Job Openings Senior Cyber Security Operations Engineer
About The Job Senior Cyber Security Operations Engineer
Senior Cyber Security Operations Engineer
Location: Penang, Pulau Pinang, Malaysia
Work Mode: Onsite
Employment type: Contract
Experience Level: 8+ years
Work Eligibility: Applicants must have the legal right to work in Malaysia. Visa sponsorship is not available for this position.
Our client is a pioneering manufacturer of high-energy density lithium-ion cells, specialising in innovative silicon-anode battery technology designed for various applications, including smartphones, wearables, and electric vehicles. With a focus on breakthrough 3D architecture and high-volume production, they are committed to delivering next-generation battery solutions that enhance performance and longevity. Headquartered in Fremont, California, they are poised to support the growing demands of the AI era and connected devices across multiple industries.
We are seeking an experienced Senior Cyber Security Operations Engineer to safeguard both enterprise IT and manufacturing environments by investigating security alerts, managing vulnerabilities, responding to incidents, and supporting risk and compliance activities.
Responsibilities
- Monitor, review, and triage cyber threat intelligence alerts relevant to the organisation.
- Investigate endpoint security, EDR, and XDR alerts, performing technical analysis of processes, execution paths, files/hashes, and endpoint activity.
- Differentiate between true-positive and false-positive security events, initiating remediation or escalation as needed.
- Personally investigate and respond to cyber security incidents, including validation, containment, evidence preservation, eradication, and recovery.
- Coordinate with infrastructure and technical teams during major security incidents and maintain accurate incident documentation.
- Review, assess, and prioritise vulnerabilities based on technical severity, business impact, and risk.
- Collaborate with infrastructure and application teams to track and monitor remediation activities, escalating significant risks where necessary.
- Prepare regular security reports covering incidents, vulnerabilities, key risk indicators, and security activities.
- Maintain and update the cyber security risk register, identify emerging risks, and recommend mitigation actions.
- Support internal and external security audits, collect and maintain security evidence and documentation, and conduct or support third-party and vendor security assessments.
- Review security requirements for infrastructure and technology changes, including those affecting manufacturing, production, and OT environments.
- Support third-party penetration testing activities and remediation tracking as required.
Requirements
Must-have:
- Bachelor’s degree in any related discipline.
- Applicants must have the legal right to work in Malaysia. Visa sponsorship is not available for this position.
- Minimum 8 years of experience in Information Security or Cyber Security.
- At least 3 years in a senior hands-on security operations role, such as Senior Security Engineer, Senior Security Analyst, Incident Responder, or equivalent.
- Recent hands-on experience conducting security investigations and responding to security alerts.
- Demonstrable experience personally handling cyber security incidents, including validation, investigation, containment, evidence preservation, eradication, and recovery.
- Hands-on experience with EDR and/or XDR platforms and security alert investigation.
- Experience with vulnerability management, including risk-based vulnerability prioritisation and remediation tracking.
- Experience working within manufacturing, industrial, energy, logistics, or similar operational environments.
- Working knowledge of security frameworks and standards such as ISO/IEC 27001, NIST Cybersecurity Framework (CSF), and IEC 62443.
- Strong analytical, troubleshooting, and security investigation skills.
Nice-to-have
- Exposure to Operational Technology (OT), Industrial Control Systems (ICS), or SCADA security.
- Experience with security platforms such as CrowdStrike Falcon, Secureworks Taegis, or equivalent EDR/XDR technologies.
- Threat hunting experience, including developing hypotheses and performing security queries.
- Digital forensics and security evidence collection experience.
- Experience developing or tuning security detection rules.
- Azure and/or Microsoft 365 security experience.
- Experience managing or supporting third-party penetration testing engagements.
- Experience working in an organisation without a dedicated SOC, with significant responsibility for security monitoring and incident response.
- Relevant security certifications such as GCIH, GCFA, GCIA, GICSP, OSCP, CISSP, or equivalent.
Why Join Us
- Join a forward-thinking team where your expertise will directly contribute to the security and resilience of both IT and manufacturing operations.
- Opportunity to work on challenging and impactful projects, collaborate with talented professionals, and further develop your skills in a dynamic environment dedicated to innovation and excellence in cyber security.
Apply Now: *************
Or refer someone