We are looking for a Junior SOC Engineer (L1) to join our team and provide high-quality security monitoring and threat detection for an enterprise client within a B2B environment. This role focuses on active security monitoring, triage, and incident response for international clients in English.
The position requires working in a 3-shift rotation (8 hours per shift) based on Cairo time:
Morning Shift: 08:00 AM – 04:00 PM
Evening Shift: 04:00 PM – 12:00 AM (Midnight)
Night Shift: 12:00 AM – 08:00 AM
What you'll be doing
Provide real-time security monitoring and analysis of security alerts (SIEM, EDR, firewalls, and system logs).
Log, track, and triage security incidents through ticketing systems, and escalate to L2/L3 engineers when necessary.
Communicate with clients via email and chat to report security incidents or request additional information (no call center duties).
Perform initial issue diagnostics, analyze security alerts, and run preliminary investigations on potential threats.
Assist in identifying unauthorized access control issues, compromised accounts, and malicious activity.
Participate in incident management processes following established security playbooks (runbooks).
Analyze system alerts, endpoint behavior, and network traffic for timely threat containment.
Investigate basic security events and perform root cause analysis.
Conduct online meetings with customers or team leads when required.
Create, update, and maintain internal runbooks and technical security documentation.
What We Offer
Opportunity to work on large-scale, impactful projects
Clear career growth path within a team with 27+ years of experience
Professional, friendly, and supportive team environment
EST time zone schedule with paid overtime when applicable (up to 12 hours per shift)
Modern office in the Smart Village district.
Flexible and transparent compensation review system
Overtime compensation options
Private medical insurance after completing the probation period
Payments in USD
Requirements
Requirements
Upper-Intermediate to Advanced English (B2/C1, written and spoken).
Background in Computer Science, Cyber Security, or strong technical proficiency in operating systems (Windows and Linux administration).
University graduate or final-year student with full-time availability to work on a rotational shift schedule.
Strong analytical thinking, alertness, and rapid problem-solving skills.
Patience, emotional stability under pressure, and a client-oriented mindset.
Ability to communicate clearly and professionally with international clients.
Willingness to work night shifts, weekends, or holidays as part of the rotation schedule.
Nice to have
Prior experience in technical support, system administration, or network troubleshooting.
Understanding of basic security frameworks (such as the MITRE ATT&CK framework and the Cyber Kill Chain).
Basic understanding of networking protocols (TCP/IP, DNS, HTTP/HTTPS) and traffic analysis tools (e.g., Wireshark).
Experience working in international environments or exchange programs.
Basic scripting skills (Python, PowerShell, or Bash) to help automate repetitive tasks.
Familiarity with SQL databases.
Experience using ticketing or security case management systems such as ServiceNow, JIRA, or TheHive.
Familiarity with SIEM, EDR, or logging systems (such as Splunk, Microsoft Sentinel, Elastic/ELK, CrowdStrike Falcon, SentinelOne, or Wazuh).