Senior Incident Response Specialist, Cyber Security-Malaysia
Core
L2 Incident Responder monitoring, detecting, and analyzing cybersecurity incidents via SOC/SIEM platforms to ensure timely response and cyber resilience.
Role type
Senior IC cybersecurity incident responder
Builds
Incident response playbooks, detection rules, and threat hunting capabilities
Domain
Cybersecurity / SOC operations
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure | physical/clinical work
Required skills
SIEM log analysis, incident triage, threat hunting, malware/phishing/insider threat investigation, MITRE ATT&CK framework application, detection rule tuning, root cause analysis, evidence collection, automation workflow contribution
Preferred skills
MSSP collaboration, use case validation, tabletop exercise participation, log source onboarding
Technologies
Elastic Stack, SIEM platforms, MITRE ATT&CK
Responsibilities
Perform end-to-end incident triage and investigation of escalated security alerts; Conduct deep-dive investigations for malware, phishing, insider threats, and cloud breaches; Support SIEM platform by fine-tuning rules and suggesting new detections; Collaborate with IT, network, and application teams for remediation and root cause analysis; Participate in post-incident reviews and process improvements; Monitor alerts and validate security events from multiple log sources; Assist in detection rule creation and tuning; Contribute to automation opportunities in detection and response workflows; Manage log source onboarding and continuous log availability on the SIEM platform.
Seniority
Senior, hands-on IC