Job Post:
Job Title: Security Operations Center (SOC) Engineer
Job Location: Lahore, Punjab, Pakistan (Remote Option Available)
Job Type: Full-Time
Experience Required: 2 to 5 Years
Education Required: Bachelor’s Degree in IT or related discipline
Job Overview: ICE Consulting is seeking a skilled Security Operations Center (SOC) Engineer to join our team. You will monitor, analyze, and respond to security threats, implement and maintain SIEM solutions, and improve the overall security posture of the company. This role requires hands-on expertise in cybersecurity, threat analysis, and incident response, with a strong focus on SIEM administration and SOC operations.
Key Responsibilities:
SIEM and Security Monitoring:
- Develop and implement SIEM solutions internally and for clients
- Administer, operate, and maintain SIEM platforms ensuring health of log sources, parsers, alerts, and dashboards
- Develop use cases, dashboards, reports, rules, and active lab sessions for SIEM
- Monitor security events, assess, prioritize, and escalate threats
- Analyze security, network, database, and application logs to identify threat scenarios
Incident Response & Threat Management:
- Lead imminent threat/zero-day response functions
- Translate threat intelligence into actionable security measures across firewalls, IPS, and malware detection tools
- Track and resolve security incidents, collaborating with other teams and suggesting improvements
- Continuous tuning of security solutions to minimize false positives and negatives
Security Tools & Technical Tasks:
- Build custom SIEM connectors or parsers for unsupported IT assets
- Operate key security solutions to protect against cyber threats
- Deploy new solutions and technologies to improve security posture
- Work with MITRE framework to identify adversary tactics and techniques
- Develop security scripts in Python or PowerShell for automated detection and scanning
Knowledge & Skills Required:
- Deep technical knowledge of SIEM implementation and operations
- Experience with vulnerability scanning tools (Nexpose, Metasploit), File Integrity Monitoring, and Data Loss Prevention
- Strong understanding of TCP/IP, HTTP, SSL/TLS, DNS, SMTP protocols
- Network stream analysis using PCAP and packet reconstruction
- Knowledge of incident response frameworks (NIST, SANS)
- Familiarity with ISO 27001, PCI DSS, GDPR compliance standards
- Excellent problem-solving, documentation, and communication skills
- Ability to work independently and in a team environment
Preferred Skills & Experience:
- Working knowledge of SIEM solutions such as QRadar, Sentinel, Splunk, LogRhythm, or open-source alternatives (Wazuh, ELK)
- Experience in auditing, risk management, or cybersecurity operations
- Ability to mentor junior SOC staff and provide thought leadership
Education & Qualifications:
- Bachelor’s Degree in IT or related discipline
- 2 to 5 years of professional experience in SOC, cybersecurity, or related roles
- Relevant certifications in security are a plus
Benefits:
- Opportunity to work with a leading Managed Service Provider
- Hands-on experience with advanced cybersecurity tools and processes
- Exposure to multiple client environments and security platforms
- Professional growth and skill development in SOC operations
How to Apply:
Apply using the following Button