Role at a glance
- Job function
-
Software Engineering & IT Cybersecurity
- Salary
- Not Disclosed
- Location
- Kuwait City
- Work arrangement
- On-site
- Employment
- Full-time
- Experience
- 1–3 years of experience in Security Operations, IT security, or a related role.
- Education
- Bachelor’s degree in computer science, Information Security, Information Technology, or a related field.
Spotted an issue?
We’ll check it against the original posting.
Role Summary
The SOC Analyst (L1/L2) supports 24x7 SOC operations by continuously monitoring, detecting, analyzing, and responding to cybersecurity threats across enterprise environments. The role manages security incidents from initial alert triage through investigation, escalation, remediation, and closure in accordance with runbooks, SLAs, and client requirements.
What You'll Do
- Monitor and analyze security alerts from SIEM, SOAR, EDR, and other security tools.
- Perform timely triage, validation, and investigation of alerts according to SLA and prioritization requirements.
- Execute approved containment, response, and remediation actions using defined SOC runbooks.
- Manage incidents through the full case lifecycle, including documentation, status updates, and closure.
- Escalate high-severity or complex incidents and coordinate with internal and external stakeholders.
- Perform shift-based operations, including handover of active and critical cases with complete context.
Generated from the employer's posting. Verify important details before applying.
View full postingQualifications
Strong understanding of cybersecurity fundamentals, including threat types, attack vectors, the CIA triad, and awareness of frameworks such as MITRE ATT&CK; working knowledge of Windows, Linux/Unix, TCP/IP, OSI model, DNS, and HTTP/S; experience or familiarity with SIEM/SOAR platforms, endpoint protection, firewalls, and security monitoring tools; ability to analyze logs, network traffic, and endpoint telemetry; familiarity with incident handling, alert triage, and case management processes; strong analytical and problem-solving skills with attention to detail; good written and verbal communication skills.
Required
- Strong understanding of cybersecurity fundamentals, including threat types, attack vectors, the CIA triad, and awareness of frameworks...
- Working knowledge of operating systems (Windows, Linux/Unix) and networking concepts (TCP/IP, OSI model, DNS, HTTP/S).
- Experience or familiarity with SIEM/SOAR platforms, endpoint protection, firewalls, and security monitoring tools.
- Ability to analyze logs, network traffic, and endpoint telemetry to identify malicious activity.
- Familiarity with incident handling, alert triage, and case management processes.
- Strong analytical and problem-solving skills with attention to detail.
- Good written and verbal communication skills for documentation and handover reporting.
Preferred
- Exposure to cloud security concepts (Azure, AWS, or GCP) is an advantage.
- Familiarity with the MITRE ATT&CK framework for threat identification is an advantage.
- Hands-on exposure or academic experience with SIEM, SOAR, EDR, or security monitoring tools is an advantage.
- Relevant certifications – e.g., Security+, SC-200, CEH (Associate level) – are an advantage but not mandatory.
Original job description
Content provided by the employer
Original job description
Content provided by the employer
The SOC Analyst (L1/L2) is responsible for continuous monitoring, detection, analysis, and response to cybersecurity threats across enterprise environments. The role supports 24x7 SOC operations, performing real‑time security event monitoring, incident triage, investigation, escalation, and remediation in accordance with established runbooks, SLAs, and client requirements.
Key Responsibilities
Monitor and analyze security alerts from SIEM, SOAR, EDR, and other security tools to identify potential threats.
Perform timely triage, validation, and investigation of alerts in accordance with SLA and prioritization matrix (P1–P4).
Execute approved containment, response, and remediation actions using defined SOC runbooks.
Manage incidents through the full case lifecycle, ensuring accurate documentation, status updates, and closure in the case management system.
Follow standard case handling processes, including case stage/status flow and QA validation requirements.
Monitor SOC communication channels (e.g., mailbox, SOAR) and ensure timely response to inquiries, escalations, and stakeholder coordination.
Escalate high-severity or complex incidents in line with SLAs, including immediate notification for potential P1/P2 cases.
Ensure SLA compliance and resolution, including coordination with internal and external stakeholders.
Perform shift-based operations, including effective handover of active and critical cases with complete context.
Identify and report operational issues, anomalies, or delays within the same shift to relevant leads.
Support continuous improvement by supporting in identifying gaps in detection, logging, automation, and case handling processes.
Technical Skills
Strong understanding of cybersecurity fundamentals, including threat types, attack vectors, the CIA triad, and awareness of frameworks such as MITRE ATT&CK for threat identification.
Working knowledge of operating systems (Windows, Linux/Unix) and networking concepts (TCP/IP, OSI model, DNS, HTTP/S).
Experience or familiarity with SIEM/SOAR platforms, endpoint protection, firewalls, and security monitoring tools.
Ability to analyze logs, network traffic, and endpoint telemetry to identify malicious activity.
Exposure to cloud security concepts (Azure, AWS, or GCP) is an advantage.
Familiarity with the MITRE ATT&CK framework for threat identification is an advantage.
Bachelor’s degree in computer science, Information Security, Information Technology, or a related field.
1–3 years of experience in Security Operations, IT security, or a related role.
Basic understanding of cybersecurity concepts, threats, and attack methodologies.
Hands-on exposure or academic experience with SIEM, SOAR, EDR, or security monitoring tools is an advantage.
Familiarity with incident handling, alert triage, and case management processes.
Strong analytical and problem-solving skills with attention to detail.
Good written and verbal communication skills for documentation and handover reporting.
Relevant certifications – e.g., Security+, SC-200, CEH (Associate level) – are an advantage but not mandatory.
About Accenture
Accenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services—creating tangible value at speed and scale. We are a talent- and innovation-led company with approximately 791,000 people serving clients in more than 120 countries. Technology is at the core of change today, and we are one of the world’s leaders in helping drive that change, with strong ecosystem relationships. We combine our strength in technology and leadership in cloud, data and AI with unmatched industry experience, functional expertise and global delivery capability. Our broad range of services, solutions and assets across Strategy & Consulting, Technology, Operations, Industry X and Song, together with our culture of shared success and commitment to creating 360° value, enable us to help our clients reinvent and build trusted, lasting relationships. We measure our success by the 360° value we create for our clients, each other, our shareholders, partners and communities.Visit us at www.accenture.com
Equal Employment Opportunity Statement
We believe that no one should be discriminated against because of their differences. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, military veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by applicable law. Our rich diversity makes us more innovative, more competitive, and more creative, which helps us better serve our clients and our communities.
About the company
Accenture
Large Enterprise
Accenture is a global professional services company that specializes in providing consulting, technology, and outsourcing services. With a diverse range of industries served, including financial services, healthcare, and telecommunications, Accenture leverages advanced technologies and data analytics to help organizations improve their performance and drive innovation. Committed to sustainable progress, the company emphasizes its dedication to inclusivity, digital transformation, and building a more sustainable future for its clients and communities. With a presence in over 120 countries, Accenture is known for its expertise in integrating cutting-edge solutions that address complex business challenges.