Gsoc Threat Detection Team Lead

1 week ago


Cyberjaya, Malaysia Experian Full time

Full-time

Employee Status: Regular

Role Type: Hybrid

Department: Information Technology & Systems

Schedule: Full Time

**Company Description**:
**Discover the Unexpected**

Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control and access financial services, businesses to make smarter decisions and thrive, lenders to lend more responsibly, and organisations to prevent identity fraud and crime.

We have 21,700 people operating across 30 countries and every day we’re investing in new technologies, talented people, and innovation to help all our clients maximise every opportunity. With corporate headquarters in Dublin, Ireland, we are listed on the London Stock Exchange (EXPN) and are a constituent of the FTSE 100 Index.

Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control and access financial services, businesses to make smarter decisions and thrive, lenders to lend more responsibly, and organisations to prevent identity fraud and crime.

We have 21,700 people operating across 30 countries and every day we’re investing in new technologies, talented people, and innovation to help all our clients maximise every opportunity. With corporate headquarters in Dublin, Ireland, we are listed on the London Stock Exchange (EXPN) and are a constituent of the FTSE 100 Index.

**Job Description**:
**Description**

The _Threat Detection Lead Analyst_ is an essential part of Experian’s Global Security Operation Center (GSOC) that perform in-depth analysis and further triage of security threats, proposes remediation actions, and takes part in the creation and steady improvement of correlation rules, processes and procedures and other department related documentation. The _Threat Detection Lead Analyst_ is a leader within the organization, executing on strategic items that promote a strong information security posture. Below is the list of main tasks:

- Investigate incidents using SIEM technology, packet captures, reports, data visualization, and pattern analysis.
- Analyze, escalate, and assist in remediation of critical information security incidents.
- Improve and challenge existing processes and procedures in a very agile and fast-moving information security environment.
- Collaborate with external teams for incident resolution and escalations, ensuring questions and concerns from Experian users are answered in a timely manner.
- Provide support and leadership to the tier one analysts, including feedback on quality of work, driving case quality.
- Expert knowledge of:

- Information security policies and goals
- Log analysis and event traffic patterns
- The current IT threat landscape and upcoming trends in security

**Qualifications**:
**Required Experience**:5+ years’ experience in the following areas:
Demonstrates advanced technical skills and hands-on knowledge, such as:

- In-depth packet analysis skills, core forensic familiarity, incident response skills, public could security practices, and data fusion skills based on multiple security data sources
- Security analysis and architecture of Azure and AWS cloud environment using security tools including Defender for Cloud, GuardDuty, CloudTrail, or CloudWatch.
- System administration on Unix, Linux, or Windows
- Network forensics, logging, and event management
- Defensive network infrastructure (operations or engineering)
- Vulnerability assessment and penetration testing concepts
- Malware analysis concepts, techniques, and reverse engineering
- In-depth knowledge of network and host security technologies and products (such as firewalls, network IDS, scanners) and continuously improve these skills
- Security monitoring technologies, such as SIEM, IPS/IDS, UEBA, DLP, among others.
- Scripting and automation

Demonstrates behavioral skills, such as:

- Ability to work in a team environment, able to train and coach other team members
- Excellent verbal and written communications skills and ability to produce clear and thorough security incident reports and briefings.
- Strong logical thinking abilities, especially analyzing security events.
- Excellent analytical and problem-solving abilities
- Excellent organizational and attention to details in tracking activities within various Security Operation workflows.
- Well established client-focused communication skills that requires to read, review, investigate, and summarize reports on complex issues, in a manner that can be understood by non-technical



  • Cyberjaya, Selangor, Malaysia r3 Consultant Full time

    Job Description – Red Teaming/Security Assurance AnalystTeam: Cyber Resilience & DefenceDesignation: Red Teaming/Security Assurance AnalystJob Role:Specializing in Red Teaming Assessment, MITRE Framework, Cyber Threat Intelligence, Threat Hunting, and DFIR (Digital Forensics and Incident Response), you will play a pivotal role in enhancing our clients'...


  • Cyberjaya, Malaysia Genius Brio Sdn Bhd Full time

    **IAM (IDENTITY & ACCESS MANAGEMENT) & CYBERSECURITY SPECIALIST** **Location**: Cyberjaya/Putrajaya, Malaysia **Employment Type**: Full-Time/ Contract **JOB SUMMARY** **KEY RESPONSIBILITIES** **Threat Management** - Build and maintain an advanced Security Operations Centre (SOC) to detect, analyze, and mitigate cyber threats in real-time. - Implement...


  • Cyberjaya, Malaysia Dell Technologies Full time

    Insider Risk Investigator Analyst The Dell Security & Resiliency organization (SRO) manages the security risk across all aspects of Dell’s business. We are currently experiencing incredible growth in order to meet the security needs of the world’s largest technology company. With team members located in over 15 countries, you will have an excellent...


  • Cyberjaya, Malaysia Nibaara Technologies Pte Ltd Full time

    **Cloud Security **Lead Specialist** **Job description** 1. Operations management of the Azure cloud security tools (Redlock, Twistlock, Azure Key Vault, Azure Security Center, Tenable etc) by interfacing with various internal teams and vendors - 10 % 2. Impact study of various alerts and categorization based on priority - 5% 3. Reporting, dashboarding,...


  • Cyberjaya, Selangor, Malaysia Dell Global Business Center Sdn Bhd Full time

    Senior Advisor, Application Vulnerability Assessment– AppSec & TenableSpotting vulnerabilities before they are exploited is a key part of how we approach security at Dell Technologies and why this team is so important. Our discovery and detection team identifies weaknesses in information systems, confirms compliance to security standards, analyzes...

  • Aml Manager

    3 days ago


    Cyberjaya, Malaysia Deriv Full time

    Job Information Job Opening ID - ZR_1873_JOB Date Opened - 11/04/2025 Industry - Legal & Compliance Job Type - Full time City - Cyberjaya Country - Malaysia At Deriv, you won’t just ensure compliance—you’ll lead the charge against financial crime and champion regulatory excellence. As our AML Manager, you’ll play a pivotal role in shaping and...


  • Cyberjaya, Malaysia Primary Guard Sdn Bhd Full time

    **INTERNSHIP FOR CYBERSECURITY** MYR 800 + Daily Lunch Meals at the office We are looking for a hungry and enthusiastic IT intern, so if you’re hungry to learn, and have a passion for Technology Development - we want you! At Primary Guard, you’ll be treated as a full member of the team and get hands-on experience working. Primary Guard is an IT &...

  • Team Lead

    5 days ago


    Cyberjaya, Malaysia Shell Full time

    **Where do you fit in?** - The Team Lead ADT will be part of the VP TAO organization_. _The_ VP TAO will be accountable for maximizing integrated business value across the organization. Technical Asset Operations (TAO) is a key enabler for the accelerated delivery of Shell’s Asset Management System and will help us to reach our ultimate potential in...

  • Sales Team Lead

    3 days ago


    Cyberjaya, Malaysia MYBARBER TECH SDN. BHD. Full time

    **Position : Sales Team Lead** **Location : Kenwingston Business Centre, Cyberjaya** **Benefits**: - _Medical Benefit_ - _Work Equipment_ - _Growth & Upskill_ - _Free Flow Pantry_ **About Us** myBarber is an innovative app that connects customers with professional barbers for seamless hair grooming services, either at barbershops or in the comfort of...


  • Cyberjaya, Selangor, Malaysia Dell Technologies Full time

    Spotting vulnerabilities before they are exploited is a key part of how we approach security at Dell Technologies and why this team is so important. Our discovery and detection team identifies weaknesses in information systems, confirms compliance to security standards, analyzes discovered threats that could result in unauthorized misuse of data and works...