menajobs
  • Resume Tools
  • ATS Checker
  • Offer Checker
  • Features
  • Pricing
  • FAQ
LoginGet Started — Free
Home/Jobs/SIEM SOAR Detection Engineer
Blackford Technologies LLC-SPC logo
Blackford Technologies LLC-SPC

SIEM SOAR Detection Engineer

🇦🇪 Abu Dhabi, UAE🏢 On-site
SIEMSOARMicrosoft SentinelKQLAutomationDetection EngineeringSplunkQRadar
WhatsAppLinkedInX

Are You in the 25%?

  • Check if Blackford Technologies LLC-SPC will actually see your resume
  • Get AI-rewritten bullet points
  • Download Gulf-ready CV
Is Mine Getting Through?

60 seconds. $3.99 one-time.

Blackford Technologies LLC-SPC logo
Blackford Technologies LLC-SPC
employees

Our client is a leading cybersecurity firm establishing a next-generation Security Operations Center (SOC) to deliver world-class monitoring, detection, and incident response capabilities. Built on advanced analytics, automation, and threat intelligence, this SOC is designed to serve as a central pillar of enterprise defense across diverse digital environments. The company is seeking exceptional security professionals to shape, lead, and evolve this capability into a benchmark for operational excellence and resilience.

We are seeking an experienced SOC Automation & Detection Engineer to support the development and enhancement of the SOC’s detection and automation capabilities. This role combines detection engineering, SIEM content development, and SOAR workflow automation, enabling consistent and scalable security operations.

The engineer will build and tune analytic rules, optimise SIEM ingestion pipelines, and design automation workflows that streamline triage, enrichment, and response actions. While strong experience with Microsoft Sentinel is required, experience with additional SIEM platforms such as Splunk, QRadar, Elastic, or LogRhythm is highly valued. The engineer will collaborate closely with Senior Engineers, SOC Analysts, Threat Hunters, and DFIR teams to improve both detection fidelity and operational efficiency.

Requirements

• Develop and maintain SIEM detection content, alerts, and analytic rules across platforms.
• Build KQL queries to support alerting, enrichment, investigations, and automated responses.
• Design, develop, and maintain SOAR automation workflows, including enrichment playbooks and triage automations.
• Collaborate with the Senior SOC Automation & Detection Engineer to align detection triggers with SOAR workflows.
• Assist with the onboarding, validation, and optimisation of log sources to support detections and automation.
• Conduct tuning cycles to reduce false positives and improve detection accuracy.
• Provide query and analytic support to SOC Analysts during investigations.
• Document detection logic, automation workflows, lifecycle updates, and engineering procedures.
• Identify telemetry gaps and propose ingestion and schema improvements.
• Assist in converting threat intelligence insights and threat hunting findings into detections and playbooks. Role Requirements

• 2–4 years of experience in SIEM engineering, detection development, or security automation.
• Strong hands-on experience with Microsoft Sentinel, especially KQL and analytic rule creation.
• Practical experience building or maintaining SOAR playbooks (Logic Apps preferred).
• Familiarity with at least one additional SIEM platform (Splunk, QRadar, Elastic, LogRhythm).
• Understanding of detection lifecycle management, tuning, and correlation fundamentals.
• Basic scripting capability (PowerShell or Python).
• Strong understanding of MITRE ATT&CK and attacker techniques.
• Certifications such as SC-200, AZ-500 or similar are beneficial. Technical Skills

• Platforms: Microsoft Sentinel, Splunk, QRadar, Elastic
• Automation: Azure Logic Apps, SOAR workflows, enrichment logic
• Analytics: KQL, SIEM rules, correlation logic
• Telemetry: Identity, endpoint, cloud, network logs
• Scripting: PowerShell or Python
• Frameworks: MITRE ATT&CK Benefits

• Build and refine the automation and detection backbone of a modern SOC.
• Directly influence the efficiency, scalability, and maturity of SOC operations.
• Work with advanced cloud-native technologies in a collaborative engineering environment.
• Clear pathway to senior engineering, threat hunting, or DFIR growth.

Requirements

  • •2–4 years experience in SIEM engineering, detection development, or security automation
  • •Strong hands-on experience with Microsoft Sentinel (KQL, analytic rule creation)
  • •Practical experience building/maintaining SOAR playbooks (Logic Apps preferred)
  • •Familiarity with at least one additional SIEM platform (Splunk, QRadar, Elastic, LogRhythm)
  • •Understanding of detection lifecycle management, tuning, and correlation
  • •Basic scripting capability (PowerShell or Python)
  • •Strong understanding of MITRE ATT&CK and attacker techniques

Nice to Have

  • •Identify telemetry gaps and propose ingestion/schema improvements
  • •Convert threat intelligence and threat hunting findings into detections
  • •Certifications such as SC-200, AZ-500 or similar

Responsibilities

  • •Develop and maintain SIEM detection content, alerts, and analytic rules
  • •Build KQL queries for alerting, enrichment, investigations, and automated responses
  • •Design, develop, and maintain SOAR automation workflows
  • •Collaborate with Senior Engineer to align detection triggers with SOAR workflows
  • •Assist with onboarding, validation, and optimisation of log sources
  • •Conduct tuning cycles to reduce false positives
  • •Provide query and analytic support to SOC Analysts
  • •Document detection logic, automation workflows, and engineering procedures

Related Jobs

Mindrift logo
Data Scientist (Python & SQL) - Freelance AI Trainer
Mindrift · 🇸🇦 Saudi Arabia
Prevail logo
Senior Intelligence Analyst
Prevail · 🇦🇪 Abu Dhabi
Mindrift logo
Automotive Engineering & Python Expert - Freelance AI Trainer
Mindrift · 🇸🇦 Saudi Arabia
Experts Plus Recruitment Services logo
Elevator / Escalator Inspector
Experts Plus Recruitment Services · 🇦🇪 Abu Dhabi
Back to all jobs
Before You Apply
  • Test your resume against Blackford Technologies LLC-SPC's ATS
  • Get AI-rewritten bullet points
  • Download Gulf-ready CV
Find Out Now

60 seconds. $3.99 one-time.

GCC Info
Company
Blackford Technologies LLC-SPC logo
Blackford Technologies LLC-SPC
employees

Visit WebsiteView all jobs
Share
WhatsAppLinkedInX
menajobs

AI-powered GCC job board with resume optimization tools.

Serving:

UAESaudi ArabiaQatarKuwaitBahrainOman

Product

  • Resume Tools
  • Features
  • Pricing
  • FAQ

Resources

  • Resume Examples
  • CV Format Guides
  • Skills Guides
  • Salary Guides
  • ATS Keywords
  • Job Descriptions
  • Career Paths
  • Interview Questions
  • Achievement Examples
  • Resume Mistakes
  • Cover Letters
  • Resume Summaries
  • Resume Templates
  • ATS Resume Guide
  • Fresher Resumes
  • Career Change
  • Industry Guides

Country Guides

  • Jobs by Country
  • Visa Guides
  • Cost of Living
  • Expat Guides
  • Work Culture

Free Tools

  • ATS Checker
  • Offer Evaluator
  • Salary Guides
  • All Tools

Company

  • About
  • Contact Us
  • Privacy Policy
  • Terms of Service
  • Refund Policy
  • Shipping & Delivery
  • Sitemap

Browse by Location

  • Jobs in UAE
  • Jobs in Saudi Arabia
  • Jobs in Qatar
  • Jobs in Dubai
  • Jobs in Riyadh
  • Jobs in Abu Dhabi

Browse by Category

  • Technology Jobs
  • Healthcare Jobs
  • Finance Jobs
  • Construction Jobs
  • Oil & Gas Jobs
  • Marketing Jobs

Popular Searches

  • Tech Jobs in Dubai
  • Healthcare in Saudi Arabia
  • Engineering in UAE
  • Finance in Qatar
  • IT Jobs in Riyadh
  • Oil & Gas in Abu Dhabi

© 2026 MenaJobs. All rights reserved.

LoginGet Started — Free