IT Security Engineer

ITIC MIMOS

Kuala Lumpur

On-site

MYR 60,000 - 120,000

Full time

13 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

MIMOS Solutions Sdn. Bhd. in Malaysia is seeking an IT Security Engineer to support cybersecurity efforts by hardening assets, continuous monitoring, and vulnerability management.

You will help ensure business continuity, regulatory compliance, and protection of assets against cyber threats, with responsibilities across security architecture, vulnerability scanning, incident response, and IAM.

Qualifications

  • Bachelor's degree in computer science, IT, or engineering is required.
  • AWS Certified Security – Specialty or Azure Security Engineer (AZ-500) desirable.
  • Cybersecurity certifications such as CISSP, OSCP, CompTIA Security+ or Blue Team level are desirable.

Responsibilities

  • Security Architecture & Engineering: build defenses and secure networks.
  • Vulnerability Management: run scans and patching.
  • Penetration Testing and incident response: conduct tests and respond to incidents.
  • IAM and Access Management: monitor MFA and access controls.
  • Compliance: align configurations with NIST/CIS/ISO standards and threat intel.

Skills

Cybersecurity Foundations
Fundamental Networking Concepts
Security Appliance Awareness
Multi-OS Familiarity
Vulnerability Scanning Basics
Basic Scripting

Education

Bachelor’s degree in Computer Science/Information Technology/Engineering or equivalent

Tools

Nessus
OpenVAS
Qualys

Job description

Department:

Technology & IT Operations Dept, Solution Service Delivery Div, MIMOS Solutions Sdn. Bhd.

Job Purpose

Job Description

IT Security Engineer

Department:

Technology & IT Operations Dept, Solution Service Delivery Div, MIMOS Solutions Sdn. Bhd.

Job Purpose

The IT Security Engineer is responsible for supporting the organisation’s cybersecurity efforts by reducing the technical attack surface through secure asset hardening, continuous monitoring, and vulnerability management. The Engineer also help to ensure business continuity, regulatory compliance, and the protection of organisational assets against internal and external cyber threats.

Key Responsibilities:

  • Security Architecture & Engineering (Building Defenses)
  • Designing Secure Networks and Implementing Controls: Work with the Firewall team to secure routing architectures.
  • Automation & Scripting: Work with the server team and developer team to automate mundane security checks, log alerts, and system configuration deployments.
  • Vulnerability Management (Proactive Auditing)
  • Vulnerability Scanning: Running automated tools like Nessus to spot missing patches or software flaws.
  • Penetration Testing: Conducting controlled, simulated cyberattacks to discover hidden entry points before bad actors find them.
  • Remediation & Patching: Working alongside system administrators to push security updates and system hardening configurations.
  • Threat Hunting & Incident Response (Active Defense)
  • Log Analysis: Checking server logs, user activities, and network packets to catch anomalies.
  • Incident Triage: Investigating suspicious activity alerts, containing infected machines, and neutralizing active malware.
  • Forensic Clean-up: Performing root-cause analysis after a breach, patching the vulnerability, and safely restoring systems.
  • Identity & Access Management (IAM)
  • Access Control and MFA Management: Monitoring access control and Multi-Factor Authentication systems by providing the report.
  • Compliance & Threat Intelligence
  • Framework Alignment: Ensuring configurations match global baselines like NIST, CIS, or the ISO 27001 guidelines mentioned in your document.
  • Threat Intel Tracking: Keeping track of newly released Zero-Days and emerging cyber threat trends to secure systems against new attack vectors.
Qualification

  • Bachelor’s degree in Computer Science/Information Technology/Engineering or equivalent.
Professional Qualification

  • AWS Certified Security – Specialty or Azure Security Engineer (AZ-500).
  • Cybersecurity certifications such as Comptia security+, CISSP, OSCP (Offensive Security) or BTL1 (Blue Team Level 1), etc is desirable.
Work Experience

  • At least 1-5 years of working experience in IT enterprise infrastructure team.
  • At least 1-2 years of working experience in security operations – networking and firewall.
  • Experience in generating designs, documenting, installing, testing, implementing, monitoring, and maintaining complex systems and applications.
  • Participated in project requirement design, implementation, deployment, and support.
  • Performing any security framework auditing.
Technical Skills

  • Cybersecurity Foundations: Strong foundational understanding of core security principles, common cyber-attack vectors (e.g., phishing, malware, OWASP Top 10), and basic defense mechanisms.
  • Fundamental Networking Concepts: Solid knowledge of the OSI model, TCP/IP networking, subnetting, common ports, and basic packet analysis using Wireshark.
  • Security Appliance Awareness: Basic familiarity with configuring or assisting in the maintenance of firewalls, Virtual Private Networks (VPNs), and basic endpoint protection agents.
  • Multi-OS Familiarity: Ability to navigate and perform basic system administration tasks via command line in both Windows (Active Directory basics) and Linux environments.
  • Vulnerability Scanning Basics: Familiarity with executing automated scanning tools (such as Nessus, OpenVAS, or Qualys) and extracting standard vulnerability reports for review.
  • Basic Scripting (Highly Desirable): Exposure to reading and writing simple scripts (Python, Bash, or PowerShell) to automate repetitive administrative or scanning tasks.
Soft Skills

  • Active Learning Mindset: A strong drive to continuously upskill, learn new enterprise security tools, and absorb mentorship from senior engineering staff.
  • Clear Technical Reporting: Ability to accurately document security incidents, write clear ticket summaries, and communicate findings to the immediate team.
  • Strong Teamwork & Support: Ability to collaborate effectively within a team environment and reliably support senior engineers on larger infrastructure projects.
  • Attention to Detail: Keen observational skills to spot anomalies in system alerts, log files, or user access requests without overlooking discrepancies.
  • Receptive to Feedback: Openness to constructive feedback, with a structured approach to troubleshooting and adapting to standard operational workflows.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer
Cybersecurity Engineer

Mission Consultancy Services • Kuala Lumpur

On-site
MYR 90,000 - 120,000
Cybersecurity Engineer
Cybersecurity Engineer

Mission Consultancy Services Sdn. Bhd. • Kuala Lumpur

On-site
MYR 90,000 - 180,000
Security Engineer
Security Engineer

Mission Consultancy Services • Kuala Lumpur

On-site
MYR 80,000 - 120,000
Security Project Engineer
Security Project Engineer

ADI Resourcing • Kuala Lumpur

On-site
MYR 78,000 - 156,000
IT Executive - Security Operations
IT Executive - Security Operations

Genting Malaysia • Kuala Lumpur

On-site
MYR 42,000 - 72,000
Cyber Security Consultant
Cyber Security Consultant

ABeam Consulting Malaysia • Petaling Jaya

On-site
MYR 60,000 - 120,000
IT Executive - Security Operations
IT Executive - Security Operations

Resorts World Genting • Kuala Lumpur

On-site
MYR 60,000 - 120,000
Senior Wintel Security Engineer / Infrastructure Security Enginee
Senior Wintel Security Engineer / Infrastructure Security Enginee

Unison Group • Kuala Lumpur

On-site
MYR 120,000 - 190,000
Security Analyst (Intelligence - Operations)
Security Analyst (Intelligence - Operations)

GXS Bank • Selangor

On-site
MYR 90,000 - 130,000
Infrastructure Information Security Manager
Infrastructure Information Security Manager

Flintex Consulting Pte Ltd • Kuala Lumpur

On-site
MYR 179,000 - 223,000