Security Operations Center (SOC) Analyst L2 - Immediate Joiner
VaporVM · Dubai, United Arab Emirates
Apply & track with Apply EdgeWe are looking for an experienced SOC Analyst L2 to investigate security incidents, perform threat hunting, and enhance security monitoring across enterprise environments.Key ResponsibilitiesMonitor and investigate security alerts across SIEM, EDR/XDR, IDS/IPS, and firewall technologies.Perform incident triage, investigation, containment, and recovery.Conduct threat hunting and investigate malware, phishing, ransomware, and suspicious activities.Develop and tune SIEM use cases, correlation rules, dashboards, and detection content.Analyze logs across Windows, Linux, cloud platforms, and network devices.Collaborate with technical teams during security incidents and support root cause analysis.Prepare incident reports and maintain SOC playbooks, runbooks, and SOPs.Support vulnerability management, digital forensics, and remediation validation.Provide technical guidance to junior analysts and participate in shift rotations when required.Required Skills and QualificationsHands-on experience with SIEM tools such as Microsoft Sentinel, Splunk, IBM QRadar, LogRhythm, or ArcSight.Experience with EDR/XDR solutions such as Microsoft Defender, CrowdStrike, SentinelOne, or Cortex XDR.Strong knowledge of Windows, Linux, Active Directory, Microsoft 365, and cloud security.Experience with firewalls, VPNs, IDS/IPS, WAF, and email security.Understanding of MITRE ATT&CK, Cyber Kill Chain, and NIST frameworks.Experience with vulnerability management tools such as Tenable, Qualys, or Rapid7.Knowledge of networking protocols, threat intelligence, malware analysis, and incident response.Familiarity with SOAR and scripting in PowerShell, Python, or Bash is preferred.