Drive proactive detection capabilities within a major banking client's Security Operations Center (SOC) by collecting, analyzing, and operationalizing cyber threat intelligence. Translate tactical threat data into actionable detection use cases and collaborate with engineering teams to deploy automated blocks or detection logic. Synthesize technical intelligence findings into clear, structured threat advisories and situational briefings for senior security management and risk stakeholders.
Key Highlights
Key Responsibilities
Technical Skills Required
Benefits & Perks
Nice to Have
Job Description
DeepLight AI is a specialist AI and data consultancy with extensive experience implementing intelligent enterprise systems across multiple industries, with particular depth in financial services and banking. Our team combines deep expertise in data science, statistical modeling, AI/ML technologies, workflow automation, and systems integration with a practical understanding of complex business operations.
DeepLight AI is a specialist AI and data consultancy dedicated to transforming the regional corporate landscape through bespoke, high-impact intelligent systems. Based in the UAE, we partner with organizations across diverse sectors—with a deep-rooted expertise in Financial Services and Banking—to bridge the gap between complex data and actionable business strategy.
At DeepLight, we don't believe in "off-the-shelf" fixes. We deliver tailored AI solutions designed to integrate seamlessly into existing enterprise architectures, ensuring that innovation is both scalable and secure. From building robust data foundations to deploying sophisticated AI platforms, we empower our clients to lead in an increasingly automated world.
The Senior Specialist - SOC Threat Intelligence is a senior analytical position within Deeplight consultancy, embedded directly within a major banking client. This role is responsible for collecting, analyzing, and operationalizing cyber threat intelligence to drive proactive detection capabilities within the bank's Security Operations Center (SOC). Serving as a critical link between global threat landscapes and localized defensive operations, this position ensures that emerging indicators of compromise (IoCs) and adversary tactics are rapidly converted into actionable detection rules, upholding Deeplight's standards of technical precision and professional excellence in the financial sector.
Your responsibilities within this role include:
- Threat Intelligence Analysis: Collect, evaluate, and analyze technical threat intelligence from open-source, commercial, and dark-web feeds to identify threats relevant to the banking infrastructure
- Proactive SOC Enablement: Translate tactical threat data into actionable detection use cases, correlation rules, and watchlists within the enterprise SIEM/XDR platforms
- Adversary Tracking: Monitor and document the Tactics, Techniques, and Procedures (TTPs) of financially motivated threat groups and advanced persistent threats (APTs) targeting the financial services sector
- Incident Response Support: Provide technical context and specialized intelligence support to SOC analysts and incident responders during active security investigations or high-severity alerts
- Senior Briefings: Synthesize technical intelligence findings into clear, structured threat advisories and situational briefings for senior security management and risk stakeholders
- Strategic Collaboration: Representing Deeplight on the ground by modeling proactive operational leadership, technical accuracy, and collaborative problem-solving across the global SOC function
Searching for IT & Network Engineering roles that provide visa sponsorship? Connect with international employers through IT & Network Engineering Jobs with Visa Sponsorship opportunities actively seeking talented professionals.
While technical mastery is the foundation of what we do, the ability to bridge the gap between complex data science and actionable business value is what defines your success with Deeplight.
We're looking for individuals who are not only world-class in their fields of specialism, but also compelling communicators and persuasive advocates for their own skills.
You will be the face of our firm, tasked with building trust, articulating the "why" behind your technical decisions, and effectively "selling" your vision to high-level stakeholders.
If you thrive on the challenge of presenting cutting-edge solutions as much as you do on building them, you will fit right in.
Requirements
- Advanced proficiency in threat analysis frameworks, including the MITRE ATT&CK matrix, Cyber Kill Chain, and the Diamond Model of Intrusion Analysis
- Deep understanding of modern SOC workflows, including SIEM content tuning, EDR/XDR monitoring, and log analysis
- Capacity to analyze unstructured threat data, perform threat hunting investigations, and eliminate false positives to ensure high-fidelity alerting
- Practical experience with Threat Intelligence Platforms (TIPs), malware analysis tools, open-source intelligence (OSINT) techniques, and commercial intelligence providers
- Ability to communicate complex attack vectors and technical indicators clearly to frontline analysts, while providing concise impact summaries for senior leadership
- Minimum of 5 years of experience in dedicated cybersecurity roles, with at least 3 years focused directly on cyber threat intelligence (CTI) or senior SOC analysis
- Financial Services Context: Proven experience operating within a regulated tier-1 or tier-2 financial institution or a dedicated financial sector Information Sharing and Analysis Center (ISAC)
- Consulting Delivery: Prior experience in a client-facing professional services or consulting capacity, managing delivery expectations and operational timelines
- Detection Engineering Support: Documented experience collaborating with engineering teams to deploy automated blocks or detection logic based on threat intelligence findings
Explore our comprehensive directory of visa sponsorship jobs from employers worldwide who are ready to sponsor talented international professionals.
- Professional Certifications: Relevant designations such as GCTI (GIAC Cyber Threat Intelligence), GCIA, GCIH, CISSP, or specialized threat intelligence credentials
- Automation & Scripting: Ability to write scripts (e.g., Python) to automate the ingestion, parsing, and distribution of threat indicators
- Malware Analysis: Basic capability to perform static and dynamic analysis of malicious binaries or scripts to extract unique indicators of compromise
The benefits you'll enjoy as part of this role include:
- Competitive salary
- Comprehensive personal health insurance
- Visa Sponsorship for the successful individual
- Professional development and certification support
- Subscription reimbursement relating to your role
- Opportunity to work on cutting-edge AI projects
- Monthly Employee Incentive program
- Career advancement opportunities in a rapidly growing AI company
Interested in opportunities specifically in United Arab Emirates? Discover our dedicated Visa Sponsorship Jobs in United Arab Emirates page featuring roles from top employers in this location.
At DeepLight AI, we recognise that diversity drives innovation. We are committed to fostering an inclusive environment where individuals with different thinking styles can thrive and contribute their unique strengths to our specialised AI and data solutions.
Our goal is to ensure our application and interview process is accessible, predictable, and fair for all candidates.
If you require any specific adjustments to the application process, or if you require any reasonable adjustments should you be successful in being processed to the interview stage, please do let us know. This information will be kept strictly confidential and will not impact hiring decisions.
Similar Jobs
Explore other opportunities that match your interests
ipsip group
cyfoeth naturiol cymru / natur...
Senior System Administrator (Red Hat Linux)