The Incident Response Team Leader is responsible for leading cybersecurity incident response activities, managing complex investigations, and overseeing the delivery of incident response services across customer and ente…
Skills: Incident Response, Cybersecurity, Technical Leadership, Incident Investigation, Digital Forensics
The Incident Response Analyst is responsible for investigating, containing, eradicating, and supporting the recovery of cybersecurity incidents across customer and enterprise environments. The role plays a critical part …
The Digital Forensics Team Leader is responsible for leading digital forensic investigations, managing forensic analysts, and overseeing the delivery of forensic services across customer and enterprise environments. The …
Skills: Digital Forensics, Cybersecurity, Evidence Handling, Forensic Tooling, Incident Response
The Digital Forensics Analyst is responsible for conducting forensic investigations, evidence acquisition, preservation, analysis, and reporting activities in support of cybersecurity incidents, legal investigations, reg…
The Cybersecurity Consultant is responsible for delivering cybersecurity advisory, governance, risk, and compliance services across enterprise, government, and critical infrastructure customers throughout the MENA region…
The SOC Team Leader is responsible for leading and managing ZainTECH’s Security Operations Center (SOC) team, ensuring effective delivery of security monitoring, threat detection, incident response coordination, and oper…
Skills: Cybersecurity, Information Security, Computer Science, Information Technology, Engineering
The SOC Analyst - Tier 1 is responsible for providing 24x7 security monitoring, alert triage, event analysis, and incident escalation services within ZainTECH’s Managed Security Operations Center (SOC). As the first line…
The Penetration Testing Team Leader is responsible for leading ZainTECH’s licensed penetration testing capability within the Cybersecurity Advisory Services practice. The role oversees the delivery of offensive security …
The Penetration Tester is responsible for conducting authorized security assessments across enterprise, government, and critical infrastructure environments to identify, validate, and report security vulnerabilities. As …
Skills: Penetration Testing, Network Security, Web Application Testing, API Security, Wireless Security
The Sales Development Representative (SDR) is responsible for driving pipeline growth by identifying, engaging, and qualifying new business opportunities across target enterprise, corporate, and government segments. This…
Skills: Outbound Prospecting, Lead Qualification, B2B Sales, Salesforce CRM, Relationship Building
The Sales Development Representative (SDR) is responsible for driving pipeline growth by identifying, engaging, and qualifying new business opportunities across target enterprise, corporate, and government segments. This…
Skills: Outbound Prospecting, Lead Qualification, B2B Sales, Salesforce CRM, Relationship Building
The Sales Development Representative (SDR) is responsible for driving pipeline growth by identifying, engaging, and qualifying new business opportunities across target enterprise, corporate, and government segments. This…
Skills: Outbound Prospecting, Lead Qualification, B2B Sales, Salesforce CRM, Relationship Building
Business Development Representative (SMB Account Growth Focus)
Amman, Amman, Jordan · On-site
Mid level
The Business Development Representative (SMB Account Growth Focus) is responsible for driving revenue growth across ZainTECH’s SMB customer portfolio through account expansion, upselling, cross-selling, and new business …
Skills: B2B Sales, SMB Account Management, Upselling, Cross-selling, Lead Generation
The Event & Partner Marketing Specialist will lead the planning, execution, and optimization of regional field and partner marketing programs that generate measurable business outcomes. This role is responsible for manag…
Skills: Event Planning, Partner Marketing, Demand Generation, Lead Management, ROI Analysis
The Senior Microsoft Presales Engineer is responsible for driving customer engagement, solution positioning, and technical presales activities across Microsoft Infrastructure, Security, Modern Workplace, and Cloud soluti…
Skills: Microsoft 365, Microsoft Security, Azure Infrastructure, Microsoft Sentinel, Microsoft Purview
Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.
Full-time
bachelor degree, professional certificate
Posted 48d ago
~40 hrs/week
Responsibilities
The Incident Response Team Leader leads cybersecurity incident response activities and manages complex investigations. They oversee the delivery of incident response services and coordinate resources during security incidents.
Requirements
Candidates must have a bachelor's degree in information technology or a related field and a minimum of 5 years in cybersecurity, with at least 3 years in incident response. Relevant NCSC-approved certifications and hands-on expertise in incident triage and forensics are required.
Full job description
The Incident Response Team Leader is responsible for leading cybersecurity incident response activities, managing complex investigations, and overseeing the delivery of incident response services across customer and enterprise environments. The role provides technical leadership, operational oversight, and strategic direction for incident response engagements while ensuring effective coordination of resources during security incidents.
This role serves as the primary escalation point for major cybersecurity incidents and plays a key role in strengthening incident response readiness, improving operational maturity, and ensuring compliance with NCSC licensing requirements.
Responsibilities:
Incident Response Leadership
Lead cybersecurity incident response engagements from identification through recovery.
Direct technical response teams during Major security incidents, Ransomware attacks and Data breaches
Coordinate containment, eradication, recovery, and remediation activities.
Act as the primary incident commander during major incidents.
Advanced Incident Investigation
Oversee complex investigations involving Malware outbreaks, Insider threats, Targeted attacks and Data exfiltration incidents
Validate investigation findings and response recommendations.
Provide technical leadership during high-severity incidents.
Support digital forensics activities where required.
Team Management & Development
Lead, mentor, and develop Incident Response Analysts.
Conduct Technical coaching, Performance management, Skills development initiatives and Incident response readiness activities
Support recruitment and onboarding of new team members.
Drive continuous capability development across the incident response function.
Governance & Stakeholder Management
Serve as the primary customer-facing lead during major incidents.
Provide executive briefings and incident status updates.
Support regulatory, compliance, and reporting obligations.
Ensure adherence to Incident response policies, Service level agreements and NCSC operational requirements
Program Development & Continuous Improvement
Develop and maintain Incident response frameworks, Playbooks, Runbooks and Response procedures
Lead tabletop exercises and simulation activities.
Conduct post-incident reviews and lessons learned sessions.
Drive improvements to organizational cyber resilience and response capabilities.
Our Culture & Code of Conduct:
At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our Code of Conduct, which serves as a guiding framework for responsible behavior across everything we do — from how we work with each other to how we engage with clients and partners globally.
Bachelor's degree (minimum) in information technology or a related field.
Minimum 5 years in cybersecurity / information security, including 3 or more years specifically in incident response.
At least one valid NCSC-approved IR certification like (ECIH , CCIM, or Blue Team Level 2, or another equivalent certification in the same field that is approved by the NCSC.
Technical command. Hands-on expertise in incident triage, forensics-aware investigation, containment, and recovery across endpoint, network, and cloud.
Leadership. Proven ability to lead an analyst team under pressure and communicate clearly with clients and the NCSC.
Advanced degree in cybersecurity or a related discipline is preferable.
Additional credentials such as GCIH, GCFA, or vendor EDR/SOAR is preferable.
Experience in an MSSP, telco-affiliated SOC, or national CERT/CSIRT environment is preferable.
Related keywords
Incident ResponseCybersecurityNCSCMalwareRansomwareData BreachesDigital ForensicsIncident CommandContainmentEradicationRecoveryRemediationAnalyst Team LeadershipTechnical CoachingPerformance ManagementSkills Development
Dubai Internet City, Building 11 Office 212, Dubai
LinkedIn followers
68,383
ZainTECH is a regional integrated digital solutions provider, unifying Zain Group’s ICT assets to offer a unique value proposition of comprehensive digital solutions and services under one roof. The company is positioned to drive the transformation of enterprise and government customers in the MENA region by providing a center of excellence and managed solutions across the ICT stack, including cloud, cybersecurity, modern infrastructure, big data, IoT, AI, smart cities, drones and robotics, and emerging technologies.
ZainTECH leverages Zain’s global reach, unique regional footprint, and infrastructure across its operations in Kuwait, Saudi Arabia, Bahrain, Jordan, Iraq, and the United Arab Emirates, as well as in other key markets in the Middle East.
ZainTECH forms a key pillar in the evolution of Zain’s core telecom business to maximize value and build on the company’s many strengths to selectively create and invest in growth verticals beyond standard mobile services. This ultimately supports Zain’s vision of becoming a leading ICT and digital lifestyle provider.
Offices: Dubai Internet City, Building 11 Office 212, Dubai 500077, AE · Building No. 5 King Abdullah II Street Near 8th Circle, Amman, JO · Kuwait, Safat 13083 22244 , KW · Zain HQ in Saudi Arabia Granada Business Park - Building A3, Riyadh 11351 295814, SA
CloudIoTCybersecurityBig data and analyticsDronesDigital products Digital solutionsSmart citiesDigital transformationRobotics
Dubai Internet City, Building 11 Office 212, Dubai
LinkedIn followers
68,383
ZainTECH is a regional integrated digital solutions provider, unifying Zain Group’s ICT assets to offer a unique value proposition of comprehensive digital solutions and services under one roof. The company is positioned to drive the transformation of enterprise and government customers in the MENA region by providing a center of excellence and managed solutions across the ICT stack, including cloud, cybersecurity, modern infrastructure, big data, IoT, AI, smart cities, drones and robotics, and emerging technologies.
ZainTECH leverages Zain’s global reach, unique regional footprint, and infrastructure across its operations in Kuwait, Saudi Arabia, Bahrain, Jordan, Iraq, and the United Arab Emirates, as well as in other key markets in the Middle East.
ZainTECH forms a key pillar in the evolution of Zain’s core telecom business to maximize value and build on the company’s many strengths to selectively create and invest in growth verticals beyond standard mobile services. This ultimately supports Zain’s vision of becoming a leading ICT and digital lifestyle provider.
Offices: Dubai Internet City, Building 11 Office 212, Dubai 500077, AE · Building No. 5 King Abdullah II Street Near 8th Circle, Amman, JO · Kuwait, Safat 13083 22244 , KW · Zain HQ in Saudi Arabia Granada Business Park - Building A3, Riyadh 11351 295814, SA
CloudIoTCybersecurityBig data and analyticsDronesDigital products Digital solutionsSmart citiesDigital transformationRobotics