Gsoc Threat Detection Team Lead

7 months ago


Cyberjaya, Malaysia Experian Full time

Company Description

Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control and access financial services, businesses to make smarter decisions and thrive, lenders to lend more responsibly, and organisations to prevent identity fraud and crime.

We have 21,700 people operating across 30 countries and every day we’re investing in new technologies, talented people, and innovation to help all our clients maximise every opportunity. With corporate headquarters in Dublin, Ireland, we are listed on the London Stock Exchange (EXPN) and are a constituent of the FTSE 100 Index.

**Job Description**:
**Description**

The _Threat Detection Lead Analyst_ is an essential part of Experian’s Global Security Operation Center (GSOC) that perform in-depth analysis and further triage of security threats, proposes remediation actions, and takes part in the creation and steady improvement of correlation rules, processes and procedures and other department related documentation. The _Threat Detection Lead Analyst_ is a leader within the organization, executing on strategic items that promote a strong information security posture. Below is the list of main tasks:

- Investigate incidents using SIEM technology, packet captures, reports, data visualization, and pattern analysis.
- Analyze, escalate, and assist in remediation of critical information security incidents.
- Improve and challenge existing processes and procedures in a very agile and fast-moving information security environment.
- Collaborate with external teams for incident resolution and escalations, ensuring questions and concerns from Experian users are answered in a timely manner.
- Provide support and leadership to the tier one analysts, including feedback on quality of work, driving case quality.
- Expert knowledge of:

- Information security policies and goals
- Log analysis and event traffic patterns
- The current IT threat landscape and upcoming trends in security

**Qualifications**:
**Required Experience**:5+ years’ experience in the following areas:
Demonstrates advanced technical skills and hands-on knowledge, such as:

- In-depth packet analysis skills, core forensic familiarity, incident response skills, public could security practices, and data fusion skills based on multiple security data sources
- Security analysis and architecture of Azure and AWS cloud environment using security tools including Defender for Cloud, GuardDuty, CloudTrail, or CloudWatch.
- System administration on Unix, Linux, or Windows
- Network forensics, logging, and event management
- Defensive network infrastructure (operations or engineering)
- Vulnerability assessment and penetration testing concepts
- Malware analysis concepts, techniques, and reverse engineering
- In-depth knowledge of network and host security technologies and products (such as firewalls, network IDS, scanners) and continuously improve these skills
- Security monitoring technologies, such as SIEM, IPS/IDS, UEBA, DLP, among others.
- Scripting and automation

Demonstrates behavioral skills, such as:

- Ability to work in a team environment, able to train and coach other team members
- Excellent verbal and written communications skills and ability to produce clear and thorough security incident reports and briefings.
- Strong logical thinking abilities, especially analyzing security events.
- Excellent analytical and problem-solving abilities
- Excellent organizational and attention to details in tracking activities within various Security Operation workflows.
- Well established client-focused communication skills that requires to read, review, investigate, and summarize reports on complex issues, in a manner that can be understood by non-technical readers.
- Ability to lead incident investigation efforts and effectively coordinate communications.

**Education**:
Bachelor’s degree preferred, but not required. Relevant technical and industry certifications are a plus, e.g. Comptia, GIAC certifications, CISSP, SIEM vendor-specific certifications.

Additional Information

All your information will be kept confidential according to EEO guidelines.

Experian Careers - Creating a better tomorrow together

Find out what its like to work for Experian by clicking here



  • Cyberjaya, Malaysia Experian Full time

    Full-time Employee Status: Regular Role Type: Hybrid Department: Information Technology & Systems Schedule: Full Time **Company Description**: Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new...


  • Cyberjaya, Malaysia Experian Full time

    **Company Description** Discover the Unexpected** Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help...


  • Cyberjaya, Malaysia Experian Full time

    Full-time Employee Status: Regular Role Type: Hybrid Department: Information Technology & Systems Schedule: Full Time **Company Description**: **Discover the Unexpected** Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business...


  • Cyberjaya, Malaysia Advanced Micro Devices, Inc Full time

    Overview: **WHAT YOU DO AT AMD CHANGES EVERYTHING** We care deeply about transforming lives with AMD technology to enrich our industry, our communities, and the world. Our mission is to build great products that accelerate next-generation computing experiences - the building blocks for the data center, artificial intelligence, PCs, gaming and embedded....


  • Cyberjaya, Malaysia Advanced Micro Devices, Inc. Full time

    Back **Staff Information Security(L3 SOC)**: - Cyberjaya, Malaysia - Information Technology - 38091 mail_outline Get future jobs matching this search *** **Job Description**: **WHAT YOU DO AT AMD CHANGES EVERYTHING** - We care deeply about transforming lives with AMD technology to enrich our industry, our communities, and the world. Our mission is to...

  • Team Lead

    5 days ago


    Cyberjaya, Malaysia Shell Full time

    **The Role**: The new SEAM organization integrates Safety, Environment & Asset Management activities, with a broad geographical footprint, that will support Shell’s business & assets around the world. The vision of SEAM is to provide capability across the spectrum of Safety, Environment and Asset Management with: - shaping the future ways of working...


  • Cyberjaya, Malaysia Primary Guard Sdn Bhd Full time

    Job Description Organize and keep lead status updated in the CRM softwares. Generate accurate monthly lead generation activities reports to management. Research the target marketing during lead generation to understand key traits of ideal customer and their various personas. Collaboratively work with product marketing team and sales and marketing team to...

  • SOC Manager

    7 months ago


    Cyberjaya, Malaysia Deriv Full time

    Job Information Job Opening ID - ZR_1490_JOB Industry - Cyber Security & IT City - Cyberjaya Country - Malaysia Challenging, greenfield, and unconventional — those are the operative words that describe this **SOC Manager** role best! **Greenfield**, because you get to decide how our SOC will be shaped in all its aspects! And there is more good news:...

  • Internship for IT

    7 months ago


    Cyberjaya, Malaysia Primary Guard Sdn Bhd Full time

    **INTERNSHIP FOR CYBERSECURITY** MYR 800 + Daily Lunch Meals at the office Cyberjaya and Hybrid We are looking for a hungry and enthusiastic IT intern, so if you’re hungry to learn, and have a passion for Technology Development - we want you! At Primary Guard, you’ll be treated as a full member of the team and get hands-on experience working. Primary...


  • Cyberjaya, Malaysia Forest Interactive sdn bhd Full time

    **INTERNSHIP FOR CYBERSECURITY** MYR 800 + Daily Lunch Meals at the office Cyberjaya and Hybrid We are looking for a hungry and enthusiastic IT intern, so if you’re hungry to learn, and have a passion for Technology Development - we want you! At Primary Guard, you’ll be treated as a full member of the team and get hands-on experience working. Primary...


  • Cyberjaya, Malaysia Nibaara Technologies Pte Ltd Full time

    5 years experience in the IT field - Minimum 3 years experience in Cybersecurity Knowledge in Azure, AWS **Job descriptions**: - Operations management of the Azure cloud security tools (Redlock, Twistlock, Azure Key Vault, Azure Security Center, Tenable etc) by interfacing with various internal teams and vendors - 10 % - Impact study of various alerts and...


  • Cyberjaya, Malaysia SKILL QUOTIENT RESOURCES SDN BHD Full time

    **Job type**: contract 24 months (2 years), renewable **Location**:Menara Cyber Axis, Agensi Keselamatan Siber Negara (NACSA), Jalan Impact, 63000 Cyberjaya, Selangor **Mode**:on-site **JOB SCOPE** Incident Detection and Triage: a)Monitor security alerts, logs and network traffic to identify potential security incidents. b)Quickly assess the severity...

  • Team Lead

    1 day ago


    Cyberjaya, Malaysia Shell Full time

    **The Role**: **General Position Definition** - Lead the CMMS (Computerized Maintenance Management System) build and assurance activities for identified projects across Line of Businesses (Upstream, Downstream, IG and New Energy) and ensure delivery of first time right data from project to operations and maintenance. - Developing strategies and plans, in...


  • Cyberjaya, Malaysia Dell Full time

    The Dell Security & Resiliency organization (SRO) manages the security risk across all aspects of Dell’s business.We are currently experiencing incredible growth to meet the security needs of the world’s largest technology company.With team members located in over 15 countries, you will have an excellent opportunity to influence the security culture at...


  • Cyberjaya, Malaysia GrowthFn Sdn Bhd Full time

    Vacancy: Japanese Team Lead - Customer Service Location: Cyber Jaya, Malaysia. Salary Max: RM 12,500 + Allowances Process: Travel App Language: Japanese + English Headcounts: 2 Joining Date: ASAP or with Notice period Shift timing : 8am to 11.30pm, rotational Mon-Sun (No Late Night SHifts) Education: Diploma and Bachelor 's degree plus at least 1...


  • Cyberjaya, Malaysia Shell Full time

    **The Role**: **Where you fit in** The Information Risk Management function is accountable for Information Risks and Information Security in the Shell Group as an independent function within Shell’s IDT function. Shell’s target is to become a net-zero emissions energy business by 2050, in step with society’s progress in achieving the goal of the UN...


  • Cyberjaya, Malaysia Experian Full time

    **Company Description** Ready to make a difference? Experian has evolved into a global tech company and leader in data and analytics. We’re passionate about unlocking the power of data in order to transform lives and create opportunities for consumers, businesses and society. We’re a constituent of the FTSE 30 and for more than 125 years we’ve helped...


  • Cyberjaya, Malaysia Experian Full time

    Full-time Employee Status: Regular Role Type: Home Job Posting - Salary Range: $93,065 - $161,312 Department: Data Management Schedule: Full Time **Company Description**: Ready to make a difference? Experian has evolved into a global tech company and leader in data and analytics. We’re passionate about unlocking the power of data in order to...

  • Team Lead

    7 months ago


    Cyberjaya, Malaysia MyGlit Full time

    **Role**:Any Other **Timings**:Flexible (Permanent) **Industry**:BPO / ITES **Process**:Chat **Functional Area**:Any Other **Work Mode**:Work from office Key Skills: Team Leader Supervisor Skills Team Leading- Mandatory for Thailand BOI Work Permit: - Active passport - Bachelor’s Degree or higher - At least 5 years total employment experience (must...


  • Cyberjaya, Malaysia AIA Full time

    At AIA we’ve started an exciting movement to create a healthier, more sustainable future for everyone. - It’s about finding new ways to not only better people's lives, but to better the communities and environments we live in. Encompassing our ambition of helping a billion people live Healthier, Longer, Better Lives by 2030._ - And to get there, we need...