bluedoor data·Job Postings API·bluedoor.sh ↗

HomeCompaniesMobizSOC Analyst

SOC Analyst

Mobiz · Karachi, Pakistan, 75350, Pakistan · On Site · Active · BambooHR

Job facts

FieldValue
CompanyMobiz
TitleSOC Analyst
Normalized title-
Department / teamSystems Engineering
LocationKarachi, Pakistan
Work modelOn Site
Employment typeFull Time
Salary-
Statusactive
ATS providerBambooHR
Posted / first seen2026-06-12 / 2026-06-13
Changed / last seen2026-06-13 / 2026-06-22

Related slices

PageWhat it containsOpen
Company jobsActive postings from Mobiz.Open
Company breakdownsRole, location, ATS, and work model facets for this company.Open
ATS provider jobsActive postings observed through BambooHR.Open
Provider filtered searchThe same provider as a filtered job collection.Open
City jobsActive postings in Karachi.Open
Department jobsActive postings in Systems Engineering.Open
Work model jobsActive On Site postings.Open
Lifecycle eventsOpen, update, close, and reopen events for this posting.Open
Original postingCanonical source or apply URL captured from the ATS.Open

Linked records

CompanyMobiz
Source64271ce9-2d64-4d90-9fae-b6f1b6ceb53e
ATS providerBambooHR

Description

About Mobiz Mobiz is a global technology services leader, Microsoft-aligned managed services and cloud solutions provider, empowering mid-market and enterprise organizations across North America and the Middle East. We deliver end-to-end IT operations, Modern Work and Security, Data and AI, cybersecurity, infrastructure, and digital transformation services—driving resilience, innovation, and measurable business impact at scale. With a Solutions Partner designation and active pursuit of Azure Expert MSP status, Mobiz combines the agility of a boutique consultancy with the delivery rigor of a tier-1 integrator. Our NOC and SOC teams operate as the always-on backbone of client environments, monitoring thousands of endpoints, network nodes, and cloud workloads around the clock. What Can You Expect? Every day at Mobiz we work with a deep sense of purpose. We continuously innovate. Our mission is to empower our clients to do more through transformation.  You’ll work in a collaborative environment alongside highly talented people that improve client operations and exceed expectations.  We strive to simplify technology challenges, and no less. Who Are We Looking For? The SOC Analyst is an operational security team member within Mobiz’s 24×7 Security Operations Center (SOC), responsible for monitoring, triaging, and investigating cybersecurity alerts across managed client environments. This role is ideal for security professionals with foundational SOC or cybersecurity operations experience who are ready to strengthen their investigation and incident handling capabilities in a fast-paced MSSP environment. The SOC Analyst works closely with SOC Engineers and the SOC Manager to identify suspicious activity, validate security incidents, escalate confirmed threats, and support incident response activities. The role involves daily interaction with Microsoft Sentinel, Microsoft Defender XDR, identity security tools, and endpoint protection platforms while following structured SOC processes and escalation procedures. Key Responsibilities Security Monitoring & Alert Triage Monitor SIEM, EDR, identity, and email security dashboards during assigned shifts using Microsoft Sentinel and Microsoft Defender XDR. Review and triage incoming security alerts according to severity, impact, and predefined response procedures. Perform initial investigations to determine whether alerts represent true positives or false positives. Escalate suspicious or confirmed incidents to SOC Engineers or the SOC Manager with supporting investigation details. Maintain accurate and timely documentation of all incidents and investigation activities in ServiceNow or equivalent ITSM tools. Incident Investigation Support Assist with investigation of phishing, malware, ransomware, identity compromise, and suspicious authentication events. Analyze endpoint, email, and identity-related alerts from Microsoft Defender tools. Correlate logs and security events across multiple sources to identify attack patterns and affected assets. Support containment actions such as account disablement, email quarantine, and endpoint isolation under guidance from senior SOC staff. Collect and document indicators of compromise (IOCs), attack timelines, and investigation findings. Threat Detection & Analysis Execute KQL-based log searches within Microsoft Sentinel to support alert validation and threat investigations. Monitor suspicious sign-in activity, risky users, MFA anomalies, and identity protection alerts in Microsoft Entra ID. Investigate phishing attempts, malicious attachments, spoofing indicators, and suspicious email activity in Microsoft Defender for Office 365. Support threat hunting activities by reviewing logs, identifying anomalies, and documenting findings. Stay updated on emerging cybersecurity threats, attacker techniques, and Microsoft security advisories. Operational & Process Support Follow established SOC playbooks and incident response procedures consistently. Participate in shift handovers and communicate operational context for open incidents and ongoing investigations. Contribute to knowledge base articles, operational documentation, and investigation notes. Coordinate with NOC and infrastructure teams for incidents involving both security and operational impact. Assist in preparation of security reports and operational summaries for internal review. Candidate Profile: Requirements & Preferred Qualifications Required Qualifications Bachelor’s degree in IT, Computer Science, Cybersecurity, or related field. 3-5 years of cybersecurity, SOC, IT support, or security operations experience. Basic hands-on exposure to SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, or equivalent. Familiarity with Microsoft Defender for Endpoint (MDE) and Defender for Office 365 (MDO). Understanding of common cybersecurity threats including phishing, malware, ransomware, credential theft, and brute-force attacks. Basic understanding of MITRE ATT&CK framework concepts. Experience using ticketing or ITSM systems such as ServiceNow. Strong analytical and troubleshooting skills with attention to detail. Good written and verbal communication skills. Preferred Qualifications Microsoft SC-200 certification or actively pursuing. Familiarity with KQL query writing for investigation purposes. Exposure to EDR/XDR tools such as CrowdStrike Falcon or SentinelOne. Basic scripting knowledge in PowerShell or Python. Understanding of Microsoft Entra ID, Conditional Access, and MFA security concepts. Exposure to SOAR or security automation workflows. Knowledge of email security analysis and phishing investigations. Familiarity with firewall or network security log analysis. Core Technical Skill Set SIEM: Microsoft Sentinel, Splunk, QRadar (basic monitoring and investigation) EDR/XDR: Microsoft Defender for Endpoint, Defender XDR, CrowdStrike Falcon Identity Security: Microsoft Entra ID, MFA, Conditional Access, risky sign-in monitoring Email Security: Microsoft Defender for Office 365, phishing analysis, message trace ITSM: ServiceNow or equivalent ticketing systems Threat Analysis: IOC identification, alert correlation, basic log analysis Querying: KQL fundamentals Collaboration Tools: Microsoft Teams, Outlook, SharePoint Core Competencies (Power Skills) Analytical Thinking Attention to Detail Incident Handling & Escalation Problem Solving Communication Skills Team Collaboration Time Management Adaptability in Fast-Paced Environments Ownership & Accountability Continuous Learning Mindset What We Offer A team of bright, hard-working, and innovative people that will contribute to your growth. Competitive Salary and comprehensive benefits plan. A dynamic and collaborative work environment with opportunity to work with cutting-edge technology and innovative solutions. Other This is a full-time, on-site position based in Karachi, Pakistan. Equal Opportunity & Diversity Commitment At Mobiz, we believe that diverse perspectives, experiences, and backgrounds strengthen our organization and drive innovation. We are committed to fostering an inclusive workplace where all employees are valued, respected, and empowered to succeed. As an equal opportunity employer, we make employment decisions based on qualifications, merit, and business needs, without regard to race, gender, age, religion, disability, national origin, or any other protected characteristic. What Happens Next? Thank you for your interest in becoming part of Mobiz. We are committed to attracting exceptional talent and building a team that drives innovation, excellence, and meaningful impact. Every application is reviewed with care and consideration. If your experience and qualifications are a match for the role, a member of our team will connect with you regarding the next stage of the hiring process. We appreciate your interest in joining Mobiz and wish you success in your career endeavors.

Full job record

Job ID9f468783604486903b6229bf01c4f2dd0f8d2369
Org IDcd488348-9f92-4e02-b13b-85a6673aefa3
Source ID64271ce9-2d64-4d90-9fae-b6f1b6ceb53e
Board ID64271ce9-2d64-4d90-9fae-b6f1b6ceb53e
Providerbamboohr
Provider Job Key459
TitleSOC Analyst
Normalized Title
Statusactive
Activeyes
Location TextKarachi, Pakistan, 75350, Pakistan
DepartmentSystems Engineering
Team
Employment Typefull_time
Workplace Typeon_site
Remote Policy
Country
RegionPakistan
CityKarachi
Salary Raw
Salary Min
Salary Max
Salary Currency
Salary Period
Source URLhttps://mobiz.bamboohr.com/careers/459
Apply URLhttps://mobiz.bamboohr.com/careers/459
First Seen At2026-06-13 10:48:13Z
Last Seen At2026-06-22 10:55:59Z
Last Checked At2026-06-22 10:55:59Z
Last Changed At2026-06-13 10:48:13Z
Inactive At
Source Posted At2026-06-12 00:00:00Z
Source Updated At
Raw Payload Uris3://job-postings-prod-raw-590183727216/raw/provider=bamboohr/board=mobiz/date=2026-06-22/2026-06-22T10-55-56-369Z-e56794d3997d86b57ae640e6e98a16397ac6ebd057ca25d5a52017446c4e9511.json
Event Fields
{
  "content_hash": "6cb2e58023f968e4b9e263cab0809ee2329e0e476f39c6f76638d2d83ab87489",
  "source_hash": "f09f8052ddac1edc2fea1a13a0694b7cf5eef3b625a7aacc7aa254ebba5adfbe",
  "last_changed_at": "2026-06-13T10:48:13.931Z",
  "active_status": "active"
}
Parsed Structured
{
  "dedupe": null,
  "language": "en",
  "location": {
    "raw": "Karachi, Pakistan, 75350, Pakistan",
    "city": "Karachi",
    "region": "Pakistan",
    "country": null,
    "is_remote": false,
    "confidence": 0.8
  },
  "salary_max": null,
  "salary_min": null,
  "inferred_at": "2026-06-22T10:55:59.511Z",
  "launch_scope": {
    "reason": "bamboohr_production_catalog",
    "included": true,
    "location": {
      "raw": "Karachi, Pakistan, 75350, Pakistan",
      "city": "Karachi",
      "region": "Pakistan",
      "country": null,
      "is_remote": false,
      "confidence": 0.8
    },
    "countries": []
  },
  "remote_policy": null,
  "salary_period": null,
  "workplace_type": "on_site",
  "salary_currency": null
}
Extensions
{}
Native Structured
{
  "list_job": {
    "id": "459",
    "isRemote": null,
    "location": {
      "city": "Karachi",
      "state": "Pakistan"
    },
    "atsLocation": {
      "city": null,
      "state": null,
      "country": null,
      "province": null
    },
    "departmentId": "18575",
    "locationType": "0",
    "jobOpeningName": "SOC Analyst",
    "departmentLabel": "Systems Engineering",
    "employmentStatusLabel": "Employee - Full-Time"
  },
  "detail_errors": [],
  "detail_job_opening": {
    "location": {
      "city": "Karachi",
      "state": "Pakistan",
      "postalCode": "75350",
      "addressCountry": "Pakistan"
    },
    "datePosted": "2026-06-12",
    "atsLocation": {
      "city": null,
      "state": null,
      "country": null,
      "countryId": null
    },
    "description": "<p><span style=\"font-weight: bold\"><span>About Mobiz</span></span></p>\n<p>Mobiz is a global technology services leader, Microsoft-aligned managed services and cloud solutions provider, empowering mid-market and enterprise organizations across North America and the Middle East. We deliver end-to-end IT operations, Modern Work and Security, Data and AI, cybersecurity, infrastructure, and digital transformation services—driving resilience, innovation, and measurable business impact at scale.</p>\n<p>With a Solutions Partner designation and active pursuit of Azure Expert MSP status, Mobiz combines the agility of a boutique consultancy with the delivery rigor of a tier-1 integrator. Our NOC and SOC teams operate as the always-on backbone of client environments, monitoring thousands of endpoints, network nodes, and cloud workloads around the clock.</p>\n<p><br></p>\n<p><span style=\"font-weight: bold\">What Can You Expect?</span></p>\n<p><span>Every day at Mobiz we work with a deep sense of purpose. We continuously innovate. Our mission is to empower our clients to do more through transformation.  You’ll work in a collaborative environment alongside highly talented people that improve client operations and exceed expectations.  We strive to simplify technology challenges, and no less.</span></p>\n<p> </p>\n<p><span style=\"font-weight: bold\">Who Are We Looking For?</span></p>\n<p><span>The SOC Analyst is an operational security team member within Mobiz’s 24×7 Security Operations Center (SOC), responsible for monitoring, triaging, and investigating cybersecurity alerts across managed client environments. This role is ideal for security professionals with foundational SOC or cybersecurity operations experience who are ready to strengthen their investigation and incident handling capabilities in a fast-paced MSSP environment.</span></p>\n<p><span>The SOC Analyst works closely with SOC Engineers and the SOC Manager to identify suspicious activity, validate security incidents, escalate confirmed threats, and support incident response activities. The role involves daily interaction with Microsoft Sentinel, Microsoft Defender XDR, identity security tools, and endpoint protection platforms while following structured SOC processes and escalation procedures.</span></p>\n<p> </p>\n<p><span style=\"font-weight: bold\">Key Responsibilities</span></p>\n<p><span style=\"font-weight: bold\">Security Monitoring &amp; Alert Triage</span></p>\n<ul>\n<li>Monitor SIEM, EDR, identity, and email security dashboards during assigned shifts using Microsoft Sentinel and Microsoft Defender XDR.</li>\n<li>Review and triage incoming security alerts according to severity, impact, and predefined response procedures.</li>\n<li>Perform initial investigations to determine whether alerts represent true positives or false positives.</li>\n<li>Escalate suspicious or confirmed incidents to SOC Engineers or the SOC Manager with supporting investigation details.</li>\n<li>Maintain accurate and timely documentation of all incidents and investigation activities in ServiceNow or equivalent ITSM tools.<br></li>\n</ul>\n<p><br></p>\n<p><span style=\"font-weight: bold\">Incident Investigation Support</span></p>\n<ul>\n<li>Assist with investigation of phishing, malware, ransomware, identity compromise, and suspicious authentication events.</li>\n<li>Analyze endpoint, email, and identity-related alerts from Microsoft Defender tools.</li>\n<li>Correlate logs and security events across multiple sources to identify attack patterns and affected assets.</li>\n<li>Support containment actions such as account disablement, email quarantine, and endpoint isolation under guidance from senior SOC staff.</li>\n<li>Collect and document indicators of compromise (IOCs), attack timelines, and investigation findings.<br><br></li>\n</ul>\n<p><span style=\"font-weight: bold\">Threat Detection &amp; Analysis</span></p>\n<ul>\n<li>Execute KQL-based log searches within Microsoft Sentinel to support alert validation and threat investigations.</li>\n<li>Monitor suspicious sign-in activity, risky users, MFA anomalies, and identity protection alerts in Microsoft Entra ID.</li>\n<li>Investigate phishing attempts, malicious attachments, spoofing indicators, and suspicious email activity in Microsoft Defender for Office 365.</li>\n<li>Support threat hunting activities by reviewing logs, identifying anomalies, and documenting findings.</li>\n<li>Stay updated on emerging cybersecurity threats, attacker techniques, and Microsoft security advisories.</li>\n</ul>\n<p><br></p>\n<p><span style=\"font-weight: bold\">Operational &amp; Process Support</span></p>\n<ul>\n<li>Follow established SOC playbooks and incident response procedures consistently.</li>\n<li>Participate in shift handovers and communicate operational context for open incidents and ongoing investigations.</li>\n<li>Contribute to knowledge base articles, operational documentation, and investigation notes.</li>\n<li>Coordinate with NOC and infrastructure teams for incidents involving both security and operational impact.</li>\n<li>Assist in preparation of security reports and operational summaries for internal review.</li>\n</ul>\n<p><br></p>\n<p><span style=\"font-weight: bold\"><span>Candidate Profile: Requirements &amp; Preferred Qualifications </span></span><br></p>\n<p><span style=\"font-weight: bold\">Required Qualifications</span></p>\n<ul></ul>\n<ul>\n<li>Bachelor’s degree in IT, Computer Science, Cybersecurity, or related field.</li>\n<li>3-5 years of cybersecurity, SOC, IT support, or security operations experience.</li>\n<li>Basic hands-on exposure to SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, or equivalent.</li>\n<li>Familiarity with Microsoft Defender for Endpoint (MDE) and Defender for Office 365 (MDO).</li>\n<li>Understanding of common cybersecurity threats including phishing, malware, ransomware, credential theft, and brute-force attacks.</li>\n<li>Basic understanding of MITRE ATT&amp;CK framework concepts.</li>\n<li>Experience using ticketing or ITSM systems such as ServiceNow.</li>\n<li>Strong analytical and troubleshooting skills with attention to detail.</li>\n<li>Good written and verbal communication skills.<br></li>\n</ul>\n<p><br></p>\n<p><span style=\"font-weight: bold\">Preferred Qualifications</span></p>\n<ul>\n<li>Microsoft SC-200 certification or actively pursuing.</li>\n<li>Familiarity with KQL query writing for investigation purposes.</li>\n<li>Exposure to EDR/XDR tools such as CrowdStrike Falcon or SentinelOne.</li>\n<li>Basic scripting knowledge in PowerShell or Python.</li>\n<li>Understanding of Microsoft Entra ID, Conditional Access, and MFA security concepts.</li>\n<li>Exposure to SOAR or security automation workflows.</li>\n<li>Knowledge of email security analysis and phishing investigations.</li>\n<li>Familiarity with firewall or network security log analysis.<br></li>\n</ul>\n<p><br></p>\n<p><span style=\"font-weight: bold\">Core Technical Skill Set</span></p>\n<ul>\n<li>SIEM: Microsoft Sentinel, Splunk, QRadar (basic monitoring and investigation)</li>\n<li>EDR/XDR: Microsoft Defender for Endpoint, Defender XDR, CrowdStrike Falcon</li>\n<li>Identity Security: Microsoft Entra ID, MFA, Conditional Access, risky sign-in monitoring</li>\n<li>Email Security: Microsoft Defender for Office 365, phishing analysis, message trace</li>\n<li>ITSM: ServiceNow or equivalent ticketing systems</li>\n<li>Threat Analysis: IOC identification, alert correlation, basic log analysis</li>\n<li>Querying: KQL fundamentals</li>\n<li>Collaboration Tools: Microsoft Teams, Outlook, SharePoint<br></li>\n</ul>\n<p><br></p>\n<p><span style=\"font-weight: bold\">Core Competencies (Power Skills)</span><br></p>\n<ul>\n<li><span>Analytical Thinking</span></li>\n<li><span>Attention to Detail</span></li>\n<li><span>Incident Handling &amp; Escalation</span></li>\n<li><span>Problem Solving</span></li>\n<li><span>Communication Skills</span></li>\n<li><span>Team Collaboration</span></li>\n<li><span>Time Management</span></li>\n<li><span>Adaptability in Fast-Paced Environments</span></li>\n<li><span>Ownership &amp; Accountability</span></li>\n<li><span>Continuous Learning Mindset</span><br></li>\n</ul>\n<p><br></p>\n<p><span style=\"font-weight: bold\"><span>What We Offer</span></span></p>\n<ul>\n<li><span>A team of bright, hard-working, and innovative people that will contribute to your growth.</span></li>\n<li><span>Competitive Salary and comprehensive benefits plan.</span></li>\n<li><span>A dynamic and collaborative work environment with opportunity to work with cutting-edge technology and innovative solutions. </span></li>\n</ul>\n<p><span> </span></p>\n<p><span style=\"font-weight: bold\"><span>Other<br></span></span><span>This is a full-time, on-site position based in Karachi, Pakistan.</span></p>\n<p><br></p>\n<p><span style=\"font-weight: bold\">Equal Opportunity &amp; Diversity Commitment</span></p>\n<p><span>At Mobiz, we believe that diverse perspectives, experiences, and backgrounds strengthen our organization and drive innovation. We are committed to fostering an inclusive workplace where all employees are valued, respected, and empowered to succeed. As an equal opportunity employer, we make employment decisions based on qualifications, merit, and business needs, without regard to race, gender, age, religion, disability, national origin, or any other protected characteristic.</span></p>\n<p><br></p>\n<p><span style=\"font-weight: bold\">What Happens Next?</span></p>\n<p><span>Thank you for your interest in becoming part of Mobiz. We are committed to attracting exceptional talent and building a team that drives innovation, excellence, and meaningful impact. Every application is reviewed with care and consideration. If your experience and qualifications are a match for the role, a member of our team will connect with you regarding the next stage of the hiring process. </span><br></p>\n<p><span>We appreciate your interest in joining Mobiz and wish you success in your career endeavors.</span></p>\n<p> </p>",
    "compensation": null,
    "departmentId": "18575",
    "locationType": "0",
    "seekPromoted": false,
    "jobCategoryId": null,
    "jobOpeningName": "SOC Analyst",
    "departmentLabel": "Systems Engineering",
    "jobOpeningStatus": "Open",
    "minimumExperience": "Mid-level",
    "jobOpeningShareUrl": "https://mobiz.bamboohr.com/careers/459",
    "employmentStatusLabel": "Employee - Full-Time"
  }
}
Get this page with API

Rendered from the bluedoor Job Postings API. Reproduce it:

GET https://api.bluedoor.sh/job-postings/v1/jobs/9f468783604486903b6229bf01c4f2dd0f8d2369?include=descriptionJSON
GET https://api.bluedoor.sh/job-postings/v1/orgs/cd488348-9f92-4e02-b13b-85a6673aefa3JSON
GET https://api.bluedoor.sh/job-postings/v1/sources/64271ce9-2d64-4d90-9fae-b6f1b6ceb53eJSON
GET https://api.bluedoor.sh/job-postings/v1/jobs/9f468783604486903b6229bf01c4f2dd0f8d2369/eventsJSON