Cyber Security Operation Engineer

Johor Plantations Group Berhad

Johor Bahru

On-site

MYR 60,000 - 100,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Johor Plantations Group Berhad in Malaysia seeks a cybersecurity professional to join our security operations team. You will manage MxDR, DLP, and DSPM platforms, monitor detections, and drive threat hunting and incident response across our ICT environment.

The role requires 1–3 years of hands-on security operations experience, knowledge of SIEM, vulnerability management, and networking concepts, plus scripting skills and ability to report clearly.

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Computer/Network Engineering, or related discipline; CGPA 3.00+, MUET Band 4+, relevant cybersecurity certifications a plus.
  • 1–3 years hands-on experience in security operations, SOC, or infrastructure/security engineering; experience with EDR/XDR, DLP, DSPM, SIEM, vulnerability tools, and incident handling.
  • Strong knowledge of detection and response operations, alert triage, threat hunting, vulnerability management, and remediation tracking across cybersecurity environments.
  • Understanding of networking, firewall, endpoint, email, and cloud security concepts, with scripting/automation skills and ability to produce clear technical reports.
  • Strong analytical and problem-solving skills; remain calm and structured when managing security incidents.
  • Ability to work with MSPs/vendors, provide on-call support, maintain confidentiality, and pursue advanced cybersecurity certifications.

Responsibilities

  • Security Platform Management: Manage, operate, and tune the MxDR platform; monitor detections; coordinate with the service provider and drive response actions and threat hunting.
  • Vulnerability Management: Conduct quarterly VA scans, analyze results, prioritize risks, and prepare scan reports; track remediation.
  • Incident Response & Security Operations: Support first-response, containment, eradication, and recovery; assist CSIRT lead; monitor security controls with MSP.
  • Secure Change & Development Support: Implement approved security changes and hardening; perform security testing and secure config reviews.
  • Data Privacy (PDPA) Support: Use DSPM to discover/classify personal data; enforce PDPA-compliant data handling; assist investigations.
  • Special Duties: Assume interim cybersecurity manager responsibilities and provide on-call support when required.

Skills

Security operations
EDR/XDR
DLP
DSPM
SIEM
Vulnerability management
Incident handling
Threat hunting
Networking concepts
Scripting/automation
Technical reporting

Education

Bachelor's degree in Cybersecurity
MUET Band 4 or equivalent
Cybersecurity certifications advantageous

Job description

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Computer/Network Engineering, or a related discipline, with a CGPA of 3.00 and above, MUET Band 4 or equivalent, and relevant cybersecurity certifications being an advantage.
  • 1 to 3 years of hands-on experience in security operations, SOC, or infrastructure/security engineering, including experience with EDR/XDR, DLP, DSPM, SIEM platforms, vulnerability management tools, and incident handling.
  • Strong knowledge of detection and response operations, alert triage, threat hunting, vulnerability management, and remediation tracking across cybersecurity environments.
  • Understanding of networking, firewall, endpoint, email, and cloud security concepts, with scripting or automation skills and the ability to produce clear technical reports and documentation.
  • Strong analytical and problem-solving skills, with the ability to remain calm, structured, and effective when managing security incidents and operational challenges.
  • Ability to work closely with MSPs and vendors, provide on-call support when required, maintain high integrity and confidentiality, and pursue advanced cybersecurity certifications for continuous professional development.
Job Responsibilities:
1. Security Platform Management
  • Manage, operate, and tune the Managed Extended Detection & Response (MxDR) platform, monitor detections, coordinate with the service provider, and drive response actions and threat hunting.
  • Manage and operate the Data Loss Prevention (DLP) platform, including policy configuration, alert triage, and monitoring of data egress and exfiltration activities.
  • Manage and operate the Data Security Posture Management (DSPM) platform, including data discovery, classification, posture monitoring, and remediation of exposed sensitive data.
  • Maintain platform health, licensing, integrations, and configuration baselines across all security platforms.
2. Vulnerability Management
  • Conduct quarterly internal vulnerability assessment (VA) scans, analyze results, prioritize risks, and prepare scan reports.
  • Track remediation of identified vulnerabilities with system owners through to closure.
  • Support annual third-party Vulnerability Assessment and Penetration Testing (VAPT) activities and validate remediation efforts.
3. Incident Response & Security Operations
  • Support operational first-response activities, including triage, containment, eradication, and recovery, while escalating decisions to the Cybersecurity Manager as required.
  • Support the CSIRT technical lead under the CSIRP by assisting with evidence preservation and technical investigations.
  • Operate and monitor network, endpoint, and email security controls in collaboration with the Managed Service Provider (MSP).
  • Monitor threat intelligence and implement security hardening measures.
4. Secure Change & Development Support
  • Implement approved security-related changes and hardening activities.
  • Perform security testing and secure configuration reviews for system releases and development initiatives before go-live.
5. Data Privacy (PDPA) Support
  • Use DSPM solutions to discover and classify personal data supporting the Record of Processing Activities (ROPA).
  • Configure and manage DLP controls to enforce PDPA-compliant data handling practices.
  • Support technical breach investigations and containment activities for the Data Protection Officer (DPO).
6. Special Duties
  • Assume operational cybersecurity responsibilities currently carried out on an interim basis by the Cybersecurity Manager.
  • Provide on-call support for security incidents outside normal working hours when required.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer
Cybersecurity Engineer

Mission Consultancy Services • Kuala Lumpur

On-site
MYR 90,000 - 120,000
Cybersecurity Engineer
Cybersecurity Engineer

Mission Consultancy Services Sdn. Bhd. • Kuala Lumpur

On-site
MYR 90,000 - 180,000
IT Security Engineer
IT Security Engineer

ITIC MIMOS • Kuala Lumpur

On-site
MYR 60,000 - 120,000
IT Executive - Security Operations
IT Executive - Security Operations

Genting Malaysia • Kuala Lumpur

On-site
MYR 42,000 - 72,000
Security Operations Center Lead
Security Operations Center Lead

Altera • Bayan Lepas

On-site
MYR 180,000 - 280,000
Security Operations Engineer - Detect, Respond & Secure
Security Operations Engineer - Detect, Respond & Secure

Johor Plantations Group Berhad • Johor Bahru

On-site
MYR 60,000 - 100,000
Cybersecurity Operations Specialist
Cybersecurity Operations Specialist

Starhub Ltd • Petaling Jaya

On-site
MYR 60,000 - 90,000
IT Executive - Security Operations
IT Executive - Security Operations

Resorts World Genting • Kuala Lumpur

On-site
MYR 60,000 - 120,000
Security Engineer
Security Engineer

Mission Consultancy Services • Kuala Lumpur

On-site
MYR 80,000 - 120,000
L2 - Security Analyst
L2 - Security Analyst

Ensign Infosecurity • Kuala Lumpur

On-site
MYR 60,000 - 100,000