📢 New: get today's jobs on our WhatsApp Channel
Jobiglo

No results.

Expert Engineer – Security Operations Centre

Eand Holdco · Abu Dhabi

New
Senior 🇬🇧 English
Windows Linux FTK EnCase Oxygen Cellebrite Volatility Microsoft Sentinel Splunk KQL Docker Kubernetes Python PowerShell AWS Azure MITRE ATT&CK NDR Security Onion

Job description

About the role

The Expert Engineer will lead incident response, conduct host‑level and network forensics, and proactively hunt for threats across the organisation's environment. This role requires deep technical expertise in digital forensics, threat intelligence, and cloud incident response.

Key responsibilities

  • Lead incident response and host‑level investigations, including forensic analysis of Windows, Linux, macOS and mobile devices.
  • Perform network forensics using NDR platforms and Security Onion, and conduct initial malware analysis.
  • Develop and execute advanced threat‑hunting queries, custom searches and playbooks using MITRE ATT&CK framework.
  • Monitor threat intelligence feeds, security blogs and industry news to stay current on emerging threats.
  • Automate security log analysis with custom scripts (Python, PowerShell) and integrate findings into SIEM platforms such as Microsoft Sentinel and Splunk.
  • Provide cloud incident response for Azure and AWS environments and ensure timely closure of incidents per SLA.

Required profile

  • Bachelor’s degree in Cybersecurity, Computer Science or related field, or equivalent experience.
  • Minimum 6 years of hands‑on experience in digital forensics, incident response or threat hunting.
  • Strong background in Windows and Linux environments, with ability to read and interpret logs.
  • Experience with Docker or Kubernetes and DFIR‑related certifications (SANS GCFA, GCFE, GCIH, etc.).
  • Proven ability to handle end‑to‑end investigations, evidence processing and chain‑of‑custody compliance.

Required skills

  • Forensic tools: FTK, EnCase, Oxygen, Cellebrite, Volatility.
  • SIEM platforms: Microsoft Sentinel, Splunk; query language KQL.
  • Cloud platforms: AWS, Microsoft Azure.
  • Scripting: Python, PowerShell.
  • Container technologies: Docker, Kubernetes.
  • Threat‑hunting frameworks: MITRE ATT&CK.
  • Network detection: NDR, Security Onion.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Eand Holdco.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.
Source : ats:oracle_hcm

Why are you reporting this job?

Thank you for your report. We will review this job.

Explore further

Salaries, guides and searches in the United Arab Emirates.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

By continuing, you accept our terms of use.

Already have an account? Login

💬 Chat with us on Telegram Chat on WhatsApp

Published 4 hours ago

Expires 1 month from now

3 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

Eand Holdco

Abu Dhabi