Talent.com
SOC Incident Response Lead
SOC Incident Response LeadKAUST (King Abdullah University of Science and Technology) • Makkah, Saudi Arabia
SOC Incident Response Lead

SOC Incident Response Lead

KAUST (King Abdullah University of Science and Technology) • Makkah, Saudi Arabia
17 days ago
Job description

Get AI-powered advice on this job and more exclusive features.

Direct message the job poster from KAUST (King Abdullah University of Science and Technology)

Driving global talent acquisition excellence @ KAUST About the Role

The Tier 3 Incident Responder Lead plays a critical role within the Security Operations Centre (SOC), serving as the lead escalation point for incidents handed over from the Managed Security Service (MSS) Tier 1 and Tier 2 teams. Operating under the direction of SOC leadership, the role is accountable for leading complex incident investigations, coordinating containment and remediation activities, and ensuring lessons learned are integrated back into SOC operations across both enterprise systems and supercomputing (HPC) environments.

Responsibilities

Lead and coordinate response efforts for complex and major incidents escalated to Tier 3, HPC / supercomputing systems and enterprise platforms.

Conduct deep forensic and log analysis on supercomputer workloads, cluster nodes, and Slingshot / interconnect networks to determine root cause and containment strategy.

Provide expert recommendations for containment, eradication, and remediation, including APT-related activity.

Ensure accurate and timely escalation to SOC leadership, CISO, HPC operations and other stakeholders.

Guide staff to proactively identify, prevent, and respond to security incidents.

Coordinate, follow up on, and elevate complex or major incidents within the SOC team.

Provide technical supervision to the SOC team, managing the escalation process, and reviewing incident reports.

Assist in the development and execution of crisis communication plans to CISO and other stakeholders.

Coordinate with and provide expert technical support to enterprise-wide technicians and staff to resolve confirmed incidents.

Work with CTI teams to enrich HPC-specific threat models and validate indicators of compromise (IOCs) unique to research workloads and high-performance clusters.

Collaborate with the cyber threat intelligence (CTI) team to validate IOCs, profile threat actors, and improve detection capabilities.

Continuously monitor emerging threats and recommend tuning or adjustments to SOC processes and tools.

Conduct in-depth cybersecurity analysis and correlate large datasets to troubleshoot incidents and recommend expedited remediation.

Recommend optimizations to security-monitoring tools based on threat-hunting discoveries and assist in threat actor profiling.

Identify and integrate indicators of compromise (IOCs) into security tools and applications to enhance detection.

Conduct security tool / application tuning engagements to reduce false positives and enhance alerting effectiveness.

Develop advanced threat modelling techniques and construct advanced SIEM use cases.

Assist with tabletop exercises and crisis simulations to validate incident response readiness.

Contribute to the refinement of SOC playbooks, incident handling guidelines, and escalation procedures (with engineering responsible for tool development).

Participate in reviews of incident reports, ensuring quality, accuracy, and actionable recommendations.

Provide input to SOC metrics, KPIs, and compliance reporting to demonstrate operational value.

Document, develop, and enhance operational guidelines.

Develop and maintain KPI reports on service and solution performance.

Generate compliance reports, support audit processes, and measure SOC performance metrics to communicate value to business leaders.

Report common and recurring problems identified through trend analysis to SOC management and propose process or technical enhancements.

Demonstrate the ability to perform in-depth incident analysis and provide detailed root cause identification.

Support SOC leadership in developing metrics, KPIs, and compliance reports to demonstrate security assurance across enterprise and HPC domains.

Coach and mentor junior SOC analysts, including new joiners and graduates.

Share advanced technical expertise and guide team members through escalated incidents.

Support knowledge transfer activities within the SOC.

Ensure the quality of technical advisories and assessments released from the SOC.

Communicate incident status, impact, and response activities to senior stakeholders with influence and clarity.

Collaborate with security architects, CTI, and assessment teams to ensure incident findings feed into long-term improvements.

Participate in security workshops and exercises with internal teams and customers to uplift SOC capability and assurance.

Maintain close collaboration during new projects with security architects and specialists to implement security recommendations.

Collaborate closely with the dedicated KAUST CSOC / CDC Account Manager to meet customer security expectations.

Lead security workshops with KAUST CSOC / CDC customers during onboarding sessions.

Cultivate relationships with industry partners and customers to ensure monitoring compliance and seamless incident response.

Play a significant role in long-term SOC strategy and planning, focusing on operational excellence initiatives.

Qualifications

Bachelor’s degree in Computer Science, Information Security, or a related field.

Industry certifications such as SANS / GIAC (GCFA, GCIH, GCIA), CISSP, OSCP, or equivalent.

Experience in conducting tabletop exercises and training SOC teams.

Scripting or automation skills (Python, PowerShell, KQL) to assist in advanced analysis and threat hunting.

Required Skills

Demonstrated experience leading major incident response investigations within a SOC or enterprise environment.

Strong knowledge of incident response methodologies, threat hunting, and CTI integration.

Proven ability to investigate complex incidents across large-scale systems, including correlation of logs and datasets from HPC clusters and enterprise networks.

Experience providing technical leadership and mentoring within SOC teams.

Hands‑on experience with cloud and security tooling (e.g., SIEM, SOAR, EDR, vulnerability management, AWS, Azure, O365).

Strong communication and stakeholder management skills.

Seniority level

Mid-Senior level

Employment type

Full-time

Job function

Information Technology

Industries

Information Services

Jiddah, Makkah, Saudi Arabia 17 hours ago

#J-18808-Ljbffr

Create a job alert for this search

Lead • Makkah, Saudi Arabia

Related jobs
Risk Operations Specialist

Risk Operations Specialist

WOO Network • Makkah, Saudi Arabia
WOO X is a global centralised crypto futures and spot trading platform offering best-in-class liquidity and price execution. WOO X has an average daily volume exceeding $1.WOO X traders benefit from...Show more
Last updated: 4 days ago • Promoted
Emergency Medicine Consultant - ED Leadership & Training

Emergency Medicine Consultant - ED Leadership & Training

Antal International Network - IME • At Ta'if, Makkah Region, Saudi Arabia
A prestigious healthcare provider in Taif, Saudi Arabia, is seeking an experienced Emergency Medicine Consultant.This role involves providing specialized care in emergency settings, supervising med...Show more
Last updated: 6 days ago • Promoted
Senior Psychiatrist & Clinical Lead

Senior Psychiatrist & Clinical Lead

Antal International Network - IME • At Ta'if, Makkah Region, Saudi Arabia
A prestigious hospital in Taif, Saudi Arabia, is seeking an accomplished Consultant in Psychiatry to oversee the psychiatric department and provide expert consultations on mental health.Responsibil...Show more
Last updated: 6 days ago • Promoted
Pediatric Orthopedics Consultant & Team Leader

Pediatric Orthopedics Consultant & Team Leader

Antal International Network - IME • At Ta'if, Makkah Region, Saudi Arabia
A prestigious hospital in Taif, Saudi Arabia, is seeking a Pediatric Orthopedics Consultant to lead the pediatric orthopedic team and provide advanced care for patients. Responsibilities include sup...Show more
Last updated: 6 days ago • Promoted
CTO – Global Delivery & Security Leader

CTO – Global Delivery & Security Leader

1957 Ventures • Makkah, Saudi Arabia
A leading venture capital firm in Saudi Arabia is seeking a Chief Technology Officer.This executive role involves overseeing the company's technology strategy, managing a remote engineering team, a...Show more
Last updated: 3 days ago • Promoted
Senior Industrial Automation Solutions Sales Lead (KSA)

Senior Industrial Automation Solutions Sales Lead (KSA)

Schneider Electric • At Ta'if, Makkah Region, Saudi Arabia
A leading global energy solutions provider is seeking an Industrial Automation Sales Manager in Saudi Arabia to drive sales and business development. The ideal candidate will have 10-15 years of pro...Show more
Last updated: 4 days ago • Promoted
Senior Child Protection Specialist - Safeguarding Lead

Senior Child Protection Specialist - Safeguarding Lead

Al-Ittihad Club Company • Makkah, Saudi Arabia
A prominent sports club is looking for a Child Protection Sr.The role involves implementing safeguarding policies, ensuring compliance, and providing support to minors and their families.Candidates...Show more
Last updated: 3 days ago • Promoted
THAAD Training Lead - Global Fielding & Mentoring

THAAD Training Lead - Global Fielding & Mentoring

Sincerus Global Solutions Inc • Makkah, Saudi Arabia
A global defense contractor seeks a skilled professional to deliver THAAD Gunnery Table Training to partner nations.Your role includes instructional delivery, monitoring trainee progress, and align...Show more
Last updated: 1 day ago • Promoted
Fintech Senior Tech Project Lead | Agile, Compliance, Cloud

Fintech Senior Tech Project Lead | Agile, Compliance, Cloud

CME • Makkah, Saudi Arabia
A leading technology company in Saudi Arabia is seeking a Technical Senior Project Manager with strong Fintech expertise. You will manage high-impact projects across payments and digital banking, ut...Show more
Last updated: 1 day ago • Promoted
Perfusionist Specialist in Saudi Health System

Perfusionist Specialist in Saudi Health System

Jesseena • At Ta'if, Makkah Region, Saudi Arabia
A healthcare recruitment agency is looking for an Allied Health Professional specializing in Perfusionist roles within Armed Forces Hospitals located in Taif, Saudi Arabia.The ideal candidate shoul...Show more
Last updated: 2 days ago • Promoted
Head of Medical Oncology – Clinical Leadership & Research

Head of Medical Oncology – Clinical Leadership & Research

Antal International Network - IME • At Ta'if, Makkah Region, Saudi Arabia
A prestigious hospital is seeking a Medical Oncology Section Head to lead the development and implementation of comprehensive cancer care protocols. Responsibilities include providing expert oncolog...Show more
Last updated: 4 days ago • Promoted
Remote Cybersecurity Services Lead

Remote Cybersecurity Services Lead

Thales • Makkah, Saudi Arabia
A global leader in cybersecurity is seeking a Professional Services Senior Consultant in Saudi Arabia.This role involves deploying data security products, working with cross-functional teams, and e...Show more
Last updated: 2 days ago • Promoted
Senior InfoSec Manager — Strategy & IR

Senior InfoSec Manager — Strategy & IR

CARE • Makkah, Saudi Arabia
A leading organization in Mecca seeks a Senior Manager - Information Security to safeguard its operations.Expected responsibilities include supporting the CISO in developing security strategies, ev...Show more
Last updated: 5 days ago • Promoted
Senior Cybersecurity Services Consultant — Remote

Senior Cybersecurity Services Consultant — Remote

Thales Group • Makkah, Saudi Arabia
A global cybersecurity consultancy is seeking a Cybersecurity Professional Services Senior Consultant to implement data security solutions in Saudi Arabia. The candidate will drive customer engageme...Show more
Last updated: 2 days ago • Promoted
Strategic Policy, Planning & Communications Lead

Strategic Policy, Planning & Communications Lead

King Abdullah University of Science and Technology • Makkah, Saudi Arabia
A leading international research university in Saudi Arabia is seeking a Policy, Planning & Communications Specialist.The successful candidate will manage communication plans and materials for the ...Show more
Last updated: 5 days ago • Promoted
Emergency Medicine Lead & ED Education Consultant

Emergency Medicine Lead & ED Education Consultant

Antal International Network - IME • At Ta'if, Makkah Region, Saudi Arabia
A prestigious healthcare institution in At Ta'if, Saudi Arabia, is seeking an experienced Emergency Medicine Consultant.You will lead the emergency care team, provide specialized patient care, and ...Show more
Last updated: 4 days ago • Promoted
Investigations Manager I, Investigations

Investigations Manager I, Investigations

Amazon • Makkah, Saudi Arabia
Investigations Manager I, Investigations.You must be physically based in Metro Manila, Cavite, Bulacan, Laguna or Rizal.Remote Work Requirement A reliable ISP connection (internet bandwidth of at l...Show more
Last updated: 30+ days ago • Promoted
Family Medicine Consultant - Teaching & Leadership

Family Medicine Consultant - Teaching & Leadership

Antal International Network - IME • At Ta'if, Makkah Region, Saudi Arabia
A prestigious hospital in Ta'if is seeking a Family Medicine Consultant to provide high-quality care and supervise training programs for residents. Candidates must have relevant board certification ...Show more
Last updated: 6 days ago • Promoted