Digital Forensic and Incident Response

6 days ago


Kuala Lumpur, Malaysia Aveva Full time

AVEVA is a global leader in industrial software. Our cutting-edge solutions are used by thousands of enterprises to deliver the essentials of life - such as energy, infrastructure, chemicals and minerals - safely, efficiently and more sustainably.

We’re the first software business in the world to have our sustainability targets validated by the SBTi, and we’ve been recognized for the transparency and ambition of our commitment to diversity, equity, and inclusion. We’ve also recently been named as one of the world’s most innovative companies.

If you’re a curious and collaborative person who wants to make a big impact through technology, then we want to hear from you Find out more at

AVEVA Careers


For more information about our privacy policy and how to manage cookies, visit our

Privacy Policy


The Job

Responsibilities:

- Manage and supervise Cyber Security Response Analyst team to proactively identifying, Investigating, and hunting potential attacks and security risks on AVEVA networks and systems using various platform dashboards and threat feeds.
- Manage and supervise Cyber Security Response Analyst team on analysis of security events as detected by various security controls, monitoring, and recording security events in daily, weekly, monthly, and quarterly reports.
- Manage and supervise Cyber Security Response Analyst team on analysis of escalated security events, notifications, and alerts from managed Security Operation Centre (SOC).
- Supervise and collaborate with Cyber Security DFIR team on creating and maintaining information security operations process, procedure, and checklist documentation, such as incident response plan and playbook.
- Supervise and collaborate with Cyber Security DFIR team on incident response using AVEVA defined Security Incident Response framework such as NIST.
- Reports to Security Incident Manager on concerning security events, incident trends, residual risk, vulnerabilities, and other security exposures, including misuse of information assets and noncompliance.
- Works with the AVEVA Infrastructure Operations team and any required partners/business functions such as R&D to resolve security events, incidents, and service requests.
- Ensures Cyber Security DFIR team comply with security processes and procedures and supports service-level agreements (SLAs) to ensure that security controls are managed and maintained.
- Contributes through security advisories, blogs, and other communication channels on current and emerging security threats to AVEVA assets and people via the security awareness program.
- Be available to provide reactive support to critical security incidents outside standard business hours as part of a rota.

Skills and Qualifications:

- Minimum of five years information and cyber security experience as Security Analyst and Incident Response, Security Threat Hunting, or Security Operations Centre analyst role.
- Bachelor's degree in information systems or equivalent work experience in relevant information and cyber security domain.
- Security certification from a recognized organization such as ISC2, CompTIA, ECouncil, SANS Institute is as advantage.
- Technology standard certification such as from Cisco, VMware, Microsoft is an advantage.
- Familiarity with cloud computing environments such as Microsoft Azure
- Familiarity with Security Operations Centers (SOC)
- Experience responding to incidents, developing (and seeing through to completion) remediation plans,
- creating and formalizing incident response program processes and procedures and working cross
- functionally with teams outside of security to accomplish enterprise security goals.
- Excellent interpersonal and group dynamic skills
- Exceptional stakeholder management skills
- Awareness of the Mitre ATT&CK framework and how it can be used to learn an adversary’s tactics and techniques and focus incident response.
- Experience using Security Information and Event Management (SIEM) and analyzing log data sources.
- Knowledge and understanding of information risk concepts and principles, as a means of relating business needs to security controls.
- Knowledge and experience in developing and documenting security processes and plans.

AVEVA is an Equal Opportunity Employer. We are committed to being an exemplary employer with an inclusive culture, developing a workplace environment where all our employees are treated with dignity and respect. We value diversity and the expertise that people from different backgrounds bring to our business.

Come and join AVEVA to create the transformative technology that enables our customers to engineer a better world.



  • Kuala Lumpur, Kuala Lumpur, Malaysia Nestlé Full time

    Position SnapshotLocation: Kuala Lumpur, MYCompany: Nestle Regional Service Centre MalaysiaFull-timeBachelor's Degree or Masters in Computer Science, Information Security or similar fields3+ years of experiencePosition SummaryJoining Nestlé means becoming part of the world's largest Food and Beverage Company. Where protecting people, products, and data is...


  • Kuala Lumpur, Malaysia Bank Islam Full time

    Req ID: 7278 - Job Description: **Summary** A Cyber Incident Response Manager plays a pivotal role in safeguarding an organization's digital assets by leading efforts to detect, analyze, and respond to cybersecurity incidents. This position is crucial in minimizing the impact of security breaches and ensuring swift recovery. **Duties and...


  • Kuala Lumpur, Malaysia SOCAR Mobility Malaysia Full time

    Are you a talented and driven problem solver who would like to join our team in Kuala Lumpur? Someone with a startup mentality, who is capable of integrating into a multicultural team? SOCAR aims to change the way people in South East Asia move around by becoming the biggest car-sharing platform in South East Asia. We are currently the biggest player in...


  • Kuala Lumpur, Malaysia SOCAR Mobility Malaysia Full time

    Are you a talented and driven problem solver who would like to join our team in Kuala Lumpur? Someone with a startup mentality, who is capable of integrating into a multicultural team? While you are changing the lives of millions, you will be changing yours too. Want to be in the driver seat of this wild, yet exciting journey? **Projects you will be...

  • Endpoint Security

    2 weeks ago


    Kuala Lumpur, Malaysia Crypto.com Full time

    We are looking for an intermediate level security specialist to join our Global Cyber Fusion Center. The role will support our continuous threat monitoring, hunting & response capabilities; and be a key contributor to key endpoint security projects & initiatives. **Responsibilities**: - Threat Monitoring Investigations - deep dive into Tier 1 & Tier 2...


  • Kuala Lumpur, Kuala Lumpur, Malaysia HFG Insurance Recruitment Full time

    About the RoleWe are seeking an accomplished cybersecurity leader to establish and lead aGroup Cyber Fusion Centre (CFC)— a central command for global threat intelligence, monitoring, and incident response. This role will define and drive anintelligence-led, AI-enabled cyber defense strategythat safeguards critical digital assets and ensures business...

  • Security Analyst

    6 days ago


    Kuala Lumpur, Malaysia Bright Nexus (M) Sdn Bhd Full time

    Security Analysts are expected to provide proactive monitoring, analysis and escalation when detecting suspicious security events. - Working in shift schedule (including public holiday), in a 24x7 Security Operation Center (SOC) environment. - Responsible for monitoring on system events to identify suspicious activity and respond to them within the SLA -...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Encora Full time

    The Incident and Problem Management Lead is responsible for ensuring the effective management of IT incidents and problems to minimize business impact and prevent recurrence. This role oversees the end-to-end process, drives timely resolution of incidents, root cause analysis, and continuous improvement initiatives. Additionally, the role manages a 24x7...

  • Security Analyst

    1 week ago


    Kuala Lumpur, Malaysia Bright Nexus (M) Sdn Bhd Full time

    **Key Roles & Responsibilities**: Monitor and protect customer networks, systems and data from cyber-attacks. Security Analysts are expected to provide proactive monitoring, analysis and escalation when detecting suspicious security events. - Working in shift schedule (including public holiday), in a 24x7 Security Operation Center (SOC) environment. -...


  • Kuala Lumpur, Malaysia Sitecore Full time

    **Incident & Escalation Manager** ** Kuala Lumpur, Malaysia** ** About Us**: At Sitecore, our mission is to simplify how brands reach, engage, and serve people by delivering intelligent, personalised digital experiences that connect the world. We empower the world’s most iconic brands to build lifelong relationships with their customers—seamlessly,...