOC playbooks, escalation matrices, and knowledge base documentation.
  • Ensure SOC processes align with frameworks such as MITRE ATT&CK, NIST CSF, and ISO 27035.
  • Conduct post-incident reviews and lessons-learned workshops with stakeholders to drive continuous improvement.
  • Support compliance and audit requirements through proper evidence collection and reporting.
  • Participate in internal tabletop exercises and ensure readiness of incident response protocols.
Collaboration and Stakeholder Management
  • Provide technical advisory support during customer escalations or executive reviews.
  • Develop and deliver weekly/monthly SOC performance and threat trend reports to management.
  • Support onboarding of new customers into SOC services, including configuration of log sources, connectors, and correlation logic.
People and Knowledge Development
  • Mentor SOC Analysts (Tier-1 and Tier-2) in advanced analytical and investigative techniques.
  • Conduct internal knowledge-sharing sessions on new threats, vulnerabilities, and emerging attack techniques.
  • Contribute to the creation of SOC training materials and technical assessments.
  • Support capacity building initiatives by recommending certification and skill development plans.
Desired Candidate Profile
  • Bachelor s degree in Information Technology, Cybersecurity, or related discipline.
  • GCIA, GCIH, CEH, CHFI, CompTIA CySA+, or SANS Threat Hunting certifications preferred.
  • Minimum 5 7 years in SOC operations or incident response, with at least 2 years in Tier-3 analysis or advanced forensics.
  • Skills SOC management, threat response, governance, customer reporting, team leadership, and service management.
  • Leadership Technical Leadership Advanced
  • Behavioural Analytical Thinking Advanced
  • Core Integrity & Accountability Advanced
  • Core Operational Excellence Advanced
  • Technical Threat Detection & Hunting Advanced
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior SOC Lead: Advanced Incident Response
Senior SOC Lead: Advanced Incident Response

Experience • Muscat

On-site
OMR 12,000 - 18,000
SOC Manager
SOC Manager

Gender • Oman

On-site
OMR 60,000 - 90,000
Senior Service Operations Specialist
Senior Service Operations Specialist

Experience • Muscat

On-site
OMR 25,000 - 35,000
Cyber Defense Specialist - Detection & Monitoring
Cyber Defense Specialist - Detection & Monitoring

cloud consultancy - ccds • As Sudiyah

On-site
OMR 31,000 - 62,000
Cyber Security Specialist
Cyber Security Specialist

Gender • Oman

On-site
OMR 12,000 - 18,000
Information Security Specialist
Information Security Specialist

tamimi commercial • As Sudiyah

On-site
OMR 15,000 - 25,000
Senior Cyber Security Engineer
Senior Cyber Security Engineer

Kreate Energy • Oman

On-site
OMR 12,000 - 24,000
Senior Cybersecurity Lead
Senior Cybersecurity Lead

NTG • Muscat

On-site
OMR 20,000 - 30,000
Sr. Specialist, Security
Sr. Specialist, Security

OQ • Oman

On-site
OMR 15,000 - 24,000
Cyber Defense Specialist — Detection & Monitoring Lead
Cyber Defense Specialist — Detection & Monitoring Lead

cloud consultancy - ccds • As Sudiyah

On-site
OMR 31,000 - 62,000