Overview
We are seeking a highly skilled Senior Security Incident Handling Specialist to join our cybersecurity team. This role will serve as the primary liaison between the Next Generation Security Operations Center (NGSOC) and the client’s Service Desk, focusing on incidents impacting end-user endpoints and collaboration platforms. The successful candidate will ensure effective triage, containment, and closure of security incidents while supporting awareness and prevention initiatives.
Key Responsibilities
- Triage and investigate security alerts from Microsoft Defender for Endpoint, Office 365, and Intune.
- Validate and respond to phishing, malware, and endpoint compromise incidents escalated by the MSS NGSOC.
- Coordinate with the client’s Service Desk for rapid containment activities, including account disablement and device isolation.
- Track, monitor, and ensure closure of all end-user related security tickets in compliance with SLAs.
- Contribute to security awareness campaigns by sharing recent phishing and social engineering trends with training teams.
- Manage and optimize automated playbooks in Microsoft Sentinel for phishing remediation, email blocking, and endpoint isolation.
Skills & Experience
- Proven experience in endpoint protection tools, particularly Microsoft Defender for Endpoint and Intune.
- Strong knowledge of ITIL-based service desk processes and incident response workflows.
- Hands-on expertise in phishing analysis and email security, including Microsoft Defender for Office 365.
- Familiarity with security automation and playbooks (Sentinel or similar SOAR platforms).
- Strong communication and coordination skills to effectively liaise between SOC and Service Desk teams.
Preferred Qualifications
- Relevant security certifications (e.g., MS-500, SC-200, CEH, CISSP, or Security+).
- Experience working in a SOC environment with focus on end-user systems.
- Knowledge of enterprise collaboration platforms and endpoint security best practices.
Job Type: Full-time
Application Question(s):
- What is your current monthly salary?
- What is your expected monthly salary?
- What is your notice period / earliest availability to join if selected?
- What is your nationality?
- Are you currently based in [UAE] or willing to relocate if required?