SOC Developer

Ensign InfoSecurity

Kuala Lumpur

On-site

MYR 90,000 - 150,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Ensign InfoSecurity is seeking a SOC Developer in Kuala Lumpur to develop and maintain SIEM/SOAR content, build automation for incident response, and integrate new data sources. You will work with SOC Analysts and Threat Hunters to enhance detection use cases and drive improved incident handling.

The role requires a Bachelor's degree in CS/Cybersecurity/IS and familiarity with SIEM/SOAR platforms, MITRE ATT&CK, and threat intelligence.

Qualifications

  • Bachelor's degree in CS, cybersecurity, IS or related field required.
  • GIAC GMON, GCDA, GCIA or equivalent certification advantageous.
  • Strong knowledge of SIEM/SOAR concepts and incident response workflows.
  • Familiarity with MITRE ATT&CK and threat intelligence concepts welcome.

Responsibilities

  • Develop, customize, and maintain SIEM/SOAR content (rules, alerts, dashboards).
  • Create automation playbooks for incident response to reduce analyst workload.
  • Integrate new data sources and ensure parsing, normalization, and enrichment.
  • Collaborate with SOC Analysts/Threat Hunters to develop detection use cases.
  • Document code, detection logic, use cases, and workflows.
  • Contribute to threat lifecycle and incident handling processes.

Skills

Python scripting
JavaScript
Bash
Threat hunting mindset

Education

Bachelor's degree in Computer Science, Cybersecurity, Information Systems

Tools

Splunk
QRadar
ELK
Cortex XSOAR
Splunk Phantom
IBM Resilient

Job description

SOC Developer page is loaded## SOC Developerlocations: Malaysia (Kuala Lumpur)time type: Full timeposted on: Posted 30+ Days Agojob requisition id: JOBREQ-0003085Ensign is hiring !**Key Responsibilities:*** Develop, customize, and maintain security monitoring content for SIEM and SOAR platforms (e.g., custom rules, alerts, correlation searches, dashboards).* Build automation playbooks for incident response using SOAR platforms to reduce response time and analyst workload.* Integrate new data sources into SIEM tools and ensure parsing, normalization, and enrichment.* Create and maintain scripts and tools to support threat detection, investigation, and reporting.* Work with SOC Analysts and Threat Hunters to develop new detection use cases and improve existing ones.* Participate in the threat lifecycle, assisting in the development of detection logic based on threat intel and attack techniques (e.g., MITRE ATT&CK).* Collaborate with infrastructure and application teams to ensure proper logging and telemetry.* Maintain documentation of code, detection logic, use case coverage, and automation workflows.**Requirements:****Education & Certification:*** Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field.* Certifications such as GIAC GMON, GCDA, GCIA, or equivalent are an advantage.**Technical Skills:*** Strong experience with SIEM technologies (e.g., Splunk, QRadar, ELK).* Experience with SOAR platforms (e.g., Cortex XSOAR, Splunk Phantom, IBM Resilient).* Proficiency in scripting and development languages such as Python, JavaScript, or Bash.* Familiarity with REST APIs, JSON, and integration methods.* Understanding of cybersecurity concepts, attack techniques, and defensive strategies.* Familiarity with MITRE ATT&CK, cyber threat intelligence, and incident handling workflows.locations: Malaysia (Kuala Lumpur)time type: Full timeposted on: Posted 30+ Days Ago**About Ensign InfoSecurity**Ensign InfoSecurity is the largest pure-play cybersecurity service provider in Asia. The company is headquartered in Singapore. We specialise in the provision of these services; cybersecurity advisory and assurance, implementation and management of advanced cybersecurity controls, cybersecurity monitoring, threat hunting, and incident response. Underpinning these competencies is in-house research and development in cybersecurity.We are a technology company with warmth and soul. We are ambitious, propelled by our vision to be the cyber defender of choice, and fueled by the dedication and camaraderie of individuals who are eager to make a difference, and leave their footprints in the industry.If you are a self-motivated curious go-getter, we want You! Join Us!
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Analyst (SOC Level 3)
Senior Security Analyst (SOC Level 3)

Ensign InfoSecurity • Kuala Lumpur

On-site
MYR 180,000 - 240,000
SOC Developer — Build & Automate Threat Detection
SOC Developer — Build & Automate Threat Detection

Ensign InfoSecurity • Kuala Lumpur

On-site
MYR 90,000 - 150,000
L2 - Security Analyst
L2 - Security Analyst

Ensign InfoSecurity • Kuala Lumpur

On-site
MYR 60,000 - 100,000
L2 Security Analyst
L2 Security Analyst

Ensign InfoSecurity • Kuala Lumpur

On-site
MYR 70,000 - 110,000
SOC Analyst
SOC Analyst

Oxydata Software Sdn Bhd • Kuala Lumpur

On-site
MYR 67,000 - 95,000
CompTIA Security+
CySA+
CEH
+2
Senior Security Analyst
Senior Security Analyst

Logicalis GmbH • Kuala Lumpur

On-site
MYR 80,000 - 120,000
SOC Engineer, Kuala Lumpur Cyber security Kuala Lumpur
SOC Engineer, Kuala Lumpur Cyber security Kuala Lumpur

S-RM Intelligence and Risk Consulting • Kuala Lumpur

Hybrid
MYR 60,000 - 90,000
20 days paid holiday plus additional leave
Flexible working hours
Pension scheme
+2
Security Operations Center Lead
Security Operations Center Lead

Altera • Bayan Lepas

On-site
MYR 180,000 - 280,000
Security Analyst
Security Analyst

Ensign InfoSecurity • Kuala Lumpur

On-site
MYR 60,000 - 90,000
Senior Cyber Security Consultant (SOC) Cyber security Kuala Lumpur
Senior Cyber Security Consultant (SOC) Cyber security Kuala Lumpur

S-RM Intelligence and Risk Consulting • Kuala Lumpur

Hybrid
MYR 120,000 - 180,000