Senior SOC Engineer

Edison Smart®

Doha

On-site

QAR 201,000 - 223,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Edison Smart seeks a Security Operations Center (SOC) professional to join the Doha team. The role focuses on monitoring SIEM, EDR/XDR, IDS/IPS, firewalls, email security, and cloud alerts to identify and prioritize incidents.

You will conduct in-depth investigations, analyze malware techniques, and coordinate containment and recovery efforts while supporting vulnerability reviews and continuous improvement initiatives.

Qualifications

  • 1–4 years of experience in a Security Operations Center (SOC).
  • Experience monitoring SIEM, EDR/XDR, IDS/IPS, firewalls, email security, and cloud security alerts.
  • Knowledge of alert triage, incident classification, escalation procedures, and ticket management.
  • Understanding of TCP/IP, DNS, HTTP/HTTPS, VPN, routing, switching, and common network protocols.
  • Knowledge of Windows and Linux administration, system logs, and endpoint security.
  • Familiarity with common cyber threats such as phishing, malware, ransomware, brute-force attacks, web attacks, and insider threats.

Responsibilities

  • Monitor SIEM, XDR, EDR, NDR, IDS/IPS, Firewall, and Cloud security alerts.
  • Identify, validate, triage, and prioritize security incidents based on severity and business impact.
  • Perform in-depth investigations, analyze malware and attack techniques, identify root cause, coordinate containment and eradication, and support incident recovery.
  • Execute scheduled threat hunting queries, monitor hunting dashboards, validate suspicious activities, and report findings.
  • Review vulnerability scan results, track remediation status, validate patch completion, and update tickets.
  • Update incident tickets, maintain shift handover notes, prepare daily operational reports, and ensure SLA compliance.

Skills

SIEM monitoring
EDR/XDR
IDS/IPS
Firewall security
Cloud security alerts

Education

Bachelor's degree in Cybersecurity / IT / CS
CompTIA Security+
CompTIA CySA+
EC-Council CND
Cisco Cyber Ops Associate
Microsoft SC-200
CHFI / DFIR Foundations (advantage)

Tools

PowerShell
Python
Bash

Job description

SOC Engineer - Doha

18,000 - 20,000

Security Monitoring & Incident Detection

Monitor SIEM, XDR, EDR, NDR, IDS/IPS, Firewall, and Cloud security alerts. Identify, validate, triage, and prioritize security incidents based on severity and business impact.

Incident Response & Threat Investigation

Perform in-depth investigations, analyze malware and attack techniques, identify root cause, coordinate containment and eradication, and support incident recovery.

Detection Engineering & Threat Hunting

Execute scheduled threat hunting queries, monitor hunting dashboards, validate suspicious activities, and report findings.

Vulnerability & Security Operations Support

Review vulnerability scan results, track remediation status, validate patch completion, and update tickets.

Reporting & Continuous Improvement

Update incident tickets, maintain shift handover notes, prepare daily operational reports, and ensure SLA compliance.

Necessary Knowledge and Experience
  • 1–4 years of experience in a Security Operations Center (SOC)
  • Experience in monitoring SIEM, EDR/XDR, IDS/IPS, firewalls, email security, and cloud security alerts.
  • Knowledge of alert triage, incident classification, escalation procedures, and ticket management.
  • Understanding of TCP/IP, DNS, HTTP/HTTPS, VPN, routing, switching, and common network protocols.
  • Knowledge of Windows and Linux administration, system logs, and endpoint security.
  • Familiarity with common cyber threats such as phishing, malware, ransomware, brute-force attacks, web attacks, and insider threats
Education and Certification Requirements
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field.
  • Comp TIA Security+, Comp TIA CySA+, EC-Council CND, Cisco Cyber Ops Associate, Microsoft SC-200
  • Added advantages CHFI , DFIR Foundations
Job Specific Skills
  • Ability to document incidents clearly, communicate effectively, and coordinate with internal teams during security incidents.
  • Basic knowledge of Power Shell, Python, or Bash for automation and log analysis is an advantage.
  • Ability to analyze logs from endpoints, servers, firewalls, proxies, Active Directory, cloud platforms, and security devices.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Engineer - Up to 20k QAR
SOC Engineer - Up to 20k QAR

Edison Smart® • Doha

On-site
QAR 60,000 - 120,000
Senior SOC Engineer
Senior SOC Engineer

Employment • Doha

On-site
QAR 250,000 - 350,000
Senior SOC Detection Engineer — Threat Hunting & EDR
Senior SOC Detection Engineer — Threat Hunting & EDR

Employment • Doha

On-site
QAR 180,000 - 240,000
Senior SOC Engineer: Threat Detection & Incident Response
Senior SOC Engineer: Threat Detection & Incident Response

Edison Smart® • Doha

On-site
QAR 201,000 - 223,000
Lead SOC Engineer: Threat Hunting & Incident Response
Lead SOC Engineer: Threat Hunting & Incident Response

Employment • Doha

On-site
QAR 250,000 - 350,000
SOC Thread Specialist
SOC Thread Specialist

Employment • Doha

On-site
QAR 350,000 - 700,000
Cybersecurity Detection Engineer
Cybersecurity Detection Engineer

Employment • Doha

On-site
QAR 180,000 - 240,000
Associate SOC L1 Analyst
Associate SOC L1 Analyst

malomatia • Doha

On-site
QAR 90,000 - 130,000
SOC Engineer: Threat Detection & Incident Response
SOC Engineer: Threat Detection & Incident Response

Edison Smart® • Doha

On-site
QAR 60,000 - 120,000
Senior Cybersecurity Consultant
Senior Cybersecurity Consultant

Employment • Doha

On-site
QAR 437,000 - 655,000