Junior Security Operations Center Engineer L1
Junior
Tech Support
B2/C1 English, CS/Cyber Security or strong Windows/Linux skills, analytical and client-focused mindset, clear communication, shift flexibility, technical support/networking basics, security tools, scripting, SQL and ticketing/SIEM knowledge.
Junior Security Operations Center Engineer L1
Junior Security Operations Center Engineer L1
Junior
Tech Support
We are looking for a Junior SOC Engineer (L1) to join our team and provide high-quality security monitoring and threat detection for an enterprise client within a B2B environment. This role focuses on active security monitoring, triage, and incident response for international clients in English.
The position requires working in a 3-shift rotation (8 hours per shift) based on Cairo time:
Morning Shift: 08:00 AM – 04:00 PM
Evening Shift: 04:00 PM – 12:00 AM (Midnight)
Night Shift: 12:00 AM – 08:00 AM
Key Responsibilities
Provide real-time security monitoring and analysis of security alerts (SIEM, EDR, firewalls, and system logs).
Log, track, and triage security incidents through ticketing systems, and escalate to L2/L3 engineers when necessary.
Communicate with clients via email and chat to report security incidents or request additional information (no call center duties).
Perform initial issue diagnostics, analyze security alerts, and run preliminary investigations on potential threats.
Assist in identifying unauthorized access control issues, compromised accounts, and malicious activity.
Participate in incident management processes following established security playbooks (runbooks).
Analyze system alerts, endpoint behavior, and network traffic for timely threat containment.
Investigate basic security events and perform root cause analysis.
Conduct online meetings with customers or team leads when required.
Create, update, and maintain internal runbooks and technical security documentation.
Required Skills & Qualifications
Upper-Intermediate to Advanced English (B2/C1, written and spoken).
Background in Computer Science, Cyber Security, or strong technical proficiency in operating systems (Windows and Linux administration).
University graduate or final-year student with full-time availability to work on a rotational shift schedule.
Strong analytical thinking, alertness, and rapid problem-solving skills.
Patience, emotional stability under pressure, and a client-oriented mindset.
Ability to communicate clearly and professionally with international clients.
Willingness to work night shifts, weekends, or holidays as part of the rotation schedule.
Nice to Have
Prior experience in technical support, system administration, or network troubleshooting.
Understanding of basic security frameworks (such as the MITRE ATT&CK framework and the Cyber Kill Chain).
Basic understanding of networking protocols (TCP/IP, DNS, HTTP/HTTPS) and traffic analysis tools (e.g., Wireshark).
Experience working in international environments or exchange programs.
Basic scripting skills (Python, PowerShell, or Bash) to help automate repetitive tasks.
Familiarity with SQL databases.
Experience using ticketing or security case management systems such as ServiceNow, JIRA, or TheHive.
Familiarity with SIEM, EDR, or logging systems (such as Splunk, Microsoft Sentinel, Elastic/ELK, CrowdStrike Falcon, SentinelOne, or Wazuh).
What We Offer
Opportunity to work on large-scale, impactful cybersecurity projects.
Clear career growth path to Middle/Senior SOC roles within a team with 27+ years of experience.
Professional, friendly, and supportive team environment.
Rotational 8-hour shift schedule with additional night-shift and overtime compensation options.
Modern office in the Smart Village district (Cairo).
Flexible and transparent compensation review system.
Private medical insurance after completing the probation period.
Payments in USD.
We are looking for a Junior SOC Engineer (L1) to join our team and provide high-quality security monitoring and threat detection for an enterprise client within a B2B environment. This role focuses on active security monitoring, triage, and incident response for international clients in English.
The position requires working in a 3-shift rotation (8 hours per shift) based on Cairo time:
Morning Shift: 08:00 AM – 04:00 PM
Evening Shift: 04:00 PM – 12:00 AM (Midnight)
Night Shift: 12:00 AM – 08:00 AM
Key Responsibilities
Provide real-time security monitoring and analysis of security alerts (SIEM, EDR, firewalls, and system logs).
Log, track, and triage security incidents through ticketing systems, and escalate to L2/L3 engineers when necessary.
Communicate with clients via email and chat to report security incidents or request additional information (no call center duties).
Perform initial issue diagnostics, analyze security alerts, and run preliminary investigations on potential threats.
Assist in identifying unauthorized access control issues, compromised accounts, and malicious activity.
Participate in incident management processes following established security playbooks (runbooks).
Analyze system alerts, endpoint behavior, and network traffic for timely threat containment.
Investigate basic security events and perform root cause analysis.
Conduct online meetings with customers or team leads when required.
Create, update, and maintain internal runbooks and technical security documentation.
Required Skills & Qualifications
Upper-Intermediate to Advanced English (B2/C1, written and spoken).
Background in Computer Science, Cyber Security, or strong technical proficiency in operating systems (Windows and Linux administration).
University graduate or final-year student with full-time availability to work on a rotational shift schedule.
Strong analytical thinking, alertness, and rapid problem-solving skills.
Patience, emotional stability under pressure, and a client-oriented mindset.
Ability to communicate clearly and professionally with international clients.
Willingness to work night shifts, weekends, or holidays as part of the rotation schedule.
Nice to Have
Prior experience in technical support, system administration, or network troubleshooting.
Understanding of basic security frameworks (such as the MITRE ATT&CK framework and the Cyber Kill Chain).
Basic understanding of networking protocols (TCP/IP, DNS, HTTP/HTTPS) and traffic analysis tools (e.g., Wireshark).
Experience working in international environments or exchange programs.
Basic scripting skills (Python, PowerShell, or Bash) to help automate repetitive tasks.
Familiarity with SQL databases.
Experience using ticketing or security case management systems such as ServiceNow, JIRA, or TheHive.
Familiarity with SIEM, EDR, or logging systems (such as Splunk, Microsoft Sentinel, Elastic/ELK, CrowdStrike Falcon, SentinelOne, or Wazuh).
What We Offer
Opportunity to work on large-scale, impactful cybersecurity projects.
Clear career growth path to Middle/Senior SOC roles within a team with 27+ years of experience.
Professional, friendly, and supportive team environment.
Rotational 8-hour shift schedule with additional night-shift and overtime compensation options.
Modern office in the Smart Village district (Cairo).
Flexible and transparent compensation review system.
Private medical insurance after completing the probation period.
Payments in USD.
Junior Security Operations Center Engineer L1
Content
Junior
B2/C1 English, CS/Cyber Security or strong Windows/Linux skills, analytical and client-focused mindset, clear communication, shift flexibility, technical support/networking basics, security tools, scripting, SQL and ticketing/SIEM knowledge.