Posted 2 weeks ago

DEPARTMENT: ICT Department

LOCATION: Tripoli

WORK MODE: Full time

(THIS VACANCY IS ONLY APPLICABLE FOR LIBYAN NATIONALS)

We are seeking a highly skilled engineer to work in Security Operation Center as third level analyst to handle the most complex and critical incidents and actively hunt for potential threats that have not been detected by automated tools and analyze threat intelligence to identify emerging threats and advise on proactive measures and perform forensic analysis to understand the attack vector and gather evidence and work closely with the vulnerability management team to identify and address security gaps.

Responsibilities & Duties:

  • Receive all data and findings from L2.
  • Perform digital forensics on memory dumps, disk images, and network traffic and conduct malware and exploit analysis.
  • Analyze how the attack was executed and identify the root cause and determine the full scope and impact of the attack.
  • Record in-depth findings in the incident management system, include forensics, malware analysis, and root cause details.
  • Provide recommendations for immediate remediation and long-term prevention and suggest improvements to security posture and incident response processes.
  • Communicate findings and recommendations and assist in coordinating the overall response strategy.
  • Conduct a review with CISO to discuss findings and lessons learned and implement changes based on recommendations.

Required Qualifications and Skills:

  • B. Sc. in Information Technology.
  • 5-7 years of experience in the Cybersecurity SOC field.
  • In-Dept Systems, Memory and Network Forensics.
  • Advanced level SIEM Log Analysis “Systems, Network & Firewalls”.
  • Advanced Incident Response.
  • Advanced Threat Hunting and Threat Vectors.
  • Advanced Malware Analysis.
  • Vulnerability Management: In-Depth, CVSS and Risk assessment.
  • Cloud Security.
  • Risk Assessment.
  • Ransomware Attack.
  • IDS/IPS, Firewall, VPN, Proxy and other security Management.

Additional Qualifications:

  • CISSP, CEH
  • Cybersecurity Mindset
  • Tools: Wireshark, Zeek, FTK, etc.

Applications must be submitted not later than 12th June 2026.

Apply For This Job

A valid phone number is required.
A valid email address is required.