Security Engineer (Blue Team)

PARTECH PARTNERS

Kuala Lumpur

On-site

MYR 60,000 - 120,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

PARTECH PARTNERS in Kuala Lumpur is seeking a Blue Team Engineer to join our cybersecurity team. You will expand and maintain UEM and EDR coverage across endpoints, analyze alerts, and support SOC operations in a hands-on role.

Ideal for an early-career professional with a passion for defensive security, you will develop playbooks, tune detection rules, participate in incident response, and collaborate with IT to enforce security policies.

Qualifications

  • One year of relevant work experience in cybersecurity, IT operations, or a related field.
  • Bachelor's degree in Computer Science, Information Management, Information Security, or a related discipline.
  • Understanding of common attack techniques and frameworks (MITRE ATT&CK).
  • Basic knowledge of endpoint hardening, network security fundamentals, and log analysis.
  • Strong analytical and problem-solving skills with attention to detail.
  • Certifications (CompTIA Security+, CySA+, BTL1, or similar) is a plus.
  • Experience with EDR and UEM solutions (e.g., CrowdStrike, SentinelOne, JumpCloud, Jamf) is a plus.
  • Familiarity with threat intelligence platforms and IOC management is a plus.
  • Scripting skills (Python, PowerShell, or Bash) for automation of routine tasks is a plus.

Responsibilities

  • Manage the installation, setup, and maintenance of EDR and UEM agents throughout company endpoints to achieve complete operational coverage.
  • Triage, analyse, and validate alerts generated by EDR platforms, distinguishing true positives from false positives and escalating confirmed threats.
  • Conduct threat intelligence analysis — ingest IOCs and TTPs from threat feeds, assess relevance to the organisation, and translate findings into actionable detection rules.
  • Assist in establishing and managing the daily operations of the SOC, including the development of playbooks, processes, and escalation procedures.
  • Tune detection rules and alert thresholds to reduce noise and improve detection accuracy.
  • Participate in incident response activities, including containment, investigation, forensic and post‑incident review.
  • Maintain documentation of security configurations, standard operating procedures, and coverage metrics.
  • Collaborate with IT and infrastructure teams to ensure endpoint compliance and security policy enforcement.
  • Coordinate the lifecycle of the bug bounty program, including report triage, formal documentation of validated vulnerabilities, and maintenance of audit logs for regulatory compliance.

Skills

MITRE ATT&CK understanding
Analytical and problem-solving
Scripting (Python/PowerShell/Bash)

Education

Bachelor's degree in Computer Science or Information Security

Tools

CrowdStrike
SentinelOne
JumpCloud
Jamf

Job description

About The Role

We are seeking a motivated Blue Team Engineer to join our cybersecurity team. In this role, you will be responsible for expanding and maintaining the coverage of our Unified Endpoint Management (UEM) and Endpoint Detection & Response (EDR) solutions, analysing and validating security alerts, conducting threat intelligence analysis, and supporting the establishment and ongoing operation of our Security Operations Centre (SOC).

This is an excellent opportunity for an early-career professional who is passionate about defensive security and eager to grow within a hands‑on operational role.

What You Will Do

  • Manage the installation, setup, and maintenance of EDR and UEM agents throughout company endpoints to achieve complete operational coverage
  • Triage, analyse, and validate alerts generated by EDR platforms, distinguishing true positives from false positives and escalating confirmed threats
  • Conduct threat intelligence analysis — ingest IOCs and TTPs from threat feeds, assess relevance to the organisation, and translate findings into actionable detection rules
  • Assist in establishing and managing the daily operations of the SOC, including the development of playbooks, processes, and escalation procedures
  • Tune detection rules and alert thresholds to reduce noise and improve detection accuracy
  • Participate in incident response activities, including containment, investigation, forensic and post‑incident review
  • Maintain documentation of security configurations, standard operating procedures, and coverage metrics
  • Collaborate with IT and infrastructure teams to ensure endpoint compliance and security policy enforcement
  • Coordinate the lifecycle of the bug bounty program, including report triage, formal documentation of validated vulnerabilities, and maintenance of audit logs for regulatory compliance

What Are We Looking For

  • One year of relevant work experience in cybersecurity, IT operations, or a related field
  • Bachelor's degree in Computer Science, Information Management, Information Security, or a related discipline
  • Understanding of common attack techniques and frameworks (MITRE ATT&CK)
  • Basic knowledge of endpoint hardening, network security fundamentals, and log analysis
  • Strong analytical and problem‑solving skills with attention to detail
  • Relevant certifications (CompTIA Security+, CySA+, BTL1, or similar) is a plus
  • Experience with EDR and UEM solutions (e.g., Crowdstrike, SentinelOne, JumpCloud, Jamf, etc.) is a plus
  • Familiarity with threat intelligence platforms and IOC management is a plus
  • Scripting skills (Python, PowerShell, or Bash) for automation of routine tasks is a plus
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Blue Team Security Engineer for SOC Operations
Blue Team Security Engineer for SOC Operations

PARTECH PARTNERS • Kuala Lumpur

On-site
MYR 60,000 - 120,000
Security Analyst (Intelligence - Operations)
Security Analyst (Intelligence - Operations)

GXS Bank • Selangor

On-site
MYR 90,000 - 130,000
Security Analyst (Intelligence & Operations)
Security Analyst (Intelligence & Operations)

GXS Bank • Petaling Jaya

On-site
MYR 90,000 - 150,000
Senior Manager, Digital Security
Senior Manager, Digital Security

AIA Digital+ • Kuala Lumpur

On-site
MYR 180,000 - 360,000
Senior Security Analyst
Senior Security Analyst

Logicalis • Kuala Lumpur

On-site
MYR 180,000 - 300,000
L2 SOC Analyst / Security Delivery Consultant
L2 SOC Analyst / Security Delivery Consultant

ABP Group • Kuala Lumpur

On-site
MYR 60,000 - 120,000
Information Technology Security Analyst
Information Technology Security Analyst

Lotus's Malaysia • Kuala Lumpur

On-site
MYR 90,000 - 150,000
IT Security Engineer
IT Security Engineer

ITIC MIMOS • Kuala Lumpur

On-site
MYR 60,000 - 120,000
SIEM Engineer
SIEM Engineer

Ensign InfoSecurity • Selangor

On-site
MYR 120,000 - 180,000
Cyber Defense Lead
Cyber Defense Lead

Hong Leong Bank Berhad • Selangor

On-site
MYR 120,000 - 160,000