E

Senior SOC Engineer - SIEM, SOAR, and EDR Expert

Relocation
This Job is No Longer Active This position is no longer accepting applications
AI Summary

Estarta Solutions seeks a seasoned SOC Engineer with expertise in SIEM, SOAR, and EDR technologies to monitor, detect, and automate security operations in a complex enterprise environment.

Key Highlights
Design, implement, and manage SIEM solutions
Develop and maintain correlation rules, dashboards, and alerting mechanisms
Build and manage SOAR playbooks to automate incident response workflows
Integrate SOAR with EDR platforms, ticketing systems, and threat intelligence sources
Conduct advanced investigations and threat hunting based on IOCs and identified anomalies
Work closely with SOC analysts, incident responders, and IT teams to contain and remediate threats
Technical Skills Required
FortiSIEM Splunk QRadar FortiSOAR Cortex XSOAR Tines FortiEDR CrowdStrike SentinelOne Python PowerShell Bash regex KQL
Benefits & Perks
Relocation required to Riyadh, Saudi Arabia

Job Description


Location: Riyadh, Saudi Arabia (Relocation Required)


Job Summary

Estarta is seeking an experienced and driven SOC Engineer with strong expertise in SIEM, SOAR, and Endpoint Detection & Response (EDR) technologies. In this role, you will be responsible for monitoring, detecting, investigating, and automating security operations across a complex enterprise environment. This opportunity is ideal for professionals who excel in fast-paced SOC or security engineering settings and are committed to enhancing threat detection and incident response capabilities.


Key Responsibilities

• Design, implement, and manage SIEM solutions (FortiSIEM, Splunk, QRadar, etc.).

• Develop, optimize, and maintain correlation rules, dashboards, and alerting mechanisms.

• Build and manage SOAR playbooks to automate incident response workflows.

• Integrate SOAR with EDR platforms, ticketing systems, threat intelligence sources, and related tools.

• Monitor, analyze, and respond to EDR alerts (FortiEDR, CrowdStrike, SentinelOne, etc.).

• Conduct advanced investigations and threat hunting based on IOCs and identified anomalies.

• Work closely with SOC analysts, incident responders, and IT teams to contain and remediate threats.

• Document detection logic, procedures, and incident response playbooks.

• Contribute to the overall security strategy and continuously improve detection coverage and effectiveness.


Required Skills and Qualifications

• Minimum of 5 years of experience in cybersecurity operations or security engineering.

• Strong proficiency with SIEM platforms such as FortiSIEM, Splunk, or QRadar.

• Hands-on experience with SOAR tools (FortiSOAR, Cortex XSOAR, Tines, etc.).

• Solid understanding of EDR solutions, including FortiEDR, CrowdStrike, Carbon Black, or Defender for Endpoint.

• Knowledge of MITRE ATT&CK, threat intelligence, and IOC-based detection.

• Experience writing detection rules (regex, KQL, or other custom query languages).

• Basic scripting skills (Python, PowerShell, or Bash) for automation and tool integration.

• Strong analytical and problem-solving abilities with high attention to detail.

• Effective communication skills and the ability to work collaboratively across teams.


Similar Jobs

Explore other opportunities that match your interests

C++ Software Engineer - Home Appliances Development

Networking
4h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

GlobalLogic

Poland

Principal Linux System Administrator

Networking
6h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Raytheon

United State
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

trumia

Serbia

Subscribe our newsletter

New Things Will Always Update Regularly