Sr. SOC Engineer - Up to 26k QAR

Edison Smart®

Doha

On-site

QAR 150,000 - 230,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Edison Smart® is seeking an OT security specialist to administer deployment and tuning of OT security tools such as Nozomi and Forescout. You will monitor OT/ICS environments with SIEM, detect threats, and support containment actions in live OT networks across Purdue-aligned zones.

You will perform threat hunting, incident response, and maintain asset visibility while ensuring IEC 62443 and NIST ICS compliance in a high-stakes industrial setting.

Qualifications

  • Bachelor’s degree in Cybersecurity, Information Security, Computer science or related field.
  • Certification any one Mandatory: GIAC Global Industrial Cyber Security Professional (GICSP), ISA/IEC 62443 Cybersecurity Certificate, GIAC Response and Industrial Defense (GRID), ISA Certified Automation Cybersecurity Specialist (IACS).

Responsibilities

  • Administer, manage, and support deployment and tuning of OT security tools (Nozomi, Forescout).
  • Monitor OT/ICS environments using SIEM and OT security monitoring platforms
  • Detect, analyze, and respond to cyber threats targeting industrial control systems
  • Support micro segmentation strategies for OT network zones (Purdue Model alignment)
  • Collaborate with engineering teams to safely implement containment actions in live OT environments
  • Conduct threat hunting across industrial environments using network and log data
  • Handle and support incident response for OT cyber events with minimal operational disruption
  • Maintain OT asset visibility and network behavior baselines
  • Ensure compliance with IEC 62443, NIST ICS, and organizational security standards
  • Work with firewall, IDS/IPS, NAC, and segmentation technologies in OT networks

Skills

OT security
SIEM monitoring
Threat hunting
Incident response
Zero Trust for OT
Deep packet inspection
Industrial firewalling
Vulnerability management
Asset visibility
MITRE ATT&CK for ICS

Education

Bachelor’s degree in Cybersecurity or related field

Tools

Nozomi
Forescout
SIEM platforms
IDS/IPS
NAC
Packet brokers
TAP/SPAN technologies

Job description

Administration, management, and Support deployment and tuning of OT security tools (Nozomi, Forescout).
  • Administration, management, and Support deployment and tuning of OT security tools (Nozomi, Forescout).
  • Monitor OT/ICS environments using SIEM and OT security monitoring platforms
  • Detect, analyze, and respond to cyber threats targeting industrial control systems
  • Support and ensure micro segmentation strategies for OT network zones (Purdue Model alignment)
  • Collaborate with engineering teams to safely implement containment actions in live OT environments
  • Conduct threat hunting across industrial environments using network and log data
  • Handle and support incident response for OT cyber events with minimal operational disruption
  • Maintain OT asset visibility and network behavior baselines
  • Ensure compliance with IEC 62443, NIST ICS, and organizational security standards
  • Work with firewall, IDS/IPS, NAC, and segmentation technologies in OT networks
Detection Engineering & Use Case Management
  • Develop and tune OT-specific detection rules and correlation logic in SIEM platforms.
  • Align detection use cases with MITRE ATT&CK for ICS framework.
  • Reduce false positives and improve detection accuracy and coverage.
  • Periodically review and optimize alert thresholds and detection logic.
  • Support OT security architecture integrating SIEM, IDS/IPS, packet brokers, and segmentation tools.
  • Assist in onboarding log sources, parser development, and normalization of OT data.
  • Optimize dashboards, alerts, and reporting for operational visibility.
OT Network Visibility, Packet Analysis & Traffic Engineering
  • Operate packet brokers and TAP infrastructure to enable full OT network visibility.
  • Perform deep packet inspection of industrial protocols (Modbus, DNP3, OPC-UA, IEC 104, Ethernet/IP).
  • Analyze east-west and north-south traffic for suspicious activity and lateral movement.
  • Identify unauthorized communications and protocol anomalies.
  • Support network telemetry collection for OT environments.
Asset Visibility, Threat Hunting & Compliance Management
  • Maintain complete OT asset inventory and network topology visibility.
  • Identify unauthorized devices, rogue connections, and shadow OT assets.
  • Conduct proactive threat hunting using logs, network telemetry, and behavioral analytics.
  • Correlate threat intelligence with OT environment risks and vulnerabilities.
  • Ensure compliance with IEC 62443, NIST ICS, ISO standards, and internal security policies.
  • Support internal/external audits and provide security evidence for compliance reporting.
  • Contribute to risk assessments and OT security posture improvement initiatives.
Reporting & Stakeholder Management
  • Prepare and present OT security reports (incidents, risks, and trends)
  • Maintain dashboards for vulnerabilities, threats, and compliance status
  • Communicate critical incidents and risks to SOC, OT, and business stakeholders
  • Provide executive-level reporting on OT security posture and exposure
  • Track remediation status and SLA Tracking
  • Support audit and regulatory reporting requirements (IEC 62443, NIST ICS)
Education and Certification Requirements
  • Bachelor’s degree in Cybersecurity, Information Security, Computer science or related field.

Certification any one Mandatory:

  • GIAC Global Industrial Cyber Security Professional (GICSP)
  • ISA/IEC 62443 Cybersecurity Certificate
  • GIAC Response and Industrial Defense (GRID)
  • ISA Certified Automation Cybersecurity Specialist (IACS)
Job Specific Technical Skills
  • Microsegmentation & Zero Trust for OT
  • Packet analysis & Deep Packet Inspection (DPI)
  • Packet brokers & TAP/SPAN technologies
  • Incident response in OT environments
  • OT threat hunting & anomaly detection
  • Industrial firewalling & remote access security
  • OT vulnerability management & asset visibility
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Engineer
SOC Engineer

Starlink WLL • Doha

On-site
QAR 180,000 - 240,000
Cybersecurity Specialist
Cybersecurity Specialist

Salary • Al Khor

On-site
QAR 250,000 - 420,000
Cyber Security Specialist
Cyber Security Specialist

Employment • Doha

On-site
QAR 180,000 - 240,000
SOC Engineer
SOC Engineer

Employment • Doha

On-site
QAR 300,000 - 500,000
Senior OT Security Engineer — ICS Threat Hunting & SIEM
Senior OT Security Engineer — ICS Threat Hunting & SIEM

Edison Smart® • Doha

On-site
QAR 150,000 - 230,000
ICS/OT Cybersecurity Specialist: Secure Industrial Systems
ICS/OT Cybersecurity Specialist: Secure Industrial Systems

Employment • Doha

On-site
QAR 180,000 - 240,000
Cyber Security Specialist
Cyber Security Specialist

Gulf Drilling International • Doha

On-site
QAR 150,000 - 210,000
SOC Thread Specialist
SOC Thread Specialist

Employment • Doha

On-site
QAR 350,000 - 700,000
Cybersecurity Specialist
Cybersecurity Specialist

Employment • Al Khor and Al Thakhira

On-site
QAR 210,000 - 420,000
Senior ICS/OT Cybersecurity Engineer
Senior ICS/OT Cybersecurity Engineer

Salary • Al Khor

On-site
QAR 250,000 - 420,000