Cyber Threat Intelligence & Incident Response Analyst

🗓️ Posted 2026-08-18 Dubai, United Arab Emirates Full-time Hybrid ICT

Company shared salary

NA

Market rate

AED 18,000–AED 30,000/mo (AED 216,000–AED 360,000/yr)

Based on similar roles (title + domain + location).

About the Company

We are looking to hire a Cyber Threat Intelligence & Incident Response Analyst , who will be responsible for researching emerging threats, assess their potential impact, and translate threat intelligence into actionable insights that strengthen cyber defense capabilities. The role also involves investigating and responding to cybersecurity incidents, conducting digital forensic investigations, proactively hunting for threats, and supporting purple team activities across a complex multi-cloud environment for our client, one of the largest semi-government organizations in the region. This position is a contract role with an initial duration o f 14 months and is renewab l e. The role sits within the Technology Design & Infrastructure and works closely with business stakeholders, and IT teams. We are looking for a passionate Cyber Threat Intelligence & Incident Response Analyst , who will play a key role in investigating and responding to cybersecurity incidents, conducting digital forensic investigations, proactively hunting for threats, and supporting purple team activities across a complex multi-cloud environment.

Responsibilities

  • Research and monitor emerging cyber threats, threat actors, vulnerabilities, and attack techniques relevant to the organisation.
  • Analyse threat intelligence and provide actionable insights to support security decision-making.
  • Conduct proactive threat hunting across on-premises and cloud environments to identify potential threats and suspicious activity.
  • Support the investigation and response to major cybersecurity incidents.
  • Conduct digital forensic investigations to identify attack methods, scope, impact, and potential root causes.
  • Analyse attacker behaviour and techniques across different stages of a cyber attack and map findings to the MITRE ATT&CK framework .
  • Support offensive security assessments, red team and purple team activities to identify weaknesses and improve detection and response capabilities.
  • Analyse security, system, application, and endpoint logs to identify indicators of compromise and suspicious activity.
  • Develop and use scripts, tools, and analytical techniques to support threat hunting, investigations, and forensic activities.
  • Work with Threat Intelligence Platforms, EDR solutions, SIEM platforms, and other cybersecurity technologies.
  • Produce clear and actionable reports on threats, incidents, investigations, and opportunities to improve the overall security posture.
  • Collaborate with cybersecurity, technology, and other business teams to strengthen threat detection, prevention, and response capabilities.
  • Bachelor's degree in Computer Science, Cybersecurity, Engineering, or a related discipline .
  • 5-7 years of overall experience , with 3-5 years of relevant cybersecurity experience .
  • Experience in cybersecurity, SOC operations, threat intelligence, threat hunting, incident response, digital forensics, penetration testing, or red teaming.
  • Strong understanding of cyber attack techniques, threat actor behaviour, and the Cyber Kill Chain .
  • Hands-on experience with Threat Intelligence Platforms and security monitoring technologies.
  • Experience with digital forensics tools and techniques.
  • Experience analysing large volumes of security data and logs using tools such as Splunk, SQL/KQL, and Python .
  • Relevant industry certifications such as GCIH, GCFA, GCIA, GCDA, CREST Threat Intelligence Analyst, CREST Intrusion Analyst, or OSCP would be advantageous
  • Working knowledge of EDR solutions and cloud security environments.
  • Strong analytical, investigative, problem-solving, and communication skills.
  • Preference will be given to candidates available immediately after accepting the offer.