Title: Specialist - Security Operations (SOC)
Kuala Lumpur, MY, MY
Job Summary:
This role is an excellent opportunity in the IT Security Operations Center (SOC). The purpose of a SOC team is to monitor and analyze an organization’s cybersecurity threats and mitigate cyber risk on an ongoing basis. Ideally, the Specialist of Security Operations is someone who has sound incident response and management experience as a core competency with experience in managing some level of complexity in security incidents.
Job Description:
- Security threats monitoring and Incident Response: Responding to escalated security alerts and monitoring tools like firewalls, EDR, DLP, WAF tools using SIEM platforms
- Threat Detection and Analysis: Using technologies such as EDR, DLP, syslogs and external data feeds to detect and analyze threats affecting data confidentiality, integrity, and availability
- Security Tool Optimization: Recommend, configure and maintain security tools to enhance threat detection capabilities
- Security Assessment and Reporting: Providing detailed reports on security issues and recommending feasible solutions and security operations KPI reporting
- Project Execution and Collaboration: Participating in IT security projects and collaborating across teams
- Regulation and compliance: Be aware and comply to latest security and privacy legislation, regulations, adversaries, alerts, and vulnerabilities;
Job Requirement:
- Bachelor's degree in Computing/Information Technology or equivalent;
- Fresh graduate or 1-3 years’ experience in similar role;
- Experience and knowledge related to the configuration and maintenance of security monitoring and reporting platforms;
- Hands-on experience with multiple security technologies such as Microsoft Sentinel, Defender XDR, firewalls, DLP tools
- Ability to correlate data from multiple data sources to create a more accurate picture of cyberthreats and vulnerabilities;
- Ability to quickly assess complex situations and take appropriate action, such as during security incidents;
- Excellent written and verbal communication skills; interpersonal and collaborative skills; and the ability to communicate security and risk-related concepts to technical and non-technical stakeholders;
- Strong ability to work independently and cooperate with diverse teams in multiple stakeholders.