Epicareer Might not Working Properly
Learn More

Security Operations & Governance Analyst (1 year Contract)

  • Full Time, onsite
  • Ant International
  • Wilayah Persekutuan Kuala Lumpur, Malaysia
Salary undisclosed

Checking job availability...

Original
Simplified

L1 SOC monitoring (24x7 shift basis)

  • L1 SOC monitoring of security alerts 24x7 utilising SIEM, EDR tools, and intrusion detection systems (IDS/IPS)
  • Analyse logs, network traffic, end point data or other source logs to identify suspicious activity or indicators of compromise (IoCs).
  • Triage and prioritize alerts based on severity, impact, and organizational risk, and perform required escalations and mitigations

Incident response

  • Perform containment and mitigation actions for incidents. Escalate confirmed or high-risk incidents to L2/L3 analysts or incident response teams.
  • Collate required information to complete incident documentation and report if necessary.

Governance

  • To support the Security GRC team during regulatory inspection, external audit, customer queries, security certificate programs, and internal audit projects to ensure compliance with regulations and customer requirements.
  • Perform due diligence to assess the information security posture of our third parties
  • Support in any on-site assessments of our third party / outsourced parties

Vulnerability & threat intelligence:

  • Stay updated on emerging threats through threat intelligence

Requirement:

  • Bachelor's degree in Computer Science, IT, Software Engineering, or equivalent is required
  • Any security certifcations Security+, CySA+, CEH, GIAC GSEC, GIAC GCDA, GIAC GDAT, CISA, CISM, CISSP will be a plus
  • Good understanding of network security, operating systems, SQL programming
  • 1-5 years of relevant security monitoring/SOC experience
  • Having experience in handling governance, risk, compliance work will be a plus

L1 SOC monitoring (24x7 shift basis)

  • L1 SOC monitoring of security alerts 24x7 utilising SIEM, EDR tools, and intrusion detection systems (IDS/IPS)
  • Analyse logs, network traffic, end point data or other source logs to identify suspicious activity or indicators of compromise (IoCs).
  • Triage and prioritize alerts based on severity, impact, and organizational risk, and perform required escalations and mitigations

Incident response

  • Perform containment and mitigation actions for incidents. Escalate confirmed or high-risk incidents to L2/L3 analysts or incident response teams.
  • Collate required information to complete incident documentation and report if necessary.

Governance

  • To support the Security GRC team during regulatory inspection, external audit, customer queries, security certificate programs, and internal audit projects to ensure compliance with regulations and customer requirements.
  • Perform due diligence to assess the information security posture of our third parties
  • Support in any on-site assessments of our third party / outsourced parties

Vulnerability & threat intelligence:

  • Stay updated on emerging threats through threat intelligence

Requirement:

  • Bachelor's degree in Computer Science, IT, Software Engineering, or equivalent is required
  • Any security certifcations Security+, CySA+, CEH, GIAC GSEC, GIAC GCDA, GIAC GDAT, CISA, CISM, CISSP will be a plus
  • Good understanding of network security, operating systems, SQL programming
  • 1-5 years of relevant security monitoring/SOC experience
  • Having experience in handling governance, risk, compliance work will be a plus