ARCHIVED
This job listing has been archived and is no longer accepting applications.
MisuJob - AI Job Search Platform MisuJob

Senior SOC Analyst L2 - Saudi National - Jeddah, KSA

DeepSource Technologies

Jeddah, Makkah Province, Saudi Arabia permanent

Posted: March 8, 2026

Interested in this position?

Create a free account to apply with AI-powered matching

Quick Summary

The Senior SOC Analyst – Layer 2 will conduct advanced threat detection, incident investigation, containment, and response activities across enterprise environments.

Required Skills

Job Description

Position Overview

We are seeking a highly skilled Senior SOC Analyst – Layer 2 (L2) to join our Cybersecurity Operations Center (SOC) in Jeddah. The selected candidate will play a critical role in advanced threat detection, in-depth incident investigation, containment, and response activities across enterprise environments.

This position requires strong hands-on operational experience in SOC environments, with proven capability in analyzing complex security events, leading incident response activities, tuning detection use cases, and mentoring junior analysts (L1).

________________________________________

Key Responsibilities

1. Advanced Threat Monitoring & Analysis

• Perform in-depth analysis of security alerts escalated from L1 analysts.

• Investigate complex incidents using SIEM, EDR, NDR, and other security tools.

• Validate and classify security events to eliminate false positives.

• Conduct log correlation and behavioral analysis across multiple data sources.

• Identify Indicators of Compromise (IOCs) and map them to the MITRE ATT&CK framework.

2. Incident Response & Containment

• Lead incident triage, containment, eradication, and recovery efforts.

• Coordinate with IT, network, cloud, and system teams during active incidents.

• Perform root cause analysis and recommend corrective security controls.

• Develop and update Incident Response playbooks and runbooks.

• Support digital evidence preservation and forensic readiness.

3. SIEM & Detection Engineering Support

• Create and tune correlation rules and detection use cases in Splunk Enterprise Security, IBM QRadar, or equivalent SIEM platforms.

• Enhance alert logic to reduce false positives and improve detection accuracy.

• Develop advanced queries (e.g., SPL, AQL, KQL) for threat hunting.

• Ensure log sources are properly normalized and mapped to data models.

4. Threat Hunting & Proactive Defense

• Conduct proactive threat hunting using EDR, SIEM, and threat intelligence feeds.

• Investigate suspicious anomalies and lateral movement indicators.

• Integrate threat intelligence into detection logic.

• Participate in purple team exercises and attack simulations.

5. Endpoint & Network Security Operations

• Perform deep investigations using EDR solutions such as Microsoft Defender for Endpoint, CrowdStrike Falcon, or equivalent.

• Analyze firewall, proxy, VPN, IDS/IPS logs (e.g., Palo Alto, Fortinet, Cisco).

• Monitor and investigate suspicious email threats (phishing, malware, BEC).

6. Escalation & Reporting

• Prepare detailed incident reports with technical findings and executive summaries.

• Escalate high-severity incidents to SOC Manager and CISO when required.

• Provide weekly and monthly security incident metrics.

• Support compliance and audit reporting requirements (SAMA CSF, NCA ECC, ISO 27001, PCI DSS).

On-Call Support

• Participate in 24x7 on-call rotation for critical incident handling.

• Respond to high-severity incidents outside business hours when required.


Requirements:
Candidates must demonstrate proven hands-on experience in:

• Minimum 5–7 years of experience in SOC operations.

• At least 3 years in an L2 role or equivalent advanced SOC position.

• Hands-on experience with enterprise SIEM platforms (Splunk, QRadar, ArcSight, Sentinel).

• Advanced log analysis and event correlation.

• Incident response lifecycle management.

• EDR investigation and containment.

• Malware analysis fundamentals (hash analysis, sandboxing, behavior analysis).

• Network traffic analysis (PCAP, NetFlow, TCP/IP fundamentals).

• Strong understanding of Windows/Linux security events.

• Experience working in regulated environments (Banking, Government, Critical Infrastructure preferred).

• Familiarity with cloud security monitoring (Azure/AWS logs preferred).

Preferred Technical Knowledge

• MITRE ATT&CK framework mapping.

Why Apply Through MisuJob?

AI-Powered Job Matching: MisuJob uses advanced artificial intelligence to analyze your skills, experience, and career goals. Our matching algorithm compares your profile against thousands of job requirements to find positions where you have the highest chance of success. This saves you hours of manual job searching and ensures you only see relevant opportunities.

One-Click Applications: Once you create your profile, applying to jobs is effortless. Your resume and cover letter are automatically tailored to highlight the most relevant experience for each position. You can apply to multiple jobs in minutes, not hours.

Career Intelligence: Beyond job matching, MisuJob provides valuable career insights. See how your skills compare to market demands, identify skill gaps to address, and understand salary benchmarks for your experience level. Make data-driven decisions about your career path.

Frequently Asked Questions

How do I apply for this position?

Click the "Register to Apply" button above to create a free MisuJob account. Once registered, you can apply with one click and track your application status in your dashboard.

Is MisuJob free for job seekers?

Yes, MisuJob is completely free for job seekers. Create your profile, get matched with jobs, and apply without any cost. We help you find your dream job without any hidden fees.

How does AI matching work?

Our AI analyzes your resume, skills, and experience to understand your professional profile. It then compares this against job requirements using natural language processing to calculate a match percentage. Higher matches mean better fit for the role.

Can I apply to jobs in other countries?

Absolutely. MisuJob features jobs from companies worldwide, including remote positions. Filter by location or look for remote opportunities to find jobs that match your preferences.

Ready to Apply?

Join thousands of job seekers using MisuJob's AI to find and apply to their dream jobs automatically.

Register to Apply