368,634open jobs
9,437companies
50,578added this week
Browse all
Location
In office (Amman)
Seniority
Middle · 3+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
ZainTECH is the regional digital and ICT powerhouse of Zain Group, delivering unified technology solutions to enterprise and government clients across the Middle East and North Africa. Headquartered in Dubai, the company provides managed enterprise services across cloud computing, cybersecurity, data analytics, artificial intelligence, and smart infrastructure. By integrating telecommunications infrastructure with advanced IT solutions, ZainTECH helps organizations across the MENA region accelerate their digital transformation and operational efficiency.

The Incident Response Analyst is responsible for investigating, containing, eradicating, and supporting the recovery of cybersecurity incidents across customer and enterprise environments. The role plays a critical part in minimizing business impact from cyber threats by coordinating response activities, performing technical investigations, and supporting the continuous improvement of incident response capabilities.

The role collaborates closely with Security Operations, Threat Intelligence, Digital Forensics, and customer IT teams to identify attack vectors, contain threats, and strengthen organizational resilience against future incidents.

Responsibilities:

Incident Investigation & Response

  • Respond to security incidents within defined SLAs and escalation procedures.
  • Perform detailed investigations to determine Nature of the attack, Scope of compromise, Impacted systems, Attack vectors and Potential business impact
  • Analyze indicators of compromise (IOCs) and attacker activity.
  • Identify containment, eradication, and recovery actions required to mitigate incidents.
  • Coordinate incident response activities with internal and customer stakeholders.

Threat Analysis & Root Cause Investigation

  • Conduct in-depth analysis of security incidents and suspicious activities.
  • Identify vulnerabilities, attack techniques, and security gaps contributing to incidents.
  • Perform root cause analysis to determine how incidents occurred and identify preventive controls.
  • Analyze attacker tactics, techniques, and procedures (TTPs) using industry frameworks such as MITRE ATT&CK.

Incident Coordination & Escalation

  • Manage incident response activities across multiple technical teams.
  • Escalate incidents requiring Digital Forensics support, Specialized technical expertise and Malware analysis
  • Coordinate communication between technical teams, management, and customer stakeholders.
  • Support crisis management activities during major incidents.

Documentation & Reporting

  • Prepare detailed incident reports documenting Findings, Impact assessments, Root cause analysis and Remediation recommendations
  • Maintain investigation records and evidence documentation.
  • Support development of executive-level incident summaries and post-incident reviews.

Process Improvement & Readiness

  • Support the development and enhancement of Incident response playbooks, Response procedures and Investigation methodologies
  • Participate in tabletop exercises and incident simulations.
  • Identify opportunities to improve response effectiveness and operational readiness.

Our Culture & Code of Conduct:

At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our Code of Conduct, which serves as a guiding framework for responsible behaviour across everything we do - from how we work with each other to how we engage with clients and partners globally.

Requirements

  • Bachelor's degree or intermediate diploma (minimum) from a recognised institution.
  • Minimum 3 years experience in cybersecurity / information security, including 1 or more years in incident response.
  • At least one valid NCSC-approved IR certification like (ECIH, CCIM, Blue Team Level 2) or another equivalent certification in the same field that is approved by the NCSC.
  • Practical skills in log analysis, endpoint and network investigation, malware triage, and use of IR tooling.
  • Exposure to SIEM/SOAR and EDR platforms is preferable.
  • Experience in an MSSP or SOC environment is preferable.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,634 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Amman
$26k – $64k per year (Estimated) • In office • Full-Time • 12+ years exp • Bachelor's Degree • Hyderabad
DevOps
AWS
Azure
GCP
Cybersecurity
Cyber Kill Chain
Diamond Model
MITRE ATT&CK
Apply
SOC Senior Analyst 2 days ago
In office • Full-Time • Bachelor's Degree • Riyadh
DevOps
AWS
Azure
GCP
Cybersecurity
MITRE ATT&CK
Apply
SOC Analyst L1 1 day ago
In office • Full-Time • Bachelor's Degree • Riyadh
DevOps
AWS
Azure
GCP
SLI/SLO/SLA
Cybersecurity
MITRE ATT&CK
Apply
$150k – $200k per year • Remote • Full-Time • 11+ years exp
YARA
Databases
Apache Kafka
ElasticSearch
OpenSearch
AI/ML
AI Agents
Embeddings
RAG
Semantic Search
GraphRAG
Knowledge Graph
Semantic Search
DevOps
Kubernetes
Vector
Cybersecurity
MITRE ATT&CK
STIX
TAXII
YARA
Apply
$20k – $51k per year (Estimated) • In office • Omsk
PowerShell
Python
Cybersecurity
MITRE ATT&CK
Apply
Junior Data Scientist 20 days ago
$17k – $49k per year (Estimated) • In office • Full-Time • 3+ years exp • Kochi
Python
SQL
AI/ML
Embeddings
LangChain
LangGraph
LLM
MLFlow
NLP
Prompt Engineering
PyTorch
RAG
Scikit-learn
TensorFlow
OpenAI
DevOps
Azure
CI/CD
Apply
In office • Full-Time • 3+ years exp • New Cairo
DevOps
AWS
Azure
GCP
Apply
$79k – $166k per year (Estimated) • Remote • 3+ years exp • Bachelor's Degree
DevOps
AWS
Azure
GCP
Platform Engineering
Splunk
Cybersecurity
Elastic SIEM
IBM QRadar
LogRhythm
Microsoft Sentinel
MITRE ATT&CK
Apply
In office • Full-Time • 3+ years exp • Kuwait City
DevOps
AWS
Azure
GCP
Platform Engineering
Splunk
Cybersecurity
Elastic SIEM
IBM QRadar
LogRhythm
Microsoft Sentinel
MITRE ATT&CK
Apply
In office • Full-Time • 5+ years exp • Kuwait City
DevOps
Incident Management
Apply
Remote • Full-Time • 5+ years exp • Nairobi • Amman
Apply
In office • Full-Time • 10+ years exp • Bachelor's Degree • Amman
C#
SQL
TypeScript
JavaScript
C#
ASP.NET Core
Frontend
Angular
DevOps
Azure
Apply
Remote • Full-Time • 4+ years exp • Bachelor's Degree • Amman
C#
C++
Go
Java
Kotlin
DevOps
AWS
Azure
Docker
GCP
Kubernetes
Apply
In office • 6+ years exp • Amman
C#
SQL
TypeScript
JavaScript
C#
ASP.NET Core
Entity Framework Core
Frontend
Angular
Sass
DevOps
Git
Rest API
Apply
In office • Full-Time • 2+ years exp • Bachelor's Degree • Amman
Design
AutoCAD
Apply
See all jobs
This is one of many
368,634 more open roles from verified company boards, updated every day.