A complete application in a minute — tailored resume and cover letter, ready to send.
Commerce Dot Com Sdn Bhd in Malaysia is seeking an experienced cybersecurity professional to lead vulnerability assessments, monitoring, and incident response. The role involves coordinating penetration testing, reviewing configurations, and improving security controls across servers, networks, applications, and databases.
You will monitor security logs, investigate suspicious activity, and contribute to incident handling, forensics, and data protection efforts while aligning with governance and
Conduct regular vulnerability assessments and security reviews on servers, networks, applications, and databases.
Perform penetration testing or coordinate with third parties to identify security weaknesses.
Review system configurations and hardening compliance against security standards and best practices
Monitor security logs, alerts, and events from security tools (e.g.,WAF , IDS/IPS, EDR).
Investigate suspicious activities and potential indicators of compromise.
Recommend and implement improvements to monitoring and detection mechanisms.
Participate in incident response activities, including investigation, containment, eradication, and recovery.
Perform basic digital forensic analysis to determine root causes and impact of security incidents.
Document findings, timelines, and evidence in accordance with incident handling procedures.
Assess risks related to data exposure, unauthorized access, or data leakage.
Recommend controls such as encryption, access controls, and monitoring to protect sensitive data.
Ensure systems comply with internal security policies, standards, and regulatory requirements (e.g., ISO 27001, ISMS, or relevant government guidelines if applicable).
Assist in risk assessments, audits, and security reviews.
Prepare security assessment reports and recommendations for management.
Track emerging threats, vulnerabilities, and cybersecurity trends.
Recommend improvements to security architecture and operational procedures.
Provide technical guidance to IT teams on secure system design and configuration.
Bachelor’s degree in Cyber Security, Information Technology, Computer Science, or a related field.
Minimum 4 - 6 years of experience in cybersecurity, system administration, or network security.
Experience in vulnerability assessment, security monitoring, and incident response.
Knowledge of operating systems (Linux, Windows) and network protocols.
Familiarity with vulnerability scanning tools and security assessment methodologies.
Understanding of cryptography, authentication mechanisms, and access control.
Basic knowledge of digital forensics processes and tools.
Experience with SIEM or log analysis tools is an advantage.
CEH, Security+, CySA+, or equivalent
CISSP, CISM, or similar advanced certifications
Analytical and problem-solving skills
Attention to detail and investigative mindset
Ability to work independently and proactively
Good documentation and reporting skills
Strong sense of integrity and confidentiality