Jora Malaysia will close on 9th September 2026. Thank you for being with us, we are cheering you on as you continue your career journey.
Regional Assistant Manager, Security Operations
Position ResponsibilitiesAs a Regional Assistant Manager Security Operations, you will play a key role in strengtheningthe organization's cybersecurity capabilities within the SecOps function. You will be responsiblefor overseeing threat detection and response activities, driving vulnerability managementinitiatives, enhancing security monitoring capabilities, and ensuring the effective operation ofcybersecurity technologies across the organization. The role requires strong leadership,analytical, and technical skills, a proactive security mindset, and the ability to collaborateeffectively with infrastructure, application, cloud, and business teams to reduce cyber risk,improve operational resilience, and support the organization's overall cybersecurity objectives.
- Lead the deployment and fine-tuning of SIEM, IDS/IPS, and EDR solutions to detect securitythreats in real time.
- Continuously improve threat intelligence processes and analytics capabilities to identifyevolving threats.
- Oversee and lead complex incidentinvestigations, coordinating containment, remediation,andpost-incident reporting.
- Proactively conduct threat-hunting exercises to uncover advanced persistent threats (APTs)andmitigate risks before they elevate.
- Establish and refine incident response playbooks and frameworks.
Position ResponsibilitiesAs a Regional Assistant Manager Security Operations, you will play a key role in strengtheningthe organization's cybersecurity capabilities within the SecOps function. You will be responsiblefor overseeing threat detection and response activities, driving vulnerability managementinitiatives, enhancing security monitoring capabilities, and ensuring the effective operation ofcybersecurity technologies across the organization. The role requires strong leadership,analytical, and technical skills, a proactive security mindset, and the ability to collaborateeffectively with infrastructure, application, cloud, and business teams to reduce cyber risk,improve operational resilience, and support the organization's overall cybersecurity objectives.
Threat Detection & Monitoring:
- Lead the deployment and fine-tuning of SIEM, IDS/IPS, and EDR solutions to detect securitythreats in real time.
- Continuously improve threat intelligence processes and analytics capabilities to identifyevolving threats.
Incident Response &Threat Hunting:
- Oversee and lead complex incidentinvestigations, coordinating containment, remediation,andpost-incident reporting.
- Proactively conduct threat-hunting exercises to uncover advanced persistent threats (APTs)andmitigate risks before they elevate.
- Establish and refine incident response playbooks and frameworks.
Vulnerability & Risk Management:
- Lead vulnerability management programs, ensuring regular scanning, risk prioritization, andtimely remediation
- Conduct advanced risk assessments to identify and address security gaps withininfrastructure, applications, and cloud environments.
- Implementrisk mitigation strategies aligned with business objectives.
Security Policy Development & Compliance:
- Design, implement, and maintain security policies, standards, and procedures to meetregulatory requirements (e.g., GDPR, HIPAA, NIST, ISO 27001).
- Guide compliance audits andensurecontinuous improvementofsecurity controls.
Security Tool Management & Optimization:
- Manageandenhancesecuritytools, including firewalls, SIEM platforms, endpoint protectionsolutions, and intrusion detection systems.
- Evaluate and integrate new security technologies to improve defense mechanisms
Cloud Security:
- Architect and enforce security best practices for cloud environments (AWS, Azure, GoogleCloud).
- Implement and monitor IAM, encryption, network security, and cloud-native security tools(e.g., AWS GuardDuty, Azure Security Center).
- Ensure secure configurations, governance, and compliance in cloud deployments
Log Analysis & Automation:
- Perform deep-dive analysis of security logs from multiple sources to identify anomalies andpotential threats.
- Automate security processes using scripting languages (Python, Bash) and securityorchestration tools
Security Awareness & Mentorship:
- Design anddeliver security training programs for employees to foster a security-first culture.
- Mentor junior engineers, providing guidance on best practices and security operationsmethodologies.