- Malaysia
工作地点
职位描述
岗位职责
Key Responsibilities
* Investigate and respond to security incidents across endpoint, network, identity, and cloud environments.
* Perform threat analysis using Microsoft Sentinel, Microsoft Defender XDR, SIEM, and EDR.
* Conduct KQL log analysis, threat hunting, and root cause analysis.
* Validate alerts, determine severity, and coordinate incident remediation with CSIRT.
* Optimize SIEM use cases, detection rules, automation, and playbooks.
* Document investigations, maintain SOC procedures, and support security hardening.
* Participate in on-call support rotations.
Requirements
3+ years of SOC/CSIRT/CERT/Incident Response experience.
Hands-on experience with Microsoft Sentinel, Microsoft Defender XDR, SIEM, EDR, and KQL.
Strong knowledge of Firewalls, IDS/IPS, TCP/IP, DNS, Active Directory, Windows/Linux Security, Microsoft 365 Security, and MITRE ATT&CK Framework.
Strong analytical, troubleshooting, incident investigation, communication, and documentation skills.
If you're interested, please share your updated CV along with the following details on *************:
* Name:
* Total Experience:
* Experience in KQL:
* SOC Experience (Level):
* Experience in Microsoft Sentinel:
* Experience in Microsoft Defender:
* Notice Period:
* Current Salary:
* Expected Salary:
* Date of Birth:
* Are you comfortable working on a 12-month renewable contract? (Yes/No)
Looking forward to hearing from you. Thank you!
重要安全守则
申请工作时,切勿提供您的银行或信用卡详细资料。不要转账或完成无关的在线调查问卷。如果您发现可疑内容,请举报此招聘广告。