Security Analyst L2

Ensign InfoSecurity

Kuala Lumpur

On-site

MYR 80,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Ensign InfoSecurity in Kuala Lumpur is seeking a dedicated professional for a cyber security role. The responsibilities include monitoring security feeds, producing intelligence outputs, and maintaining high standards in threat detection and analysis.

The candidate must possess a degree and at least 5 years of relevant experience, particularly in a Security Operations Centre or similar environment. Understanding vulnerabilities and outstanding investigative skills are essential for this role.

Qualifications

  • Degree holder with at least 5 years of experience in a related field.
  • Prior experience in a Security Operations Centre (SOC) or CERT/CIRT.
  • Understanding of current vulnerabilities and strategies in cyber security.

Responsibilities

  • Monitor third-party security feeds for client information.
  • Produce intelligence outputs and technical reports.
  • Perform periodic analysis of security events and network traffic.

Skills

Investigative skills
Analytical problem-solving
Open-source research
Understanding of vulnerabilities

Education

Degree holder

Tools

SIEM tools
DB scripts

Job description

Ensign is hiring!

Responsibilities
  • Monitor third‑party security feeds, forums, and mailing lists to gather information related to the client through automated means
  • Produce intelligence outputs to provide an accurate depiction of the current threat landscape and associated risk through the use of customer, community, and open‑source reporting
  • Produce actionable intelligence information for delivery to colleagues and customers in the form of technical reports, briefings, and data feeds
  • Review vulnerability advisories
  • Review and process threat intelligence reports
  • Perform detailed investigative work into all traffic anomalies against established, historical baselines of individual agencies, reviewing and profiling the events of all monitored clients
  • Assess each event based on factual information and wider contextual information available
  • Review, propose and generate reports to automate or reduce low‑value event escalations
  • Build rules and intelligence to detect such threats and proliferate to all monitored networks
  • Implement and devise detection methods of such threats in security operations through SIEM rules, DB scripts, etc.
  • Perform periodic analysis of security events, network traffic, and logs to engineer new detection methods or create efficiencies when available
  • Support the development of tactics, techniques, and procedures in providing proactive threat hunting and analysis against the available information sources (e.g. Netflow, DNS, and firewall logs)
  • Assist the Security Analysts with investigative work
  • Prepare a training programme for Security Analysts and conduct knowledge‑sharing sessions for Security Analysts
  • Fulfil change requests, service requests and respond to internal / external enquiries with regards to detection use cases
  • Handle any other tasks as assigned
Qualifications
  • Degree holder with at least 5 years of experience in a related field and capacity
  • Prior experience working in a Security Operations Centre (SOC) or Computer Emergency Response Team (CERT/CIRT)
  • Deep interest in open‑source research and critical thinking/contextual analysis abilities
  • Investigative and analytical problem‑solving skills
  • Understanding of current vulnerabilities, response, and mitigation strategies used in cyber security
  • Related professional cyber security certification, such as GCIA or CEH, preferred
  • Experience with intelligence analysis processes, including Open Source Intelligence (OSINT) and closed‑source intelligence gathering, source verification, data fusion, link analysis, and threat‑actor profiling
  • Ability to research and characterise security threats, including identification and classification of threat indicators
Get your free, confidential resume review.
or drag and drop your file here.