SOC Analyst Tier 3
Responsibilities:
SOC operations management
Lead daily SOC operations across all monitoring and response activities.
Ensure continuous 24x7 monitoring coverage and effective shift management.
Oversee incident handling, escalation, and investigation activities.
Ensure adherence to customer SLAs and operational procedures.
Monitor SOC performance and service quality metrics.
Incident management & escalation
Act as the primary escalation point for high-severity security incidents.
Coordinate incident response activities across technical teams and stakeholders.
Support containment, investigation, eradication, and recovery efforts.
Review incident reports and ensure quality of investigation outputs.
Participate in major incident and crisis management activities.
Team leadership & development
Lead, mentor, and develop SOC analysts across all levels.
Conduct performance reviews, coaching sessions, and knowledge transfer initiatives.
Support recruitment, onboarding, and training activities.
Threat detection & operational improvement
Drive continuous improvement of monitoring and detection capabilities.
Review and approve use cases, correlation rules, dashboards, and operational procedures.
Identify gaps in detection coverage and operational effectiveness.
Support SOC maturity and service enhancement initiatives.
Governance, reporting & stakeholder management
Prepare operational reports and service reviews.
Participate in customer meetings and security governance discussions.
Ensure compliance with internal security policies and regulatory obligations.
Maintain operational documentation, procedures, and playbooks.
Our culture & code of conduct:
At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our Code of Conduct, which serves as a guiding framework for responsible behavior across everything we do — from how we work with each other to how we engage with clients and partners globally.
Requirements
- Minimum 5 years of cybersecurity experience and minimum 3 years of SOC operations experience.
- Previous experience leading security operations teams.
- Strong experience with SIEM platforms, threat detection, incident response, and security operations management.
- Experience working within a Managed Security Services Provider (MSSP) environment.
- Bachelor’s degree in Cybersecurity, Information Security, Computer Science, Information Technology, Engineering, or a related field.