SOC Analyst Tier 2

Experience

3 - 5 years

Job location

Al Kuwait - Kuwait

Education

Bachelor of Science (Computers)

Nationality

Any nationality

Gender

Not mentioned

Vacancy

1 vacancy

Job description

Roles & responsibilities

The SOC Analyst - Tier 2 is responsible for advanced security monitoring, incident investigation, threat analysis, and detection engineering activities within ZainTECH’s Security Operations Center (SOC). The role serves as the primary escalation point for security incidents identified by L1 analysts and plays a critical role in validating threats, conducting investigations, and supporting incident response activities across enterprise, government, and critical infrastructure environments.

Responsibilities:

Security monitoring & incident investigation

  • Investigate and analyze security incidents escalated by SOC L1 analysts.
  • Validate security events and determine scope, impact, severity, and business risk.
  • Perform advanced correlation and analysis of logs, alerts, network activity, endpoint telemetry, and threat intelligence.
  • Conduct root cause analysis of security incidents and identify indicators of compromise (IOCs).
  • Support incident containment, eradication, and recovery activities.
  • Escalate incidents requiring specialized investigation or incident response support.

Threat detection & threat hunting

  • Perform proactive threat hunting activities to identify malicious activity that may bypass automated controls.
  • Utilize threat intelligence sources to identify emerging threats and attacker tactics.
  • Analyze attack patterns, indicators, and behaviors associated with malware, ransomware, insider threats, and advanced persistent threats (APTs).
  • Identify opportunities to improve detection coverage across monitored environments.

SIEM & detection engineering

  • Develop, tune, and optimize SIEM use cases and correlation rules.
  • Support creation and maintenance of detection logic, dashboards, reports, alerts, and monitoring workflows.
  • Reduce false positives through tuning and rule optimization.
  • Support onboarding and integration of new log sources.

Incident management & reporting

  • Maintain detailed incident records and investigation documentation.
  • Prepare technical analysis and incident reports.
  • Support operational metrics, reporting, and service reviews.
  • Ensure incident handling activities comply with established procedures and SLAs.

Technical leadership & knowledge transfer

  • Provide guidance and mentoring to L1 SOC Analysts.
  • Support analyst development through coaching and technical knowledge sharing.
  • Participate in continuous improvement initiatives and SOC maturity programs.
  • Contribute to process, playbook, and procedure development.

Our culture & code of conduct

At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our Code of Conduct, which serves as a guiding framework for responsible behavior across everything we do—from how we work with each other to how we engage with clients and partners globally.

Desired candidate profile

  • Minimum 3 years experience in managed cybersecurity/SOC operations at an investigative level.
  • Strong SIEM investigation, detection-rule development, log and network analysis, and use-case tuning.
  • Bachelor’s degree in cybersecurity, information security, computer science, information technology, engineering, or a related field.
  • Security+, GCIA, GCIH certification preferred.

Company industry

IT - Software Services

Department / functional area

System administration, network administration, security (IT software)

Keywords

SOC Analyst - Tier 2 (Managed SOC)

See also

要針對這個職缺調整履歷嗎?

目前無法檢查您與這個職缺的符合程度;請先將履歷加入個人檔案,下次即可查看。

A new version of freehire is available