SOC Engineer
2 days ago
This website uses cookies to ensure you get the best experience.
Ekco and our selected partners use cookies and similar technologies (together "cookies") that are necessary to present this website, and to ensure you get the best experience of it. If you consent to it, we will also use cookies for analytics and marketing purposes.
See our Cookie Policy to read more about the cookies we set.
You can withdraw and manage your consent at any time, by clicking "Manage cookies" at the bottom of each website page.
Kuala Lumpur - Malaysia
- Hybrid
SOC Engineer
Founded in 2016 Ekco is now one of the fastest growing cloud solution providers in Europe
About Ekco
Founded in 2016 Ekco is now one of the fastest growing cloud solution providers in Europe
We specialise in enabling companies to progress along the path of cloud maturity, managing transformation and driving better outcomes from our customers' existing technology investments.
In a few words, we take businesses to the cloud and back
We have over 600 highly talented and supportive colleagues (and counting) across a number of regional offices in the UK, Netherlands, Ireland & Malaysia.
About The Role
We wish to appoint a SOC Engineer to our team. The candidate will be one of the leaders of a team of that delivers a range of advisory and technology services to our clients. This is a great opportunity to become involved in a dynamic and rapidly growing team delivering a leading range of professional services offering.
EKCO will support you and encourage your growth and development to identify further potential and expertise in the cybersecurity field.
Your Mission
- Develop content for a complex and growing SIEM infrastructure. This includes use cases, dashboards, active channels, reports, rules, filters, trends and active lab sessions.
- Use SIEM in the daily operational work which includes but not limited to administer, operate, manage SIEM platform and regular activities of ensuring the health of log sources, parsers, alerts, reports etc. and enduring that the platform is operating as planned.
- Monitor SIEM and other event sources, assess, prioritize, escalate and manage security alerts.
- Perform analysis of security, network database and application logs, correlate events and activities to create threat scenarios in order to get ahead of threat actors and reduce the exposure.
- Translate threat intelligence into actionable security across tools such as firewall, IPS and malware detection across multiple security vendor platforms.
- Track and resolve security incidents on regular frequencies and collaborate with other teams for resolution and suggest areas for improvement.
- Must have some experience building custom connectors/parsers etc. to point devices or IT assets that are not supported out of the box.
- Own and operate most important security solutions designed to protect the company from cyber threats and attacks.
- Lead in deploying new solutions and technologies to improve the security posture of the company.
- Continuous fine-tuning of our security solutions to reduce the occurrence of false positive and false negative alerts.
- Working knowledge and experience with the MITRE framework for cyber adversary tactics and techniques
- Performing other duties as assigned.
To be successful in this role you'll need/ What you'll bring to the role or team/ What we're looking for in a teammate
- A Bachelor's degree or equivalent in Computer Science, Computer Engineering, Electrical Engineering, Network Security, Information Security, Information
- Technology, or Mathematics (or equivalent work experience)
- Keen problem solving/ troubleshooting skills
- A can-do attitude
- Excellent written and verbal communication skills. You should be able to communicate technical details clearly.
- The ability to adjust and adapt to changing priorities in a dynamic environment
- A pro-active approach to addressing issues and requests and the ability to multi task
- The ability to learn new technology and concepts quickly
- Great organisational skills and attention to detail
- Experience supporting and administering Splunk
- 5 to 10 years of professional experience
Bonus Points If You Have
- Prior experience working with SIEM or EDR – E.g. SPLUNK, IBM QRadar, Sentinel, Rapid7, Carbon Black, ZScaler and Proofpoint
- Industry recognized certifications – E.g. CompTIA Security+, CySA+, Microsoft SC-200
- Demonstrated knowledge of TCP/IP networking and major protocols such as: HTTP, SSL/TLS, DNS, SMTP
- An understanding or proficiency in information security and compliance regulations (ISO 27001, PCI DSS, GDPR)
- Theoretical or practical knowledge in the following areas:
- Unix, Linux, Windows, etc. operating systems
- Exploits, vulnerabilities, network attacks
- Well-known networking protocols and services (FTP, HTTP, SSH, SMB, LDAP, etc.)
- Packet analysis tools (tcpdump, Wireshark, ngrep, etc.) o Regular expressions
- Database structures and queries
Why Ekco
- Microsoft's 2023 Rising Star Security Partner of the year
- VMware & Veeam top partner status
- Ranked as 4th fastest growing technology company in the Deloitte Fast50 Awards
- Ekco are committed to cultivating an environment that promotes diversity, equality, inclusion and belonging
- We recognise the value of internal mobility and encourage opportunities for internal development & progression
- Flexible working with a family friendly focus are at the core of our company values
Locations Kuala Lumpur - Malaysia Remote status Hybrid
Job Openings
- ITSM Product Manager Multiple locations
- Hybrid
- M365 Platform Engineer – Exchange Online, Collaboration, EntraID Technical Delivery
- Kuala Lumpur - Malaysia
- M365 Platform Engineer – SharePoint Online, Power Platform Technical Delivery
- Kuala Lumpur - Malaysia
More jobs
Kuala Lumpur - Malaysia
- Hybrid
SOC Engineer
Founded in 2016 Ekco is now one of the fastest growing cloud solution providers in Europe
Loading application form
- Jobs
- Data & privacy
Employee login
Candidate Connect login
Dutch
Applicant tracking system by Teamtailor
-
SOC Engineer
2 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia ADI Group Full time 350,000 - 600,000 per year1 Year Contract - RenewableAbout this roleResident Engineer who takes care of SOC monitoring - (Customer uses Alien Vault for SOC). As an L2 SOC Engineer, you will play a crucial role in enhancing the cybersecurity posture by actively monitoring and responding to security incidents be considered for this role you will need to be a proactive problem solver...
-
pre-sales engineer
2 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia STATION F Full time 80,000 - 120,000 per yearAbout repense la cybersécurité pour la rendre encore pluspertinente,efficaceetaccessible. L'un des principaux défis que nous relevons est d'analyser et de comprendre en permanence lesmenaces émergentesafin de définir des stratégies appropriées et d'avoir la capacité de les exécuter à grande échelle. En combinant latechnologieet uneéquipe...
-
Security Engineer
2 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Avensys Consulting Full time 80,000 - 120,000 per yearAvensys is a reputed global IT professional services company, and our service spectrum includes enterprise solution consulting, business intelligence, business process automation and managed services. And we service a client base across banking and financial services, insurance, information technology, healthcare, retail, and supply chain.We are currently...
-
Embedded Software Engineer
2 weeks ago
Kuala Lumpur, Kuala Lumpur, Malaysia ManpowerGroup Full time 90,000 - 120,000 per yearJob Title: Embedded Software EngineerLocation: Level 4, Modu System Bldg, No. 10, Jln Astana 1, Bandar Bukit Raja, 41050 Klang, Selangor, MalaysiaResponsibilities:Participate in board bring-up, peripheral initialization, and interface coding (I2C, SPI, UART, GPIO).Assist in embedded Linux/Android porting and kernel/device tree configuration.Conduct unit...
-
Security Operations Engineer
2 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Alphaeus Pte Ltd Full time 76,800 - 1,209,600 per yearA GCP Security Operations Engineer is responsible for detecting, monitoring, analyzing, investigating, and responding to security threats across workloads, endpoints, and infrastructure hosted on Google Cloud. This role ensures enterprise environments remain secure by leveraging Google Cloud's advanced security tools and threat intelligence.*This is a...
-
Senior Security Analyst
2 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Ensign Services Full timeEnsign is hiring The Security Analyst (Level 3) serves as the senior escalation point within the Security Operations Centre (SOC). This role is responsible for advanced incident detection, analysis, containment, and response activities. The L3 Analyst provides technical guidance to junior analysts (L1 & L2), leads threat-hunting initiatives, and contributes...
-
Intern - SOC Engineer
2 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia ECOMMERCE CONSULTANTS PRIVATE LIMITED Full time 40,000 - 80,000 per yearJob Description:· Maintain a smooth operation of all SIEM Infrastructure and related services.· Installation, configuration and maintenance and optimization of SIEM solutions· Troubleshooting client issues and problem· Creates, maintains, and implements detailed documentation and maintains standard operating procedures.· Design, install, and implement...
-
DevOps Engineer
2 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Vistra Full time 80,000 - 120,000 per yearIt's never been a more exciting time to join Vistra. At Vistra our purpose is progress. We believe that our clients have the power to change the world and to do great things for global progress, and we exist to remove the friction that comes from the complexity of global business – to help our clients achieve progress without friction. But progress...
-
Cloud Engineer
2 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Delphie Consulting services Full time 120,000 - 240,000 per year#Hiring #Cloud Infrastructure #AWS #Docke #SNS #SQS #Networking and Security #VPNs #CI/CDJob Title: Senior Cloud Engineer (AWS)Location: Kuala Lumpur, MalaysiaExperience: 5+ YearsKey Responsibilities:● Cloud Infrastructure Implementation:○ Deploy and manage highly scalable, fault-tolerant cloud infrastructure on AWS, supporting global trading...
-
Senior Cybersecurity Analyst
2 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia S-RM Full time $60,000 - $120,000 per yearSENIOR CYBERSECURITY ANALYST (SOC) APAC Region (Remote / Hybrid) WHO WE ARE S-RM is a global intelligence and cyber security consultancy. Since 2005, we've helped some of the most demanding clients in the world solve some of their toughest information security challenges. We've been able to do this because of our outstanding people. We're...