Security Operations Center Lead

Altera Corporation

Malaysia

On-site

MYR 180,000 - 300,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Altera seeks a Senior SOC Operations Lead to steer global security operations from Penang, Malaysia. You will own incident response, threat detection, and SOC engineering across SIEM, SOAR, EDR/XDR, cloud, and identity security.

You will develop and enforce incident playbooks, manage cross‑time‑zone coordination, and drive continuous improvement through tabletop exercises and metrics reporting.

Qualifications

  • Bachelor’s degree in Computer Science, Computer Engineering, Information Security, Cybersecurity, or a related field, or equivalent practical experience.
  • 5+ years of progressive cybersecurity experience, including significant hands-on experience in security operations, incident response, threat detection, or SOC leadership.
  • 3+ years of experience leading SOC analysts, incident response teams, managed security operations, or cross-functional cyber defense workflows.
  • Strong working knowledge of SIEM, SOAR, EDR/XDR, cloud security monitoring, identity security, email security, network security, and incident response processes.
  • Demonstrated experience building or improving detection use cases, alert triage workflows, response playbooks, escalation procedures, and SOC metrics.
  • Familiarity with frameworks and standards such as MITRE ATT&CK, NIST CSF, NIST SP 800-61, ISO 27001, CIS Controls, or equivalent cyber defense frameworks.

Responsibilities

  • Lead daily SOC operations across monitoring, alert triage, investigation, escalation, incident response coordination, and handoffs.
  • Own and mature SOC procedures, including incident intake, severity classification, escalation paths, and post-incident reviews.
  • Manage and improve security monitoring across SIEM, SOAR, EDR/XDR, cloud, identity, and network security sources.
  • Build and tune detection use cases aligned to enterprise risks and MITRE ATT&CK techniques.
  • Coordinate with managed security providers and internal teams to ensure timely remediation actions.

Skills

Security operations
Incident response
Threat detection
SOC leadership
SIEM
SOAR
EDR/XDR
Cloud security
Identity security
Network security
Threat intelligence

Education

Bachelor's degree in Computer Science, Computer Engineering, Information Security, Cybersecurity, or a related field

Tools

Microsoft Sentinel
Microsoft Defender XDR
KQL
UEBA

Job description

Job Details: Job Description:

Key Responsibilities

Lead daily SOC operations across monitoring, alert triage, investigation, escalation, incident response coordination, and operational handoff across global time zones. Own and mature SOC operating procedures, including incident intake, severity classification, escalation paths, response playbooks, major incident communications, and post-incident reviews. Manage and improve security monitoring across SIEM, SOAR, EDR/XDR, email security, cloud security, identity security, vulnerability signals, network telemetry, and threat intelligence sources. Build, tune, and continuously improve detection use cases aligned to enterprise risks, MITRE ATT&CK techniques, threat intelligence, audit findings, and business-critical assets. Partner with security engineering teams to improve log onboarding, data quality, telemetry coverage, alert fidelity, automation, and response integrations. Lead incident response coordination for security events involving endpoint compromise, identity misuse, phishing, malware, data loss indicators, cloud misconfigurations, suspicious network activity, and unauthorized access attempts. Establish SOC performance metrics and reporting, including alert volumes, false-positive rates, SLA adherence, escalation quality, mean time to detect, mean time to acknowledge, mean time to contain, and incident trends. Oversee SOC analyst workflows, shift handoffs, case documentation, evidence handling, and quality assurance reviews. Coordinate with managed security service providers, internal IT teams, and business stakeholders to ensure timely response and clear ownership of remediation actions. Support implementation and operationalization of SOAR playbooks, automation workflows, enrichment logic, and incident response runbooks. Drive continuous improvement through tabletop exercises, incident retrospectives, purple-team findings, threat hunting outputs, and lessons learned. Maintain alignment with security governance, regulatory, privacy, and audit requirements by ensuring SOC processes are documented, repeatable, measurable, and evidence-ready. Serve as a security operations lead for global SOC coverage and cross-functional collaboration.

Minimum Qualifications
  • Bachelor’s degree in Computer Science, Computer Engineering, Information Security, Cybersecurity, or a related field, or equivalent practical experience.
  • 5+ years of progressive cybersecurity experience, including significant hands-on experience in security operations, incident response, threat detection, or SOC leadership.
  • 3+ years of experience leading SOC analysts, incident response teams, managed security operations, or cross‑functional cyber defense workflows.
  • Strong working knowledge of SIEM, SOAR, EDR/XDR, cloud security monitoring, identity security, email security, network security, and incident response processes.
  • Demonstrated experience building or improving detection use cases, alert triage workflows, response playbooks, escalation procedures, and SOC metrics.
  • Experience coordinating investigations involving phishing, malware, endpoint compromise, suspicious authentication, privileged access misuse, data exposure, and cloud security events.
  • Familiarity with frameworks and standards such as MITRE ATT&CK, NIST CSF, NIST SP 800-61, ISO 27001, CIS Controls, or equivalent cyber defense frameworks.
  • Ability to communicate clearly with technical teams, business stakeholders, senior leadership, and external partners during security incidents.
  • Strong analytical, documentation, prioritization, and decision-making skills in high pressure operational environments.
  • CISSP, Security+, or equivalent industry certification.
Preferred Qualifications
  • Experience operating or transforming a global SOC in an enterprise environment.
  • Experience working as an Incident Commander, leading IR execution for the company.
  • Experience working with Microsoft Sentinel, Microsoft Defender XDR, KQLs, UEBA, or comparable security operations platforms.
  • Experience with cloud security monitoring across Azure, AWS, GCP, or hybrid cloud environments.
  • Experience in threat hunting, purple‑team collaboration, adversary emulation, or detection engineering.
  • Experience managing managed detection and response providers or outsourced SOC services.
  • Experience in semiconductor, technology, manufacturing, or intellectual property-intensive environments.
  • Familiarity with GenAI-assisted SOC workflows, including alert enrichment, analyst productivity, incident summarization, and security automation.
  • Additional certifications such as CEH, or similar.
Job Type

Regular Shift: Shift 1 (Malaysia) Primary Location: Penang 15, Penang, Malaysia Additional Locations: Bengaluru, Karnataka, India

Posting Statement

All qualified applicants will receive consideration for employment without regard to race, color, religion, religious creed, sex, national origin, ancestry, age, physical or mental disability, medical condition, genetic information, military and veteran status, marital status, pregnancy, gender, gender expression, gender identity, sexual orientation, or any other characteristic protected by local law, regulation, or ordinance.

About Altera

Altera: Accelerating Innovators Altera provides leadership programmable solutions that are easy-to-use and deploy in applications from cloud to edge, offering limitless AI possibilities. Our end-to-end broad portfolio of products including FPGAs, CPLDs, Intellectual Property, development tools, System on Modules, SmartNICs and IPUs provide the flexibility to accelerate innovation. Altera is helping to shape the future through pioneering innovation that unlocks extraordinary possibilities for everyone on the planet.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Center Lead
Security Operations Center Lead

Altera • Bayan Lepas

On-site
MYR 180,000 - 280,000
Global SOC Lead for Incident Response & Detection
Global SOC Lead for Incident Response & Detection

Altera Corporation • Malaysia

On-site
MYR 180,000 - 300,000
Global SOC Lead: Incident Response & Detection
Global SOC Lead: Incident Response & Detection

Altera • Bayan Lepas

On-site
MYR 180,000 - 280,000
Senior SOC Analyst / SOC Engineer (L3)
Senior SOC Analyst / SOC Engineer (L3)

Jobstreet Malaysia • Klang City

On-site
MYR 120,000 - 180,000
Security Analyst (Intelligence - Operations)
Security Analyst (Intelligence - Operations)

GXS Bank • Selangor

On-site
MYR 90,000 - 130,000
Cyber Security Operations Lead
Cyber Security Operations Lead

EPAM Systems • Malaysia

On-site
MYR 180,000 - 280,000
Senior Security Analyst
Senior Security Analyst

Logicalis • Kuala Lumpur

On-site
MYR 180,000 - 300,000
Soc Manager
Soc Manager

EC-Council Global Services • Kuala Lumpur

On-site
MYR 180,000 - 300,000
L2 SOC Analyst / Engineer
L2 SOC Analyst / Engineer

Insyghts Security Sdn Bhd • Iskandar Puteri

On-site
MYR 60,000 - 100,000
SOC & Cyber Incident Response Lead
SOC & Cyber Incident Response Lead

Epergne Solutions • Kuala Lumpur

On-site
MYR 100,000 - 140,000