Lead Analyst, Digital Security

AIA Digital+

Kuala Lumpur

On-site

MYR 60,000 - 85,000

Full time

5 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

AIA Digital+ is seeking a security operations professional to manage and optimize enterprise security platforms (SIEM, SOAR, data security). You will monitor health, perform maintenance, and support deployments and upgrades across Linux/Windows environments in a cloud-enabled context.

You will design integrations, develop automation playbooks, and assist with audits, incident response, and change management, ensuring adherence to security policies and regulatory standards.

Qualifications

  • 2–3 years in information security, security engineering, or platform operations.
  • Experience with enterprise-scale security platforms in production.
  • Experience with incident, problem, and change management processes.
  • Audit/compliance experience preferred.
  • Hands-on with SIEM technologies and security automation workflows.
  • Strong Linux/Windows admin skills; Python or PowerShell scripting.
  • REST API integrations and cloud operations experience.

Responsibilities

  • Manage day-to-day operations and administration of security platforms (SIEM, SOAR, Data Security).
  • Monitor health, availability, performance, and capacity of platforms.
  • Perform proactive maintenance, tuning, and health checks.
  • Support deployments, upgrades, migrations, and patching.
  • Design and maintain integrations with enterprise systems.
  • Develop automation playbooks for routine security tasks.
  • Onboard new data sources, use cases, and technologies.
  • Create and maintain technical docs and SOPs.
  • Troubleshoot platform, infrastructure, and data issues.
  • Coordinate with internal teams, vendors, and partners to resolve problems.
  • Track incidents, changes, and problems through lifecycle; conduct RCA.
  • Participate in major incident management and service restoration.
  • Support audit activities with evidence and documentation.
  • Ensure compliance with policies and regulatory requirements.
  • Provide user support and consult BU security, infra, and apps teams.
  • Collaborate on platform improvements and project delivery.

Skills

Information security
Security engineering
Platform operations
Incident management
Problem management
Cloud operations
Linux administration
Windows administration
Python scripting
PowerShell scripting
REST APIs
Kubernetes administration
Auditing/compliance
Automation
AI-assisted tooling

Tools

Splunk SOAR
Chronicle
Google SecOps Chronicle
Microsoft Copilot
Azure

Job description

  • Manage day-to-day operations and administration of enterprise security platforms, including SIEM, SOAR, and Data Security platforms.
  • Monitor platform health, service availability, performance, and capacity utilization.
  • Perform proactive platform maintenance, system tuning, and health checks.
  • Support platform deployment, upgrades, migrations, and patch management activities.
  • Design, implement, and maintain integrations between security platforms and enterprise systems.
  • Develop automation playbook to automate routine security tasks such as threat intelligence lookups, alert enrichment, incident response processes, and vulnerability scanning.
  • Support onboarding of new data sources, use cases, and security technologies.
  • Create and maintain technical documentation, operational manual, and standard operating procedure.
  • Troubleshoot and resolve platform, infrastructure, integration, and data ingestion issues.
  • Coordinate with internal teams, vendors, and external partners to resolve complex technical problems.
  • Continuously track, monitor, and follow up on Incidents, Changes, and Problems throughout their lifecycle.
  • Conduct root cause analysis (RCA) and implement corrective and preventive actions.
  • Participate in major incident management activities and service restoration efforts.
  • Partner with Internal Audit teams to support audit activities.
  • Provide audit evidence, operational documentation, system records, and technical explanations when required.
  • Support remediation activities arising from audit findings and compliance assessments.
  • Ensure security platforms operate in accordance with organizational policies, standards, and regulatory requirements.
  • Manage and fulfill user requests within agreed service levels.
  • Provide technical support and consultation to BU security, infrastructure, and application teams.
  • Collaborate with BU stakeholders on platform enhancements and operational improvements.
  • Participate in project delivery and platform transformation initiatives.
Requirements
  • At least 2-3 years of experience in Information Security, Security Engineering, Security Platform Operations, System Administration, or Infrastructure Operations.
  • Experience supporting enterprise-scale security platforms in production environments.
  • Experience working within Incident, Problem, and Change Management processes.
  • Experience supporting audit, compliance, or regulatory requirements is preferred.
  • Hands-on experience with SIEM technologies, in-depth knowledge of Google SecOps (Chronicle) is highly preferred.
  • Experience with SOAR technologies and security automation workflows, e.g. Chronicle, Splunk SOAR.
  • Understanding of security monitoring architecture and log management concepts.
  • Strong knowledge of Linux and Windows administration.
  • Experience with Microsoft Azure services and cloud operations.
  • Hands-on Kubernetes (K8S) administration and troubleshooting experience.
  • Understanding of networking fundamentals, including DNS, TCP/IP, HTTP/HTTPS, Syslog, and security-related protocols.
  • Experience in Python and/or PowerShell scripting.
  • Experience with REST APIs based system integrations.
  • Experience automating operational tasks and platform management activities.
  • Experience leveraging AI-powered tools (e.g., Microsoft Copilot) to improve operational efficiency, automate repetitive tasks, accelerate troubleshooting, enhance documentation quality, and support platform engineering activities.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Lead Analyst, Digital Security
Lead Analyst, Digital Security

AIA • Sepang

On-site
MYR 80,000 - 120,000
Security Delivery Consultant
Security Delivery Consultant

ABP Group • Kuala Lumpur

On-site
MYR 120,000 - 170,000
Security Platform Ops Lead — SIEM/SOAR Automation
Security Platform Ops Lead — SIEM/SOAR Automation

AIA Digital+ • Kuala Lumpur

On-site
MYR 60,000 - 85,000
Security Operations Center Lead
Security Operations Center Lead

Altera Corporation • Kuala Lumpur

On-site
MYR 180,000 - 360,000
SIEM/MDR Infra support (SOC Cybersecurity)
SIEM/MDR Infra support (SOC Cybersecurity)

Atos • Cyberjaya

On-site
MYR 180,000 - 240,000
Security Analyst L2
Security Analyst L2

Ensign InfoSecurity • Selangor

Hybrid
MYR 70,000 - 110,000
Splunk Enterprise Security Engineer
Splunk Enterprise Security Engineer

NTT DATA Business Solutions • Cyberjaya

On-site
MYR 120,000 - 180,000
Medical Insurance
Health Insurance
Optical and Dental Benefits
Security Platform Engineer: SIEM, SOAR & Automation
Security Platform Engineer: SIEM, SOAR & Automation

AIA Hong Kong and Macau • Malaysia

On-site
MYR 120,000 - 180,000
Senior Analyst Cyber Security
Senior Analyst Cyber Security

Infineon Technologies AG • Penang

On-site
MYR 80,000 - 120,000
SOC Specialist
SOC Specialist

Pride Global • Cyberjaya

On-site
MYR 120,000 - 180,000