JOB PURPOSE:
The Senior Cortex XDR Engineer provides high-level expertise and support for Cortex XDR deployments, focusing on incident detection, analysis, and response. As a Level 3 support engineer, you will lead the investigation of complex cybersecurity incidents, implement proactive measures, and optimize the use of Cortex XDR technologies within the organization.
ROLE AND RESPONSIBILITIES
- Take ownership of escalated security incidents, providing expert-level analysis, and ensuring timely resolution to minimize impact.
- Collaborate with security operations and incident response teams to investigate, contain, and remediate advanced threats and incidents.
- Develop and implement detection strategies, leveraging Cortex XDR capabilities to enhance the organization's security posture.
- Conduct thorough forensic analysis of incidents, documenting findings, lessons learned, and recommendations for improvement.
- Design and optimize Cortex XDR policies and configurations to align with industry best practices and compliance requirements.
- Train and mentor junior engineers and analysts on Cortex XDR operations and incident response procedures.
- Collaborate with IT and security teams to integrate Cortex XDR with other security tools and platforms.
- Stay updated with the latest cybersecurity trends, threat intelligence, and Cortex XDR capabilities to enhance incident response strategies.
- Provide technical guidance for deployments, upgrades, and customizations of Cortex XDR solutions.
Requirements:- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- 5+ years of experience in a security engineering or incident response role, with at least 3 years focused on Cortex XDR.
- Strong hands-on experience with Cortex XDR, along with expertise in endpoint detection and response (EDR) technologies.
- In-depth knowledge of security principles, threat landscape, and incident response best practices.
- Relevant cybersecurity certifications (e.g., CISSP, CEH, Palo Alto Networks Certified Cybersecurity Consultant) are highly desirable.
- Excellent problem-solving skills and the ability to work independently and collaboratively in a team-oriented environment.
- Strong communication and documentation skills, with the ability to convey technical information to non-technical stakeholders.
- Saudi Nationality is a requirement for this position.
Benefits:
o Medical insurance including family.
o Flight tickets including family.