Senior SOC Analyst, Group Tech

19 hours ago


Greater Kuala Lumpur, Malaysia Hong Leong Bank Berhad Full time

Overview:
We are seeking a highly motivated and experienced Senior Security Analyst to join our growing security team. This pivotal role will be responsible for leading our incident investigation and threat hunting efforts, contributing to the continuous improvement of our security posture and mentoring the next generation of security professionals. This pivotal role will be responsible for developing and executing proactive threat hunting strategies across our environment, and driving continuous improvement by tuning detection logic and providing data-driven recommendations to strengthen our overall security posture. This role reports to the Head of SOC.

Responsibilities:

Operational:

  • Provide comprehensive detection capability by leveraging Security Operations Center (SOC), Security Information and Event Management (SIEM) and Cyber Threat Intelligence (CTI) platforms. This includes continuous optimization of SOC and SIEM use cases, ensuring timely updates and implementation of service improvements.
  • Execute SOC playbooks, knowledge base to minimize the security incident impact and perform detailed investigation on the infected assets.
  • Coordinate with stakeholders and other delivery practices to address, follow up and resolve security issues as part of the escalation matrix and customer delivery process.
  • Monitor, detect and respond to security incidents. Analyze system and network traffic data, security logs and alerts to identify potential attacks. Conduct incident investigations, root cause analysis and recommend remediation. Escalate and document incidents following defined processes. Correlate intelligence with internal telemetry to detect risks and ongoing campaigns.
  • Achieving SLA compliance for incident response and resolution timelines, reducing mean time to detect (MTTD) and mean time to respond (MTTR) to security incidents to improve customer satisfaction through proactive threat monitoring and incident advisory.
  • Perform security monitoring gap analysis and build corresponding processes for continuous evaluation as well as increase detection coverage.

Technical:

  • Monitor OSINT (Open-Source Intelligence), dark web, threat feeds and industry reports to identify threats relevant to the organization. Translate threat intelligence into actionable security across tools such as firewall, IPS and malware detection across multiple security vendor platforms.
  • Proactively search for advanced persistent threats (APTs), zero-day exploits and other sophisticated attack techniques within our network and systems. Develop and utilize threat intelligence to identify new indicators of compromise (IOCs) and attack patterns. Leverage security tools (SIEM, EDR, network telemetry, etc.) to uncover stealthy activities and anomalous behaviors. Continuously refine threat hunting methodologies and integrate new techniques.
  • Actively participate in various security projects, contributing expertise and insights from an operational security perspective. Stay current with the latest cybersecurity threats, trends, technologies, and regulations.

Leadership:

  • Provide guidance, coaching and technical mentorship to junior security analysts. Foster a culture of continuous learning and knowledge sharing within the team. Assist in the professional development of team members through training and skill-building initiatives.
  • Translate technical risks into business context and communicate security risks and compliance gaps clearly to various stakeholders. Support security risk evaluation, remediation planning, and process improvements alongside technical and business teams.
  • Participate on various projects and initiatives providing security guidance and direction while ensuring adherence to security policies and standards.
  • Collaborate closely with respective IT teams (e.g., Network, Database, Application, IT Risk) and business units to proactively identify and address security concerns.
  • Develop and maintain comprehensive documentation of engagements performed, solutions provided, and risks and/or issues identified.

Skills & Experience We Are Looking For:

  • Bachelor's degree in Computer Science, Information Security, or a related field; equivalent practical experience will be considered.
  • Minimum 5 years of experience directly related to practical experience and demonstrated ability to carry out the functions of the job in an SOC environment with a strong focus on incident response, security operations or threat hunting.
  • Proven experience with Security Information and Event Management (SIEM) platforms (e.g., Splunk, QRadar, Elastic, Log Rhythm, Microsoft Sentinel).
  • In-depth understanding of network protocols, operating systems (Windows, Linux), and common attack vectors.
  • Hands-on experience with endpoint detection and response (EDR) solutions.
  • Relevant industry certifications (e.g., GCIH, GCFA, GNFA, OSCP, CISSP, CEH).
  • Experience with scripting languages (e.g., Python, PowerShell) for automation and data analysis.

For more job opportunities, please go to HLB Careers:

We appreciate your application and will be in touch with shortlisted candidates regarding next steps.


  • SOC Analyst

    2 weeks ago


    Kuala Lumpur, Malaysia Skill Quotient Technologies Inc Full time

    **SOC Analyst - L1 and SOC Analyst - L2** - Experience with SOC incident management, SIEM, EDR etc. - Should have strong knowledge and experience with Threat Hunting, Memory Forensics, DFIR, GIAC Intrusion Analyst (GCIA), CHFI. - **Work hours: 24*7** **Job Types**: Full-time, Contract Contract length: 12 months Pay: RM3,000.00 - RM6,000.00 per...

  • SOC L3 Analyst

    20 hours ago


    Kuala Lumpur, Malaysia Agensi Pekerjaan Tech Staffing Sdn Bhd Full time

    As a SOC L3 Analyst, you will be responsible for the following: - As a SOC L3 Analyst, you will develop incident response workflow that can be automated - Perform security monitoring gap analysis and build corresponding process/framework for continuous evaluation as well as increase detection coverage - Provide support to the Security Operations Center's L2...

  • SOC Analyst

    19 hours ago


    Kuala Lumpur, Kuala Lumpur, Malaysia ESET Malaysia Full time

    Company DescriptionESET has been a global leader in IT security for over 30 years, protecting more than a billion users around the world from evolving digital threats. ESET's award-winning software and services offer localized solutions in over 30 languages and are trusted across 200 countries and territories. Since its founding, ESET has remained committed...

  • SOC Analyst L1

    1 week ago


    Kuala Lumpur, Malaysia EC Council Asia Sdn Bhd Full time

    **KEY RESPONSIBILITIES**: - Triage and Investigate Alerts: Review and analyze alerts escalated from Level 1 analysts, identifying true positive and false positive events, and escalating genuine threats to senior analysts. - Incident Response: Assist in responding to detected security events, providing detailed analysis, containment recommendations, and...

  • SOC Analyst Level 3

    3 days ago


    Kuala Lumpur, Malaysia COINS Full time

    Posted 12 February 2025 - LocationKuala Lumpur - Job type Permanent - Discipline Hosting & Infrastructure - ReferenceJ14313 **Job description**: The Access Group is seeking a dedicated and experienced L3 SOC Analyst to join our Global Cyber Security Operations Centre (CSOC), an integral part of our expansive Cyber Security Function. This position offers a...

  • SOC Analyst

    6 days ago


    Kuala Lumpur, Kuala Lumpur, Malaysia GBG Full time

    About GBGEnabling safe and rewarding digital lives for genuine people, everywhereWe make it our mission to ensure more genuine people have digital access to opportunities, and businesses have access to more genuine people. Our technology draws on diverse and reliable data to create a single point of truth for identity and address verification.With over 30...

  • Senior Data Analyst

    1 week ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Aventra Group Full time

    Company DescriptionAventra Group is a fast-growing company specializing in Data and Application Engineering services, dedicated to delivering integrated digital solutions with a focus on maximizing ROI while minimizing operational costs. With delivery offices across Malaysia, Singapore, Philippines, Vietnam, and India, Aventra services clients in diverse...


  • Kuala Lumpur, Malaysia Logicalis Australia Full time

    **Why choose Logicalis?** As Architects of Change, Logicalis' focus is to design, support and execute clients' digital transformation by uniting their vision with their technology expertise and industry insights. The company, through its deep understanding of key IT industry drivers such as security, cloud, data management and IoT, can address customer...


  • Kuala Lumpur, Malaysia Nestle Full time

    Cyber Security **Position Snapshot**: Position Snapshot Organization: Nestlé Global Security Tech Hub KL Location: Kuala Lumpur, Malaysia Fluent: English & Mandarin/Japanese Global Grade: I **Position Summary**: We are currently looking for Cyber Security Incident Response Specialist to join the Global Cyber Security Incident Response team based in Kuala...

  • SOC Intern

    1 week ago


    Kuala Lumpur, Malaysia Logicalis Full time

    **Why choose Logicalis?** As Architects of Change, Logicalis' focus is to design, support and execute clients' digital transformation by uniting their vision with their technology expertise and industry insights. The company, through its deep understanding of key IT industry drivers such as security, cloud, data management and IoT, can address customer...