📢 New: get today's jobs on our WhatsApp Channel
Jobiglo

No results.

Lead SOC Engineer – OT Cybersecurity

TALENTMATE · Abou Dabi

Senior 🇬🇧 English
Python PowerShell QRadar Splunk Dragos Claroty Nozomi Modbus DNP3 OPC IEC 61850

Job description

About the role

The Lead SOC Engineer – OT Cybersecurity is a senior technical leader responsible for designing and implementing advanced threat detection capabilities across operational technology (OT) environments. Working within CPX’s hybrid Security Operations Centers, the role focuses on engineering detection logic, integrating OT telemetry, and improving visibility for industrial control and SCADA systems.

Key responsibilities

  • Design, develop and fine‑tune OT‑specific detection use cases, correlation rules and analytics within SIEM platforms.
  • Build, maintain and optimise SOAR playbooks to automate investigation and response for OT and IT security events.
  • Create, refine and document SOC alert logic to ensure high‑fidelity detection and smooth hand‑over to analysts.
  • Deploy, configure and optimise OT security platforms such as Dragos, Claroty and Nozomi.
  • Integrate OT data sources—including PLC logs, historian data, network telemetry and asset inventories—into SIEM/SOAR workflows.
  • Collaborate closely with SOC analysts and IT/OT teams to validate detections and enhance triage processes.
  • Align detection and response strategies with regulatory frameworks such as NESA, SAMA, NIST 800‑82 and IEC 62443.
  • Lead or support technical investigations involving OT assets during incident response and post‑incident reviews.

Required profile

  • Extensive experience in OT cybersecurity and threat hunting within industrial environments.
  • Hands‑on expertise with OT/ICS protocols (Modbus, DNP3, OPC, IEC 61850) and their behavior in threat scenarios.
  • Proven ability to design high‑fidelity detection logic for OT/SCADA systems.
  • Strong understanding of compliance requirements for the industrial sector.
  • Excellent communication skills to work with cross‑functional SOC and OT teams.

Required skills

  • Python
  • PowerShell
  • SIEM platforms (QRadar, Splunk)
  • SOAR platforms
  • OT security tools (Dragos, Claroty, Nozomi)
  • OT/ICS protocols (Modbus, DNP3, OPC, IEC 61850)
  • Telemetry integration and analytics

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec TALENTMATE.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Explore further

Salaries, guides and searches in the United Arab Emirates.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

By continuing, you accept our terms of use.

Already have an account? Login

💬 Chat with us on Telegram Chat on WhatsApp

Published 3 weeks ago

Expires 1 month from now

32 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

TALENTMATE

Abou Dabi