Estarta Solutions seeks a seasoned SOC Engineer with expertise in SIEM, SOAR, and EDR technologies to monitor, detect, and automate security operations in a complex enterprise environment.
Key Highlights
Technical Skills Required
Benefits & Perks
Job Description
Location: Riyadh, Saudi Arabia (Relocation Required)
Job Summary
Estarta is seeking an experienced and driven SOC Engineer with strong expertise in SIEM, SOAR, and Endpoint Detection & Response (EDR) technologies. In this role, you will be responsible for monitoring, detecting, investigating, and automating security operations across a complex enterprise environment. This opportunity is ideal for professionals who excel in fast-paced SOC or security engineering settings and are committed to enhancing threat detection and incident response capabilities.
Key Responsibilities
• Design, implement, and manage SIEM solutions (FortiSIEM, Splunk, QRadar, etc.).
• Develop, optimize, and maintain correlation rules, dashboards, and alerting mechanisms.
• Build and manage SOAR playbooks to automate incident response workflows.
• Integrate SOAR with EDR platforms, ticketing systems, threat intelligence sources, and related tools.
• Monitor, analyze, and respond to EDR alerts (FortiEDR, CrowdStrike, SentinelOne, etc.).
• Conduct advanced investigations and threat hunting based on IOCs and identified anomalies.
• Work closely with SOC analysts, incident responders, and IT teams to contain and remediate threats.
• Document detection logic, procedures, and incident response playbooks.
• Contribute to the overall security strategy and continuously improve detection coverage and effectiveness.
Required Skills and Qualifications
• Minimum of 5 years of experience in cybersecurity operations or security engineering.
• Strong proficiency with SIEM platforms such as FortiSIEM, Splunk, or QRadar.
• Hands-on experience with SOAR tools (FortiSOAR, Cortex XSOAR, Tines, etc.).
• Solid understanding of EDR solutions, including FortiEDR, CrowdStrike, Carbon Black, or Defender for Endpoint.
• Knowledge of MITRE ATT&CK, threat intelligence, and IOC-based detection.
• Experience writing detection rules (regex, KQL, or other custom query languages).
• Basic scripting skills (Python, PowerShell, or Bash) for automation and tool integration.
• Strong analytical and problem-solving abilities with high attention to detail.
• Effective communication skills and the ability to work collaboratively across teams.
Similar Jobs
Explore other opportunities that match your interests