SIEM Security Operations Engineer (Saudi Nationals)

Socium - Teams Done Differently

Saudi Arabia

On-site

SAR 180,000 - 280,000

Full time

45 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Socium - Teams Done Differently is seeking experienced SIEM Security Operations Engineers to support enterprise cybersecurity monitoring, threat detection, incident analysis, and vulnerability management in a secure cloud environment.

You will deploy and operate the SIEM platform, integrate security products, monitor events, investigate alerts, and coordinate remediation with cloud and infrastructure teams to strengthen enterprise cyber resilience.

Qualifications

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field.
  • Minimum 2 years of professional SIEM/SOC experience in security operations or monitoring.
  • Saudi National and hands-on SIEM platform operation in enterprise environments.
  • Experience with security log collection, correlation, analysis, and alert investigation.
  • Understanding of threats, IOCs, and vulnerability management workflows.

Responsibilities

  • Assist in deployment, configuration, and ongoing operation of the enterprise SIEM platform.
  • Integrate security logs from WAF, HIDS, DDoS protection, cloud platforms, and other security tech.
  • Configure and optimize SIEM rules, alerts, dashboards, and detection use cases.
  • Monitor events, investigate alerts, and perform initial triage of incidents.
  • Analyze logs to identify suspicious activity, IOCs, and threats.
  • Escalate validated incidents to cybersecurity or engineering teams for remediation.
  • Manage and track security vulnerability tickets for cloud and on-premises systems.
  • Coordinate remediation with engineering teams and verify post-remediation effectiveness.
  • Improve detection by tuning alert rules and reducing false positives.
  • Support regulatory compliance efforts and maintain operational documentation.
  • Demonstrate cybersecurity solutions during audits or customer engagements.

Skills

SIEM operations
SOC operations
Log analysis
Security monitoring
Vulnerability management
Analytical thinking
Troubleshooting
English communication

Education

Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Information Security

Tools

WAF
Host Intrusion Detection Systems (HIDS)
DDoS Protection
Cloud Security Platforms

Job description

We are seeking experienced SIEM Security Operations Engineers to support enterprise cybersecurity monitoring, threat detection, incident analysis, and vulnerability management initiatives within a highly secure cloud environment.

The successful candidates will play a key role in deploying and operating the organization’s Security Information and Event Management (SIEM) platform, integrating security products, monitoring security events, investigating alerts, and coordinating vulnerability remediation activities across cloud services and enterprise infrastructure.

This role is ideal for cybersecurity professionals with hands-on experience in SIEM operations, Security Operations Center (SOC) environments, log analysis, security monitoring, and vulnerability management who are passionate about strengthening enterprise cyber resilience.

You will work closely with cybersecurity engineers, cloud teams, product development teams, and regulatory stakeholders to enhance security monitoring capabilities, improve threat detection, and ensure timely response to security incidents.

Key Responsibilities
  • Assist in the deployment, configuration, and ongoing operation of the enterprise SIEM platform.
  • Integrate security logs from enterprise security solutions including WAF, HIDS, DDoS protection systems, cloud platforms, and other security technologies.
  • Configure and optimize SIEM correlation rules, alert logic, dashboards, and detection use cases.
  • Monitor security events, investigate alerts, and perform initial triage of potential security incidents.
  • Analyze logs to identify suspicious activities, indicators of compromise (IOCs), and emerging security threats.
  • Escalate validated security incidents to the appropriate cybersecurity or engineering teams for remediation.
  • Manage and track security vulnerability tickets for cloud services and enterprise platforms.
  • Validate reported vulnerabilities, coordinate remediation with engineering teams, and perform post-remediation verification.
  • Assist in improving detection capabilities by tuning alert rules and reducing false positives.
  • Support security compliance initiatives and maintain operational documentation.
  • Conduct technical demonstrations and explain cybersecurity solutions during regulatory reviews, audits, or customer engagements.
  • Collaborate with cloud, infrastructure, application, and security teams to continuously improve enterprise security posture.
  • Stay up to date with emerging cyber threats, attack techniques, and security best practices.
Required Qualifications
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Information Security, or a related field.
  • Minimum 2 years of professional experience in SIEM Security Operations, SOC Operations, Cybersecurity Monitoring, or Information Security.
  • Saudi National.
  • Hands-on experience operating SIEM platforms in enterprise environments.
  • Experience with security log collection, correlation, analysis, and alert investigation.
  • Good understanding of cybersecurity threats, attack techniques, indicators of compromise (IOCs), and security monitoring.
  • Experience in vulnerability management and remediation workflows.
  • Familiarity with enterprise security technologies such as:
  • Web Application Firewall (WAF)
  • Host Intrusion Detection Systems (HIDS)
  • DDoS Protection
  • Cloud Security Platforms
  • Strong analytical and troubleshooting skills.
  • Good written and verbal communication skills in English.
Preferred Qualifications
  • Experience working within a Security Operations Center (SOC).
  • Knowledge of cloud security concepts and cloud-native security services.
  • Understanding of AI Security or Cloud Security technologies.
  • Knowledge of Saudi Arabia cybersecurity regulations and compliance frameworks (e.g., NCA ECC, SAMA Cybersecurity Framework, PDPL).
  • Experience presenting technical security concepts to auditors, regulators, or customers.
  • Participation or recognition in cybersecurity competitions (e.g., CTFs, hacking competitions).
  • Relevant cybersecurity certifications such as:
    • CompTIA Security+
    • CompTIA CySA+
    • GIAC Certifications
    • CEH
    • Splunk Core Certified User/Power User
    • Microsoft SC-200
    • Google Professional Cloud Security Engineer (advantage)
    • ISC2 CC or CISSP (advantage)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior IT Security Operation- Saudi National- Riyadh, KSA
Senior IT Security Operation- Saudi National- Riyadh, KSA

DS DeepSource • Riyadh

On-site
SAR 200,000 - 320,000
SIEM Admin at Innovative Solutions
SIEM Admin at Innovative Solutions

Innovative Solutions • Riyadh

On-site
SAR 167,000 - 301,000
Cyber Defense Specialist - Detection & Monitoring
Cyber Defense Specialist - Detection & Monitoring

cloud consultancy - ccds • Saudi Arabia

On-site
OMR 31,000 - 62,000
Senior IT Security Operation Architect - Saudi National- Riyadh, KSA
Senior IT Security Operation Architect - Saudi National- Riyadh, KSA

DS DeepSource • Riyadh

On-site
SAR 450,000 - 750,000
Senior Security Engineer - (Saudi National)- Riyadh, KSA
Senior Security Engineer - (Saudi National)- Riyadh, KSA

DS DeepSource • Riyadh

On-site
SAR 210,000 - 330,000
SOC Manager
SOC Manager

Managed Services • Riyadh

On-site
SAR 240,000 - 360,000
SOC Manager
SOC Manager

Managed • Riyadh

On-site
SAR 240,000 - 360,000
Cybersecurity Analyst
Cybersecurity Analyst

Leading Edge • Riyadh

On-site
SAR 90,000 - 130,000
Senior Cybersecurity Analyst
Senior Cybersecurity Analyst

Leading Edge • Riyadh

On-site
IT Security Operations Engineer (1397) New
IT Security Operations Engineer (1397) New

2P Perfect Presentation • Riyadh

On-site
SAR 180,000 - 300,000