SOC Analyst

1 week ago


Kuala Lumpur, Kuala Lumpur, Malaysia Ekco Full time
SOC Analyst

About Ekco
Founded in 2016 Ekco is now one of the fastest growing cloud and security solution providers in Europe


We specialise in enabling companies to progress along the path of cloud maturity, cybersecurity, managing transformation and driving better outcomes from our customers' existing technology investments.

We are the people who power your possible


We have over 600 highly talented and supportive colleagues (and counting) across a number of regional offices in Ireland, the Netherlands, and Malaysia.


The Role


EKCO will support you and encourage your growth and development to identify further potential and expertise in the cybersecurity field.


Day to day your role will involve:

  • Performing accurate and precise real-time analysis and correlation of logs/alerts from a multitude of client devices.
  • Determining if events constitute security incidents e

g:

security events and incidents from SIEM, Firewall (FW), Intrusion Detection Systems (IDS), Intrusion Prevention Systems (IPS), Antivirus (AV), Directory Servers, Network Access Control (NAC) and other client data sources.


  • Analysing and assessing security incidents and advancing to client resources or collaborating with internal teams for additional assistance
  • Investigating security events forwarded from client for security risk.
  • Conducting tuning engagements with security engineers to develop/adjust SIEM rules and analyst response procedures.
  • Raising incidents to appropriate Senior Security Analyst or Incident Response staff or relevant sources to confirm if there is increased risk to the business
  • Recognising potential; successful; and unsuccessful intrusion attempts and compromises thorough reviewing and analysing relevant event detail and summary information
  • Performing vulnerability scans and assessments.
  • Using TCP/IP networking skills to perform network analysis to isolate and diagnose.
  • Responding to inbound requests via phone and other electronic means for technical assistance.
  • Documenting actions in cases to effectively communicate information internally and to client.
  • Reporting common and repeat problems (trend analysis) to management and propose process and technical improvements.
  • Assist in providing resolution plans for system and network issues.
  • Providing cover in line with rotating shift patterns. You should be flexible to rotating 8, 10 or 12 hour shifts. We provide 24/7 cover to clients and shifts are allocated accordingly
  • Performing other duties as assigned.

To be successful in this role you'll need/ What you'll bring to the role or team/ What we're looking for in a team mate

  • A Bachelor's degree or equivalent in Computer Science, Computer Engineering, Electrical Engineering, Network Security, Information Security, Information
Technology, or Mathematics (or equivalent work experience)

  • Keen problem solving/ troubleshooting skills
  • A cando attitude
  • Excellent written and verbal communication skills. You should be able to communicate technical details clearly.
  • The ability to adjust and adapt to changing priorities in a dynamic environment
  • A proactive approach to addressing issues and requests and the ability to multi task
  • The ability to learn new technology and concepts quickly
  • Great organisational skills and attention to detail

Bonus points if you have:

  • Prior experience working with SIEM or EDR
  • E.g. SPLUNK, IBM QRadar, Sentinel, Rapid7, Carbon Black


Industry recognized certifications
  • E.g. CompTIA Security+, CySA+, Microsoft SC200
  • Theoretical or practical knowledge in the following areas:
  • Unix, Linux, Windows, etc. operating systems
  • Exploits, vulnerabilities, network attacks
  • Wellknown networking protocols and services (FTP, HTTP, SSH, SMB,
LDAP, etc.)

  • Packet analysis tools (tcpdump, Wireshark, ngrep, etc.) o Regular expressions
  • Database structures and queries

We believe in taking care of our team so as one of us you'll have access to our "Ekco Extras"

Why Ekco

  • Microsoft's 2023 Rising Star Security Partner of the year
  • VMware & Veeam top partner status
  • Ranked as 4th fastest growing technology company in the Deloitte Fast50 Awards
  • Ekco are committed to cultivating an environment that promotes diversity, equality, inclusion and belonging
  • We recognise the value of internal mobility and encourage opportunities for internal development & progression
  • Flexible working with a family friendly focus are at the core of our company values

  • Senior / Lead SOC

    1 month ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Randstad Malaysia Full time

    about the companyyou will be joining an esteemed cybersecurity shared service provider which offers a spectrum of cutting-edge solutions. with their expertise, they are dedicated to empowering clients with top-tier cybersecurity defences tailored to their unique needs, fortifying their digital resilience. about the jobcustomer engagement: present monthly...

  • Senior / Lead SOC

    3 weeks ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Randstad Malaysia Full time

    about the companyyou will be joining an esteemed cybersecurity shared service provider which offers a spectrum of cutting-edge solutions. with their expertise, they are dedicated to empowering clients with top-tier cybersecurity defences tailored to their unique needs, fortifying their digital resilience. about the jobcustomer engagement: present monthly...

  • SOC Team Lead

    1 week ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Starweb Global Resources Sdn Bhd Full time

    SOC Team LeadResponsibilities:Supervision and Leadership: Lead and supervise a team of Level 1 SOC analysts. Provide guidance, mentorship, and support to team members. Ensure that team members are trained and equipped to handle their responsibilities effectively.Incident Detection and Analysis: Monitor security alerts and events to identify potential...

  • Security Analyst

    1 week ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Orange Full time

    As a SOC Analyst, you'll be responsible for:Map your knowledge to a defense in depth strategy implemented on our detection capabilities Analyze security events raised by our tooling and take adequate steps together with the customer's security department to mitigate them Develop and improve playbooks within our SOAR used to automate our investigations &...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Ssquad Global Full time

    Full Job DescriptionJob Title: Technical Support/ Service Engineer/ SoC TraineeLocation: Kuala Lumpur, MalaysiaExperience: FreshersAbout Us:Ssquad is a leading company in the hardware and software business, committed to delivering top-quality products and services to our clients globally. We are looking for a skilled Procurement Specialist who can...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Logicalis Full time

    Why choose Logicalis? As Architects of Change, Logicalis' focus is to design, support and execute clients' digital transformation by uniting their vision with their technology expertise and industry insights. The company, through its deep understanding of key IT industry drivers such as security, cloud, data management and IoT, can address customer...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Logicalis Full time

    Why choose Logicalis? As Architects of Change, Logicalis' focus is to design, support and execute clients' digital transformation by uniting their vision with their technology expertise and industry insights. The company, through its deep understanding of key IT industry drivers such as security, cloud, data management and IoT, can address customer...

  • Security Analyst L2

    3 weeks ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Logicalis Full time

    Why choose Logicalis? As Architects of Change, Logicalis' focus is to design, support and execute clients' digital transformation by uniting their vision with their technology expertise and industry insights. The company, through its deep understanding of key IT industry drivers such as security, cloud, data management and IoT, can address customer...

  • Security Analyst L2

    1 week ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Logicalis Full time

    Why choose Logicalis? As Architects of Change, Logicalis' focus is to design, support and execute clients' digital transformation by uniting their vision with their technology expertise and industry insights. The company, through its deep understanding of key IT industry drivers such as security, cloud, data management and IoT, can address customer...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Tune Protect Group Full time

    We are seeking a highly motivated Cybersecurity Analyst to join our dynamic and fast-growing organization. Tune Protect is a regional insurance company with infrastructure on cloud as well as on-premise. From a cybersecurity perspective, we monitor our infrastructure via a SOC and also with solutions ranging from network firewalls to SOC to EDR, DLP and...

  • Security Analyst L2

    1 week ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Logicalis Full time

    Why choose Logicalis?As Architects of Change, Logicalis' focus is to design, support and execute clients' digital transformation by uniting their vision with their technology expertise and industry insights. The company, through its deep understanding of key IT industry drivers such as security, cloud, data management and IoT, can address customer priorities...


  • Kuala Lumpur, Kuala Lumpur, Malaysia MAXIS Malaysia Full time

    Head of Cybersecurity Monitoring Centre page is loaded Head of Cybersecurity Monitoring Centre Apply locations Sg. Besi time type Full time posted on Posted Yesterday job requisition id JR11000 Are you ready to get ahead in your career?We want to empower you turn your ambitions into achievements.We thrive in inclusiveness, diversity and embrace close...

  • Security Analyst

    1 week ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Bright Nexus (M) Sdn Bhd Full time

    Key Roles & Responsibilities:Monitor and protect customer networks, systems and data from cyber-attacks. Security Analysts are expected to provide proactive monitoring, analysis and escalation when detecting suspicious security events. Working in shift schedule (including public holiday), in a 24x7 Security Operation Center (SOC) environment. Responsible for...

  • SOC Analyst

    1 week ago


    Kuala Lumpur, Kuala Lumpur, Malaysia IT Business Solutions Sdn Bhd Full time

    Microsoft M365 E5 Security Scope of Servicesi. End point security for managed devices (E.g. Intune, Defender for end point)iv. Identity and access management.v. Privileged identity and access management. (E.g. Defender for identity)vi. Cloud security. (E.g. Defender for Cloud)vii. Information protection and data loss prevention. (E.g. Purview)viii. M365 data...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Wipro Limited Full time

    Kuala Lumpur, Malaysia Tech HiringJob Description:Required skills: 25 Years of Experience in SOC Familiarity and experience in implementation of or two SIEM products (LogRhythm, QRadar, SA, Sentinel, Arcsight etc). Install / configure / build / finetune the SIEM tools to setup an effective information security support Establish KPI, review & manage security...

  • Security Analyst L1

    1 week ago


    Kuala Lumpur, Kuala Lumpur, Malaysia SSquad Global Full time

    Job Purpose:As a Security Analyst L1, they will be responsible for operationalization of new security platforms in order to enable Security Operations Center to stay ahead of emerging and current threats. They will utilize data analytics, threat intelligence, and your experience to leverage new and existing technologies to build the use cases that drive...

  • Cybersecurity Lead

    1 week ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Tune Protect Group Full time

    We are seeking a highly motivated cybersecurity lead or senior cybersecurity analyst to join our dynamic and fast-growing organization. Tune Protect is a regional insurance company with infrastructure in the cloud as well as on-premise. From a cybersecurity perspective, we monitor our infrastructure via a SOC and also with solutions ranging from network...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Ssquad Information Systems Private Limited Full time

    1. To support regional security operationa. Vulnerability management and remediation follow upb. Work closely with SOC for incident triage, mitigation and escalationc. To support security awareness program (may include develop, maintain training content)d. To support audit/risk assessment and work with stakeholders towards remediation and closuree. Reporting...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Encora Technologies Sdn Bhd Full time

    Roles and Responsibilities Understand and imbibe current SOC processPerform quality assessment on SOC operations being performed as per existing processRecord and deviations identified into tracking tool(s)/spreadsheetsPerform follow ups with respective error owners to mitigate process deviationsIdentify process deviations, Summarize and generate trends,...


  • Kuala Lumpur, Kuala Lumpur, Malaysia SSquad Global Full time

    ResponsibilitiesKnowledge of SIEM (Security Information and Event Management).Familiar with SQL, C, C++, C#, Java, or PHP programming languages.TCP/IP, computer networking, routing, and switching.IDS/IPS, penetration and vulnerability testing.Firewall and intrusion detection/prevention protocols.Windows, UNIX, Vmware, and Linux operating systems.Network...