Security Analyst

Rytbank

Kuala Lumpur

On-site

MYR 90,000 - 150,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Ryt Bank Malaysia is seeking Security Analysts to join its Cyber Operations team, focusing on detection, incident response, threat intelligence, and vulnerability management. You'll work across detection-as-code, SIEM, and automation, with senior roles leading investigations and mentoring junior analysts.

The role demands 3–5 years of SOC experience, strong OSINT/CTI skills, and familiarity with AI/ML threat vectors in a regulated financial context.

Qualifications

  • 3–5 years across SOC operations, threat intelligence, incident response, and vulnerability management.
  • Proven ownership of a threat intelligence programme or detection engineering function.
  • Deep familiarity with dark web monitoring, OSINT tradecraft, and CTI operationalisation.
  • Strong exposure to AI/ML threat vectors — deepfake fraud, adversarial AI, LLM-specific attacks.
  • Experience in a regulated financial institution or digital banking environment is strongly preferred.

Responsibilities

  • Triage security alerts from MSSP and determine severity and response.
  • Develop and maintain detection-as-code rules (Sigma, KQL) in the SIEM.
  • Monitor logs, network traffic, endpoint telemetry, and application logs for indicators of compromise.
  • Develop SOAR playbooks and drive automation improvements.
  • Participate in incident response activities including containment and post-incident review.
  • Conduct digital forensics and malware analysis.
  • Support BNM reporting and ORION documentation.

Skills

Sigma
KQL
SPL

Job description

Jora Malaysia will close on 9th September 2026. Thank you for being with us, we are cheering you on as you continue your career journey.

We're building the next generation of digital banking infrastructure that combines enterprise-grade reliability with startup agility.

Our Cyber Security team is the backbone of our technology organisation, ensuring that innovation and trust go hand in hand as we scale Malaysia's first AI-powered digital bank.

You'll collaborate with some of the sharpest minds in the industry, operating in a supportive and dynamic environment that fosters creativity, exploration, and innovation. Your next thrilling adventure starts here. Be part of shaping the future of digital banking today!

About the Role

Security Analysts are the operational core of Ryt Bank's Cyber Operations team, responsible for security monitoring, detection engineering, incident response, threat intelligence, and vulnerability management. The team runs two seniority levels — Sr Security Analyst and Security Analyst — sharing the same broad remit across all defensive domains. The distinction lies in depth of experience, independence of execution, and breadth of ownership.

Sr Security Analysts are expected to lead independently across all domains, drive detection engineering improvements, and mentor junior analysts. Security Analysts build foundational capability across a subset of domains, growing toward full-spectrum ownership over time.

Both roles are well-suited to technically sharp, methodical individuals eager to work in a fast-moving AI-powered digital bank where the threat landscape — including AI-native attack surfaces — evolves daily.

What You'll Do
DETECTION & MONITORING

Triage security alerts escalated from the MSSP (L1), applying MITRE ATT&CK and bank-specific context to determine severity and response. Sr Analysts lead L2/L3 triage with independent judgement; Analysts handle L2 triage under guidance.

Develop and maintain detection-as-code rules (Sigma, KQL) in the SIEM. Sr Analysts own the detection engineering programme — developing, tuning, and retiring rules based on threat intelligence; Analysts contribute rules and improvements.

Monitor security event logs, network traffic, endpoint telemetry, and application logs for indicators of compromise.

Develop SOAR playbooks. Sr Analysts drive automation improvements and reduce analyst toil team-wide; Analysts contribute to individual playbook development.

INCIDENT RESPONSE

Participate in incident response activities — triage, containment, evidence collection, eradication, and post-incident review. Sr Analysts lead complex or prolonged incidents; Analysts participate under Sr Analyst or Lead direction.

Conduct digital forensics and malware analysis. Sr Analysts produce forensic reports suitable for regulatory and legal purposes; Analysts handle standard analysis and elevate complex cases.

Maintain accurate incident records for BNM reporting and post-incident learning.

Support BNM incident notification preparation. Sr Analysts coordinate ORION reporting; Analysts assist with documentation.

THREAT INTELLIGENCE

Convert intelligence findings into actionable detection rules, IOC blocklists, and SOAR playbook triggers.

Monitor AI-specific threat patterns — deepfake fraud, prompt injection campaigns, adversarial inputs targeting DIDE, MCP/agentic workflow exploitation. Sr Analysts produce strategic threat assessments and briefings; Analysts monitor and elevate findings.

Support monthly BNM threat assessment report preparation. Sr Analysts lead report production; Analysts provide data and draft sections.

VULNERABILITY MANAGEMENT

Track and coordinate remediation of identified vulnerabilities within agreed SLAs.

Maintain the bank's vulnerability management platform and ensure asset coverage is complete.

What We’re Seeking
EXPERIENCE

3–5 years across SOC operations, threat intelligence, incident response, and vulnerability management — with demonstrated ability to operate independently across all domains.

Proven ownership of a threat intelligence programme or detection engineering function.

Deep familiarity with dark web monitoring, OSINT tradecraft, and CTI operationalisation.

Strong exposure to AI/ML threat vectors — deepfake fraud, adversarial AI, LLM-specific attacks, agentic workflow exploitation.

Experience in a regulated financial institution or digital banking environment is strongly preferred.

SKILLS (BOTH LEVELS)

Proficiency in detection-as-code — Sigma, KQL, or SPL.

Methodical and precise incident documentation and analytical skills.

Ability to operate calmly and decisively under pressure during live incidents.

Sr Analysts: expert-level proficiency, ability to lead incidents and mentor others, strong report-writing for board and BNM audiences.

Analysts: growing proficiency, collaborative mindset, proactive in expanding domain coverage.

PREFERRED CERTIFICATIONS

CompTIA CySA+, Security+.

GIAC GCIH, GCFA, or GCTI.

Sr Analysts: CISSP or CISM for senior progression.

CEH or equivalent.

What We Value

Revolutionary in our thinking.

Innovative in our products, services and the way we work.

Genuine in our intentions.

Honourable in our actions.

Tenacious in overcoming challenge.

Requirements added by the job poster
  • Authorized to work in Malaysia
  • 3+ years of work experience with Security Operations Center
  • 3+ years of work experience with Cyber Threat Intelligence (CTI)
  • 3+ years of work experience with Cybersecurity Incident Response
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Analyst – AI-Powered Digital Banking Defense
Security Analyst – AI-Powered Digital Banking Defense

Rytbank • Kuala Lumpur

On-site
MYR 90,000 - 150,000
Security Analyst (Security & Intelligence Operations)
Security Analyst (Security & Intelligence Operations)

GXS Bank • Petaling Jaya

On-site
MYR 60,000 - 100,000
L2 - Security Analyst
L2 - Security Analyst

Ensign Infosecurity • Kuala Lumpur

On-site
MYR 60,000 - 100,000
L1 - SOC Analyst
L1 - SOC Analyst

Dwell Technologies Sdn. Bhd. • Kuala Lumpur

On-site
MYR 54,000 - 90,000
Cyber Security Analyst/Support (SOC)
Cyber Security Analyst/Support (SOC)

MSP Systems • Kuala Lumpur

On-site
MYR 60,000 - 90,000
Information Security Analyst
Information Security Analyst

Media.Monks • Kuala Lumpur

On-site
MYR 90,000 - 150,000
Senior Cyber Security Consultant (SOC) Cyber security Kuala Lumpur
Senior Cyber Security Consultant (SOC) Cyber security Kuala Lumpur

S-RM Intelligence and Risk Consulting • Kuala Lumpur

Hybrid
MYR 120,000 - 180,000
Senior SOC Consultant
Senior SOC Consultant

S-RM • Kuala Lumpur

Hybrid
MYR 180,000 - 240,000
Hybrid work model
Global collaboration
Senior VAPT Engineer
Senior VAPT Engineer

Ryt Bank • Kuala Lumpur

On-site
MYR 180,000 - 240,000
VAPT Engineer
VAPT Engineer

YTL Sea Digital Bank Project • Kuala Lumpur

On-site
MYR 150,000 - 270,000