Senior Engineer Security Operations Infrastructure & Automation

 Job Description:

Senior SOC Engineering Specialist

Location:

New Cairo, Egypt

Department:

Cybersecurity Operations / SOC

Job Type:

Full-Time Operational / Mid-Senior Level

Job Summary:

We are seeking a Senior SOC Engineering Specialist to play a key operational role in designing, maintaining, and optimizing the technical infrastructure of our Security Operations Center (SOC). This includes managing tools such as SIEM, SOAR, threat intelligence platforms, and various log source integrations.

The ideal candidate will ensure high availability, performance, and scalability of our detection and response capabilities, while staying compliant with the Central Bank of Egypt (CBE) cybersecurity directives.

Key Responsibilities:

  • Design and maintain SOC infrastructure including SIEM, SOAR, and threat intel platforms.
  • Integrate and optimize log sources across IT, network, application, and cloud environments.
  • Monitor the health and performance of security tools and ensure continuous improvement.
  • Ensure tool configurations are compliant with CBE regulations and internal security frameworks.
  • Collaborate with SOC analysts, threat hunters, and incident responders to enhance detection use cases.
  • Automate workflows and improve detection and response efficiencies using SOAR playbooks.
  • Evaluate and onboard new technologies or data sources to improve threat visibility.
  • Participate in red/blue team exercises and refine detection capabilities based on findings.

Requirements:

  • Bachelors degree in Information Security, Computer Engineering, or a related technical field.
  • 58 years of experience in SOC engineering, cybersecurity infrastructure, or SIEM/SOAR platforms.
  • Strong hands-on experience with platforms such as Splunk, IBM QRadar, ArcSight, Elastic, Azure Sentinel, or similar.
  • Familiarity with threat intelligence feeds, log management, and custom detection rules.
  • Working knowledge of CBE cybersecurity compliance and ISO 27001 standards.
  • Preferred certifications: GCIA, GCTI, Splunk Certified Admin, or Microsoft SC-200.
  Required Skills:

Operations Infrastructure Automation Security