jobs in TechLab Security Sdn Bhd

全职 SOC Analyst L2 工作, 薪水 up to MYR 6,000, TechLab Security Selangor 公司招聘中 - Ricebowl

分享
保存

工作地点

  • Petaling Jaya Selangor Malaysia

职位描述

岗位职责

Key Responsibilities

  • Incident Handling & Escalation Management
  • Lead and perform triage, containment, and response for complex security incidents.
  • Review and validate escalated events from SOC Level 1 analysts.
  • Provide guidance and mentoring to L1/L2 team members during incident response.
  • Perform forensic analysis, log correlation, and root cause investigation.

Detection Engineering & Optimization

  • Refine and tune SIEM detection rules, use cases, and correlation logic.
  • Collaborate with Threat Intelligence and Vulnerability Management teams to enrich detection logic.
  • Work with security engineers to integrate new data sources into SIEM/XDR.

Team Leadership & Collaboration

  • Support the SOC Manager in monitoring day-to-day operations and shift performance.
  • Deliver knowledge transfer and continuous training for SOC analysts.
  • Maintain and improve SOC documentation, SOPs, and incident response playbooks.

Tools, Automation & Threat Hunting

  • Use and oversee tools such as Microsoft Sentinel, QRadar, Splunk, CrowdStrike, etc.
  • Lead proactive threat hunting exercises and coordinate post-incident reviews.
  • Identify and implement automation opportunities in triage and incident workflows.

Reporting & Continuous Improvement

  • Prepare regular SOC performance reports, incident metrics, and SLA compliance dashboards.
  • Contribute to the strategic growth of the SOC and its operational maturity.

Required Qualifications

Education & Experience

  • Bachelor's degree in Cybersecurity, Computer Science, or a related field.
  • Minimum 5 years of experience in a SOC environment, with at least 1–2 years in a lead or senior analyst role.

Technical Skills

  • Strong knowledge of SIEMs (Sentinel, QRadar, etc.), EDR/XDR, SOAR platforms, and threat intel tools.
  • Familiarity with frameworks such as MITRE ATT&CK, NIST, and the Cyber Kill Chain.
  • Hands-on experience with IDS/IPS, packet analysis, log aggregation, and malware triage.
  • Capable of scripting or automation (Python, PowerShell, or similar) is a plus.

Soft Skills

  • Excellent analytical and problem-solving skills.
  • Strong communication and leadership qualities.
  • Ability to operate effectively in a high-pressure and 24x7 environment.

Preferred Certifications

  • Required: CompTIA CySA+, CEH, or equivalent
  • Preferred: Certifications in SIEM platforms or SOC operations (e.g., Microsoft Sentinel, QRadar, Google Chronical SIEM)

Pay: RM4,500.00 - RM6,000.00 per month

Work Location: In person

重要安全守则

申请工作时,切勿提供您的银行或信用卡详细资料。不要转账或完成无关的在线调查问卷。如果您发现可疑内容,请举报此招聘广告。

了解更多