Job Summary
We are seeking a Security Engineer to join our cybersecurity team and work closely with Security Architects to design, implement, and maintain secure enterprise solutions. This role focuses on translating security architecture into practical implementations, ensuring systems are secure by design, and supporting engineering teams throughout the software development and infrastructure lifecycle.
The ideal candidate has hands-on experience with security technologies, cloud security, identity management, and application security, with the ability to collaborate across multiple technical teams.
Key Responsibilities
- Partner with Security Architects to implement enterprise security architecture and technical security controls.
- Translate security designs and standards into deployable security solutions.
- Design, implement, and maintain security controls across cloud, infrastructure, applications, and networks.
- Collaborate with software engineers, DevOps, and infrastructure teams to embed security into the SDLC and CI/CD pipelines.
- Perform security reviews of applications, infrastructure, APIs, and cloud environments.
- Conduct vulnerability assessments, risk analysis, and remediation planning.
- Implement and maintain IAM solutions, including authentication, authorization, and privileged access management.
- Configure and manage security tools such as:
- SIEM
- Endpoint Detection & Response (EDR)
- Web Application Firewall (WAF)
- Cloud Security Posture Management (CSPM)
- Data Loss Prevention (DLP)
- Support incident response activities and forensic investigations when required.
- Automate security processes using scripting or Infrastructure as Code (Terraform, Ansible, etc.).
- Ensure compliance with organizational security policies and industry standards.
- Prepare technical documentation, security implementation guides, and operational procedures.
- Stay updated with emerging cybersecurity threats, technologies, and best practices.
Required Qualifications
- Bachelor's degree in Computer Science, Information Security, Cybersecurity, or a related discipline.
- 5–7 years of experience in cybersecurity, infrastructure security, or security engineering.
- Experience working alongside Security Architects or Enterprise Architects.
- Strong understanding of:
- Network security
- Cloud security (AWS, Azure, or GCP)
- Identity & Access Management (IAM)
- Operating system security (Linux & Windows)
- Application Security
- Secure Software Development Lifecycle (SSDLC)
- Hands-on experience implementing security controls in cloud and hybrid environments.
- Experience with vulnerability management tools (Qualys, Nessus, Tenable, etc.).
- Familiarity with SIEM platforms such as Splunk, Microsoft Sentinel, QRadar, or Elastic.
- Experience with scripting languages such as Python, PowerShell, or Bash.
- Knowledge of Infrastructure as Code (Terraform, CloudFormation, or Ansible) is an advantage.
- Excellent analytical and problem-solving skills.
- Strong communication and stakeholder management abilities.
Preferred Qualifications
- Professional certifications such as:
- CISSP
- CCSP
- GIAC
- CompTIA Security+
- Microsoft Security Certifications
- AWS Security Specialty
- Azure Security Engineer Associate
- Experience in Zero Trust Architecture.
- Experience implementing DevSecOps practices.
- Knowledge of Kubernetes and container security.
- Familiarity with compliance frameworks such as ISO 27001, NIST, CIS Controls, PCI DSS, or SOC 2.
Pay: From RM9,000.00 per month
Benefits:
Application Question(s):
- Will you require sponsorship to work in Malaysia?
- How many years of relevant experience do you have on the applied role?
- How many days is your notice period?
- How much is your expected salary?
- Are you open working on contract for 6 months, extendable?
Language:
Work Location: In person