{bc}

SOC Analyst Level - 3

Blackford Technologies LLC-SPCAbu Dhabi, UAE1 months agofulltime
ExcelGitScalaVAT
Generate Resume for this Job
Via Indeed·

About This Role

Our client is a leading cybersecurity firm establishing a next-generation Security Operations Center (SOC) to deliver world-class monitoring, detection, and incident response capabilities. Built on advanced analytics, automation, and threat intelligence, this SOC is designed to serve as a central pillar of enterprise defense across diverse digital environments. The company is seeking exceptional security professionals to shape, lead, and evolve this capability into a benchmark for operational excellence and resilience.

We are seeking an experienced SOC Analyst L3 – DFIR Specialist to lead complex security investigations, major incident response, and digital forensic analysis within the Security Operations Center. This senior role is responsible for deep-dive forensic investigations, evidence collection, malware analysis, timeline reconstruction, and providing expert guidance throughout high-severity incidents.

The L3 DFIR Specialist works closely with SOC Analysts, Detection & Automation Engineers, Threat Hunters, and Threat Intelligence teams to identify root causes, reduce dwell time, and strengthen detection capabilities. This role is critical to incident containment, evidence preservation, and ensuring the organisation responds effectively to advanced threats.

Requirements

  • Act as the primary escalation point for complex or high-severity incidents requiring deep investigation.
  • Lead digital forensics across endpoints, servers, cloud workloads, and identity platforms.
  • Perform memory, disk, and log forensics using industry-standard forensic tools and methodologies.
  • Conduct malware analysis (static and dynamic) to identify behaviors, capabilities, and indicators.
  • Develop forensic timelines and detailed incident reports, including root cause analysis.
  • Support containment and remediation activities, advising SOC Analysts and engineering teams.
  • Collaborate with Detection Engineers to convert forensic findings into engineered detections.
  • Provide expert input during threat hunting activities and purple-team exercises.
  • Maintain evidence handling and chain-of-custody procedures in line with best practices.
  • Mentor L1 and L2 Analysts on investigation techniques, forensics fundamentals, and IR workflows.
  • Contribute to incident response playbooks and continuous improvement of DFIR processes.

Role Requirements

  • 5+ years of experience in incident response, forensics, SOC operations, or cyber investigation roles.
  • Hands-on expertise with forensic tools and DFIR methodologies (e.g., KAPE, Velociraptor, FTK, Autopsy, Volatility).
  • Strong knowledge of attacker techniques, malware behaviour, persistence mechanisms, and lateral movement.
  • Proficiency with SIEM (Microsoft Sentinel preferred) and EDR platforms (Defender, CrowdStrike, Carbon Black).
  • Experience performing evidence collection, artefact extraction, and forensic analysis across diverse environments.
  • Strong understanding of MITRE ATT&CK, threat actor behaviours, and incident response lifecycles.
  • Excellent analytical, investigative, and incident reporting skills.
  • Certifications such as GCFA, GCFE, GCIH, CHFI, or equivalent are highly desirable.

Technical Skills

  • Forensic Tools: KAPE, Velociraptor, FTK, Volatility, Autopsy
  • Platforms: Microsoft Sentinel, Defender, CrowdStrike
  • Investigations: Malware analysis, artefact extraction, timeline reconstruction
  • Frameworks: MITRE ATT&CK, NIST IR
  • Processes: Evidence handling, IR lifecycle, chain of custody, RCA

Benefits

  • Lead the forensic and incident response capability within a modern, fast-evolving SOC.
  • Work alongside advanced analysts, threat hunters, and engineering teams.
  • Influence detection quality, SOC maturity, and organisational resilience.
  • Access specialist training, certifications, and career advancement opportunities.

Similar Jobs

SOC Analyst – Multiple Specializations

D24 Fintech · Dubai

Mid-Senior

We are looking for 3 SOC Analysts across Crypto Incident Response, Digital Forensics \& Incident Response and Endpoint \& Network Security Operations to monitor, investigate, and respond to security threats across di

GitScala

Senior SOC Analyst

PROOFOPS · Dubai

Senior

About the company ProofOps is a cybersecurity services company helping organizations across the UAE and Middle East strengthen their security posture through practical, outcome-driven programs. Our operations are bu

SOC Analyst (Emirati)

Talents Tide · Abu Dhabi

Entry

Hiring Now | SOC Analyst | Abu Dhabi Position: SOC Analyst (Emirati) Location: Abu Dhabi Full-time role Our client, a leading Cybersecurity Company in Abu Dhabi, is looking for a motivated SO

SOC Analyst

KTek Resourcing · Dubai

Mid-Senior

A SOC Analyst Level 2 (L2) is responsible for advanced threat detection, incident investigation, and response. This role acts as an escalation point for L1 analysts and leverages SIEM and SOAR platforms to automa

Scala

Level 1 SOC Analyst

SecurityHQ · Dubai

Entry

Job Description As our Level 1 SOC Analyst, you will be the first line of defence in our 24/7 Security Operations Centre. You will monitor security alerts, investigate potential threats, and escalate critical incident

Scala

Lead SOC Analyst (L3)

GCS · Abu Dhabi

Mid-Senior

Lead SOC Analyst (L3) Role Overview We are looking for an experienced L3 SOC Analyst who can take ownership of major incident response efforts. This senior role blends hands‑on expertise with leadership: you’

DevOpsExcel

SOC Analyst Level - 3

Visionary Tech Services · Abu Dhabi

Mid-Senior

Our client is a leading cybersecurity firm establishing a next-generation Security Operations Center (SOC) to deliver world-class monitoring, detection, and incident response capabilities. Built on advanced analytics, au

ExcelGitScala

SOC Analyst Level - 1

Blackford Technologies LLC-SPC · Abu Dhabi

Entry

Our client is a leading cybersecurity firm establishing a next-generation Security Operations Center (SOC) to deliver world-class monitoring, detection, and incident response capabilities. Built on advanced analytics, au

ExcelGitScala

SOC Analyst Level - 1

Visionary Tech Services · Abu Dhabi

Mid-Senior

Our client is a leading cybersecurity firm establishing a next-generation Security Operations Center (SOC) to deliver world-class monitoring, detection, and incident response capabilities. Built on advanced analytics, au

ExcelGitScala
AI Job Platform

Stop applying blindly. Start getting hired.

Base Career automates the hardest parts of job searching — apply smarter, not harder.

AI Resume in 60s

Your resume rewritten for this exact role using the job description as the brief.

ATS-Optimized

Get past automated screening filters with the right keywords matched to each job.

Application Tracker

Track every job, follow-up, and interview in one visual kanban board.

Start Today for Free

Free plan · No credit card required