img
نوع العقددوام كامل
طبيعة الوظيفةبالموقع
الموقعالرياض

وصف الوظيفة

About the Role

Accenture Saudi Arabia is seeking a SOC Analyst L1 to join its global professional services team in Riyadh. This full-time role operates on the front line of 24x7 Security Operations Center (SOC) activities, focusing on protecting enterprise clients against active threats. The position involves triaging, investigating, and responding to real incidents within a high-performing global delivery team where speed, accuracy, and judgment are critical.

Key Responsibilities

  • Monitor and analyze security alerts from SIEM, SOAR, EDR, and other security tools to identify potential threats across client environments.
  • Perform timely triage, validation, and investigation of alerts in line with SLA requirements and prioritization frameworks (P1–P4).
  • Execute containment, response, and remediation actions using established SOC runbooks.
  • Manage incidents through the full case lifecycle, including accurate documentation, status updates, and closure in the case management system.
  • Monitor SOC communication channels and ensure timely response to inquiries, escalations, and stakeholder coordination.
  • Escalate high-severity and complex incidents in line with SLAs, including immediate notification for potential P1/P2 cases.
  • Conduct effective shift handovers, ensuring active and critical cases are transferred with full context.
  • Identify and report operational gaps, anomalies, or delays within the same shift to relevant leads.
  • Contribute to continuous improvement by surfacing gaps in detection, logging, automation, and case handling processes.

Required Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or a related field.
  • Strong understanding of cybersecurity fundamentals, including threat types, attack vectors, the CIA triad, and incident response principles.
  • Working knowledge of operating systems (Windows, Linux/Unix) and networking concepts (TCP/IP, OSI model, DNS, HTTP/S).

Technical Skills and Experience

  • Hands-on experience or familiarity with SIEM/SOAR platforms, endpoint protection, firewalls, and security monitoring tools.
  • Ability to analyze logs, network traffic, and endpoint telemetry to identify malicious activity.

Professional Attributes and Work Environment

This full-time position in Riyadh requires a disciplined and process-oriented individual capable of working effectively in a shift-based, SLA-driven environment. The role demands clear communication skills, strong documentation habits, and the ability to coordinate across internal and external stakeholders within a global delivery team.

Preferred Skills

  • Familiarity with the MITRE ATT&CK framework for threat identification and mapping.
  • Exposure to cloud security concepts across Azure, AWS, or GCP.

متطلبات الوظيفة

  • لا تتطلب خبرة

وظائف مشابهة