368,530open jobs
9,432companies
50,439added this week
Browse all
Salary
$79k – $166k per year (Estimated)
Location
Remote (MENA)
Seniority
Senior · 3+ years exp
Overview
Company
Impact
Profile match
ZainTECH is the regional digital and ICT powerhouse of Zain Group, delivering unified technology solutions to enterprise and government clients across the Middle East and North Africa. Headquartered in Dubai, the company provides managed enterprise services across cloud computing, cybersecurity, data analytics, artificial intelligence, and smart infrastructure. By integrating telecommunications infrastructure with advanced IT solutions, ZainTECH helps organizations across the MENA region accelerate their digital transformation and operational efficiency.

The SOC Engineer is responsible for the design, implementation, configuration, and continuous optimization of ZainTECH's Security Operations Centre (SOC) technology platforms, ensuring secure, scalable, and resilient security monitoring services for enterprise and government customers across the MENA region.

This is a hands-on engineering role focused on designing and maintaining Security Information and Event Management (SIEM), Security Orchestration, Automation and Response (SOAR), and supporting security technologies. The role owns the end-to-end lifecycle of security monitoring capabilities - from onboarding new log sources and developing detection content to automating operational workflows and continuously enhancing SOC performance - while ensuring solutions align with customer requirements, cybersecurity best practices, and operational standards.

Responsibilities:

SIEM & Security Platform Engineering

  • Design, implement, configure, and maintain enterprise SIEM and SOAR platforms supporting ZainTECH's Managed Security Services portfolio.
  • Deploy and maintain highly available, scalable, and secure SOC infrastructure across customer environments.
  • Manage platform upgrades, patching, configuration management, and lifecycle activities to ensure platform stability and performance.
  • Ensure SOC technologies remain aligned with operational, security, and customer requirements.

Detection Engineering & Security Content

  • Develop, maintain, and optimise SIEM detection content, including correlation rules, dashboards, reports, alerts, watchlists, and use cases.
  • Improve detection capabilities by analysing emerging threats, attack techniques, and operational trends.
  • Reduce false positives through continuous tuning and refinement of detection logic.
  • Map detection capabilities to recognised cybersecurity frameworks such as MITRE ATT&CK.

Platform Integration & Automation

  • Integrate security technologies, cloud platforms, infrastructure, and third-party solutions into the SIEM ecosystem.
  • Develop custom parsers, connectors, and data ingestion mechanisms to support new customer environments.
  • Design and implement SOAR playbooks to automate investigation, enrichment, notification, and response activities.
  • Optimise data collection, normalisation, and event processing to improve operational efficiency.

Operational Support & Continuous Improvement

  • Provide technical support to SOC Analysts during security investigations and major incident response activities.
  • Troubleshoot platform issues and perform root cause analysis to maintain service availability.
  • Produce technical documentation, implementation guides, and operational runbooks.
  • Identify opportunities to improve SOC maturity through automation, process optimisation, and engineering best practices.
  • Collaborate with Cybersecurity Consulting, Incident Response, Product Management, and Delivery teams to continuously enhance Managed Security Services.

Our Culture & Code of Conduct:

At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our Code of Conduct, which serves as a guiding framework for responsible behavior across everything we do - from how we work with each other to how we engage with clients and partners globally.

  • 3-5 years of hands-on experience designing, implementing, and administering SIEM platforms within enterprise or Managed Security Services environments.
  • Strong experience with one or more SIEM platforms such as Microsoft Sentinel, Splunk Enterprise Security, IBM QRadar, ArcSight, LogRhythm, or Elastic Security.
  • Experience integrating multiple security technologies, including EDR, firewalls, IDS/IPS, cloud security platforms, identity platforms, and threat intelligence feeds.
  • Working knowledge of Windows, Linux, networking, scripting, APIs, and automation technologies.
  • Experience implementing SOAR platforms and security automation workflows.
  • Knowledge of MITRE ATT&CK, threat intelligence integration, and detection engineering principles.
  • Experience supporting enterprise cloud environments including Microsoft Azure, AWS, or Google Cloud Platform.
  • Experience working within a Managed Security Services Provider (MSSP) environment.
  • Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, Engineering, or a related field.
  • Security +, CEH or any relevant certification preferred
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,530 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$105k – $252k per year • Remote • Full-Time • 18+ years exp • Bachelor's Degree
Python
Java
Java
Gradle
DevOps
Ansible
AWS
CI/CD
CloudFormation
Configuration Management
Docker
GitHub Actions
GitLab CI
Helm
Jenkins
Kubernetes
Platform Engineering
Terraform
GitHub
GitLab
Cybersecurity
Sonatype Nexus IQ
Management
Confluence
Jira
Apply
$54k – $175k per year (Estimated) • Remote • Full-Time
JavaScript
Node JS
TypeScript
Frontend
React.js
Sass
DevOps
AWS
CI/CD
Docker
Kubernetes
Rest API
Apply
$35k – $113k per year (Estimated) • Remote • Full-Time
JavaScript
Node JS
TypeScript
Frontend
React.js
Sass
DevOps
AWS
CI/CD
Docker
Kubernetes
Rest API
Apply
$35k – $116k per year (Estimated) • Remote • Full-Time
JavaScript
Node JS
TypeScript
Frontend
React.js
Sass
DevOps
AWS
CI/CD
Docker
Kubernetes
Rest API
Apply
$61k – $200k per year (Estimated) • Remote • Full-Time
JavaScript
Node JS
TypeScript
Frontend
React.js
Sass
DevOps
AWS
CI/CD
Docker
Kubernetes
Rest API
Apply
Junior Data Scientist 20 days ago
$17k – $49k per year (Estimated) • In office • Full-Time • 3+ years exp • Kochi
Python
SQL
AI/ML
Embeddings
LangChain
LangGraph
LLM
MLFlow
NLP
Prompt Engineering
PyTorch
RAG
Scikit-learn
TensorFlow
OpenAI
DevOps
Azure
CI/CD
Apply
In office • Full-Time • 3+ years exp • New Cairo
DevOps
AWS
Azure
GCP
Apply
In office • Full-Time • 3+ years exp • Kuwait City
DevOps
AWS
Azure
GCP
Platform Engineering
Splunk
Cybersecurity
Elastic SIEM
IBM QRadar
LogRhythm
Microsoft Sentinel
MITRE ATT&CK
Apply
In office • Full-Time • 5+ years exp • Kuwait City
DevOps
Incident Management
Apply
In office • Full-Time • 3+ years exp • Kuwait City
DevOps
Incident Management
Apply
See all jobs
This is one of many
368,530 more open roles from verified company boards, updated every day.