SOC L2 InfoSec Engineer — Threat Detection & Response

تابي

Saudi Arabia

On-site

SAR 180,000 - 240,000

Full time

12 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Tabby in Saudi Arabia is seeking an Information Security Engineer (SOC L2) to monitor and defend our infrastructure, applications, and cloud environments from cyber threats. You’ll lead incident response, tune detection rules, and collaborate with cross-functional teams to strengthen security posture.

The role requires 2–3 years in a SOC or cybersecurity operations role, strong incident handling skills, and experience with SIEM, EDR/XDR, and threat intelligence platforms.

Qualifications

  • 2–3 years of experience in a SOC or cybersecurity operations role.
  • Strong knowledge of incident handling, alert triage, and log analysis.
  • Familiarity with cloud environments and cloud-native logging.
  • Experience with phishing detection, user behavior analytics, and security awareness.

Responsibilities

  • Monitor and analyze logs and alerts from firewalls, IDS/IPS, endpoints, and cloud platforms.
  • Lead incident response from detection through recovery and post-mortems.
  • Develop and tune detection rules and CTI-driven detections.
  • Collaborate with IT, DevOps, Risk, and Compliance during incidents.
  • Mentor junior analysts in the SOC.

Skills

SOC operations
Incident response
Log analysis
Threat hunting
Python scripting

Tools

SIEM platforms
SOAR tools
EDR/XDR
Threat Intelligence platforms

Job description

Tabby in Saudi Arabia is seeking an Information Security Engineer (SOC L2) to monitor and defend our infrastructure, applications, and cloud environments from cyber threats. You’ll lead incident response, tune detection rules, and collaborate with cross-functional teams to strengthen security posture.

The role requires 2–3 years in a SOC or cybersecurity operations role, strong incident handling skills, and experience with SIEM, EDR/XDR, and threat intelligence platforms.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Engineer (SOC L2) KSA
Information Security Engineer (SOC L2) KSA

تابي • Saudi Arabia

On-site
SAR 180,000 - 240,000
Lead Cybersecurity Engineer — Cloud, DevSecOps & Threats
Lead Cybersecurity Engineer — Cloud, DevSecOps & Threats

Tabby • Riyadh

On-site
SAR 350,000 - 650,000
Senior SOC Engineer: Security Operations & Incident Response
Senior SOC Engineer: Security Operations & Incident Response

2P Perfect Presentation • Riyadh

On-site
SAR 180,000 - 300,000
Senior SOC Manager - Incident Response & Threat Detection
Senior SOC Manager - Incident Response & Threat Detection

Managed • Riyadh

On-site
SAR 240,000 - 360,000
Senior SOC Manager – Incident Response & Threat Detection
Senior SOC Manager – Incident Response & Threat Detection

Managed Services • Riyadh

On-site
SAR 240,000 - 360,000
24/7 SOC L2 Security Monitor & Incident Triage
24/7 SOC L2 Security Monitor & Incident Triage

Talent Blueprint FZ LLC • Riyadh

On-site
SAR 134,000 - 201,000
Senior L2 SOC Monitor - 24/7 Project in KSA
Senior L2 SOC Monitor - 24/7 Project in KSA

Talent Blueprint FZ LLC • Jeddah

On-site
SAR 180,000 - 240,000
Project-based
Short-term contract
Saudi nationals preferred
Lead Cyber Security Engineer: Cloud, DevSecOps & IR
Lead Cyber Security Engineer: Cloud, DevSecOps & IR

Tabby | تابي • Riyadh

On-site
SAR 420,000 - 660,000
Lead Cyber Security Engineer: Cloud & DevSecOps Threat Intel
Lead Cyber Security Engineer: Cloud & DevSecOps Threat Intel

تابي • Saudi Arabia

On-site
SAR 500,000 - 800,000
Cyber Security Lead: Cloud, DevSecOps & Threat Defense
Cyber Security Lead: Cloud, DevSecOps & Threat Defense

Tabby | تابي • Riyadh

On-site
SAR 260,000 - 380,000