Job Description
Black & Grey HR is recruiting for an established technology solutions and services provider i n Doha, Qatar. Our client is seeking an experienced Security Operations Officer who will be responsible for safeguarding the organization's information systems by leading security operations, with a specialized focus on protecting critical infrastructure during mega sports events and throughout non-event periods. This role is central to proactively monitoring, detecting, and responding to cyber threats, while fostering cross-team collaboration to implement robust security measures.
Key Responsibilities
Security Monitoring & Threat Detection
- Continuously monitor security alerts from SIEM, IDS / IPS, firewalls, endpoint protection, and other security tools.
- Perform in-depth analysis of alerts to distinguish false positives from genuine security incidents, escalating as required.
- Correlate and analyze diverse log data to identify indicators of compromise and potential security events.
Incident Response & Management
Act as a primary incident responder, conducting advanced threat detection, malware analysis, and digital forensics.Lead the coordination of incident response efforts with internal teams and external partners to ensure effective containment and eradication of threats.Meticulously document all incidents, response actions, and post-incident findings.Threat Intelligence & Proactive Defense
Leverage threat intelligence feeds to contextualize and enrich security alerts for more accurate analysis.Conduct proactive threat hunting activities to identify and mitigate latent threats before they impact the business.Maintain an up-to-date understanding of the evolving threat landscape, including emerging vulnerabilities, exploits, and adversary tactics.Security Tooling & Process Improvement
Configure, fine-tune, and maintain security monitoring tools to optimize detection accuracy and efficiency.Develop and refine detection rules, analytical use cases, and incident response playbooks to enhance SOC capabilities.Penetration Testing & Vulnerability Assessment
Plan and conduct regular penetration tests on networks, systems, and applications to identify security weaknesses.Utilize a variety of tools and techniques to ethically simulate advanced attacks and exploit vulnerabilities.Produce comprehensive reports detailing findings and provide actionable recommendations for risk mitigation.Partner with development and IT teams to guide the remediation of vulnerabilities identified during testing.Collaboration & Reporting
Collaborate closely with IT, network, and application teams to investigate and resolve security issues.Communicate clearly and effectively with stakeholders at all levels, providing timely updates on incident status and remediation progress.Prepare and deliver detailed reports on security incidents, trends, and metrics, along with strategic recommendations for improvement.Maintain comprehensive documentation for all incident response procedures and SOC processes.Requirements
Qualifications & Experience
8+ years of total IT experience, with at least 6 years in a dedicated security operations or incident response role.Bilingual proficiency with Arabic (Mandatory).Bachelor's degree in Engineering, IT, Computer Science, or a related field.Certifications (Preferred)
Certified Ethical Hacker (CEH)Certified Information Security Manager (CISM)GIAC Penetration Tester (GPEN)Offensive Security Certified Professional (OSCP)ISO / IEC 27001 Lead Implementer or Lead AuditorOther relevant cybersecurity certifications will be considered.Required Skillset
Leadership and Team ManagementIncident Response and ManagementExpertise with SIEM platforms (e.g., Splunk, QRadar, Sentinel)Threat Intelligence Analysis and ApplicationVulnerability Management LifecycleKnowledge of Security Frameworks (e.g., MITRE ATT&CK, NIST, ISO 27001)Proficiency in Network Security and ProtocolsAutomation and Scripting (e.g., Python, PowerShell)Excellent Communication and Reporting SkillsRisk Assessment and Mitigation StrategiesBenefits
Competitive Salary + Benefits PackageRequirements
Qualifications & Experience - 8+ years of total IT experience, with at least 6 years in a dedicated security operations or incident response role. - Bilingual proficiency with Arabic (Mandatory). - Bachelor's degree in Engineering, IT, Computer Science, or a related field. Certifications (Preferred) - Certified Ethical Hacker (CEH) - Certified Information Security Manager (CISM) - GIAC Penetration Tester (GPEN) - Offensive Security Certified Professional (OSCP) - ISO / IEC 27001 Lead Implementer or Lead Auditor - Other relevant cybersecurity certifications will be considered. Required Skillset - Leadership and Team Management - Incident Response and Management - Expertise with SIEM platforms (e.g., Splunk, QRadar, Sentinel) - Threat Intelligence Analysis and Application - Vulnerability Management Lifecycle - Knowledge of Security Frameworks (e.g., MITRE ATT&CK, NIST, ISO 27001) - Proficiency in Network Security and Protocols - Automation and Scripting (e.g., Python, PowerShell) - Excellent Communication and Reporting Skills - Risk Assessment and Mitigation Strategies