The Security Analyst - SOC Operations (Level 2) is responsible for advanced monitoring, investigation, and response to cybersecurity incidents within a Private 5G Security Operations Center. This role performs in-depth analysis of incidents escalated from Level 1, leads root cause investigations, and supports the continuous security and resilience of 4G/5G RAN and Core networks. The position plays a critical role in strengthening detection capabilities, improving response processes, and ensuring uninterrupted and secure network operations.
Duties and Responsibilities
Conduct detailed analysis of security incidents escalated by L1 SOC analysts.
Perform root cause analysis and advanced investigations to determine scope, impact, and threat vectors.
Respond to, contain, and remediate security incidents while minimizing operational and service impact.
Utilize advanced security tools and techniques to analyze, investigate, and mitigate threats.
Collaborate with internal and external teams to implement corrective and preventive security controls.
Document incident findings, actions taken, and lessons learned in accordance with SOC procedures.
Provide recommendations for improving incident response playbooks and 5G-specific security procedures.
Maintain strong working knowledge of 4G/5G protocols, signaling flows, and architectures for RAN and Core.
Provide technical guidance, mentoring, and on-the-job training to L1 SOC analysts.
Monitor evolving threat landscapes, vulnerabilities, and technologies impacting 5G environments.
Support and maintain the 5G SOC operations lab.
Ensure the ongoing integrity, availability, and security of 5G RAN and Core network environments.
Requirements
Bachelors degree in Computer Science, Information Security, or a related discipline.
Strong understanding of TCP/IP, OSI Seven Layer Model, and diverse network architectures.
Strong knowledge of cybersecurity principles and 4G/5G technologies.
Hands-on experience with security tools including
SIEM, SOAR, IDS/IPS
, and forensic analysis tools.
Proven ability to conduct advanced investigations, including malware analysis and threat containment.
Experience working in
4G/5G Security Operations
environments.
Experience in ISP or telecom environments is a strong advantage.
Hands-on experience with
Splunk
and
Microsoft Sentinel
.
Experience across
IT and OT
environments.
Strong analytical, problem-solving, documentation, and communication skills.
Ability to work under pressure and respond effectively to security incidents.
Industry certifications are preferred, including
CompTIA Security+
,
CSA
,
CCNA CyberOps
,
CySA+
,
GCIH
,
BTL1
,
MITRE ATT&CK Defender (MAD)
, and
Splunk / Microsoft Sentinel certifications
.
Job Type: Full-time
Application Question(s):
An L1 analyst escalates multiple SIEM alerts indicating abnormal signaling traffic between the 5G Core (AMF/SMF) and RAN. How would you validate whether this is a misconfiguration, a signaling storm, or a security attack? Walk us through your investigation approach.
Describe a real incident where you performed root cause analysis on a complex security event in a 4G/5G or telecom environment. What tools did you use, how did you determine scope and impact, and what corrective actions were implemented?
How do you design or refine correlation rules in Splunk or Microsoft Sentinel to detect advanced threats in a 5G SOC, and how do you reduce false positives without weakening detection?
If a suspected malware or lateral movement activity is detected within a 5G Core or OSS/BSS environment, what containment and remediation steps would you take to ensure security while maintaining service availability?
How do you map telecom-focused threats to the MITRE ATT&CK framework, and what attack techniques are most critical to monitor in Private 5G networks?
Please tell us briefly about your relevant experience as a SOC Operations Analyst for similar type of role and what makes you most suitable for this role?
Your Current Location
Your Nationality
Your Qualification
Total Experience
Current Salary
Expected Salary
Your Visa Category
Visa Expiry
* Notice period to join
Beware of fraud agents! do not pay money to get a job
MNCJobsGulf.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.