SOC Senior analyst

Atos

Cyberjaya

On-site

MYR 60,000 - 120,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Atos in Malaysia is seeking a Senior SOC Analyst to perform L2/L3 investigation of security alerts, respond to incidents, and mentor junior analysts.

You will conduct threat hunting using MITRE ATT&CK, analyze logs across SIEM, EDR, identity, network, and cloud, and prepare incident reports for stakeholders.

Qualifications

  • - 4–6+ years of SOC or cybersecurity experience.
  • - Hands-on with Microsoft Sentinel and Defender XDR/EDR, or equivalent security platforms.
  • - Proficient in Kusto Query Language (KQL) and security log analysis.
  • - Strong incident investigation and response skills.
  • - Knowledge of MITRE ATT&CK, threat intel, and threat hunting.
  • - Experience investigating malware, phishing, identity attacks, PowerShell activity, lateral movement, and data exfiltration.
  • - Strong analytical, communication, and escalation-management skills.

Responsibilities

  • - Perform L2/L3 investigation of security alerts and incidents.
  • - Investigate complex incidents across SIEM, EDR/XDR, identity, network, email, and cloud environments.
  • - Perform threat hunting using IOCs, TTPs, threat intelligence, and MITRE ATT&CK.
  • - Analyze attack patterns, establish incident timelines, and identify root cause.
  • - Escalate confirmed or critical incidents within SLAs.
  • - Provide technical guidance and mentoring to L1/L2 analysts.
  • - Support detection use-case tuning and false-positive reduction.
  • - Perform root cause analysis and recommend corrective actions.
  • - Prepare incident reports and communicate findings to stakeholders.
  • - Participate in incident drills and tabletop exercises.

Skills

SOC experience
MS Sentinel
Defender XDR/EDR
KQL
incident investigation
MITRE ATT&CK
threat hunting
communication & escalation

Tools

Microsoft Sentinel
Defender XDR/EDR
SOAR
Logic Apps
Splunk
QRadar
ArcSight
Trellix
Palo Alto platforms

Job description

Responsible for advanced security alert investigation, incident response, threat hunting, technical escalation, and providing guidance to SOC analysts.

Key Responsibilities
  • Perform L2/L3 investigation of security alerts and incidents.
  • Investigate complex and high-severity incidents across SIEM, EDR/XDR, identity, network, email, and cloud environments.
  • Perform threat hunting using Indicators of Compromise (IOCs), Tactics, Techniques, and Procedures (TTPs), threat intelligence, and the MITRE ATT&CK framework.
  • Analyze attack patterns, establish incident timelines, and identify root cause.
  • Escalate confirmed or critical incidents within defined service-level agreements.
  • Provide technical guidance and mentoring to L1/L2 analysts.
  • Support detection use-case tuning and false-positive reduction.
  • Perform root cause analysis and recommend corrective actions.
  • Prepare incident reports and communicate findings to stakeholders.
  • Participate in incident drills and tabletop exercises.
Mandatory Skills and Requirements
  • 4–6+ years of SOC or cybersecurity experience.
  • Hands-on experience with Microsoft Sentinel and Defender XDR/EDR, or equivalent security platforms.
  • Good knowledge of Kusto Query Language (KQL) and security log analysis.
  • Strong incident investigation and response skills.
  • Knowledge of MITRE ATT&CK, threat intelligence, and threat hunting.
  • Experience investigating malware, phishing, identity attacks, PowerShell activity, lateral movement, and data exfiltration.
  • Strong analytical, communication, and escalation-management skills.
Preferred Skills
  • Experience with Defender for Endpoint, Defender for Identity, Entra ID, and Microsoft Purview.
  • Knowledge of Security Orchestration, Automation, and Response (SOAR), automation, and Logic Apps.
  • Experience with Splunk, QRadar, ArcSight, Trellix, or Palo Alto security platforms.
  • Knowledge of cloud security and User and Entity Behavior Analytics (UEBA).
Preferred Certifications
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Forensic Analyst (GCFA)Microsoft Certified: Security Operations Analyst Associate (SC-200)
  • CompTIA Security+
  • Certified Ethical Hacker (CEH)
Key Success Measures
  • Accurate and timely alert investigation.
  • Compliance with defined service-level agreements and effective escalation.
  • Quality of incident analysis and reporting.
  • Successful threat hunting and continuous detection improvement.
  • Reduction in missed alerts and false positives.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior SOC Analyst
Senior SOC Analyst

Pride Global • Selangor

On-site
MYR 120,000 - 180,000
SOC Specialist
SOC Specialist

Atos • Cyberjaya

On-site
MYR 120,000 - 180,000
SOC Specialist
SOC Specialist

Pride Global • Selangor

On-site
MYR 140,000 - 230,000
SOC Specialist
SOC Specialist

Pride Global • Cyberjaya

On-site
MYR 120,000 - 180,000
L2 SOC Analyst
L2 SOC Analyst

Pride Global • Selangor

On-site
MYR 60,000 - 110,000
SOC Analyst L2
SOC Analyst L2

PERSOL Workforce Solutions Malaysia Sdn Bhd • Kuala Lumpur

On-site
MYR 60,000 - 100,000
Security Delivery Consultant
Security Delivery Consultant

ABP Group • Kuala Lumpur

On-site
MYR 120,000 - 170,000
SOC Lead
SOC Lead

Axonect • Kuala Lumpur

On-site
MYR 180,000 - 240,000
Service Manager SIEM/SOC
Service Manager SIEM/SOC

Pride Global • Selangor

On-site
MYR 180,000 - 300,000
SOC Lead
SOC Lead

XL Axiata • Kuala Lumpur

On-site
MYR 240,000 - 360,000