Key Responsibilities
Security Operations
- Monitor and investigate security alerts generated by Microsoft Defender, Huntress, SIEM,
- Microsoft Entra ID, and related security systems.
- Perform initial triage and analysis of security incidents.
- Identify suspicious activity and escalate genuine threats appropriately.
- Support incident response activities and assist in remediation efforts.
- Document security incidents and create post-incident reports.
Microsoft Security Administration
- Administer Microsoft Entra ID security controls.
- Support Conditional Access policy deployment and maintenance.
- Manage Multi-Factor Authentication controls.
- Assist with Microsoft Defender for Endpoint configuration and administration.
- Support Intune security baselines and compliance policies.
- Assist with Microsoft Purview and compliance-related activities.
Vulnerability Management
- Review vulnerability scan results.
- Coordinate remediation activities with engineers and clients.
- Track remediation progress against agreed targets.
- Validate remediated vulnerabilities.
- Produce risk and remediation reports.
Endpoint and Device Security
- Support endpoint protection technologies.
- Investigate malware detections and endpoint incidents.
- Validate security baselines.
- Assist with patch management and remediation programs.
- Ensure devices meet Velocity security standards.
Security Monitoring and Reporting
- Review and analyse security events.
- Maintain documentation regarding security incidents and activities.
- Produce regular cybersecurity posture reports.
- Support client reporting requirements.
- Assist with audit evidence gathering and compliance reviews.
Client Engagement
- Explain security recommendations clearly to clients.
- Assist Account Managers and Technical Managers with security reviews.
- Participate in client meetings where security expertise is required.
- Translate technical risks into practical business language.
Continuous Improvement
- Assist in the development of security standards and operating procedures.
- Create and maintain security knowledge-base articles.
- Identify opportunities to automate operational security activities.
- Stay current with Microsoft security capabilities and emerging threats.
Required Skills and Experience
Technical
- 3-5 years of experience in:
- Security operations
- Security engineering
- MSP security services
- Infrastructure security
- Practical experience with:
- Microsoft Defender XDR
- Microsoft Sentinel
- Microsoft Entra ID
- Conditional Access
- Intune
- Vulnerability management platforms
- Security monitoring and incident investigation
- Endpoint management
- Security reporting
Preferred Certifications
- SC-300 Identity and Access Administrator
- SC-200 Security Operations Analyst
- MD-102 Endpoint Administrator
- AZ-500 Azure Security Engineer
Pay: RM6,000.00 - RM12,000.00 per month
Work Location: In person