Senior Security Operations lead

Randstad Malaysia

Kuala Lumpur

On-site

MYR 90,000 - 130,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Randstad Malaysia is seeking a Security Engineer specializing in offensive security to validate real-world attack paths across web, API, mobile, cloud, and infrastructure environments.

You will conduct penetration testing, incident response, and threat detection in a multi-cloud setup, integrating SIEM analyses and automation to improve coverage and reduce false positives.

Qualifications

  • Bachelor's degree in CS, cybersecurity, IT, or related field.
  • 3+ years hands-on cybersecurity experience.
  • Hands-on offensive security experience required.
  • Ability to develop PoCs or exploit scenarios.

Responsibilities

  • Own security monitoring, threat detection, and incident response across our multi-cloud environment.

Skills

Offensive security
Security operations
Incident response
Penetration testing
Cloud security

Education

Bachelor's degree

Job description

About the company

Company is a forefront of technological advancement, integrating cutting-edge solutions into everyday life. Our culture thrives on innovation, collaboration, and a commitment to excellence. We foster an inclusive environment where every team member's contribution is valued and where everyone has the opportunity to grow.

About the job
  • Conduct proactive offensive security testing and attack validation across public-facing Web, API, mobile, cloud and infrastructure environments. Identify realistic and exploitable attack paths and drive remediation to closure.
  • Perform penetration testing, vulnerability validation and red/blue security exercises, going beyond automated vulnerability scanning to understand how weaknesses can be exploited in real-world scenarios.
  • Run security monitoring, alert triage, investigation and severity classification (P0–P3) using our SIEM environment (Alibaba Cloud Threat Analysis / Agentic SOC + SLS).
  • Develop and tune detection rules to improve coverage of key threats such as account takeover, automated attacks, credential or secret leakage, privilege misuse, ransomware and business-logic abuse, while continuously reducing false positives.
  • Translate identified attack techniques and vulnerabilities into practical detection, prevention and response controls.
  • Lead end-to-end Incident Response, including detection → investigation → containment → eradication → recovery → post-mortem, with clear written incident reports.
  • Develop SOAR and security automation playbooks, preferably using Go, to automate repetitive response activities such as auto-blocking, isolation, credential handling and security enrichment.
  • Aggregate security logs across multiple platforms (Alibaba Cloud primary + AWS + Tencent Cloud + Cloudflare) into the SIEM for unified monitoring and analysis.
  • Operate and optimize native cloud and platform security capabilities such as Cloud Security Center, GuardDuty, WAF and other security controls
Requirements
  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Engineering or a related field, or equivalent practical experience.
  • 3+ years of hands-on cybersecurity experience, including Security Operations, Incident Response, Product/Application Security or Offensive Security.
  • Hands-on Offensive Security experience is required, including practical experience in penetration testing, attack simulation or vulnerability exploitation.
  • Able to independently perform security testing against Web applications and APIs, identify realistic attack paths and validate vulnerabilities beyond automated scanner results.
  • Ability to develop PoCs, scripts or exploit scenarios to demonstrate and validate security weaknesses.
  • Familiarity with the security stack of at least one major public cloud platform such as Alibaba Cloud, AWS or Tencent Cloud.
key responsibilities

Own security monitoring, threat detection, and incident response across our multi-cloud environment, and drive automation of detection and response.

skills

no additional skills required

qualifications

no additional qualifications required

education

Bachelor Degree

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Operations lead
Senior Security Operations lead

Randstad • Kuala Lumpur

On-site
MYR 140,000 - 210,000
Senior Security Operations Engineer (SecOps)
Senior Security Operations Engineer (SecOps)

Randstad Malaysia • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Senior Security Operations & Incident Response Lead
Senior Security Operations & Incident Response Lead

Randstad • Kuala Lumpur

On-site
MYR 140,000 - 210,000
Senior CyberSecurity Analyst
Senior CyberSecurity Analyst

SF Express Corporation • Shah Alam

On-site
MYR 100,000 - 180,000
Tech-IDC-Security Engineer
Tech-IDC-Security Engineer

ZTE Malaysia • Johor Bahru

On-site
MYR 60,000 - 90,000
IT Security Engineer
IT Security Engineer

ITIC MIMOS • Kuala Lumpur

On-site
MYR 60,000 - 120,000
Security Operations Center Lead
Security Operations Center Lead

Altera • Bayan Lepas

On-site
MYR 180,000 - 280,000
Security Analyst (Intelligence - Operations)
Security Analyst (Intelligence - Operations)

GXS Bank • Selangor

On-site
MYR 90,000 - 130,000
Security Operations Center Lead
Security Operations Center Lead

Altera Corporation • Malaysia

On-site
MYR 180,000 - 300,000
Senior Manager, Cloud Architect (Alibaba Cloud)
Senior Manager, Cloud Architect (Alibaba Cloud)

AIA Hong Kong and Macau • Kuala Lumpur

On-site
MYR 150,000 - 200,000