Incident Response Manager

3 weeks ago


Kuala Lumpur, Kuala Lumpur, Malaysia Upscale Sdn Bhd Full time

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia

About the job (A) Incident Response Manager - CSIRT

Incident Response Manager - CSIRT

Department / Functional Area: Group Information Security (GIS)
Reports to: Senior Manager, Cyber Threat Management & CSIRT, Group Information Security
Geographical Responsibilities: Global
Position Objective: The role of the candidate is to be a part of the GIS Cybersecurity team to function as a part of the Cyber Security Incident Response and Monitoring Team (CSIRT). The candidate would be required to ensure that all threats/risks that could impact or have a potential impact on the organization environment are responded, managed and handled in a timely and complete manner.

Roles and Responsibilities:
  1. Lead Incident Response (IR) engagements and guide local business units through a variety of incidents (i.e., breaches, malware/virus outbreaks, security incidents, and forensics investigations).
  2. Support service providers performing Cyber Security monitoring, to enhance their monitoring and triage investigation processes capabilities prior to escalation.
  3. Leverage detection and response solutions in place, to further assess any escalated potential incidents.
  4. Manage and coordinate potential incidents escalations, for investigation, along with any required internal or external stakeholders.
  5. Communication and coordination of Cyber Security Incident response actions with Business Units.
  6. Management of Cyber Security Incidents for the Group, within SLA.
  7. Partnering with key service providers to support security investigations.
  8. Analysis of Cyber Security threat intelligence, ensuring that Group prevention, detection and response capabilities setup is maximized against those new threats.
  9. In-depth analysis of malware or other potential malicious processes or software identified in the organization.
  10. Coordination of Cyber Security testing activities and providing advice on remediation.
  11. Develop, document, and maintain SOPs and knowledge base for cyber security services including incident response, intelligence analysis, evidence acquisition, forensics recovery, and others.
  12. Continuous knowledge improvement in tools and best practices in Cyber Security threat monitoring and incident response.
  13. Prepare, write, and present reports and briefings.
Financial and Non-Financial Measures:

The role would not be required to deal with any financial measure. Timeliness and punctuality at work and delivery is expected.

Communication Requirements:

Excellent verbal and written communication skills, fluent in English. Should have strong interpersonal skills.

Minimum Job Requirements:
  1. Degree in Computer Science or related discipline.
  2. 5+ years experience working hands-on technical role in Cyber Security Monitoring and Incident Response (SOC & IR).
  3. Ability to learn and apply Containment, Mitigation, and Remediation concepts based on TTPs.
  4. Good experience and knowledge on cybersecurity incident response/ethical hacking/forensic analysis & SIEM solutions.
  5. Adequate experience in handling Phishing, DLP, Malware, Web & network attack incidents and understanding of remediation methods for specific incidents.
  6. Experience conducting log and activity review, along with stream or packet capture, in support of intrusion analysis.
  7. Ability to handle stressful situations and think on the feet and strong decision making.
  8. Excellent written and verbal communication skills and ability to escalate timely to management. Experienced in multicultural virtual team management and coordination.
  9. Desirable: ECCouncil Computer Hacking Forensics Investigator (CHFI), Technical certifications: GIAC Certified Incident Handler (GCIH), GIAC Reverse-Engineering Malware (GREM), GIAC Certified Forensic Analyst (GCFA).
#J-18808-Ljbffr

  • Kuala Lumpur, Kuala Lumpur, Malaysia beBee Careers Full time

    Incident Response LeadWe are looking for an experienced Incident Response Manager to lead our incident response team. As a key member of our cybersecurity unit, you will be responsible for managing and responding to security incidents.About the PositionYou will handle security incidents tickets escalated by Level II team, draft security incident reports, and...


  • Kuala Lumpur, Kuala Lumpur, Malaysia beBee Careers Full time

    Incident Management SpecialistWe are seeking a highly skilled Incident Management Specialist to join our team. As an Incident Manager, you will be responsible for managing incidents, developing response strategies, and conducting postmortem analysis to ensure system reliability.The ideal candidate will have experience in troubleshooting, diagnosing, and...


  • Kuala Lumpur, Kuala Lumpur, Malaysia beBee Careers Full time

    About the RoleWe are seeking an experienced SOC Manager to lead our Security Operations Center. The successful candidate will have demonstrable experience and in-depth knowledge of Information or Cyber Security Operations, Incident Response, and Investigations.The ideal candidate will have a minimum of 5 years of experience as a SOC Manager or SOC Team...


  • Kuala Lumpur, Kuala Lumpur, Malaysia beBee Careers Full time

    Incident Response SpecialistThe ideal candidate will be a highly motivated and detail-oriented Security Analyst with a proven track record of analyzing complex security incidents and developing effective mitigation strategies. You will be part of a 24x7 SOC team responsible for responding to security incidents and ensuring timely and effective resolution....


  • Kuala Lumpur, Kuala Lumpur, Malaysia beBee Careers Full time

    Key ResponsibilitiesMonitor and respond to all security-related alerts, incidents, and breaches, providing assistance in the investigation and resolution of security incidents when required.Support Group/Local IT Services and site management from a security perspective, ensuring that all security incidents/problems raised via the information security stack...


  • Kuala Lumpur, Kuala Lumpur, Malaysia beBee Careers Full time

    We are looking for a skilled Security Incident Analyst to join our Level 2 SOC team. As a key member of our team, you will play a vital role in ensuring the security and integrity of our enterprise IT infrastructure.Job OverviewThe successful candidate will be responsible for monitoring and responding to all security-related alerts, incidents, and breaches,...


  • Kuala Lumpur, Kuala Lumpur, Malaysia beBee Careers Full time

    Job Title: Incident Response ExpertWe are seeking an experienced Incident Response Expert to join our team. The successful candidate will be responsible for leading incident response efforts, working closely with customers to resolve security incidents.Key Responsibilities:Lead incident response efforts, working closely with customers to resolve security...


  • Kuala Lumpur, Kuala Lumpur, Malaysia beBee Careers Full time

    Job DescriptionThe Incident Response Expert will play a key role in responding to and resolving cybersecurity incidents. This includes conducting incident response activities, developing incident response plans, and collaborating with cross-functional teams to ensure effective communication and coordination during security...


  • Kuala Lumpur, Kuala Lumpur, Malaysia beBee Careers Full time

    Key ResponsibilitiesThe Incident Response Specialist will perform post-mortem analysis to identify root causes and design controls or measures to prevent future incidents. You will write comprehensive investigation reports capturing investigation details and root cause analysis aligned knowledge of modern Tactics, Techniques, and Procedures (TTPs).This role...


  • Kuala Lumpur, Kuala Lumpur, Malaysia beBee Careers Full time

    Job DescriptionThis role is critical in ensuring the resilience and efficiency of IT services, contributing to the stability and continuity of business operations.Key Responsibilities:Evaluate and coordinate major incidents, ensuring efficient escalation and resolution processes.Act as the central point for managing and resolving incidents, coordinating with...