Jobiglo

لا توجد نتائج.

Cyber Security Operations Centre (CSOC) Specialist

TDM Group · Amman

جديد
Mid 🇬🇧 English
Microsoft Sentinel Microsoft Defender XDR KQL SOAR SIEM EDR/XDR MITRE ATT&CK Windows Linux Active Directory Entra ID Network protocols Cloud technologies

وصف الوظيفة

About the role

We are seeking an experienced Cyber Security Operations Centre (CSOC) Specialist to join our dedicated team in Amman. The role focuses on continuous monitoring, proactive threat hunting, advanced security investigations, and incident response for our partners, following industry standards and modern security operations practices.

Key responsibilities

  • Monitor and investigate security activity across client environments using Microsoft Sentinel, Microsoft Defender XDR and related technologies.
  • Lead end‑to‑end incident response, including triage, containment, eradication, recovery and post‑incident review.
  • Conduct hypothesis‑driven threat hunting and enrich investigations with threat intelligence, IOCs/IOAs and MITRE ATT&CK mapping.
  • Develop, tune and maintain KQL queries, analytics rules, hunting queries and custom detections to improve coverage and reduce false positives.
  • Design and maintain SOAR playbooks to automate enrichment, evidence collection, ticketing and response actions.
  • Manage client incidents according to severity classifications, SLAs and MSSP service commitments, producing clear reports and remediation recommendations.
  • Continuously improve detection capabilities, use‑case coverage and incident response procedures based on lessons learned.
  • Mentor junior analysts and contribute to SOC procedures, playbooks, technical documentation and training exercises.

Required profile

  • Bachelor’s degree in Cybersecurity, IT, Computer Science or equivalent practical experience.
  • 3–5 years of hands‑on experience in a SOC, MSSP, MDR or incident response environment.
  • Strong practical experience with Microsoft Sentinel, Microsoft Defender XDR, advanced KQL, threat hunting, detection engineering and SOAR automation.
  • Deep understanding of MITRE ATT&CK, adversary techniques, IOC/IOA analysis and security operations across endpoint, identity, network, email and cloud.
  • Relevant certifications such as SC‑200, Security+, CSA, GCIH or GCDA are desirable.

Required skills

  • Microsoft Sentinel
  • Microsoft Defender XDR
  • KQL (Kusto Query Language)
  • SOAR playbook design and automation
  • SIEM and detection engineering
  • Incident response lifecycle
  • MITRE ATT&CK framework
  • Windows and Linux operating systems
  • Active Directory / Entra ID
  • Network protocols and cloud technologies

What we offer

  • Collaborative and supportive working environment
  • Medical & dental insurance
  • Additional holiday days based on length of service
  • Personal days and mental health & wellbeing platform
  • Learning & development platform
  • Reward and recognition programs
  • Gym membership contribution

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec TDM Group.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

لماذا تبلغ عن هذا العرض؟

شكراً لإبلاغك. سنراجع هذا العرض.

اكتشف المزيد

الرواتب والأدلة وعمليات البحث في Jordan.

قدم طلبك في 30 ثانية

أدخل بريدك الإلكتروني للتقديم. سيتم إنشاء حساب تلقائياً.

بالمتابعة، أنت توافق على شروط الاستخدام.

لديك حساب بالفعل؟ تسجيل الدخول

💬 راسلنا على تيليجرام الدردشة عبر واتساب

منشور منذ 3 ساعات

ينتهي شهر من الآن

7 مشاهدات · 0 مهتم

عزز فرصك

حمّل سيرتك الذاتية وسنقترح عليك الوظائف التي تناسب ملفك.

جاري تحليل سيرتك الذاتية...

TDM Group

Amman