jobs in ABP Group

全职 Security Delivery Consultant 工作, 薪水, ABP Group Federal Territory 公司招聘中 - Ricebowl

Security Delivery Consultant

ABP Group

KL City, Federal Territory

分享
保存

工作地点

  • Kuala Lumpur Federal Territory Malaysia

职位描述

岗位职责

About the role

This role is part of the Cyber Fusion Center's SOC team, responsible for advanced monitoring, investigation, and response to security incidents across client environments. Acting as the escalation point for L1 analysts, the role plays a critical part in enhancing detection capabilities and strengthening incident response processes. In addition, the position ensures the successful delivery and continuous optimization of managed security services. It combines deep technical expertise with client-facing responsibilities, ensuring alignment with service-level agreements (SLAs), improving clients' security posture, and driving ongoing service enhancements.


Key responsibilities

  • Perform advanced analysis and investigation of security alerts from SIEM platforms (e.g. Google SecOps)
  • Act as escalation point for L1 analysts for complex incidents
  • Lead incident response activities including triage, containment, eradication, and recovery
  • Conduct threat hunting and proactive detection using threat intelligence and behavioral analytics
  • Tune and enhance SIEM rules, use cases, and detection logic
  • Support onboarding and validation of log sources and assets
  • Develop and maintain SOC playbooks and response procedures
  • Serve as a key point of contact for client security operations matters
  • Ensure SOC services are delivered in accordance with SLAs and KPIs
  • Produce detailed incident reports, executive summaries, monthly reporting, and service metrics


Requirements

  • 3 – 6 years of experience in SOC operations, cybersecurity, or managed security services
  • Hands-on experience with SIEM (Google Chronicle/SecOps preferred)
  • Strong knowledge of incident response and threat analysis
  • Strong knowledge of network, endpoint, and cloud security
  • Strong knowledge of MITRE ATT&CK framework
  • Experience in client-facing or service delivery roles is highly preferred
  • Familiarity with tools such as EDR/XDR (e.g. Crowdstrike, MS defender), TI (e.g. Cyble, GTI), JumpCloud, and cloud platforms
  • Relevant certifications (preferred): CompTIA Security+, CySA+, CEH, GCIA, GCIH, CISSP or CISM


重要安全守则

申请工作时,切勿提供您的银行或信用卡详细资料。不要转账或完成无关的在线调查问卷。如果您发现可疑内容,请举报此招聘广告。

了解更多