Job Summary
We are seeking a detail-oriented and proactive SOC Analyst to join our cybersecurity team. The SOC Analyst will be responsible for monitoring, detecting, analyzing, and responding to security incidents in real time. This role plays a critical part in protecting the organization’s IT infrastructure, data, and users from cyber threats.
Key Responsibilities
- Monitor security events and alerts from SIEM, EDR, IDS/IPS, and other security tools.
- Analyze and triage security incidents to determine severity and impact.
- Investigate suspicious activity, malware alerts, phishing attempts, and potential breaches.
- Perform initial incident response and escalate critical cases to senior analysts or incident response teams.
- Correlate logs from multiple sources to identify attack patterns and threats.
- Maintain accurate documentation of security incidents and investigation steps.
- Support threat hunting activities to proactively identify malicious activity.
- Assist in tuning and improving detection rules and alert quality to reduce false positives.
- Collaborate with IT teams to remediate vulnerabilities and security issues.
- Stay updated on the latest cyber threats, attack techniques, and security trends.
Required Skills & Qualifications
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field (or equivalent experience).
- 1–3 years of experience in a SOC, IT security, or incident response role.
- Understanding of cybersecurity principles, attack vectors, and defense mechanisms.
- Experience with SIEM tools (e.g., Splunk, Sentinel, QRadar, LogScale).
- Familiarity with EDR solutions (e.g., CrowdStrike, SentinelOne, Defender for Endpoint).
- Knowledge of networking concepts (TCP/IP, DNS, HTTP/S, VPNs, firewalls).
- Basic understanding of malware analysis, phishing, and endpoint security.
- Strong analytical and problem-solving skills.
- Ability to work in a fast-paced, 24/7 environment (shift work may apply).
- Good communication and reporting skills.
Preferred Skills
- Knowledge of MITRE ATT&CK framework.
- Scripting knowledge (Python, PowerShell, or Bash).
- Certifications such as CompTIA Security+, CEH, CySA+, or equivalent.
- Experience in cloud security (AWS, Azure, GCP).
Job Types: Full-time, Permanent
Pay: RM3,000.00 - RM4,000.00 per month
Benefits:
- Health insurance
- Professional development
Experience:
- Security: 1 year (Preferred)
Work Location: In person