At Emirates, we believe in connecting the world, to and through, our global hub in Dubai and in constantly innovating to ensure our customers ‘Fly Better’. Our Cyber Defence Operations team is looking to urgently hire Operational Engineers Level 2 – CSOC Platform. These positions are available for s

Operational Engineer Level 2 – CSOC Platform

Emirates Airlines • 
Dubai, Dubai, International
Position Type: Permanent
Job Description:

At Emirates, we believe in connecting the world, to and through, our global hub in Dubai and in constantly innovating to ensure our customers ‘Fly Better’. Our Cyber Defence Operations team is looking to urgently hire Operational Engineers Level 2 – CSOC Platform.
These
positions are available for seasoned professionals to join our team focusing on the development and maintenance of robust cybersecurity SIEM and orchestration platforms.
 




 




Your role is to lead and oversee Cybersecurity analysis, activities monitoring and investigations within a shift You will handle advanced incidents and service requests and guide Level 1 engineers and provide expertise in complex troubleshooting scenarios. Additionally you will coordinate with escalation engineers on the investigation and resolution of critical cybersecurity incidents as well as ensure accurate triage, timely escalation and resolution within SLAs. This role is on-site and based on shift rotation within a 24x7 Operation.  




 




What you will do:




- Address escalated incidents and service requests.  
- Guide Level 1 engineers in troubleshooting. -Ensure timely resolution and fulfilment of escalated issues.  




- Maintain clear documentation of complex incidents.  




- Monitor external threat data sources to maintain the cyber network defence threat conditions and determine which security issues may have an impact on the enterprise.  




- Perform a detailed analysis of cyber threat adversaries and recommend preventative countermeasures.  




- Assess and identify Advance Persistent Threat (APT) activities.  
- Maintain and support the shift log for effective shift handover.  




- Monitor and review triage activities performed by the L1 analysts and ensure accurate closure. 




- Assist in creating playbooks and updating the knowledge base repository.  




 




Specific knowledge and skills to the role of Operational Engineers Level 2- CSOC Platform.   




The following are critical skills required to be successful in this role: 




 




-SIEM Administration: Proficient in the administration and optimization of Security Information and Event Management (SIEM) platforms, ensuring effective log collection, correlation, and analysis for proactive threat detection. 
 




-Data Engineering: Strong skills in data engineering, including the ability to design, implement, and maintain data pipelines for efficient data ingestion, storage, and retrieval within the cybersecurity platform. 
 




-Scripting and Automation: Expertise in scripting languages (e.g., Python, PowerShell) to automate routine tasks, streamline workflows, and enhance the overall efficiency of the CSOC platform. 
 




-Platform Integration: Ability to integrate and customize various cybersecurity tools and platforms, creating a cohesive and interconnected ecosystem that maximizes the effectiveness of security operations. 
 




-Troubleshooting and Optimization: Proficient in diagnosing and resolving issues within the CSOC platform, as well as continuously optimizing configurations and workflows to ensure peak performance and responsiveness. 


Job Requirements:

What you will bring:




Qualifications: 




A degree or Honours (12+3 or equivalent) in Computer Science, Information Systems, Engineering, Telecommunications, or other related scientific or technical discipline is desired.  




 




Experience:  




3+ years experience in a cross-functional and interdisciplinary team. GIAC Certified Incident Handler (GCIH) or equivalent certification is mandatory. 




 




Knowledge and skills 




-Threat Detection and Response (CSOC): Able to analyse security alerts and differentiate false positives. Advanced proficiency in administration and configuration of SIEM, EDR and other security Platforms. 




-Infrastructure Protection: Proficiency in advanced firewall configurations and intrusion detection systems.  




-Identity: Understanding of advanced IAM configurations and role-based access controls.  




-Advanced understanding of an Enterprise IT Cybersecurity operational environment.  




-Understanding of the latest security principles, techniques, and protocols.  




-Clear thinking and ability to deal with escalations effectively.  




-Knowledge of database and operating system security.  




-Knowledge of web servers, operating systems, and network protocols. 




-Excellent verbal and written communication skills.  




-Ability to triage and escalate effectively. 


(Job and company information not to be copied, shared, scraped, or otherwise disseminated/distributed without explicit consent of JSfirm, LLC)

JSfirm, LLC

Roanoke, TX

jobs@jsfirm.com

JSfirm LLC, Privacy Policy

All rights reserved. 2001-2024 JSfirm