Tabbio
Login to App
yesterday

Security Operations & Monitoring Engineer

CCDS · Dammam, Eastern Province, Saudi Arabia
WorkableApply on company site
Full Time
Onsite

Role overview

Location: Dammam, Saudi Arabia Employment Type: Full-Time | Onsite Project Duration: Long-term project assignment

About the Role We are seeking a Security Operations & Monitoring Engineer to provide continuous monitoring and security-event analysis across encryption, KMS, HSM, database security, and related infrastructure. The successful candidate will work closely with the SOC/SIEM and technical teams to identify suspicious activities, triage security events, support incident response, and ensure timely escalation and reporting. Key Responsibilities • Perform continuous monitoring of cybersecurity systems and infrastructure. • Monitor encryption, KMS, HSM, database security, and other security-related events. • Review and analyze system, security, audit, and application logs. • Monitor security alerts through SIEM/SOC platforms. • Perform first-level investigation and triage of cybersecurity events. • Correlate alerts from multiple security technologies to identify potential incidents. • Escalate critical or suspicious activities according to established procedures. • Support incident-response investigations and evidence collection. • Coordinate with engineering teams during security incidents and service-impacting events. • Support the tuning of monitoring rules and alert thresholds. • Prepare operational, security, and incident reports. • Maintain incident records, monitoring procedures, and operational documentation. • Participate in shift, maintenance, and on-call activities when required.

Requirements Required Qualifications & Experience • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Computer Engineering , or related field. • 4+ years of experience in SOC, SIEM, security monitoring, incident triage, or cybersecurity operations. • Hands-on experience with SIEM and security monitoring platforms. • Good understanding of security events, logs, alerts, incident handling, and escalation procedures. • Experience integrating security solutions with central SOC/SIEM platforms. • Strong analytical and troubleshooting skills. • Must be available full-time onsite in Dammam .

Required Certification • CompTIA Security+ .

Preferred Certifications • CompTIA CySA+ . • Splunk Core Certified Power User. • Splunk Certified Cybersecurity Defense Analyst. • Equivalent recognized SIEM/SOC certification.

Core Competencies SOC | SIEM | Security Monitoring | Incident Triage | Log Analysis | Incident Response | Alert Management | Threat Detection | Reporting

Candidates should include the SIEM/SOC platforms they have used, the type of monitoring environments they supported, and their relevant certifications.

Responsibilities

1Perform continuous monitoring of cybersecurity systems and infrastructure.
2Monitor encryption, KMS, HSM, database security, and other security-related events.
3Review and analyze system, security, audit, and application logs.
4Monitor security alerts through SIEM/SOC platforms.
5Perform first-level investigation and triage of cybersecurity events.
6Correlate alerts from multiple security technologies to identify potential incidents.
7Escalate critical or suspicious activities according to established procedures.
8Support incident-response investigations and evidence collection.

Requirements

1Bachelor'S Degree In Cybersecurity, Computer Science, Information Technology, Computer Engineering , Or Related Field.
24+ Years Of Experience In SOC, SIEM, Security Monitoring, Incident Triage, Or Cybersecurity Operations.
3Hands On Experience With SIEM And Security Monitoring Platforms.
4Good Understanding Of Security Events, Logs, Alerts, Incident Handling, And Escalation Procedures.
5Experience Integrating Security Solutions With Central SOC/SIEM Platforms.
6Strong Analytical And Troubleshooting Skills.
7Must Be Available Full Time Onsite In Dammam .
8CompTIA Security+ .
9CompTIA CySA+ .
10Splunk Core Certified Power User.
11Splunk Certified Cybersecurity Defense Analyst.
12Equivalent Recognized SIEM/SOC Certification.

Skills and tags

SACybersecurityAudit

Claim your tabbio link
before it's taken