IT Security Operation L1

OCBC Indonesia

Tangerang

On-site

IDR 223,200,000 - 357,120,000

Full time

46 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

OCBC Indonesia is seeking a capable SOC Analyst to join our high-impact SOC where investigations protect the organization from real threats.

You will analyze alerts, conduct deep-dive investigations, hunt threats, contain incidents, and mentor junior staff. The role emphasizes collaboration and continuous improvement of detection rules.

Join our Group Operations and Technology culture and contribute to enterprise-wide cybersecurity as part of OCBC Indonesia.

Qualifications

  • Bachelor’s degree in IT, CS, Cybersecurity or related field.
  • 2+ years in a SOC environment with 24/7 monitoring.
  • Proficiency with SIEM platforms (Splunk, Sentinel, QRadar) and EDR tools (CrowdStrike, Defender).
  • Solid TCP/IP networking, Windows/Linux systems, and ATT&CK mapping.
  • CompTIA Security+, CySA+ or equivalent is a strong plus.
  • Bonus for Python or PowerShell scripting.

Responsibilities

  • Analyze and triage high-fidelity alerts across SIEM, EDR, and IDS platforms.
  • Conduct deep-dive investigations using logs, network traffic, and endpoint telemetry.
  • Proactively hunt for hidden threats and threat intelligence feeds.
  • Contain active incidents and coordinate remediation with IT and operations teams.
  • Tune and optimize detection rules to reduce false positives and improve SOC efficiency.
  • Document incidents thoroughly and contribute to post-incident reports and lessons learned.
  • Mentor L1 analyst, transferring knowledge and handling complex cases.

Skills

SOC experience
SIEM proficiency
EDR proficiency
Networking fundamentals
MITRE ATT&CK knowledge
Scripting (Python/PowerShell)

Education

Bachelor’s degree in IT/CS/Cybersecurity

Tools

Splunk
Microsoft Sentinel
IBM QRadar
CrowdStrike
Microsoft Defender

Job description

You'll work in a high-impact SOC where your investigations protect the organization from real threats--not just noise. We invest in smarter detection, threat hunting, and cross-functional collaboration so your time goes to the cases that matter, not alert fatigue. Plus, you'll grow into leadership by mentoring L1 analysts and shaping our detection engineering roadmap using enterprise-grade tools.

How You Succeed:

You think like an attacker and act like a defender. You don't stop at "alert closed"; you dig deeper, reduce noise by tuning rules, and turn chaos into precise signal. Whether it's an incident report to leadership or a walkthrough with a junior analyst, you make complexity feel simple while staying one step ahead.

What You Do:

  • Analyze and triage high-fidelity alerts across SIEM, EDR, and IDS platforms.
  • Conduct deep-dive investigations using logs, network traffic, and endpoint telemetry.
  • Proactively hunt for hidden threats and threat intelligence feeds.
  • Contain active incidents and coordinate remediation with IT and operations teams.
  • Tune and optimize detection rules to reduce false positives and improve SOC efficiency.
  • Document incidents thoroughly and contribute to post-incident reports and lessons learned.
  • Mentor L1 analyst — transferring knowledge and stepping in on the most complex cases.

Who You Are:

  • Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field.
  • 2+ years in a SOC environment (monitoring 24/7)
  • Proficient with SIEM platforms (Splunk, Sentinel, QRadar) and EDR tools (CrowdStrike, Microsoft Defender).
  • Solid foundation in TCP/IP networking, Windows/Linux systems, and attacker tactics mapped to MITRE ATT&CK.
  • Certified in CompTIA Security+, CySA+, or equivalent is a strong plus.
  • Bonus points if you script in Python or PowerShell to automate the boring stuff.
  • Must be willing and able to work rotating shifts, including nights, weekends, and public holidays, as required by the 24/7 security operations model.

You’ll be Part of:

Group Operations and Technology co-creates products and solutions. We build the underlying technology applications and services. And manage the Group’s IT operations & cyber defense. 24/7. 365. End-to-end transaction fulfillment services. For the whole Group. With singular focus. Delivering exceptional customer experience. At the forefront of our digital transformation journey. Relentless innovation. Pushing boundaries. And it’s all powered by serious investment in your development.

About OCBC:

At PT Bank OCBC NISP Tbk (OCBC), we don’t just serve customers, but we walk alongside them being a trusted partner to enrich the quality of their lives. Since 1941, we have been committed to helping individuals and businesses navigate their financial journey with solutions that grow alongside their evolving needs.

By combining deeply rooted Indonesian values with the comprehensive global capability of the OCBC Group, we offer meaningful, relevant financial services, from daily banking to long‑term planning, all delivered with care, understanding, and responsibility.

We are always looking for bright, driven individuals who are curious, collaborative, and eager to grow. At OCBC, you will find a workplace that respects your journey, supports your development, and gives you space to contribute meaningfully–because your Opportunity Starts Here!

What We Offer:

OCBC offers a competitive compensation & benefit, including a comprehensive suite of flexible benefits that fit your lifestyle and livelihood, community engagement programs, industry‑leading learning, and professional development opportunities in the banking sector. We genuinely care about your well‑being, growth, and aspirations−just as much as we care about our customers' needs. By joining our team, you will not only thrive personally and professionally but also contribute to become a Trusted Partner to Improve Quality of Life.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

SOC L1 Analyst: 24/7 Threat Hunter & Mentor
SOC L1 Analyst: 24/7 Threat Hunter & Mentor

OCBC Indonesia • Tangerang

On-site
IDR 223,200,000 - 357,120,000
Operational Risk Assessment
Operational Risk Assessment

OCBC Indonesia • Jakarta Pusat

On-site
IDR 350,000,000 - 500,000,000
SOC L1 Analyst
SOC L1 Analyst

PT Duta Firza • Jakarta Utara

On-site
IDR 72,000,000 - 120,000,000
Legal Advisor
Legal Advisor

OCBC Indonesia • Jakarta Pusat

On-site
IDR 300,000,000 - 540,000,000
Competitive compensation
Comprehensive benefits
Professional development opportunities
IT Security Operation Center (SOC) - L1 (IT Consulting)
IT Security Operation Center (SOC) - L1 (IT Consulting)

Luminare Consulting • Jakarta Pusat

On-site
IDR 66,960,000 - 111,600,000
PRIVATE BANKER
PRIVATE BANKER

OCBC Indonesia • Jakarta Pusat

On-site
IDR 800,000,000 - 1,100,000,000
Competitive pay
Flexible benefits
Professional development
SOC ANALYST (SOC L1)
SOC ANALYST (SOC L1)

PT Graha Cyber Indonesia • Jakarta Selatan

On-site
IDR 180,000,000 - 300,000,000
Competitive salary and benefits
Collaborative environment
Career development opportunities
+1
OCBC Indonesia Graduate Talent Programme
OCBC Indonesia Graduate Talent Programme

OCBC Indonesia • Jakarta Pusat

On-site
IDR 111,600,000 - 167,400,000
Competitive compensation
Mentoring and development programs
Cross-functional exposure
SOC L1 Analyst: IT Security Operations & Incident Response
SOC L1 Analyst: IT Security Operations & Incident Response

Luminare Consulting • Daerah Khusus Ibukota Jakarta

On-site
IDR 66,960,000 - 111,600,000
IT Security Operation Center
IT Security Operation Center

PT ABISHAR TECHNOLOGIES INDONESIA • Surabaya ꦱꦸꦫꦧꦪ

On-site
IDR 90,000,000 - 150,000,000