600+ Security Analyst Jobs in Malaysia | Job Vacancies | August 2026 | Ricebowl

Showing 670 jobs results for "security analyst"
Never miss any updates for Security Analyst jobs
Chat Available
MYR7,000 - MYR10,000 Per Month

KL City, WP Kuala Lumpur

Near Train Station
  • Maintain accurate technical, procedural, and process documentation
  • Collaborate with cross-functional stakeholders to proactively mitigate risk
  • Stay updated with emerging cyber threats and industry best practices ...
Posted
13 days ago
Chat Available
MYR6,000 - MYR8,000 Per Month

Pandan Indah, Selangor

Near Train Station
  • Barracuda Web Application Firewall
  • Data connectivity solutions including Metro-E, IPME, DCI, DOME, and IP Sec
  • TACACS deployment and solutions ...
Posted
13 days ago
premium banner
MYR4,000 - MYR6,000 Per Month

KL City, WP Kuala Lumpur

Near Train Station
  • Monitor for security violations, escalate incidents to the Compliance Manager, and recommend corrective actions.
  • Update and Improve Information Security Policy and other internal policy based on the current trend versus internal processes,
  • Assist in conducting security awareness to the relevant personnel. ...
Cybersecurity Information Security
+8
Posted
3 hours ago
Undisclosed
Near Train Station
  • Review and maintain cybersecurity policies, standards, and procedures, ensuring alignment with regulatory requirements (e.g., Cyber Security Act 2024, MHA, NCII sector requirements).
  • Perform and support cybersecurity risk assessments, recommending mitigation or acceptance plans to ensure secure operation of systems and digital platforms.
  • Coordinate with internal IT team, vendors, concessionaires, and project teams to embed cybersecurity-by-design in all technology initiatives and digital platforms. ...

Be an early applicant!

Posted
a month ago
Chat Available
MYR2,400 - MYR2,500 Per Month
Fresh Graduates

Bandar Kuala Lumpur, WP Kuala Lumpur

Near Train Station
  • Ensure compliance with internal security SOPs, legal requirements, and maintain accurate documentation for all surveillance assets and footage.
  • Liaise with vendors and stakeholders to maintain service quality, evaluate performance, and support procurement of suitable security solutions.
  • Plan and design CCTV surveillance systems for hubs, warehouses, and critical areas, including site assessments, layout creation, and equipment specifications. ...
CCTV System Planning Project Coordination
+5

Be an early applicant!

Posted
7 days ago
Undisclosed

Bandar Kuala Lumpur, WP Kuala Lumpur

Near Train Station
  • Lead, manage and ensure effective review, prioritisation and handling of alerts generated by multiple security detection platforms, coordinating with SIEM and detection engineering teams for rule enhancements and tuning to reduce false positives and improve alert quality.
  • Lead, manage and monitor SOC administrative procedures and services delivered by outsourced service providers to ensure alignment with approved security policies, procedures, service level agreements and regulatory requirements, including addressing non‑compliance and operational deviations.
  • Lead and manage SOC operational documentation including standard operating procedures, playbooks,escalation workflows and response guidelines, and continuously improve SOC processes and analyst approaches to security events highlighted by tools such as SIEM, endpoint protection, APT and other security monitoring platforms. ...
Cybersecurity Security Surveillance
+1

Be an early applicant!

Posted
2 months ago
Undisclosed

KL City, WP Kuala Lumpur

Near Train Station
  • Continuous Improvement and Automation: Facilitate ongoing improvement initiatives to enhance cyber risk management processes and their automation.
  • Cross function collaboration: Build and maintain positive relationships with both Area and Headquarters Function teams, including Enterprise Risk Management, to align risk management efforts across the organization.
  • Security Audits and Assessments: Support security audits to validate the effectiveness of cyber risk management processes and identify areas for improvement. ...

Be an early applicant!

Posted
10 days ago
Undisclosed

Bandar Kuala Lumpur, WP Kuala Lumpur

Near Train Station
  • Ensure full compliance with regulatory requirements, including BNM Risk Management in Technology (RMiT), SC guidelines, and Bursa requirements.
  • Act as the central coordination point for regulatory reviews, audits, and submissions relating to cyber and technology risk.
  • Monitor regulatory developments and ensure timely implementation of new requirements across the Group. ...

Be an early applicant!

Posted
23 days ago
SGD4,000 - SGD4,000 Per Month

Singapore

  • Single Sign-On (SSO)
  • Multi-Factor Authentication (MFA)
  • Identity Governance and Administration (IGA) (preferred) ...
Posted
15 days ago

Experian Asia Pacific

Undisclosed
  • Monitor security metrics, dashboards, and control performance indicators under the guidance of senior team members
  • Identify and record non‑compliance and control deviations against defined security standards, policies, and SLAs
  • Track security findings, control gaps, and non-compliance issues. ...
Posted
14 days ago
Undisclosed
  • Monitor security metrics, dashboards, and control performance indicators under the guidance of senior team members
  • Identify and record non‑compliance and control deviations against defined security standards, policies, and SLAs
  • Track security findings, control gaps, and non-compliance issues. ...
Posted
14 days ago

OPENSOURCE TECHNOLOGIES PTE. LTD.

SGD6,000 - SGD6,000 Per Month

Singapore

  • • Classify vulnerabilities by severity, exploitability, and business impact using frameworks such as CVSS, EPSS, and internal risk criteria.
  • • Plan, coordinate, and manage Quarterly Vulnerability Assessments — scoping targets, engaging scanning tools, reviewing outputs, and driving findings through to resolution.
  • • Manage the Yearly Penetration Testing cycle, including scoping, vendor coordination, findings review, and tracking remediation commitments through to closure. ...
Posted
9 days ago

OPENSOURCE PTE. LTD.

SGD6,000 - SGD6,000 Per Month

Singapore

  • • Classify vulnerabilities by severity, exploitability, and business impact using frameworks such as CVSS, EPSS, and internal risk criteria.
  • • Plan, coordinate, and manage Quarterly Vulnerability Assessments — scoping targets, engaging scanning tools, reviewing outputs, and driving findings through to resolution.
  • • Manage the Yearly Penetration Testing cycle, including scoping, vendor coordination, findings review, and tracking remediation commitments through to closure. ...
Posted
9 days ago

RAPSYS TECHNOLOGIES PTE LTD

Undisclosed

Singapore

  • Key Responsibilities Vulnerability Management • Own and manage the end-to-end Vulnerability Management process, including intake, triage, and lifecycle tracking of security findings across the organization's systems and assets. • Classify vulnerabilities by severity, exploitability, and business impact using frameworks such as CVSS, EPSS, and internal risk criteria. • Plan, coordinate, and manage Quarterly Vulnerability Assessments — scoping targets, engaging scanning tools, reviewing outputs, and driving findings through to resolution. • Manage the Yearly Penetration Testing cycle, including scoping, vendor coordination, findings review, and tracking remediation commitments through to closure. • Track key remediation implementations end-to-end, maintaining visibility from initial detection through to verified closure — for example, overseeing the transition of WAF rules from detection mode to prevention mode, ensuring each step is documented, tested, and signed off. • Coordinate with remediation teams (engineering, DevOps, infrastructure) to ensure timely resolution of findings, providing clear context and prioritization guidance. • Maintain and update risk acceptance records, ensuring appropriate approvals are obtained, documented, and reviewed on schedule. • Track and report on remediation SLAs, escalating overdue or high-risk items to the appropriate stakeholders. • Produce regular status reports and dashboards that communicate the project's overall security posture to technical and non-technical audiences. Security Visibility & Reporting • Aggregate vulnerability data from multiple scanning tools and sources into a coherent, unified view of security risk. • Develop and maintain metrics and KPIs that enable leadership visibility into ongoing security exposure and program effectiveness. • Present findings, trends, and recommendations in written reports, executive briefings, and team meetings. Collaboration & Process Improvement • Act as a liaison between the security team and remediation owners, facilitating communication and removing blockers to resolution. • Continuously improve vulnerability management workflows, tooling, and documentation. • Support audit and compliance activities by providing evidence of vulnerability tracking and risk treatment processes. • Contribute to threat intelligence efforts and stay current on emerging CVEs and attack trends relevant to the organization. Qualifications Required • 2+ years of experience in an information security, vulnerability management, or related role. • Hands-on experience with vulnerability scanning platforms (e.g., Tenable, Qualys, Rapid7, Wiz, or similar). • Solid understanding of CVSS scoring, vulnerability classification, and risk-based prioritization. • Experience communicating security findings and risk to both technical teams and business stakeholders. • Familiarity with common compliance and risk frameworks (e.g., NIST CSF, ISO 27001, SOC 2). • Familiarity with GovTech's IM8 (Instruction Manual 8) policies and its associated risk-based assessment methodology, including the application of controls, classification of government ICT systems, and conducting or supporting IM8-aligned security reviews. • Strong organizational skills with the ability to manage multiple workstreams and deadlines simultaneously. Preferred • Relevant certifications such as CompTIA Security+, CEH, GWAPT, or equivalent. • Experience with ticketing and workflow tools (e.g., Jira, ServiceNow) for tracking remediation. • Scripting or automation skills (Python, Bash) to support data aggregation and reporting workflows. • Background in cloud security environments (AWS, Azure, GCP).
  • Ready to secure our future? Apply now and be part of our dynamic team!
Posted
8 days ago
Undisclosed

Singapore

  • Key Responsibilities Vulnerability Management • Own and manage the end-to-end Vulnerability Management process, including intake, triage, and lifecycle tracking of security findings across the organization's systems and assets. • Classify vulnerabilities by severity, exploitability, and business impact using frameworks such as CVSS, EPSS, and internal risk criteria. • Plan, coordinate, and manage Quarterly Vulnerability Assessments — scoping targets, engaging scanning tools, reviewing outputs, and driving findings through to resolution. • Manage the Yearly Penetration Testing cycle, including scoping, vendor coordination, findings review, and tracking remediation commitments through to closure. • Track key remediation implementations end-to-end, maintaining visibility from initial detection through to verified closure — for example, overseeing the transition of WAF rules from detection mode to prevention mode, ensuring each step is documented, tested, and signed off. • Coordinate with remediation teams (engineering, DevOps, infrastructure) to ensure timely resolution of findings, providing clear context and prioritization guidance. • Maintain and update risk acceptance records, ensuring appropriate approvals are obtained, documented, and reviewed on schedule. • Track and report on remediation SLAs, escalating overdue or high-risk items to the appropriate stakeholders. • Produce regular status reports and dashboards that communicate the project's overall security posture to technical and non-technical audiences. Security Visibility & Reporting • Aggregate vulnerability data from multiple scanning tools and sources into a coherent, unified view of security risk. • Develop and maintain metrics and KPIs that enable leadership visibility into ongoing security exposure and program effectiveness. • Present findings, trends, and recommendations in written reports, executive briefings, and team meetings. Collaboration & Process Improvement • Act as a liaison between the security team and remediation owners, facilitating communication and removing blockers to resolution. • Continuously improve vulnerability management workflows, tooling, and documentation. • Support audit and compliance activities by providing evidence of vulnerability tracking and risk treatment processes. • Contribute to threat intelligence efforts and stay current on emerging CVEs and attack trends relevant to the organization. Qualifications Required • 2+ years of experience in an information security, vulnerability management, or related role. • Hands-on experience with vulnerability scanning platforms (e.g., Tenable, Qualys, Rapid7, Wiz, or similar). • Solid understanding of CVSS scoring, vulnerability classification, and risk-based prioritization. • Experience communicating security findings and risk to both technical teams and business stakeholders. • Familiarity with common compliance and risk frameworks (e.g., NIST CSF, ISO 27001, SOC 2). • Familiarity with GovTech's IM8 (Instruction Manual 8) policies and its associated risk-based assessment methodology, including the application of controls, classification of government ICT systems, and conducting or supporting IM8-aligned security reviews. • Strong organizational skills with the ability to manage multiple workstreams and deadlines simultaneously. Preferred • Relevant certifications such as CompTIA Security+, CEH, GWAPT, or equivalent. • Experience with ticketing and workflow tools (e.g., Jira, ServiceNow) for tracking remediation. • Scripting or automation skills (Python, Bash) to support data aggregation and reporting workflows. • Background in cloud security environments (AWS, Azure, GCP).
  • Ready to secure our future? Apply now and be part of our dynamic team!
Posted
8 days ago

OPENSOURCE PTE. LTD.

SGD6,000 - SGD8,000 Per Month

Singapore

  • Manage the Yearly Penetration Testing cycle, including scoping, vendor coordination, findings review, and tracking remediation commitments through to closure.
  • Track key remediation implementations end-to-end, maintaining visibility from initial detection through to verified closure — for example, overseeing the transition of WAF rules from detection mode to prevention mode, ensuring each step is documented, tested, and signed off.
  • Coordinate with remediation teams (engineering, DevOps, infrastructure) to ensure timely resolution of findings, providing clear context and prioritization guidance. ...
Posted
8 days ago

RAPSYS TECHNOLOGIES PTE. LTD.

SGD4,500 - SGD4,500 Per Month

Singapore

Posted
7 days ago
Undisclosed

KL City

  • Develop SOAR playbooks. Sr Analysts drive automation improvements and reduce analyst toil team-wide; Analysts contribute to individual playbook development.
  • Participate in incident response activities — triage, containment, evidence collection, eradication, and post-incident review. Sr Analysts lead complex or prolonged incidents; Analysts participate under Sr Analyst or Lead direction.
  • Conduct digital forensics and malware analysis. Sr Analysts produce forensic reports suitable for regulatory and legal purposes; Analysts handle standard analysis and escalate complex cases. ...
Posted
24 days ago
Undisclosed
  • Monitor security metrics, dashboards, and control performance indicators under the guidance of senior team members
  • Identify and record non‑compliance and control deviations against defined security standards, policies, and SLAs
  • Track security findings, control gaps, and non-compliance issues. ...
Posted
9 days ago

Experian Asia Pacific

Undisclosed
  • Monitor security metrics, dashboards, and control performance indicators under the guidance of senior team members
  • Identify and record non‑compliance and control deviations against defined security standards, policies, and SLAs
  • Track security findings, control gaps, and non-compliance issues. ...
Posted
9 days ago

OPENSOURCE TECHNOLOGIES PTE. LTD.

SGD6,000 - SGD8,000 Per Month

Singapore

  • Manage the Yearly Penetration Testing cycle, including scoping, vendor coordination, findings review, and tracking remediation commitments through to closure.
  • Track key remediation implementations end-to-end, maintaining visibility from initial detection through to verified closure — for example, overseeing the transition of WAF rules from detection mode to prevention mode, ensuring each step is documented, tested, and signed off.
  • Coordinate with remediation teams (engineering, DevOps, infrastructure) to ensure timely resolution of findings, providing clear context and prioritization guidance. ...
Posted
8 days ago

RAPSYS TECHNOLOGIES PTE LTD

Undisclosed

KL City

  • Responsibilities: As a Packaged/SaaS Application Engineer, you will be responsible for configuring and supporting packaged or software as a service applications to adapt features, manage releases, and ensure system stability. Your day-to-day activities will include using standard tools, application programming interfaces, and low-code platforms to align solutions with business needs while preserving compatibility and performance. You are expected to be a subject matter expert, collaborate and manage the team to perform effectively, take responsibility for team decisions, engage with multiple teams, and contribute to key decisions. Providing solutions to problems within your immediate team and across multiple teams is a critical part of this role. Advanced proficiency in SAP Governance Risk and Compliance (SAP GRC) is required. Advanced proficiency in SAP Governance Risk & Compliance Access Control (SAP GRC AC) is recommended. Advanced proficiency in SAP Identity and Access Management is suggested. Develop and implement configuration strategies that enhance system functionality and user experience. Support continuous improvement initiatives by analyzing system performance and proposing innovative solutions. Collaborate closely with cross-functional teams to ensure seamless integration and alignment with business objectives. Provide technical guidance and share expertise to support the growth and development of team members. Contribute to the evaluation and adoption of new tools and technologies to improve application management and delivery.
  • Ready to secure our future? Apply now and be part of our mission!
Posted
a day ago
SGD4,000 - SGD9,000 Per Month

Geylang

  • Single Sign-On (SSO)
  • Multi-Factor Authentication (MFA)
  • Identity Governance and Administration (IGA) (preferred) ...
Posted
8 days ago
Undisclosed

KL City

  • Execute containment, eradication, and recovery procedures using predefined runbooks and playbooks.
  • Escalate and coordinate with Level 3 analysts or incident response teams for high-severity incidents.
  • Provide technical guidance, support, and mentoring to Tier 1 analysts. ...
Posted
3 days ago
Undisclosed

KL City

  • Execute containment, eradication, and recovery procedures using predefined runbooks and playbooks.
  • Escalate and coordinate with Level 3 analysts or incident response teams for high-severity incidents.
  • Provide technical guidance, support, and mentoring to Tier 1 analysts. ...
Posted
a day ago
Undisclosed

KL City

  • Identify and document risks associated with third-party vendors, cloud infrastructure, access management, and system configurations.
  • Evaluate and recommend technologies that enhance our security and compliance posture (e.g., DLP, EDR, network segmentation, cloud security tools).
  • Collaborate with the alignment to the global Information Security Management System (ISMS), based on ISO/IEC 27001:2022 and best practices from well known frameworks such as NIST. ...
Posted
a day ago
Undisclosed

Singapore

  • Perform advanced correlation and analysis across SIEM, EDR/XDR, cloud, identity, network, and endpoint telemetry.
  • Build investigation timelines, collect evidence, and document findings to support escalation decisions.
  • Escalate confirmed or suspected security incidents to the SIRT team in accordance with established Incident Response procedures. ...
Posted
a day ago
Undisclosed

Singapore

  • Monitor, triage, and investigate security alerts across EDR, SIEM, and cloud environments to swiftly isolate threats and neutralize potential compromises.
  • Proactively hunt for threats and security misconfigurations across infrastructure and applications, ensuring internal systems continuously align with industry security standards.
  • Own the vulnerability management strategy by using advanced scanning tools to detect risks across infrastructure/applications, assessing threat severity, and collaborating with tech teams for swift remediation. ...
Posted
8 days ago
Undisclosed
  • Interfaces and collaborate with other teams for incident escalations and resolution
  • Work closely with SOC Head to better security operations and address identified deficiencies
  • Perform due diligence and in-depth analysis on escalated security alert from Level-1 analyst and escalate to respective team for further action in timely manner ...
Posted
12 days ago
SGD2,800 - SGD2,800 Per Month

Singapore

  • · To ensure that clients get prompt and quality service
  • · To document troubleshooting and problem-resolution steps
  • · To participate and provide knowledge transfer to customers when necessary ...
Posted
13 days ago