Cybersecurity Incident Response Analyst

2 weeks ago


Petaling Jaya, Malaysia Air Liquide Full time

ALBS is an Air Liquide entity in Kuala Lumpur, regrouping for the APAC scope its Business Service Centers (Kuala Lumpur and Shanghai) as well as the two Global Functions (IT, Digital and Procurement). Designed to derive optimal value by better leveraging technology, people and competencies, the ultimate goal is to boost efficiency and deliver outstanding and sustainable performance while keeping a strong focus on customer centricity. This Organization is striving for excellence, adopting the Best in Class models to deliver value through simplification and standardization of processes, while adhering to Internal controls and compliance requirements.

The CSIRT (Computer Security Incident Response Team) is responsible for the management of security incidents for the whole group. The CSIRT has offices in Paris, Houston, Radnor and Singapore.

**How will you CONTRIBUTE and GROW?**:
The missions are:

- Incident handling: Alert qualification: a first level of qualification is done by the L1/L2 teams of our MSSP and advanced qualification is done by CSIRT analysts before generating an incident
- Investigation: Incidents are investigated by members of the CSIRT (L3) in coordination with the local security officers in order to define the exact scope of the incident. The CSIRT analyst defines for each incident an action plan which aims to collect the artifacts needed on suspicious assets, replay binaries to extract the IOC (Indicator of Compromise), contact local teams of the group for obtaining additional information,
- Remediation: the CSIRT analyst also defines the remediation action plan for a return to normal and pilot remediation actions with technical teams
- Writing procedures (industrialization): CSIRT analysts enrich existing standard operating procedures (SOP) or create new ones, develop global playbooks, document the IT context of our information system, develop scripts and processes to automate activities
- "Sanitary" actions: conduct actions to limit or eradicate inappropriate behaviors which are not malicious but generate false positives
- User awareness: during qualification and incident handling, remind users of the group security policies and of best practices
- Hunting: CSIRT analysts with the tools at their disposal (SIEM, IDS, PROXY, EDR) identify weak signals
- Monitoring optimization: CSIRT analysts propose evolutions to our monitoring rules and processes
- CSIRT tooling: the CSIRT has its own infrastructure (monitoring, malware analysis) and CSIRT analysts are involved in its maintenance and evolution by keeping it up and running, by adding new features or new tools (sandbox, scripts)

**Are you a MATCH?**:

- BSC / MSC in the field of IT security component or with a similar experience
- 5-8 years of experience in security operations (with at least 2 years in a CSIRT/CERT/SOC position)
- Good knowledge of traditional safety equipment (Firewall, proxy, reverse proxy, VPN, etc.)
- Understanding of the generated logs and security architectures.
- Good knowledge of security issues (attacks, vulnerabilities, etc.)
- Good knowledge of standard protocols (HTTP, FTP, FTP, DNS, SSL, etc.)
- Good knowledge of Windows / Linux architectures
- Knowledge of AWS security and/or industrial IT security would be a plus
- Excellent communication skills (oral and written)

**About Air Liquide
A world leader in gases, technologies and services for Industry and Health, Air Liquide is present in 78 countries with approximately 64,500 employees and serves more than 3.8 million customers and patients. Oxygen, nitrogen and hydrogen are essential small molecules for life, matter and energy. They embody Air Liquide’s scientific territory and have been at the core of the company’s activities since its creation in 1902.

**Our Differences make our Performance
**At Air Liquide, we are committed to build a diverse and inclusive workplace that embraces the diversity of our employees, our customers, patients, community stakeholders and cultures across the world.



  • Petaling Jaya, Selangor, Malaysia Upscale Sdn Bhd Full time

    Security MonitoringOur Cyber Security Analyst will monitor and analyze network traffic for signs of potential threats.Incident ResponseResponding to security incidents in a timely manner is critical to preventing further damage.Vulnerability ManagementCollaborating with our team to identify and mitigate vulnerabilities is essential to maintaining a secure...


  • Petaling Jaya, Selangor, Malaysia Bluesify Full time

    Job Title: Mid-Level Security Analyst - Incident Response\We are seeking a highly skilled Mid-Level Security Analyst - Incident Response to join our team at Bluesify. As a key member of our Security Operations Center (SOC), you will play a critical role in protecting our organization from cyber threats.\Key Responsibilities\\Monitor security information and...


  • Petaling Jaya, Selangor, Malaysia Career Horizons Full time

    Job Description:We are seeking a highly skilled Cybersecurity Consultant to join our team at Career Horizons. As a Cybersecurity Consultant, you will be responsible for leading a team of cybersecurity analysts and ensuring the seamless operation of IT systems for businesses.The role involves analyzing and investigating security incidents, providing security...


  • Petaling Jaya, Selangor, Malaysia F. Hoffmann-La Roche Gruppe Full time

    Roche fosters diversity, equity and inclusion, representing the communities we serve. When dealing with healthcare on a global scale, diversity is an essential ingredient to success. We believe that inclusion is key to understanding people's varied healthcare needs. Together, we embrace individuality and share a passion for exceptional care. Join Roche,...


  • Petaling Jaya, Selangor, Malaysia F. Hoffmann-La Roche Gruppe Full time

    We are seeking a skilled Cybersecurity Analyst to join our team at Roche. As a member of the Global Security Monitoring and Incident Response (MIR) team, you will play a vital role in protecting our networks and users from constantly evolving threats.About the RoleYour primary responsibilities will include monitoring security information, identifying...


  • Petaling Jaya, Selangor, Malaysia Bluesify Full time

    Job Description\We are seeking a highly skilled Cybersecurity Threat Monitor to join our team at Bluesify. As a key member of our Security Operations Center (SOC), you will play a critical role in protecting our organization from cyber threats.\Key Responsibilities\\Monitor security information and event management (SIEM) systems, Endpoint Detection and...


  • Petaling Jaya, Selangor, Malaysia Monroe Consulting Group Full time

    Security SpecialistJoin our IT security team as a L3 Endpoint Security Engineer and play a key role in maintaining the stability, performance, and security of our IT infrastructure. Collaborate with the technical Service Owner to develop and implement endpoint security strategies.Monitor and maintain the stability, performance, and security of our IT...


  • Petaling Jaya, Selangor, Malaysia PRASARANA MALAYSIA BERHAD Full time

    CISO PositionJOB SUMMARYThe Chief Information Security Officer will be responsible for developing and implementing a comprehensive information security program that protects our organisation's digital assets, infrastructure, and data. This is a critical role that requires a seasoned cybersecurity professional with excellent leadership skills and a deep...


  • Petaling Jaya, Selangor, Malaysia Grab Full time

    About Grab and Our CultureWe care about your well-being at Grab. We have a confidential Grabber Assistance Programme to guide and uplift you and your loved ones through life's challenges. Our flexible work arrangements make it easy to balance personal commitments and life's demands.As an Incident Response Specialist, you'll be responsible for monitoring...


  • Petaling Jaya, Selangor, Malaysia Sunway Berhad Full time

    Job Summary: Cybersecurity Architect ManagerAbout the JobWe are seeking a highly experienced IT professional to manage our IT infrastructure and cybersecurity efforts as a Cybersecurity Architect Manager. As a manager, you will be responsible for developing and executing the IT strategy for Infrastructure and Cybersecurity, ensuring alignment with current...


  • Petaling Jaya, Selangor, Malaysia Sunway Berhad Full time

    Job Description: Infrastructure and Cybersecurity LeaderAbout the CompanySunway Fintech is a dynamic fintech company focusing on delivering cutting-edge financial solutions to improve financial services and enhance user experiences.About the RoleWe are seeking a seasoned IT professional to lead our IT infrastructure and cybersecurity efforts as an...


  • Petaling Jaya, Selangor, Malaysia DXC Technology Inc. Full time

    Job Overview:DXC Technology Inc. is seeking a highly skilled IT Security Analyst to join our team.About the Role:This is an exciting opportunity to work with a global IT services leader.You will be responsible for monitoring and reporting on all security-related alerts, incidents and breaches.Responsibilities:Investigate and report on security incidents.Work...

  • Cybersecurity Analyst

    2 weeks ago


    Petaling Jaya, Selangor, Malaysia Career Horizons Full time

    Company Overview :Our client is a leading provider of Managed IT Security Services and Network Solutions, dedicated to safeguarding digital infrastructures and ensuring the seamless operation of IT systems for businesses of all sizes. Specializing in end-to-end solutions, they are committed to enhancing security, performance, and reliability across diverse...


  • Petaling Jaya, Selangor, Malaysia PROVINTELL Cyber Security Full time

    We are seeking a highly motivated and detail-oriented Threat Intelligence Analyst to join our team at PROVINTELL Cyber Security.Key ResponsibilitiesAs a Threat Intelligence Analyst, you will be responsible for:Collecting and analyzing threat intelligence from various sources, including open-source intelligence, social media, and dark web forums.Identifying...


  • Petaling Jaya, Malaysia ResourceXpert Sdn Bhd Full time

    The Incident response manager role will be working in the Cyber Response Services (CRS) Team within our Risk Consulting practice, reporting directly into the head of cyber response. Cyber security is one of the areas which KPMG has identified for tremendous investment and growth. Our clients face a challenging cyber threat and look to us to help them...


  • Petaling Jaya, Selangor, Malaysia Monroe Consulting Group Full time

    Monroe Consulting Group is partnering with a leading global lens manufacturing company to find an experienced Cybersecurity Engineer Lead. This role will focus on providing advanced support and resolution for complex IT Security incidents, specifically related to Endpoint Security topics. The ideal candidate will have strong knowledge of Trellix ENS and...


  • Petaling Jaya, Selangor, Malaysia TD SYNNEX Co. Full time

    Job OverviewWe are seeking an experienced Cybersecurity Specialist to join our team at TD SYNNEX Co. The ideal candidate will have a strong background in cybersecurity principles, practices, and technologies.This role requires a self-starter with excellent communication skills, able to effectively collaborate with internal teams and external partners. The...


  • Petaling Jaya, Selangor, Malaysia Bluesify Full time

    Senior L1 Security AnalystSenior L1 Security Analyst is responsible for cyber threat monitoring via security information and event management (SIEM) systems, Endpoint Detection and Response (EDR), and other security tools. This role requires strong analytical skills, a deep understanding of security tools and processes, and the ability to escalate complex...

  • Cybersecurity Lead

    22 hours ago


    Petaling Jaya, Selangor, Malaysia Hong Leong Bank Full time

    We are looking for a Cybersecurity Lead to contribute to incident response activities and participate in threat hunting exercises to identify and mitigate emerging threats.The successful candidate will have a strong understanding of security principles, including threat modeling, risk assessment, and vulnerability management.The ideal candidate will have...


  • Petaling Jaya, Selangor, Malaysia Continental Full time

    Job OverviewWe are seeking a highly skilled Cybersecurity Specialist to join our team at Continental. As a member of our global environment, you will maintain and operate our System Protection tools.Main ResponsibilitiesProvide third-level support for systems protection solutions, including firewalls, intrusion detection/prevention systems (IDS/IPS), and...