L2 SOC Engineer

Oxydata Software Sdn Bhd

Petaling Jaya

Hybrid

MYR 90,000 - 130,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Oxydata Software Sdn Bhd in Malaysia is seeking an experienced L2 SOC Engineer to join our security operations team. You must have 3+ years of hands-on SOC experience and L2 SOC expertise with strong Microsoft Sentinel and KQL skills.

The role focuses on monitoring and investigating security alerts, phishing investigations, and incident response while collaborating with IT and security teams. Hybrid work arrangement with in-office and WFH days is offered.

Qualifications

  • Minimum 3+ years of hands-on SOC experience.
  • Hands-on L2 SOC / Security Operations experience.
  • Strong hands-on experience with Microsoft Sentinel SIEM.
  • Practical hands-on experience with KQL (Kusto Query Language).
  • Experience in security incident investigation, triage, and incident response.
  • Hands-on phishing email investigation, including headers, URLs, attachments, and IOCs.
  • Good understanding of SIEM architecture, security monitoring, alert correlation, and log analysis.
  • Working knowledge of Microsoft security technologies/components.
  • Experience with EDR, IDS/IPS, firewalls, and endpoint security.
  • Understanding of the NIST Cybersecurity Framework.

Responsibilities

  • Monitor, analyze, and investigate security alerts using Microsoft Sentinel SIEM.
  • Perform L2-level investigation and triage of security incidents and determine escalation and remediation actions.
  • Use KQL for security investigations, threat hunting, log analysis, and correlation.
  • Investigate phishing emails, including headers, URLs, attachments, domains, IP addresses, and IOCs.
  • Support incident response including investigation, containment, remediation, recovery, and documentation.
  • Investigate suspicious endpoint, network, user, and application activities.
  • Work with Microsoft security components and understand SIEM architecture and log integration.
  • Support security technologies including EDR, IDS/IPS, firewalls, endpoint protection, and vulnerability management tools.
  • Apply the NIST Cybersecurity Framework within security operations.
  • Collaborate with IT, infrastructure, application, and security teams during security incidents.
  • Contribute to SOC process improvements, detection enhancement, and security documentation.
  • Support opportunities for AI and automation within SOC operations.

Job description

Work Location: Oasis Square, Ara Damansara
Work Mode: Hybrid – 3 days in office & 2 days WFH
Working Hours: 7:00 AM – 4:00 PM
Salary Package: 13 Months' Salary (including 1-month contractual bonus)
Contract Extension: Renewable based on project requirements, with potential permanent conversion depending on project/business needs
Candidate Location: Candidates must currently be based in Malaysia
Joining Availability: Candidates who can join within 15–30 days are preferred. Notice period buyout can be considered if required, subject to discussion and approval.

Job Summary

We are looking for a L2 SOC Engineer / Security Engineer currently based in Malaysia with a minimum of 3+ years of hands-on SOC experience and L2 SOC experience.

The ideal candidate must have strong practical experience in Microsoft Sentinel, KQL, SIEM operations, security incident investigation, incident response, and phishing investigation.

Key Responsibilities

Monitor, analyze, and investigate security alerts using Microsoft Sentinel SIEM.

Perform L2-level investigation and triage of security incidents and determine appropriate escalation and remediation actions.

Use KQL (Kusto Query Language) for security investigations, threat hunting, log analysis, and correlation.

Investigate phishing emails, including email headers, URLs, attachments, domains, IP addresses, and IOCs.

Support incident response including investigation, containment, remediation, recovery, and documentation.

Investigate suspicious endpoint, network, user, and application activities.

Work with Microsoft security components and understand SIEM architecture and log integration.

Support security technologies including EDR, IDS/IPS, firewalls, endpoint protection, and vulnerability management tools.

Apply the NIST Cybersecurity Framework within security operations.

Collaborate with IT, infrastructure, application, and security teams during security incidents.

Contribute to SOC process improvements, detection enhancement, and security documentation.

Support opportunities for AI and automation within SOC operations.

Must-Have Requirements

Currently based in Malaysia – Mandatory.

Minimum 3+ years of hands-on SOC experience – Mandatory.

Hands-on L2 SOC / Security Operations experience – Mandatory.

Strong hands-on experience with Microsoft Sentinel SIEM.

Practical hands-on experience with KQL (Kusto Query Language).

Experience in security incident investigation, triage, and incident response.

Hands-on phishing email investigation, including headers, URLs, attachments, and IOCs.

Good understanding of SIEM architecture, security monitoring, alert correlation, and log analysis.

Working knowledge of Microsoft security technologies/components.

Experience with EDR, IDS/IPS, firewalls, and endpoint security.

Understanding of the NIST Cybersecurity Framework.

Strong analytical, troubleshooting, investigation, documentation, and communication skills.

Nice-to-Have

Experience with threat hunting.

Exposure to Microsoft Defender security products.

Experience with vulnerability management.

Experience improving SIEM detection rules, use cases, and SOC processes.

Knowledge of SOAR / security automation.

Exposure to AI / GenAI within SOC operations.

Relevant certifications such as SC-200, CEH, Security+, CISSP, or equivalent.

We are local 100% Malaysian-owned MSC status company established in 2006 serving ASEAN region. Our core competencies are in IT Managed Services, Dev/Ops, Outsourcing, Analytics development services, and Microsoft Platform development such as SharePoint, Power Platform, Dynamics CRM, and .NET/Mobile Application development. We help our clients to realize their results through digital transformation using our innovative IT services and software solutions.

We are local 100% Malaysian-owned MSC status company established in 2006 serving ASEAN region. Our core competencies are in IT Managed Services, Dev/Ops, Outsourcing, Analytics development services, and Microsoft Platform development such as SharePoint, Power Platform, Dynamics CRM, and .NET/Mobile Application development. We help our clients to realize their results through digital transformation using our innovative IT services and software solutions.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

L2 SOC Analyst - Sentinel
L2 SOC Analyst - Sentinel

Oxydata Software • Petaling Jaya

Hybrid
MYR 72,000 - 110,000
L2 SOC Engineer (Malaysia) - Hybrid, SIEM & Phishing Expert
L2 SOC Engineer (Malaysia) - Hybrid, SIEM & Phishing Expert

Oxydata Software Sdn Bhd • Petaling Jaya

Hybrid
MYR 90,000 - 130,000
SOC Analyst
SOC Analyst

Oxydata Software Sdn Bhd • Kuala Lumpur

On-site
MYR 67,000 - 95,000
CompTIA Security+
CySA+
CEH
+2
L2 SOC Analyst (Security Operations Center)
L2 SOC Analyst (Security Operations Center)

AGENSI PEKERJAAN TRUST RECRUIT SDN. BHD. • Selangor

On-site
MYR 120,000 - 180,000
Staff Cybersecurity & OT Security Engineer
Staff Cybersecurity & OT Security Engineer

Oxydata Software Sdn Bhd • Penang

On-site
MYR 180,000 - 240,000
Security Operations Center Lead
Security Operations Center Lead

Altera • Bayan Lepas

On-site
MYR 180,000 - 280,000
SOC Engineer, Kuala Lumpur Cyber security Kuala Lumpur
SOC Engineer, Kuala Lumpur Cyber security Kuala Lumpur

S-RM Intelligence and Risk Consulting • Kuala Lumpur

Hybrid
MYR 60,000 - 90,000
20 days paid holiday plus additional leave
Flexible working hours
Pension scheme
+2
L2 SOC Analyst
L2 SOC Analyst

Pride Global • Selangor

On-site
MYR 60,000 - 110,000
SOC Service Manager
SOC Service Manager

Tentacle Tech • Cyberjaya

On-site
MYR 180,000 - 240,000
SIEM Team Lead (SOC-02)
SIEM Team Lead (SOC-02)

Tentacle Tech • Cyberjaya

On-site
MYR 120,000 - 180,000
Mentorship and professional growth
Career progression pathway
Supportive team culture
+1