Lead Analyst, Digital Security

AIA Digital+

Kuala Lumpur

On-site

MYR 60,000 - 90,000

Full time

13 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

AIA Digital+ in Malaysia seeks a Security Platform Operations Engineer to manage enterprise security platforms (SIEM, SOAR, and Data Security). You will monitor health, perform maintenance, and support deployments to ensure reliable security operations across the organization.

The role requires 2–3 years of information security experience, hands-on expertise with SIEM/SOAR, and strong scripting abilities. Collaboration with audit teams and cross-functional stakeholders is essential.

Qualifications

  • 2–3 years of experience in Information Security, Security Platform Operations, or Related Roles.
  • Experience supporting enterprise security platforms in production environments.
  • Familiarity with incident, problem and change management processes; audit/compliance exposure preferred.

Responsibilities

  • Manage day-to-day operations and administration of enterprise security platforms (SIEM, SOAR, Data Security).
  • Monitor platform health, service availability, performance and capacity utilization.
  • Perform proactive maintenance, tuning, and health checks.
  • Support deployments, upgrades, migrations, and patch management.
  • Design and maintain integrations between security platforms and enterprise systems.
  • Develop automation playbooks to automate threat intel lookups, alert enrichment, and incident response.
  • Support onboarding of new data sources and use cases.
  • Create and maintain operational documentation and SOPs.
  • Troubleshoot platform, infrastructure, and data ingestion issues.
  • Coordinate with internal teams, vendors and partners to resolve complex problems.

Skills

Security Operations
SIEM
SOAR
Kubernetes
Linux
Windows
Azure
Python
PowerShell
REST APIs
Automation
Incident Management
Audit & Compliance

Tools

Google Chronicle
Splunk SOAR

Job description

  • Manage day-to-day operations and administration of enterprise security platforms, including SIEM, SOAR, and Data Security platforms.
  • Monitor platform health, service availability, performance, and capacity utilization.
  • Perform proactive platform maintenance, system tuning, and health checks.
  • Support platform deployment, upgrades, migrations, and patch management activities.
  • Design, implement, and maintain integrations between security platforms and enterprise systems.
  • Develop automation playbook to automate routine security tasks such as threat intelligence lookups, alert enrichment, incident response processes, and vulnerability scanning.
  • Support onboarding of new data sources, use cases, and security technologies.
  • Create and maintain technical documentation, operational manual, and standard operating procedure.
  • Troubleshoot and resolve platform, infrastructure, integration, and data ingestion issues.
  • Coordinate with internal teams, vendors, and external partners to resolve complex technical problems.
  • Continuously track, monitor, and follow up on Incidents, Changes, and Problems throughout their lifecycle.
  • Conduct root cause analysis (RCA) and implement corrective and preventive actions.
  • Participate in major incident management activities and service restoration efforts.
  • Partner with Internal Audit teams to support audit activities.
  • Provide audit evidence, operational documentation, system records, and technical explanations when required.
  • Support remediation activities arising from audit findings and compliance assessments.
  • Ensure security platforms operate in accordance with organizational policies, standards, and regulatory requirements.
  • Manage and fulfill user requests within agreed service levels.
  • Provide technical support and consultation to BU security, infrastructure, and application teams.
  • Collaborate with BU stakeholders on platform enhancements and operational improvements.
  • Participate in project delivery and platform transformation initiatives.

Requirements

  • At least 2-3 years of experience in Information Security, Security Engineering, Security Platform Operations, System Administration, or Infrastructure Operations.
  • Experience supporting enterprise-scale security platforms in production environments.
  • Experience working within Incident, Problem, and Change Management processes.
  • Experience supporting audit, compliance, or regulatory requirements is preferred.
  • Hands-on experience with SIEM technologies, in-depth knowledge of Google SecOps (Chronicle) is highly preferred.
  • Experience with SOAR technologies and security automation workflows, e.g. Chronicle, Splunk SOAR.
  • Understanding of security monitoring architecture and log management concepts.
  • Strong knowledge of Linux and Windows administration.
  • Experience with Microsoft Azure services and cloud operations.
  • Hands-on Kubernetes (K8S) administration and troubleshooting experience.
  • Understanding of networking fundamentals, including DNS, TCP/IP, HTTP/HTTPS, Syslog, and security-related protocols.
  • Experience in Python and/or PowerShell scripting.
  • Experience with REST APIs based system integrations.
  • Experience automating operational tasks and platform management activities.
  • Experience leveraging AI-powered tools (e.g., Microsoft Copilot) to improve operational efficiency, automate repetitive tasks, accelerate troubleshooting, enhance documentation quality, and support platform engineering activities.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Analyst, Digital Security
Lead Analyst, Digital Security

AIA • Cyberjaya

On-site
MYR 120,000 - 180,000
SIEM Engineer
SIEM Engineer

Ensign InfoSecurity • Selangor

On-site
MYR 120,000 - 180,000
Security Analyst (Intelligence - Operations)
Security Analyst (Intelligence - Operations)

GXS Bank • Selangor

On-site
MYR 90,000 - 130,000
Security Analyst (Intelligence & Operations)
Security Analyst (Intelligence & Operations)

GXS Bank • Petaling Jaya

On-site
MYR 90,000 - 150,000
SOC Lead
SOC Lead

Axonect • Kuala Lumpur

Hybrid
MYR 140,000 - 180,000
Splunk Enterprise Security Engineer
Splunk Enterprise Security Engineer

NTT DATA Business Solutions • Cyberjaya

On-site
MYR 150,000 - 210,000
Senior Security Analyst
Senior Security Analyst

Logicalis • Kuala Lumpur

On-site
MYR 180,000 - 300,000
Security Platform Engineer: SIEM, SOAR & Automation
Security Platform Engineer: SIEM, SOAR & Automation

AIA Hong Kong and Macau • Malaysia

On-site
MYR 120,000 - 180,000
Senior Security Advisor & Technical Project Manager
Senior Security Advisor & Technical Project Manager

Hong Leong Bank Berhad • Petaling Jaya

On-site
MYR 180,000 - 300,000
Senior Analyst Cyber Security
Senior Analyst Cyber Security

Infineon Technologies AG • Penang

On-site
MYR 80,000 - 120,000