EDR - Cloud Security Support Specialist

Pride Global

Cyberjaya

On-site

MYR 90,000 - 150,000

Full time

9 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Jora Malaysia is seeking an experienced EDR & Cloud Security Support Specialist to monitor, administer, and troubleshoot EDR/XDR and cloud security platforms. You will investigate threats and ensure timely remediation within defined SLAs.

You will monitor Azure/AWS/GCP environments, support Defender for Cloud, and coordinate with SOC and Endpoint teams for incident resolution and RCA.

Qualifications

  • 3–5+ years in EDR/endpoint security, cloud security, or SOC operations.
  • Hands-on experience with Microsoft Defender for Endpoint/Defender XDR.
  • Strong understanding of endpoint telemetry and security investigations.
  • Knowledge of cloud IAM and cloud security controls.
  • Familiarity with incident management, escalation, and SLA processes.

Responsibilities

  • Monitor and investigate EDR/XDR security alerts and incidents.
  • Perform endpoint investigations including processes, files, and network connections.
  • Investigate malware, ransomware, and credential-related activities.
  • Coordinate with SOC, Infrastructure, and Endpoint teams for remediation.
  • Monitor Azure/AWS/GCP security alerts and Defender for Cloud.
  • Support Entra ID identity investigations and cloud security logging.

Skills

EDR security
Endpoint security
Cloud security
SOC operations
Incident management

Tools

Microsoft Defender for Endpoint
Defender XDR
Azure
Entra ID

Job description

Jora Malaysia will close on 9th September 2026. Thank you for being with us, we are cheering you on as you continue your career journey.

We are seeking an experienced EDR & Cloud Security Support Specialist to provide monitoring, administration, troubleshooting, investigation, and operational support for EDR/XDR and cloud security platforms. The role will ensure endpoint and cloud security threats are detected, investigated, escalated, and remediated within defined SLAs.

Key Responsibilities

  • Monitor and investigate EDR/XDR security alerts and incidents.
  • Perform endpoint investigations covering processes, command lines, files, hashes, network connections, and user activity.
  • Investigate malware, ransomware, PowerShell, persistence, lateral movement, and credential-related activities.
  • Perform endpoint isolation, remediation, and other approved response actions.
  • Monitor endpoint health, sensor/agent status, and protection coverage.
  • Troubleshoot EDR agent deployment, connectivity, policy, and telemetry issues.
  • Support EDR policy configuration, exclusions, and alert tuning.
  • Coordinate with SOC, Infrastructure, and Endpoint teams for incident remediation.
  • Track unresolved EDR issues and ensure timely closure within SLA.
  • Monitor and investigate security alerts across Azure/AWS/GCP environments.
  • Support Microsoft Defender for Cloud and cloud security monitoring.
  • Investigate suspicious cloud authentication, privilege escalation, resource changes, and anomalous activity.
  • Monitor cloud security posture, recommendations, and security alerts.
  • Support Entra ID identity and authentication investigations.
  • Support remediation of cloud security findings and assist with cloud security incident response and RCA.
  • Support cloud security logging and SIEM integration.

Requirements

  • 3–5+ years of experience in EDR, endpoint security, cloud security, or SOC operations.
  • Hands-on experience with Microsoft Defender for Endpoint / Defender XDR or equivalent EDR/XDR.
  • Good understanding of endpoint telemetry and security investigation.
  • Experience investigating malware, ransomware, PowerShell, suspicious processes, and endpoint compromise.
  • Good understanding of Azure security and Entra ID.
  • Working knowledge of Microsoft Defender for Cloud.
  • Understanding of cloud IAM, networking, security controls, and logging.
  • Strong technical troubleshooting and investigation skills.
  • Good understanding of incident management, escalation, and SLA processes.

Preferred

  • Experience with AWS/GCP security.
  • Knowledge of Defender for Identity, Defender Vulnerability Management, and Intune.
  • Experience with Microsoft Sentinel and KQL.
  • Knowledge of CSPM/CWPP concepts.
  • Experience with Trellix, CrowdStrike, SentinelOne, or Palo Alto Cortex XDR.
  • Knowledge of MITRE ATT&CK and Threat Hunting.
  • Understanding of cloud security frameworks and CIS Benchmarks.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cloud Security & EDR Specialist: Threat Detection Pro
Cloud Security & EDR Specialist: Threat Detection Pro

Pride Global • Cyberjaya

On-site
MYR 90,000 - 150,000
Manager Endpoint Protection (Operation)
Manager Endpoint Protection (Operation)

Telekom Malaysia • Kuala Lumpur

On-site
MYR 180,000 - 320,000
Senior SOC Analyst
Senior SOC Analyst

Pride Global • Cyberjaya

On-site
MYR 120,000 - 180,000
L2 SOC Analyst
L2 SOC Analyst

Pride Global • Kuala Lumpur

On-site
MYR 67,000 - 100,000
Cloud - Cyber Security Engineer
Cloud - Cyber Security Engineer

Niaga Prestasi • Kuala Lumpur

On-site
MYR 90,000 - 130,000
Senior SOC Analyst
Senior SOC Analyst

Pride Global • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Asia Recruit • Kuala Lumpur

On-site
MYR 180,000 - 300,000
L2 SOC Analyst
L2 SOC Analyst

Pride Global • Cyberjaya

On-site
MYR 60,000 - 90,000
SOC Analyst (Splunk)
SOC Analyst (Splunk)

Lavu Tech Solutions • Kuala Lumpur

On-site
MYR 70,000 - 120,000
Managed Security Engineer
Managed Security Engineer

Accenture • Selangor

On-site
MYR 96,000 - 180,000