Senior Information Security Incident Response Lead

14 hours ago


Petaling Jaya, Selangor, Malaysia NTT DATA Asia Pacific Full time 90,000 - 120,000 per year

Make an impact with NTT DATA
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive.

Key Responsibilities:

  • Lead and manage complex security incidents, acting as a key contact for stakeholders.
  • Perform deep analysis of security alerts to identify, mitigate, and remediate threats.
  • Conduct forensic investigations on compromised hosts, networks, and cloud environments.
  • Proactively hunt for adversarial activity and anomalous behaviors across large datasets.
  • Analyze malware samples (basic level) to determine functionality, impact, and mitigation strategies.
  • Develop and refine detection rules, improving alert fidelity and response workflows.
  • Contribute to threat intelligence gathering, analyzing attack patterns, and enhancing defensive strategies.
  • Participate in red teaming or penetration testing activities to identify and remediate vulnerabilities.
  • Provide strategic recommendations for improving the organization's security posture.
  • Create detailed incident reports, threat intelligence assessments, and executive summaries.
  • Mentor and provide guidance to junior analysts, fostering continuous improvement in IR methodologies.

Knowledge and Attributes:

  • Ability to communicate and work across different cultures and social groups.
  • Ability to plan activities and projects well in advance, and takes into account possible changing circumstances.
  • Ability to maintain a positive outlook at work.
  • Ability to work well in a pressurized environment.
  • Ability to work hard and put in longer hours when it is necessary.
  • Ability to apply active listening techniques such as paraphrasing the message to confirm understanding, probing for further relevant information, and refraining from interrupting.
  • Ability to adapt to changing circumstances.
  • Ability to place clients at the forefront of all interactions, understanding their requirements, and creating a positive client experience throughout the total client journey.

Academic Qualifications and Certifications:

  • Bachelor's or Master's degree in Computer Science, Cybersecurity, or a related field.
  • Minimum of 5 years of experience in cybersecurity, with at least 2 years in incident response, threat hunting, or forensic analysis.

Required experience:

  • Extensive experience responding to targeted attacks from APT groups, cybercriminals, and nation-state actors.
  • Strong forensic analysis skills across Windows, Linux, and macOS systems.
  • Expertise in network forensics, traffic analysis, and packet inspection (Wireshark, Zeek).
  • Proficiency in SIEM platforms (Splunk, Sentinel, QRadar) and EDR solutions (CrowdStrike, Microsoft Defender ATP).
  • Knowledge of malware analysis techniques, including static and dynamic analysis.
  • Familiarity with cloud security investigations (AWS, Azure, GCP).
  • Strong scripting skills in Python, PowerShell, or similar languages for automation.
  • Understanding of security architecture, authentication mechanisms, and enterprise IT operations is a plus.
  • Experience with vulnerability management, red teaming, or penetration testing is a plus.
  • Familiarity with MITRE ATT&CK framework and various cyber threat intelligence methodologies.

Preferred Certifications:

  • GIAC (GCFA, GNFA, GCIH, GCIA, GREM)
  • CISSP (Certified Information Systems Security Professional)
  • CEH (Certified Ethical Hacker)
  • OSCP (Offensive Security Certified Professional)
  • Cloud Security Certifications (AWS Security Specialty, Microsoft Azure Security)

Key Competencies:

  • Strong analytical and problem-solving skills in high-pressure situations.
  • Ability to manage multiple investigations efficiently while meeting deadlines.
  • Excellent verbal and written communication skills, with the ability to convey technical details to varied audiences.
  • Strong team collaboration and leadership skills, with a proactive approach to knowledge sharing.
  • Ability to work in a fast-paced environment and adapt to evolving threats and challenges.

Workplace type:
About NTT DATA
NTT DATA is a $30+ billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long-term success. We invest over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure, and connectivity. We are also one of the leading providers of digital and AI infrastructure in the world. NTT DATA is part of NTT Group and headquartered in Tokyo.

Equal Opportunity Employer
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.



  • Petaling Jaya, Selangor, Malaysia NTT Full time $60,000 - $90,000 per year

    Make an impact with NTT DATAJoin a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive. Key Responsibilities:Lead and...


  • Petaling Jaya, Selangor, Malaysia KPMG Malaysia Full time

    Description:The senior incident response manager role will be working in the Cyber Response Services (CRS) Team within our Risk Consulting practice, reporting directly into the head of cyber response. Cyber security is one of the areas which KPMG has identified for tremendous investment and growth. Our clients face a challenging cyber threat and look to us...


  • Petaling Jaya, Selangor, Malaysia PROVINTELL Cyber Security Full time 60,000 - 120,000 per year

    Role DescriptionIdentify, prevent and response to security incidents with threat intelligence gathering, external attack surface management, continuous threat exposure management, security orchestration and managed threat detection & responsePerimeter and end-point cyber threats monitoring, analysis and vulnerability assessmentFirst level support for...


  • Petaling Jaya, Selangor, Malaysia EPOMS Sdn. Bhd. Full time

    Responsibilities:Lead Security Operations, oversee threat hunting, incident response, and forensics investigationsConduct cybersecurity risk assessments and implement proactive security controls – Vulnerability Scanning and Patch Management report.Report major security incidents to regulatory bodies (e.g., CSM, NACSA, MPM) if requiredManaging containment,...


  • Petaling Jaya, Selangor, Malaysia Hartalega Full time $60,000 - $120,000 per year

    OVERVIEWEstablishes system controls by developing framework for controls and levels of access; recommending improvements.Maintains access by providing information, resources, and technical support.Ensures authorized access by investigating improper access; revoking access; reporting violations; monitoring information requests by new programming; recommending...


  • Petaling Jaya, Selangor, Malaysia Ensign InfoSecurity Full time 90,000 - 120,000 per year

    We are seeking an experienced Senior Endpoint Security Engineer with a strong background in managing and operating enterprise endpoint security platforms, specifically Trellix ePO / Trellix EDR or Trend Micro Endpoint Security. The ideal candidate must have 4+ years of hands-on experience in endpoint security operations, administration, and threat...

  • Security Analyst

    15 hours ago


    Petaling Jaya, Selangor, Malaysia Private Company Full time

    Technical Leadership and Incident HandlingAct as the primary point of escalation for Level 1 analysts for complex security events and potential incidents.Perform in-depth investigation and analysis of security alerts using SIEM, EDR and other security tools.Lead the response to confirmed security incidents, including containment, eradication, and recovery...


  • Petaling Jaya, Selangor, Malaysia Chillijobs Full time 156,000 - 200,000 per year

    Opening with a finance multinational in Petaling Jaya.ResponsibilitiesLead and manage daily IT security operations, incident response, and system/network health checks.Monitor servers, networks, and endpoints for security events, logs, alerts, and potential disruptions.Identify and analyse security risks, threats, vulnerabilities, and attempted...


  • Petaling Jaya, Selangor, Malaysia Digital Defense Solution Sdn Bhd Full time 60,000 - 80,000 per year

    Role SummaryThe Network & Systems Security Engineer (Senior Level) is is responsible for the holistic security of our clients' environments, bridging the gap between Network Security and Server/System Administration. You will identify vulnerabilities, manage WAF and servers, respond to incidents, and act as a technical advisor to our clients.1. Security...


  • Petaling Jaya, Selangor, Malaysia VAD CAPITAL SDN BHD Full time 10,000 - 12,500 per year

    Responsibilities:Lead daily IT security operations including incident response, administration, system health checks, and infrastructure monitoring.Detect and analyze security threats, vulnerabilities, and breaches; perform investigations, vulnerability scans, patch management, and penetration testing.Conduct root cause analysis, maintain incident...