Threat Intelligence Analyst II - SOC Security & Hunting

Ensign InfoSecurity

Selangor

Hybrid

MYR 70,000 - 110,000

Full time

11 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Ensign InfoSecurity in Malaysia is seeking an experienced security professional to monitor, investigate and report on threat activity for multiple clients. You will analyze network logs, security events and open-source information to identify risks and generate actionable intelligence.

A strong background in SOC/CERT/CIRT, MITRE ATT&CK familiarity, and ability to communicate findings in technical reports and briefings is essential.

Qualifications

  • Degree holder with at least 5 years' of experience in related field and capacity.
  • Experience in a Security Operations Centre (SOC) or CERT/CIRT.
  • Strong interest in open source research and contextual analysis abilities.
  • Understanding of networks, apps, and servers; ability to analyze logs.
  • Familiarity with MITRE ATT&CK or cyber kill chain.
  • Investigative and analytical problem solving skills.
  • Knowledge of vulnerabilities, response, and mitigation in cyber security.
  • Certifications such as GCIA, CEH are preferred.
  • Experience with OSINT and closed source intelligence processes.
  • Ability to research and characterize security threats and indicators.

Responsibilities

  • Monitor third party security feeds, forums, and mailing lists to gather information related to the client through automated means.
  • Produce intelligence outputs to provide an accurate depiction of the current threat landscape and associated risk through the use of customer, community, and open source reporting.
  • Produce actionable intelligence information for delivery to colleagues and customers in the form of technical reports, briefings, and data feeds.
  • Review vulnerabilities advisories.
  • Review and process threat intelligence reports.
  • Perform detailed investigative works into all traffic anomalies against established baselines of individual agencies.
  • Assess each event based on factual information and wider contextual information available.
  • Review, propose and generate reports to automate or reduce low value event escalations.
  • Build rules and intelligence to detect threats and proliferate to all monitored networks.
  • Implement detection methods in SIEM Rules, DB scripts etc.
  • Periodic analysis of security events, network traffic, and logs to engineer new detection methods.
  • Support development of tactics, techniques, and procedures for proactive threat hunting and analysis.
  • Assist Security Analysts with investigative works.
  • Prepare training programmes for Security Analysts and conduct knowledge sharing sessions.
  • Fulfil Change Requests and Service Requests and respond to inquiries regarding detection Use Case.

Skills

Analytical thinking
Open source research
Critical thinking
Log analysis
Threat hunting
Investigative skills

Education

Degree holder
GCIA/CEH certifications preferable

Tools

MITRE ATT&CK framework

Job description

Ensign InfoSecurity in Malaysia is seeking an experienced security professional to monitor, investigate and report on threat activity for multiple clients. You will analyze network logs, security events and open-source information to identify risks and generate actionable intelligence.

A strong background in SOC/CERT/CIRT, MITRE ATT&CK familiarity, and ability to communicate findings in technical reports and briefings is essential.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior SOC Incident Response Lead & Threat Hunter
Senior SOC Incident Response Lead & Threat Hunter

Ensign InfoSecurity • Kuala Lumpur

On-site
MYR 180,000 - 240,000
Security Incident Response & Threat Hunter
Security Incident Response & Threat Hunter

Ensign InfoSecurity • Kuala Lumpur

On-site
MYR 60,000 - 90,000
SOC Developer — Build & Automate Threat Detection
SOC Developer — Build & Automate Threat Detection

Ensign InfoSecurity • Kuala Lumpur

On-site
MYR 90,000 - 150,000
L2 SOC Analyst - Threat Detection & Incident Response
L2 SOC Analyst - Threat Detection & Incident Response

S SQUAD SDN. BHD. • Labuan

On-site
MYR 60,000 - 90,000
Senior MSSP Security Analyst – Incident Response
Senior MSSP Security Analyst – Incident Response

Ensign InfoSecurity • Kuala Lumpur

On-site
MYR 60,000 - 100,000
SOC Threat Hunting & Detection Lead
SOC Threat Hunting & Detection Lead

Pacific Comnet (M) Sdn Bhd • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Senior SOC Engineer — Incident Response & Threat Hunting
Senior SOC Engineer — Incident Response & Threat Hunting

Neuron Solutions Sdn. Bhd. • Kuala Lumpur

Hybrid
MYR 180,000 - 280,000
Junior Cyber Defense Analyst: SIEM & Incident Response
Junior Cyber Defense Analyst: SIEM & Incident Response

Private Advertiser • Petaling Jaya

On-site
MYR 60,000 - 100,000
Senior SOC Investigator & Threat-Hunting Expert
Senior SOC Investigator & Threat-Hunting Expert

Atos • Cyberjaya

On-site
MYR 120,000 - 180,000
Senior SOC Engineer: Threat Hunting & Incident Response
Senior SOC Engineer: Threat Hunting & Incident Response

Hytech Consulting Management Sdn Bhd • Kuala Lumpur

On-site
MYR 180,000 - 240,000
Public transport access
Corporate insurance (dental, optical,–
Gym and fitness claims
+1