SOC Thread Specialist

Employment

Doha

On-site

QAR 350,000 - 700,000

Full time

9 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Employment is seeking a senior cybersecurity threat hunter to protect IT and OT environments by detecting, investigating, and proactively hunting threats. You will bridge intelligence with operations to transform threat data into actionable detections and hunting activities.

You will lead malware analysis, develop IOC content, and refine SIEM/SOAR use cases, collaborating with the SOC to elevate cyber defense and ensure compliance with MITRE ATT&CK.

Qualifications

  • Bachelor’s degree in information security, computer science, or engineering.
  • 10 years of information security experience in a similar position.
  • Experience with IT/OT threat hunting and incident investigation.

Responsibilities

  • Conduct proactive threat hunting across IT and OT networks using intelligence from threat analysts.
  • Analyse and correlate security incidents to understand attacker behaviour and campaign patterns.
  • Bridge threat intelligence with detection logic and translate IOCs, TTPs into actionable content for SOC engineers.
  • Conduct deep-dive investigations on high-severity alerts with actionable recommendations.
  • Support incident response during containment and eradication with context on attacker tools and infrastructure.
  • Collaborate with SOC Engineers to refine SIEM/SOAR use cases and playbooks.
  • Develop and maintain threat profiles for adversaries targeting IT and OT environments.
  • Stay current with emerging threats, tools, and frameworks like MITRE ATT&CK.

Skills

Threat analysis
Threat hunting
Incident investigation
MITRE ATT&CK
Adversary TTPs
Analytical thinking
Cyber defense

Education

Bachelor’s degree in information security, computer science, or engineering

Tools

Ghidra
IDA Pro
x64dbg

Job description

Industry Information Technology and Services

Job Description

Protect the organization’s Information Technology (IT) and Operational Technology (OT) environments by detecting, investigating, and proactively hunting for cyber threats, while bridging intelligence and operations to transform threat data into actionable detections and hunting activities. Work with the SOC team to enhance and strengthen the organization’s overall cyber defense resilience and composure.

Responsibilities
  • Perform proactive threat hunting across IT and OT networks using intelligence from the Threat Analysts to uncover stealthy or undetected threats.
  • Analyse and correlate security incidents to understand attacker behaviour, techniques, and campaign patterns beyond simple alerts.
  • Bridge threat intelligence with detection logic, translating new Indicators of Compromise (IOCs), Tactics, Techniques, and Procedures (TTPs), and adversary trends into actionable detection content for the SOC Engineers to implement.
  • Conduct deep-dive investigations on high-severity alerts, ensuring accurate root cause determination and actionable recommendations. Prepare technical briefing reports summarizing threat findings and lessons learned for management.
  • Support incident response teams during containment and eradication phases by providing context on attacker tools, tactics, and infrastructure.
  • Collaborate with the SOC Engineers to refine Security Information and Event Management (SIEM) use cases, detection rules, and Security Orchestration, Automation, and Response (SOAR) playbooks based on threat hunting outcomes.
  • Perform malware reverse engineering and behavioural analysis, extracting Indicators of Compromise (IOCs), YARA rules, and technical findings to feed into threat hunting and detection development.
  • Develop and maintain threat profiles for key adversaries and attack scenarios targeting both IT and OT environments.
  • Continuously improve analytical techniques, staying current with emerging threats, tools, and frameworks like MITRE ATT&CK.
  • Ensure alignment with legal and ethical guidelines to ensure team activities are authorized and do not compromise the company’s integrity or reputation.
Qualifications
  • Bachelor’s degree in information security, computer science, or engineering.
  • Professional certification such as GCTI, GCIA, GCIH, or GREM.
  • Knowledge And Experience
    • 10 years of information security experience in a similar position.
    • Proven experience in cyber threat analysis, hunting, and incident investigation across both IT and OT environments.
    • Strong understanding of network protocols, malware behaviour, and adversary TTPs aligned with the MITRE ATT&CK framework.
    • Experience with SIEM/SOAR platforms, threat intelligence tools, and log analysis for advanced threat detection.
    • Strong analytical and investigative skills with hands-on experience in threat hunting.
    • Practical knowledge of malware reverse engineering, static/dynamic analysis tools (e.g., Ghidra, IDA Pro, or x64dbg), and IOC extraction.
  • Technical And Business Skills
    • Ability to assess and evaluate risk and the impact of legislation and actively promotes compliance.
    • Possesses a good understanding of IT and OT business applications.
    • Effective and persuasive in both written and oral communication.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead SOC Threat Hunter IT & OT Defender
Lead SOC Threat Hunter IT & OT Defender

Employment • Doha

On-site
QAR 350,000 - 700,000
Cybersecurity Detection Engineer
Cybersecurity Detection Engineer

Employment • Doha

On-site
QAR 180,000 - 240,000
Senior SOC Engineer
Senior SOC Engineer

Employment • Doha

On-site
QAR 250,000 - 350,000
Senior SOC Engineer
Senior SOC Engineer

Edison Smart® • Doha

On-site
QAR 201,000 - 223,000
Sr. SOC Engineer - Up to 26k QAR
Sr. SOC Engineer - Up to 26k QAR

Edison Smart® • Doha

On-site
QAR 150,000 - 230,000
Senior Cybersecurity Consultant
Senior Cybersecurity Consultant

Employment • Doha

On-site
QAR 437,000 - 655,000
SOC Engineer
SOC Engineer

Starlink WLL • Doha

On-site
QAR 180,000 - 240,000
SOC Engineer - Up to 20k QAR
SOC Engineer - Up to 20k QAR

Edison Smart® • Doha

On-site
QAR 60,000 - 120,000
IT Security Specialist
IT Security Specialist

Employment • Doha

On-site
QAR 180,000 - 300,000
Senior SOC Detection Engineer — Threat Hunting & EDR
Senior SOC Detection Engineer — Threat Hunting & EDR

Employment • Doha

On-site
QAR 180,000 - 240,000