Senior Security Operations Engineer (SecOps)

SNSoft Sdn Bhd

Kuala Lumpur

On-site

MYR 120,000 - 180,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Training sponsorship
Medical benefits (Optical, Dental)
Sports activities & company outings

Job summary

SNSoft SDN BHD seeks a Senior Security Operations Engineer to own threat detection, incident response, and automation across multi‑cloud environments. You will drive offensive security testing, validate vulnerabilities beyond automated scans, and implement detection rules to improve security coverage.

You will also develop SOAR playbooks and contribute to on‑call incident response, collaborating with Engineering and Product teams to strengthen security early in development.

Qualifications

  • Bachelor's degree or equivalent practical experience in a related field.
  • 3+ years of hands-on cybersecurity experience including Security Operations & Incident Response.
  • Hands-on Offensive Security experience with web apps and APIs.
  • Ability to develop PoCs, scripts or exploit scenarios.
  • Experience with SIEM/log analytics and security investigations.

Responsibilities

  • Own security monitoring, threat detection and incident response across multi-cloud environments.
  • Conduct offensive security testing and attack validation on web, API, mobile, cloud and infra.
  • Perform penetration testing, vulnerability validation and red/blue exercises.
  • Run SIEM triage, investigate alerts and classify severity (P0–P3).
  • Develop and tune detection rules to reduce false positives.
  • Develop SOAR/playbooks and automate responses (Go preferred).

Skills

Offensive security
Incident response
Security operations
Attack simulation
Go scripting
Python scripting
Multi-cloud security
Threat hunting
Investigations

Education

Bachelor's degree in Computer Science / Cybersecurity / IT / Engineering or related field

Tools

SIEM (SLS / Splunk / ELK)
Go
Python
Alibaba Cloud
AWS
Tencent Cloud
Cloudflare

Job description

Senior Security Operations Engineer (SecOps)

At SNSoft, we're at the forefront of technological advancement, integrating cutting-edge solutions into everyday life. Our culture thrives on innovation, collaboration, and a commitment to excellence. We foster an inclusive environment where every team member's contribution is valued and where everyone has the opportunity to grow.

Benefits and Compensation:

Competitive salary range depending on experience.

Project Incentive (upon Company Declaration based on project performance)

Sports Activities (Badminton & Basketball), Company Outing

Training and certification sponsored by company (Selected employees).

Optical, Dental, Body Check Up Claim (upon Confirmation)

Job Summary:

Own security monitoring, threat detection, and incident response across our multi-cloud environment, and drive automation of detection and response.

Key Responsibilities

Conduct proactive offensive security testing and attack validation across public-facing Web, API, mobile, cloud and infrastructure environments. Identify realistic and exploitable attack paths and drive remediation to closure.

Perform penetration testing, vulnerability validation and red/blue security exercises, going beyond automated vulnerability scanning to understand how weaknesses can be exploited in real-world scenarios.

Run security monitoring, alert triage, investigation and severity classification (P0–P3) using our SIEM environment (Alibaba Cloud Threat Analysis / Agentic SOC + SLS).

Develop and tune detection rules to improve coverage of key threats such as account takeover, automated attacks, credential or secret leakage, privilege misuse, ransomware and business-logic abuse, while continuously reducing false positives.

Translate identified attack techniques and vulnerabilities into practical detection, prevention and response controls.

Develop SOAR and security automation playbooks, preferably using Go, to automate repetitive response activities such as auto-blocking, isolation, credential handling and security enrichment.

Aggregate security logs across multiple platforms (Alibaba Cloud primary + AWS + Tencent Cloud + Cloudflare) into the SIEM for unified monitoring and analysis.

Operate and optimize native cloud and platform security capabilities such as Cloud Security Center, GuardDuty, WAF and other security controls.

Conduct security reviews of new systems, features and APIs before production release, working closely with Engineering and Product teams to identify potential attack vectors and security risks early.

Participate in the on-call rotation to ensure timely investigation and response to critical security alerts and incidents.

Required Qualifications

Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Engineering or a related field, or equivalent practical experience.

3+ years of hands-on cybersecurity experience, including Security Operations, Incident Response, Product/Application Security or Offensive Security.

Hands-on Offensive Security experience is required, including practical experience in penetration testing, attack simulation or vulnerability exploitation.

Able to independently perform security testing against Web applications and APIs, identify realistic attack paths and validate vulnerabilities beyond automated scanner results.

Ability to develop PoCs, scripts or exploit scenarios to demonstrate and validate security weaknesses.

Strong understanding of common Web and API attack techniques, authentication and authorization weaknesses, business-logic vulnerabilities and attacker methodologies.

Hands-on experience with SIEM and log analytics platforms such as SLS, Splunk, ELK or equivalent, including developing and tuning detection rules.

Practical experience in security investigation and incident response, with the ability to independently investigate and respond to security incidents.

Strong security fundamentals across network, operating systems, Web applications, APIs and cloud environments.

Development or scripting capability for security automation; Go is preferred, while Python or other scripting languages are also welcome.

Familiarity with the security stack of at least one major public cloud platform such as Alibaba Cloud, AWS or Tencent Cloud.

Able to think from an attacker's perspective, understand how vulnerabilities can be chained into realistic attack paths, and translate those findings into effective defensive controls.

Detail-oriented, accountable and comfortable participating in an on-call rotation.

Nice to Have

Red Team / Purple Team experience in a production or professional security environment.

Bug bounty, VDP, CTF, CVE or other demonstrable offensive security achievements.

Threat Hunting and MITRE ATT&CK mapping experience.

Experience building or operating SOAR workflows and security automation.

Security experience supporting high-traffic, public-facing consumer platforms, payments, e-commerce, social platforms or other transaction-intensive environments.

Experience investigating account abuse, automated attacks, bot activity, transaction abuse or business-logic attacks.

Experience with risk engines, device fingerprinting, behavioural analysis or bot detection.

Hands-on experience with DDoS and application-layer attack mitigation.

Multi-cloud security operations experience across Alibaba Cloud, AWS, Tencent Cloud and Cloudflare.

Experience working closely with Engineering and Product teams on security assessment, remediation and secure-by-design initiatives.

About SNSoft SDN BHD

SNSoft SDN BHD, founded in 2016, is a leading software and game development studio specializing in social media and mobile games. Our diverse team of experts from Malaysia and across Asia delivers cutting-edge solutions in software, web, and database development.

We seek creative, growth-driven talent to shape the future of gaming and technology. With strong innovation, operational expertise, and global expansion plans, SNSoft is building a dynamic interactive entertainment platform. Join us and be part of something extraordinary!

About SNSoft SDN BHD

SNSoft SDN BHD, founded in 2016, is a leading software and game development studio specializing in social media and mobile games. Our diverse team of experts from Malaysia and across Asia delivers cutting-edge solutions in software, web, and database development.

We seek creative, growth-driven talent to shape the future of gaming and technology. With strong innovation, operational expertise, and global expansion plans, SNSoft is building a dynamic interactive entertainment platform. Join us and be part of something extraordinary!

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Platform Architect
Platform Architect

SNSoft Sdn Bhd • Kuala Lumpur

On-site
MYR 201,000 - 335,000
13th Months Salary (upon Company De N/
Project Incentive (upon Company De/
Sports Activities (Badminton &Basketba
+2
Senior Security Operations lead
Senior Security Operations lead

Randstad Malaysia • Kuala Lumpur

On-site
MYR 90,000 - 130,000
Senior SecOps Engineer: Offensive Security & SIEM
Senior SecOps Engineer: Offensive Security & SIEM

SNSoft Sdn Bhd • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Training sponsorship
Medical benefits (Optical, Dental)
Sports activities & company outings
Security Operations Center Lead
Security Operations Center Lead

Altera • Bayan Lepas

On-site
MYR 180,000 - 280,000
Security Operations Center Lead
Security Operations Center Lead

Altera Corporation • Malaysia

On-site
MYR 180,000 - 300,000
Senior Security Operations Engineer (SecOps)
Senior Security Operations Engineer (SecOps)

Randstad Malaysia • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Senior SOC Engineer
Senior SOC Engineer

Hytech Consulting Management Sdn Bhd • Kuala Lumpur

On-site
MYR 180,000 - 240,000
Public transport access
Corporate insurance (dental, optical,–
Gym and fitness claims
+1
SOC Engineer, Kuala Lumpur Cyber security Kuala Lumpur
SOC Engineer, Kuala Lumpur Cyber security Kuala Lumpur

S-RM Intelligence and Risk Consulting • Kuala Lumpur

Hybrid
MYR 60,000 - 90,000
20 days paid holiday plus additional leave
Flexible working hours
Pension scheme
+2
Cybersecurity (SOC) Analyst Cyber security Kuala Lumpur
Cybersecurity (SOC) Analyst Cyber security Kuala Lumpur

S-RM Intelligence and Risk Consulting • Kuala Lumpur

Hybrid
MYR 60,000 - 80,000
20 days paid holiday
Flexible working hours
Pension scheme
+3
SOC Analyst
SOC Analyst

Oxydata Software Sdn Bhd • Kuala Lumpur

On-site
MYR 67,000 - 95,000
CompTIA Security+
CySA+
CEH
+2