BlackStone eIT logo

Security Engineer / SOC Lead

BlackStone eIT
13 hours ago
Full-time
On-site
Dubai, 03
$70,000 - $70,000 USD yearly

JobsCloseBy Editorial Insights

BlackStone eIT seeks a Security Engineer / SOC Lead to be the onsite security focal point in Dubai, coordinating security monitoring, incident response and reporting with the shared SOC while policy ownership and risk acceptance remain with the Entity. The role demands leading operational response to confirmed incidents, preserving evidence, maintaining timelines and action tracking, and coordinating containment, remediation and post incident reviews with stakeholders. You will support security logging, SIEM integration and coverage tuning across infrastructure, cloud, network and applications, and track technical risks and remediation dependencies. Requirements include a minimum of 5 years in cybersecurity operations, hands-on SIEM experience (Splunk, QRadar or equivalent), and Security+, CEH, GCIA preferred; Arabic language capability and UAE government or regulated environment experience are a plus. Highlight ownership, traceability of decisions and strong stakeholder communication.


Act as the onsite operational security focal point, coordinating security monitoring, incident response, technical remediation and reporting with shared SOC. Policy ownership, regulatory accountability and risk acceptance remain with the Entity.

•     Coordinate security monitoring, alert triage and escalation with the shared SOC and relevant technical teams.

•     Lead operational response to confirmed security incidents in accordance with approved procedures and authority.

•     Collect and preserve technical evidence and maintain incident records, timelines and action tracking.

•     Coordinate containment, remediation, recovery and post-incident reviews with stakeholders.

•     Support security logging, SIEM integration, use-case tuning and monitoring coverage assessments.

•     Track technical security risks and remediation dependencies across infrastructure, network, cloud and applications.

•     Provide operational security reporting and support agreed awareness, exercise or readiness activities.

•     Escalate policy, compliance and risk-acceptance decisions to the authorised Entity function.

Requirements

Minimum Experience and Qualifications

•     Minimum 5 years of cybersecurity operations, SOC or incident-response experience.

•     Practical experience with SIEM platforms such as Splunk, QRadar or equivalent.

•     Strong knowledge of security monitoring, incident handling, network/endpoint telemetry and threat analysis.

•     Security+, CEH, GCIA or equivalent certification preferred.

•     Strong written reporting, stakeholder coordination and evidence-handling capability.

Preferred Profile

•     Previous experience supporting UAE government or regulated security environments.

•     Working knowledge of TDRA security, hosting and incident coordination processes.

•     Arabic language capability for onsite stakeholder coordination.

Expected Contribution

•     Security events are escalated and coordinated within the confirmed response procedures.

•     Incident evidence, decisions, actions and dependencies remain traceable.

•     The shared SOC and onsite teams operate with clear ownership and handoffs.

•     Policy and risk decisions are not assumed without Entity authority.