Cybersecurity Incident Réponse Specialist
Indexed description
Position Summary
ExeQut is hiring a Cybersecurity Incident Response Specialist to investigate, contain, eradicate, and recover from security incidents across endpoints, networks, identities, cloud, and applications — helping clients respond to and learn from real-world threats.
What You Will Do
- Investigate and respond to cybersecurity incidents including ransomware, malware, phishing, account compromise, data theft, and lateral movement
- Perform incident triage, investigation, containment, eradication, and recovery
- Conduct threat hunting and root-cause analysis
- Perform basic digital forensics and malware analysis
- Identify and analyze IOCs/IOAs and map attacks to MITRE ATT&CK
- Investigate Windows, Linux, Active Directory, and cloud environments
- Work with SIEM and EDR/XDR platforms to investigate security events
- Develop and improve incident response playbooks and detection rules
- Prepare detailed incident reports, timelines, and remediation recommendations
- Support SOC/CSIRT operations and critical incident response
- Strong experience in Incident Response / DFIR / SOC / Threat Hunting
- Hands-on experience with Splunk, Microsoft Sentinel, QRadar, CrowdStrike, SentinelOne, Microsoft Defender, or Cortex XDR
- Strong Windows/Linux and networking knowledge
- Knowledge of PowerShell, Python, or Bash
- Strong understanding of MITRE ATT&CK and common attack techniques
- Saudi Nationality required
- Experience investigating ransomware, phishing, credential theft, and endpoint compromise
- Performance-based compensation structure
- Bupa medical insurance (Golden Tier)
- Ongoing training and mentorship from experienced leadership
- Exposure to high-impact projects with leading clients in Saudi Arabia
- A collaborative, growth-oriented culture
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search