Associate (Forensics Lead), Incident Response APAC Cyber security Kuala Lumpur

5 days ago


Kuala Lumpur, Kuala Lumpur, Malaysia S-RM Intelligence and Risk Consulting Full time
Associate (Forensics Lead), Incident Response APAC

S-RM is seeking an Associate to work within the Cyber Security Team in Kuala Lumpur.

S-RM is a global intelligence and cyber security consultancy. Since 2005, we've helped some of the most demanding clients in the world solve some of their toughest information security challenges.

We've been able to do this because of our outstanding people. We're committed to developing sharp, curious, driven individuals who want to think critically, solve complex problems, and achieve success.

But we also know that work isn't everything. It's about the lives and careers it helps us build. We're immensely proud of this culture and we invest in our people's wellbeing, learning, and ideas every day.

We're excited you're thinking about joining us.

The role

Our Incident Response Associates are a critical part of our Cyber Security division's success.

As a Forensics Lead on our Incident Response team, you will deploy your expertise in a delivery role across our various incident response services, with a particular focus on forensic investigations into complex cyber incidents.

You will work across the full lifecycle of security incidents to help our clients respond and recover, including:

  • Supporting technical incident response from first contact through to closure: you will be a technical resource on response cases, deploying your own expertise, creating tailored strategies for response workstreams, and offering guidance to colleagues on your project team. You may also be supported by more senior technical team members where appropriate.

Overseeing host- and network-based incident response investigations: including triage, system recovery, technical evidence collection, and forensics, log, malware and root cause analyses.

  • Developing and sharing domain expertise: we will support you in growing your cyber expertise, including sharing it with the wider team through internal initiatives and programs.
  • Participating in an on-call rotation to provide 24x7x365 client incident coverage.

Other features of the role include:

  • Variety of casework: no day will be the same. Our team responds to a huge variety of incidents for both public and corporate clients.
  • Range of opportunities: you will have opportunities to broaden your security awareness into testing and advisory projects, in addition to deepening your incident response expertise.
  • Flexible working practices: responding to incidents can be intense, high-pressure work. We are mindful of our team's work/life balance and offer flexible working options to support your wellbeing.
What we're looking for
  • Direct experience working in an Incident Response or Digital Forensics team is strongly preferred; however, candidates with exposure to working with Incident Response teams, or those in roles reflecting aspects of Incident Response will be considered.
  • A fundamental understanding of computer systems and networks, including:
    • Windows systems (e.g. Managing domains services, creating standard build templates, using SCCM, moderate PowerShell capabilities, etc.)
    • Networking (e.g. managing firewall rules, providing guidance around network segmentation, DNS, etc.)
    • Virtualisation technologies (e.g. ESXi, Hyper-V, etc.)
    • Endpoint Detection & Response solutions.
  • The candidate must be able to demonstrate experience conducting forensic investigations, in particular relating to Windows systems. Additional experience conducting investigations into Linux and MacOS systems is preferred.
  • Demonstrable understanding of core incident response workstreams, including containment and restoration/recovery is a benefit.
  • A critical and investigative mindset. You should be comfortable solving problems with limited information and guidance, developing proportionate strategies to achieve timely outcomes.
  • Clear demonstrable knowledge of cyber threat actors, and their tactics, techniques, and procedures.
  • Strong communication skills. You should be comfortable speaking to people at all levels of an organization, from the board of directors to the technical teams.
  • It is preferred, but not required, that candidates hold one of the following certifications (or equivalent) GCFE, GCFA, GCIH, GNFA. However, holding any of the following is beneficial: EnCE, CFSR, CISSP, GREM, CCNA, MCFE, OSCP, Network+ and Security+
  • A working proficiency in another language (such as Malay, Tamil, Mandarin, Cantonese, Vietnamese) is also beneficial, although not required.

The successful candidate must have permission to work in Malaysia by the start of their employment.

Benefits

We offer thoughtful, balanced rewards and support to help our people do their best work and live their lives outside it, including:

  • 20 days paid holiday each year: in addition to public holidays, as well as 1 additional day of leave for every year you work at S-RM up to a maximum of 5 days.
  • Flexible working: work a minimum of two days a week in the office and the remainder remotely, choose your hours between 7am and 7pm.
  • Pension scheme: S-RM contributes to Employees Provident Fund (EPF) in accordance with legislative requirements.
  • Life Insurance: help someone you love should something happen to you. (Further details coming soon.)
  • Company-paid private medical and dental insurance. (Further details coming soon.)
  • Company-paid maternity, paternity and fertility treatment leave.
  • Employee Assistance Programme: free access to specialist support services, including counselling, as well as an online portal of useful articles, tips and tools. Available 24/7, 365 days a year.

The role will be based in our office in Kuala Lumpur. However, we have flexible working arrangements available.

Application Process

The application process includes:

  • A preliminary call which will be a chance for you to find out more about S-RM and the role.
  • First Interview – a remotely run skills focused interview.
  • Second interview - a remotely run skills focused interview.
  • An assessment – an incident response skill evaluation test.
  • Final interview - a remotely run skills focused interview.

S-RM nurtures a culture of equality, diversity and inclusion and we are dedicated to developing a workforce that displays a variety of talents, experiences and perspectives.

#J-18808-Ljbffr

  • Kuala Lumpur, Kuala Lumpur, Malaysia AVEVA Denmark Full time

    Digital Forensic and Incident Response (DFIR) Manager APACApply locations Kuala Lumpur, Malaysia time type Full time posted on Posted Yesterday job requisition id R010285AVEVA is a global leader in industrial software. Our cutting-edge solutions are used by thousands of enterprises to deliver the essentials of life – such as energy, infrastructure,...


  • Kuala Lumpur, Kuala Lumpur, Malaysia AVEVA Denmark Full time

    About the Role:We are seeking a highly experienced Cyber Security Manager to lead our APAC region's digital forensic and incident response efforts.The successful candidate will oversee the development of incident response plans, manage security operations centers, and coordinate with stakeholders to mitigate risks.


  • Kuala Lumpur, Kuala Lumpur, Malaysia S-RM Intelligence and Risk Consulting Full time

    S-RM Intelligence and Risk Consulting is a global leader in intelligence and cyber security consultancy. We help our clients solve complex information security challenges through our sharp, curious, and driven team members.About the RoleWe are seeking a Senior Cybersecurity Incident Responder to join our Cyber Security team in Kuala Lumpur. As a Technical...


  • Kuala Lumpur, Kuala Lumpur, Malaysia S-RM Intelligence and Risk Consulting Full time

    S-RM Intelligence and Risk Consulting is a global intelligence and cyber security consultancy seeking an Incident Response Specialist to join our Cyber Security Team in Kuala Lumpur.Job DescriptionThis exciting role involves working on a variety of casework, responding to incidents for both public and corporate clients. You will have opportunities to broaden...


  • Kuala Lumpur, Kuala Lumpur, Malaysia S-RM Intelligence and Risk Consulting Full time

    S-RM Intelligence and Risk Consulting is seeking a Digital Forensics Lead to join our Cyber Security Team in Kuala Lumpur. This exciting role involves leading teams in conducting forensic investigations, and providing technical incident response support.About the RoleYou will be responsible for overseeing host- and network-based incident response...


  • Kuala Lumpur, Kuala Lumpur, Malaysia S-RM Intelligence and Risk Consulting Full time

    We are seeking a highly skilled Forensic Investigator to join our Cyber Security team in Kuala Lumpur. The ideal candidate will have extensive experience working in Incident Response or Digital Forensics, with a strong understanding of computer systems and networks.Key ResponsibilitiesConduct forensic investigations into complex cyber incidents, including...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Logicalis Group (DE) Full time

    Digital Forensics and Incident Response:As a Senior Security Analyst, you will be responsible for leading our Security Operations Center (SOC) team in detecting, analyzing, and responding to cyber threats. You will possess strong technical skills, including expertise in network security technologies, threat hunting techniques, and proactive security...


  • Kuala Lumpur, Kuala Lumpur, Malaysia S-RM Intelligence and Risk Consulting Full time

    We're excited to offer this unique opportunity for a Cyber Security Expert to join our team in Kuala Lumpur. As a member of our Cyber Security division, you will play a critical part in helping our clients respond and recover from complex cyber incidents.About the RoleYou will be responsible for conducting forensic investigations, supporting technical...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Cyber Crime Full time

    At AVEVA, we're a global leader in industrial software. Our mission is to deliver cutting-edge solutions that empower our customers to optimize engineering, operations, and performance.Cyber Security Graduate RoleWe're seeking a dynamic and highly motivated Cyber Security Graduate to join our two-year rotation program at AVEVA. This comprehensive program...


  • Kuala Lumpur, Kuala Lumpur, Malaysia S-RM Intelligence and Risk Consulting Full time

    S-RM Intelligence and Risk Consulting is a trusted advisor to governments and businesses worldwide, helping them navigate complex security challenges through expert advice and guidance.About the PositionThis role offers the opportunity to join our dynamic Cyber Security team in Kuala Lumpur as a Senior Cybersecurity Incident Responder. You will be...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Cyber Crime Full time

    About This RoleThis role offers an exciting opportunity to join our Cyber Crime team and contribute to our mission of protecting businesses from cyber threats.As a Senior IT Security Specialist, you will be responsible for handling security incidents, providing level two (L2) support, and collaborating with cross-functional teams to develop effective...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Upscale Sdn Bhd Full time

    Kuala Lumpur, MalaysiaAbout the jobThe Senior Manager Cyber Threat Intelligence will be part of the GIS Cybersecurity team to function as a lead in the Cyber Threat Intelligence Team.Responsibilities include:Develop, document, and maintain a cyber threat hunting framework.Hunt for and identify threat actor groups, techniques, tools, and procedures...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Cyber Crime Full time

    We're an Equal Opportunity Employer committed to being an exemplary employer with an inclusive culture, developing a workplace environment where all employees are treated with dignity and respect. We value diversity and the expertise that people from different backgrounds bring to our business.Avoiding Threats Through Cyber Security ExpertiseAs a Digital...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Crypto Full time

    We are seeking a highly skilled Cybersecurity Specialist to join our Global Cybersecurity Services Team. As part of our modern cybersecurity operating model, the role will be engaged in enhancing our security technology stack, building AI-driven security automation workflows and contributing to security operations.The successful candidate will have...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Wizlynx Malaysia Sdn Bhd Full time

    About the RoleWe are seeking a highly skilled Cyber Security Operator to join our team in Malaysia. As a Cyber Security Operator, you will play a critical role in supporting our Cyber Security services on both the technical and business front for our external customers and internal teams.Main ResponsibilitiesSecurity Operations Center (SOC): Work in a 24x7...


  • Kuala Lumpur, Kuala Lumpur, Malaysia AVEVA Denmark Full time

    Job Overview:A senior leadership role is available for a skilled Digital Forensic and Incident Response expert to join our team as a manager.The ideal candidate will have experience in managing teams, developing incident response plans, and coordinating with stakeholders to identify and remediate potential threats.


  • Kuala Lumpur, Kuala Lumpur, Malaysia CIMB Full time

    Job DescriptionCIMB is seeking a highly skilled Cyber Security Threat Analyst to join our team. The successful candidate will be responsible for handling escalated security incident investigations and responses from Tier-1: SOC Analysts.The ideal candidate will have a strong understanding of common operating systems, IT infrastructure, and network...


  • Kuala Lumpur, Kuala Lumpur, Malaysia AVEVA Denmark Full time

    Responsibilities:Manage and supervise cyber security response analysts on proactive identification, investigation, and hunting of potential attacks and security risks on AVEVA networks and systems.Oversee the analysis of security events detected by various security controls, monitoring, and recording security events in daily, weekly, monthly, and quarterly...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Cyber Crime Full time

    Welcome to the Cyber Security Rotation Opportunity at AVEVA! As a graduate in this prestigious program, you'll embark on a two-year journey, rotating through four distinct roles within the organization. Each rotation offers unparalleled hands-on experience in cyber security, leveraging industry-leading tools and methodologies.Developing Skills in Cyber...


  • Kuala Lumpur, Kuala Lumpur, Malaysia CIMB Full time

    About This RoleCIMB is looking for a highly skilled IT Security Operations Lead to join our team. The successful candidate will be responsible for overseeing security incident response activities performed by Tier-1: SOC Analysts.The ideal candidate will have a strong understanding of common operating systems, IT infrastructure, and network certifications....