Security Architect at TALENTMATE

المنصب Security Architect
نُشر في 15 Jun 2026
انتهت الصلاحية 15 Jul 2026
الشركة TALENTMATE
الموقع Sharjah | AE
نوع الوظيفة Full Time

الوصف الوظيفي:

أحدث معلومات الوظائف من TALENTMATE لمنصب Security Architect. If the Security Architect الشاغرة في Sharjah تتوافق مع مؤهلاتك، يرجى تقديم أحدث طلب أو سيرة ذاتية مباشرة من خلال بوابة وظائف Jobkos المحدثة.

يرجى ملاحظة أن التقديم على وظيفة قد لا يكون سهلاً دائماً، حيث يجب على المرشحين الجدد استيفاء مؤهلات ومتطلبات معينة تحددها الشركة. نأمل أن تكون الفرصة المهنية في TALENTMATE لمنصب Security Architect أدناه تتوافق مع مؤهلاتك.

SOC Administrator / Senior SOC Analyst

We are looking for an experienced SOC Administrator / Senior SOC Analyst with strong hands‑on experience in ArcSight SIEM administration, SOC operations, incident investigation, SIEM engineering, threat hunting, and security solutioning.

The candidate will be deployed onsite at a customer الموقع and will act as a senior technical security resource responsible for managing SIEM operations, supporting L1/L2 analysts, handling advanced investigations, maintaining security tools, improving detection use cases, and advising the customer on security operations decisions.

This role requires a technically strong, confident, soft‑spoken, and customer‑facing professional who can take initiative, communicate clearly, and help the customer make practical cybersecurity decisions.

Key Responsibilities
  • SOC Administration & SIEM Management
    • Administer and manage ArcSight ESM, ArcSight Logger, Elastic Search, SmartConnectors, content packs, rules, dashboards, reports, active channels, filters, and correlation use cases.
    • Monitor SIEM platform health, connector status, event flow, EPS utilization, storage, parsing quality, and log source availability.
    • Troubleshoot log ingestion issues, connector failures, parsing errors, event normalization issues, and correlation rule performance problems.
    • Perform SIEM tuning to reduce false positives and improve detection accuracy.
    • Develop and maintain SIEM content including correlation rules, dashboards, reports, threat use cases, and alert workflows.
    • Support onboarding of new log sources including network devices, servers, cloud platforms, EDR, AV, IAM, and application logs.
    • Maintain documentation for SIEM architecture, log source inventory, use cases, SOPs, escalation matrix, and operational runbooks.
  • SOC L3 Operations & Incident Response
    • Perform deep‑dive analysis of security alerts, suspicious activities, malware detections, endpoint events, cloud events, and network anomalies.
    • Lead incident triage, validation, containment recommendations, root cause analysis, and post‑incident reporting.
    • Review and improve SOC investigation workflows, alert handling procedures, and escalation processes.
    • Perform threat hunting across SIEM, EDR, endpoint, cloud, firewall, proxy, DNS, identity, and email security logs.
    • Support customer security teams during major incidents, audit queries, and security improvement initiatives.
  • SIEM Engineering & Detection Engineering
    • Design, develop, and enhance security monitoring use cases aligned with MITRE ATT&CK, current threat trends, and customer risk priorities.
    • Translate business and technical risks into actionable SIEM detection logic.
    • Create and tune detection rules for endpoint threats, privilege abuse, lateral movement, brute force, suspicious cloud activity, data exfiltration, malware, ransomware, and insider threats.
    • Validate rule logic, reduce noisy alerts, and improve SOC investigation quality.
    • Support integration of SIEM with ticketing tools, SOAR platforms, automation scripts, threat intelligence feeds, and customer security tools.
  • Security Technology Support
    • Work with and support technologies such as
      • EDR/XDR platforms
      • Antivirus / endpoint protection solutions
      • Linux and Windows security logging
      • Azure security services
      • AWS security services
      • CloudTrail, Azure AD / Entra ID, Defender, firewall, proxy, DNS, IAM, VPN, and server logs
      • Threat intelligence and threat hunting platforms
      • AI automation / SOC automation tools
    • Assist in security solutioning, tool integration, and operational improvement discussions with the customer.
    • Identify gaps in monitoring, visibility, detection coverage, and response processes.
  • Customer‑Facing Responsibilities
    • Work onsite with the customer’s security and IT teams on daily SOC operations.
    • Provide clear technical guidance and help the customer make informed security decisions.
    • Prepare daily, weekly, and monthly SOC reports, incident summaries, health checks, and improvement recommendations.
    • Communicate professionally with customer stakeholders, SOC teams, and management.
    • Take ownership of issues and follow through until resolution.
    • Maintain a calm, confident, soft‑spoken, collaborative working style.
Required Skills & Experience
  • 5–8+ years of cybersecurity experience, with strong exposure to SOC operations and SIEM administration.
  • Hands‑on experience with SIEM, preferably ArcSight ESM, Logger, SmartConnectors, correlation rules, dashboards, reports, and connector management.
  • Prior experience working in a combined SOC Admin + SOC L3 Analyst role.
  • Strong understanding of SOC processes, alert triage, incident response, escalation handling, and threat hunting.
  • Good knowledge of security event analysis across firewall, proxy, endpoint, server, identity, cloud, email, DNS, and application logs.
  • Experience with EDR, antivirus, Linux, Windows logs, Azure, AWS security, SIEM engineering, and security automation.
  • Ability to create and tune SIEM rules, dashboards, reports, and monitoring use cases.
  • Strong understanding of MITRE ATT&CK, cyber kill chain, common attack techniques, malware behavior, phishing, brute force, privilege escalation, and lateral movement.
  • Good documentation and reporting skills.
  • Strong troubleshooting ability for SIEM, connectors, log ingestion, parsing, and platform health issues.
  • Ability to work independently at customer site with minimal supervision.
Preferred Certifications
  • ArcSight / SIEM-specific certification
  • Microsoft Azure Security certification (AZ‑500 or equivalent)
  • AWS Security Specialty or equivalent AWS security certification
  • CEH or equivalent cybersecurity certification
  • CompTIA Security+, CySA+, GCIA, GCIH, GCFA, SC‑200, SC‑100, CISSP, CISM, or equivalent certifications as added advantages.
Preferred Candidate Profile
  • Currently based in the UAE or immediately available to relocate.
  • Comfortable working full‑time onsite at customer premises.
  • Technically hands‑on and operationally mature.
  • Confident in dealing with customer stakeholders.
  • Soft‑spoken, professional, and composed during pressure situations.
  • Proactive and willing to take initiative beyond routine monitoring.
  • Capable of guiding customer teams in decision‑making with practical security recommendations.
  • Strong in both technical execution and customer communication.
Tools & Technologies Exposure
  • ArcSight ESM / Logger / SmartConnectors
  • ElasticSearch
  • SIEM engineering and use case development
  • EDR / XDR platforms
  • Antivirus and endpoint protection
  • Linux and Windows security administration
  • Azure security and Entra ID logs
  • AWS CloudTrail, GuardDuty, IAM, VPC Flow Logs
  • Threat hunting and threat intelligence
  • SOC automation / AI‑based automation
  • Ticketing and incident management platforms
  • Firewall, proxy, DNS, VPN, IAM, and cloud security logs
  • MITRE ATT&CK‑based detection engineering
Job Details

Role Level: Not Applicable
Work Type: Temporary
الدولة: الإمارات العربية المتحدة
City: Sharjah
الشركة Website: https://
Job Function: Cybersecurity
Sector: IT Services And IT Consulting And Computer And Network Security

#J-18808-Ljbffr

معلومات الوظيفة:

  • الشركة: TALENTMATE
  • المنصب: Security Architect
  • مكان العمل: Sharjah
  • الدولة: AE

كيفية تقديم الطلب:

بعد قراءة وفهم المعايير ومتطلبات الحد الأدنى من المؤهلات الموضحة في معلومات الوظيفة Security Architect at the office Sharjah أعلاه، أكمل فوراً ملفات طلب الوظيفة مثل خطاب التقديم، السيرة الذاتية، نسخة من الشهادة الجامعية، كشف الدرجات، والملاحق الأخرى كما هو موضح أعلاه. أرسلها عبر رابط الصفحة التالية أدناه.

انتهت صلاحية هذا الإعلان الوظيفي (منذ أكثر من 30 يوماً).
يرجى البحث عن أحدث فرص العمل على موقعنا الصفحة الرئيسية.

وظائف شاغرة مماثلة

  Social Media Executive at The Arab Lens
نُشر في: 4 days ago

الوصف: Our client is seeking a creative and motivated Social Media Executive to support its digital presence and strengthen engagement across online platforms. The organization values innovative communicatio...

الشركة: The Arab Lens | الموقع: Sharjah

  Site Engineer at Sourcet Global
نُشر في: 1 week ago

الوصف: Work Experience 2-3 years of site engineering experience in high rise buildings Strong understanding of UAE construction regulations and safety standards.Salary 5k to 10kالدولة الإمارات العربية المتحدةJo...

الشركة: Sourcet Global | الموقع: Sharjah

  End User Representative at Info Resume Edge
نُشر في: 1 week ago

الوصف: The End User Representative serves as the primary point of contact between end users and internal support teams. This role ensures that user issues requests and feedback are effectively communicated a...

الشركة: Info Resume Edge | الموقع: Sharjah