Talent.com
This job offer is not available in your country.
L3 Digital Forensic & Incident Response I IT Security, Group Technology & Digital

L3 Digital Forensic & Incident Response I IT Security, Group Technology & Digital

MaybankKuala Lumpur, Kuala Lumpur, Malaysia
1 day ago
Job description

L3 Digital Forensic & Incident Response I IT Security, Group Technology & Digital

Maybank WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia

Responsibilities :

  • Develop and maintain honeypots and supporting infrastructure and be SME on honeypots and honeypot infrastructure
  • Develop and maintain threat analysis lab virtual machines, cyber ranges and supporting infrastructure and be SME on lab machines and supporting infrastructure
  • Develop and maintain open source or in-house tools, scripts, automation and systems as needed to support threat intelligence and incident response tasks
  • Develop and maintain SIEM queries, dashboards, reports, and alerts customized to security operations and threat detection use cases.
  • Conduct ad hoc and periodic compromise assessments of Maybank networks and systems and report on findings
  • Support the Security Operations Center in validating daily security alerts by investigating the malicious artefacts and binaries when additional coverage is needed
  • Conduct threat hunting on Maybank systems and networks to identify undetected activities and breaches, while also creating proactive and reactive rules to alert IT Security on potential threats.
  • Analyse code (binaries, scripts, web scripts) and malspam emails to determine malicious intent
  • Analyse artefacts and logs to determine malicious intent and / or scope of incident
  • Report and document results of analysis and recommend follow up actions, remediation and security control gaps to IT Security, application owners and other stakeholders
  • Create rules to detect adversary TTP on Maybank systems and network
  • Evaluate, implement, and fine-tune Endpoint Detection and Response (EDR) and other detective solutions to improve threat detection and response times
  • Conduct a clean-up of Indicators of Compromise (IOCs) by identifying and removing duplicates to optimize threat detection and response processes
  • Work closely with other teams including IT Security Engineers regarding improving detection / blocking reducing false positives, the threat intelligence team to ensure real-time threat data is integrated into detection systems and incident response procedures.
  • Utilizing scripting / programming skill such as Phyton, Yara etc to automate repetitive incident response tasks such as data extraction or improving overall efficiency
  • Configuring risk based alerts and defining response playbooks
  • Executing threat hunting assignments and providing update reports with recommendations for security improvement
  • Representing the IR team in cyber drill exercises.
  • Being present whenever required for incident response, when required.
  • Mentor IR and SOC analysts on improving digital forensics & incident response (DFIR) analysis.
  • Working with the SOC and SIEM engineers closely to recommend solutions for threat activity logging gaps, reduction of false alarms.
  • Reviewing and improving CSIRT Incident management processes continuously.
  • Playing the role of acting Incident Response manager / lead, in his / her absence.

Job Requirements :

  • Bachelor’s Degree in Computer Science or Information Technology majoring in Cybersecurity, Networking or any related field
  • Certifications an advantage - SANS GIAC Certified Incident Handler / SANS GIAC Reverse Engineering Malware / Certified Ethical Hacker (CEH)
  • CompTIA CySA+.
  • Job experience in DFIR an advantage
  • #J-18808-Ljbffr

    Create a job alert for this search

    Digital • Kuala Lumpur, Kuala Lumpur, Malaysia

    Related jobs
    • Promoted
    Senior Manager Information Security

    Senior Manager Information Security

    HFG Insurance RecruitmentKuala Lumpur, Kuala Lumpur, Malaysia
    Direct message the job poster from HFG Insurance Recruitment.Benjamin Chong | Specialist Recruiter at HFG Insurance Recruitment | Connecting Top Talent with Leading Opportunities in the Insurance &...Show moreLast updated: 1 day ago
    • Promoted
    Security Incident Analyst (Level 2)

    Security Incident Analyst (Level 2)

    MattheyKuala Lumpur, Malaysia
    Security Incident Analyst (Level 2) page is loaded## Security Incident Analyst (Level 2)locations : .Posted 11 Days Agojob requisition id : . Security Incident Analyst Level 2 (Shift Basis)Location : Mal...Show moreLast updated: 30+ days ago
    • Promoted
    Compliance Lead, AML Investigations (APAC)

    Compliance Lead, AML Investigations (APAC)

    OKXKuala Lumpur, Kuala Lumpur, Malaysia
    Senior Compliance Manager, AML Investigations.At OKX, we believe that the future will be reshaped by crypto, and ultimately contribute to every individual's freedom. OKX is a leading crypto exchange...Show moreLast updated: 8 days ago
    • Promoted
    Client Manager - Information Security Management System (Auditor)

    Client Manager - Information Security Management System (Auditor)

    BSIKuala Lumpur, Kuala Lumpur, Malaysia
    Great that you're thinking about a career with BSI!.We have key positions available for this role as a Client Manager to build a strong team of professionals at a country level.Applicants will be p...Show moreLast updated: 30+ days ago
    • Promoted
    Head, Technology Risk

    Head, Technology Risk

    Hong Leong Assurance BerhadPetaling Jaya, Selangor, Malaysia
    As the Head, Technology Risk at Hong Leong Assurance Berhad, you will be responsible for leading the technology risk management function and ensuring the organisation's IT systems, processes and in...Show moreLast updated: 1 day ago
    • Promoted
    Information Technology (IT) Technical Audit Lead

    Information Technology (IT) Technical Audit Lead

    MyboostKuala Lumpur, Kuala Lumpur, Malaysia
    Information Technology (IT) Technical Audit Lead.Internal Audit function covers the audit practices, champion best practice in audit governance, developing audit plan, providing concise and insight...Show moreLast updated: 8 days ago
    • Promoted
    Senior Information Security Incident Response Lead

    Senior Information Security Incident Response Lead

    NTTPetaling Jaya, Selangor, Malaysia
    Join a company that is pushing the boundaries of what is possible.We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society.Our wo...Show moreLast updated: 4 days ago
    • Promoted
    Head, Network Investigation Department

    Head, Network Investigation Department

    a CommissionCyberjaya, Selangor, Malaysia
    The Head of Network Investigation Department is a pivotal role responsible for formulating, developing, and executing strategies, technologies, and techniques in network investigation.This role sup...Show moreLast updated: 1 day ago
    • Promoted
    Director, Investigation, Group Audit

    Director, Investigation, Group Audit

    MaybankKuala Lumpur, Kuala Lumpur, Malaysia
    Maybank Federal Territory of Kuala Lumpur, Malaysia.Plan and undertake investigations into fraud and non-fraud cases within Maybank Group. Undertake investigations on other ad-hoc cases as requested...Show moreLast updated: 1 day ago
    • Promoted
    Technical Security Compliance

    Technical Security Compliance

    Nexroar Service SDN BHDPetaling Jaya, Selangor, Malaysia
    SOPs, and system configurations.Vulnerability Assessments & Penetration Testing (VAPT).Monitor, analyze, and respond to cyber incidents. SOC reports, logs, alerts (firewalls, IDS / IPS, EDR, PAM, VPN,...Show moreLast updated: 5 days ago
    • Promoted
    • New!
    Head, AML System & Project Unit

    Head, AML System & Project Unit

    Bank Islam Malaysia BerhadKuala Lumpur, Kuala Lumpur, Malaysia
    Responsible for the compliance of Financial Crime Compliance Department (FCC Department).Manage, develop, enhance and formulate on approved projects (new or enhancement) listed under FCC Department...Show moreLast updated: 4 hours ago
    • Promoted
    Incident Response Specialist (GERT)

    Incident Response Specialist (GERT)

    KasperskyKuala Lumpur, Kuala Lumpur, Malaysia
    Incident Response Specialist is part of the Kaspersky Global Emergency Response Team, which responds to incidents and investigates cyber threats worldwide. Deliver computer incident response and dig...Show moreLast updated: 1 day ago
    • Promoted
    Governance, Risk Management & Compliance

    Governance, Risk Management & Compliance

    Standard CharteredCyberjaya, Selangor, Malaysia
    Area of interest : Governance, Risk Management & Compliance.This role could be based in Malaysia and India.When you start the application process you will be presented with a drop down menu showing ...Show moreLast updated: 4 days ago
    • Promoted
    Senior Risk Manager, Third Party Security Risk (Malaysia, India)

    Senior Risk Manager, Third Party Security Risk (Malaysia, India)

    Standard CharteredPutrajaya, Putrajaya, Malaysia
    Cybersecurity Risk Manager ( Malaysia, India).This role could be based in Malaysia and India.When you start the application process you will be presented with a drop down menu showing all countries...Show moreLast updated: 4 days ago
    • Promoted
    • New!
    Regional Lead Fraud Risk Strategy Cards (Malaysia / India)

    Regional Lead Fraud Risk Strategy Cards (Malaysia / India)

    Standard Chartered BankKuala Lumpur, Kuala Lumpur, Malaysia
    Regional Lead Fraud Risk Strategy Cards (Malaysia / India).Add expected salary to your profile for insights.This role could be based in India and Malaysia. When you start the application process you ...Show moreLast updated: 4 hours ago
    • Promoted
    • New!
    IT Service Management (Incident & Change Management)

    IT Service Management (Incident & Change Management)

    Hong Leong Bank BerhadKuala Lumpur, Kuala Lumpur, Malaysia
    The IT Service Management Incident & Change Management Analyst supports the service delivery of information and technology (IT) services and working with teams within the IT Department together wit...Show moreLast updated: 4 hours ago
    • Promoted
    Head, Network Investigation Department

    Head, Network Investigation Department

    Malaysian Communications and Multimedia CommissionCyberjaya, Selangor, Malaysia
    The Head of Network Investigation Department is a pivotal role responsible for formulating, developing, and executing strategies, technologies, and techniques in network investigation.This role sup...Show moreLast updated: 22 days ago
    • Promoted
    Lead, Security Operations Center

    Lead, Security Operations Center

    GREAT EASTERNKuala Lumpur, Kuala Lumpur, Malaysia
    This role will report to the Head of IT Security, Malaysia.The SOC Lead will primarily be responsible for leading Great Eastern Next Generation Security Operations Centre (NGSOC) Team and act as a ...Show moreLast updated: 30+ days ago
    • Promoted
    Head, Digital Banking Investigation & Detection

    Head, Digital Banking Investigation & Detection

    MaybankShah Alam, Selangor, Malaysia
    Position focused on managing Internet & mobile banking fraud risk and related concerns, leading evaluation of risk gaps internally and externally within the Bank. Strategically manage the Internet &...Show moreLast updated: 30+ days ago
    • Promoted
    IT Security and Compliance

    IT Security and Compliance

    Wilhelmsen groupKuala Lumpur, Kuala Lumpur, Malaysia
    Join our global team for a career filled with opportunities to solve challenges both small and large, local and global, simple and complex. Wilhelmsen Ship Management is one of the world’s largest t...Show moreLast updated: 12 days ago