Senior Incident Response Specialist, Cyber Security

Cygnify

Not Interested
Bookmark
Report This Job

profile Job Location:

Petaling Jaya - Malaysia

profile Monthly Salary: Not Disclosed
profile Experience Required: 3-5years
Posted on: 30+ days ago
Vacancies: 1 Vacancy

Job Summary


Role Mission: The Senior Analyst Cyber Security Incident Response is responsible for monitoring detecting and analysing cybersecurity incidents through the Security Operations Centre (SOC) platform. The role supports the end-to-end incident lifecycle including triage investigation containment and closure ensuring timely response to security events and maintaining StarHubs cyber resilience. This role acts as the Level 2 (L2) Incident Responder bridging SOC analysts and Incident Response management by performing deep technical analysis and coordinating with internal teams for resolution.

Accountabilities:

1. Perform end-to-end incident triage and investigation of security alerts escalated from L1 SOC analysts.

2. Ensure timely incident analysis containment and escalation aligned with MTTD and MTTR goals.

3. Support the SIEM platform (Elastic Stack) by fine-tuning existing rules and suggesting new detections.

4. Conduct log analysis and correlation across multiple data sources (network endpoint and cloud).

5. Create and maintain incident documentation reports and lessons learned.

6. Support incident response playbook execution during containment and recovery phases.

7. Collaborate with IT network and application teams for incident remediation and root cause analysis.

8. Provide insights for use case improvements and participate in use case validation and testing.

9. Escalate confirmed incidents to CSIRT / Assistant Manager Incident Response for further action.

10. Participate in post-incident reviews contributing to process and detection improvements.



Requirements

Tasks this person to deliver accountabilities

1. Monitor alerts generated from the SOC/SIEM and perform initial to intermediate-level investigations.

2. Review and validate security events from multiple log sources and identify legitimate threats.

3. Perform deep-dive investigations for incidents involving malware phishing insider threats and cloud breaches.

4. Assist in detection rule creation and tuning under the guidance of senior incident responders.

5. Use frameworks like MITRE ATT&CK for mapping and improving detection quality.

6. Conduct threat hunting using Elastic Stack and related tools.

7. Collaborate with MSSP CSIRT and IT infrastructure teams to ensure timely incident handling.

8. Support incident response reporting evidence collection and documentation for compliance and audit.

9. Contribute to automation opportunities in detection and response workflows.

10. Participate in training sessions simulations and tabletop exercises to enhance readiness.

11. Responsible for the log source onboarding and managing the continuous logs availability on the SIEM platform.



Role Mission: The Senior Analyst Cyber Security Incident Response is responsible for monitoring detecting and analysing cybersecurity incidents through the Security Operations Centre (SOC) platform. The role supports the end-to-end incident lifecycle including triage investigation containment and...
View more view more

Company Industry

IT Services and IT Consulting

Key Skills

  • CCTV
  • Low Voltage
  • Network Management
  • IDS
  • Computer Networking
  • Field Service
  • ICD Coding
  • Military Experience
  • Security
  • Security System Experience
  • Information Security
  • Troubleshooting