Senior Information security Analyst
K20s - Kinetic Technologies Private Limited · Dubai, Dubai, United Arab Emirates
Apply & track with Apply EdgeJob PurposeThe Senior Information Security Analyst is responsible for protecting the organization's information assets by leading security operations, vulnerability management, incident response, security assessments, and implementation of technical security controls. The role also supports risk management activities, security governance, and continuous improvement of the organization's cybersecurity posture.Risk Management & Governance Understand applicable regulations, standards, and best practices. Perform cybersecurity risk assessments and identify emerging risks. Develop remediation and corrective action plans. Maintain risk management documentation and implementation guides. Review and update cybersecurity documentation.Security Operations Monitor SIEM alerts and security events. Investigate incidents and eliminate false positives. Support Vulnerability Assessment and Penetration Testing (VAPT). Validate remediation activities. Research emerging cyber threats and implement safeguards.Incident Response Maintain and improve the Cybersecurity Incident Response Plan. Support incident investigations and forensic evidence collection. Coordinate cyber incident response activities. Analyze packet captures and security logs. Document incidents, lessons learned, and response procedures. Maintain escalation matrices and incident runbooks.Technical Security Assess API, Web, Mobile, and Cloud security. Review Web Application Firewall effectiveness. Provide technical guidance to Information Security teams. Produce technical security reports and knowledge base documentation.Desired Knowledge Master’s degree in information technology, or Computer Science or relevant field Good knowledge of overall infrastructure technical knowledge & troubleshooting methodologies Good knowledge and practice for cloud security. Good knowledge and hands-on experience on SIEM, PAM, Email Security devices, VA solutions, threat intelligence solutions, Endpoint security solutions like (Tenable, Qualys, CyberArk, Splunk, LogRhythm, IronPort, Fortinet, Symantec) Sound knowledge in SOC playbooks. A strong understanding and knowledge of computer, network, and security systems. Good knowledge ISO standards like ISO 27001, NIST, CIS benchmarks Strong Security productsTrouble shooting skills. Strong interpersonal and communication skills.Qualifications - Required Bachelor’s degree in information technology, Computer Science, or a related field. Minimum 5 years of relevant Information Security experience.Qualifications - Preferred Master’s degree in information technology, Computer Science, or related field. Knowledge of infrastructure troubleshooting methodologies. Knowledge of cloud security best practices. Hands-on experience with SIEM, PAM, Email Security, Vulnerability Management, Threat Intelligence, and Endpoint Security solutions. Strong understanding of SOC playbooks. Knowledge of ISO 27001, NIST, and CIS Controls. Excellent troubleshooting, communication, and interpersonal skills.Preferred Certifications CEH OSCP CISSP CHFI ECIH ISO 27001 ISFCE CCESkills: iso,security,cloud security