Security Operations Center (SOC) Consultant
BAE Systems Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia
Location : Kuala Lumpur, Malaysia
BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments. At our Malaysian Global Delivery Centre, we deliver cyber technical services to help keep clients’ systems secure in today’s hostile digital world.
We are seeking a highly skilled SOC Consultant to strengthen clients\' security operations. The role requires hands-on expertise in Security Operations Center environments, advisory skills, and experience with platforms such as Splunk and other leading security technologies. You will assess client security postures, recommend improvements to detection and response, and guide organisations to build mature SOC practices. This position is part of our global Cyber Technical Services team, including Threat Intelligence and penetration testing. Responsibilities may vary by project.
Responsibilities
- Engage with clients to assess SOC maturity across technology, process, and people.
- Provide expert guidance on enhancing incident detection, response, and threat hunting capabilities.
- Recommend and help implement frameworks (e.g., MITRE ATT&CK, NIST CSF, ISO 27001) into SOC operations.
- Design, configure, and optimize SIEM solutions (Splunk required; experience with QRadar, Elastic, or Sentinel is advantageous).
- Support integration of threat intelligence platforms, SOAR tools, EDR / XDR solutions, and log management systems.
- Develop advanced detection rules, dashboards, and use cases to improve visibility and response.
- Define and improve SOC processes (incident response, threat hunting, escalation workflows).
- Conduct gap analyses and propose roadmaps for SOC capability maturity.
- Deliver workshops, training sessions, and knowledge-sharing to client SOC teams.
Candidate Expectations
4–7+ years of experience in cybersecurity, with at least 3 years in SOC operations or consulting.Experience with SIEM tools (Splunk, QRadar, Elastic, Azure Sentinel, or equivalent).Familiarity with SOAR platforms (Splunk SOAR, Palo Alto Cortex XSOAR, ServiceNow Security Operations).Understanding of network security, firewalls, IDS / IPS, and endpoint security.Knowledge of AI technologies and their applications for security is advantageous.Experience with incident response frameworks and threat hunting methodologies.Passion for cybersecurity, continuous learning, and thought leadership.What We Offer
A dedicated line manager to help develop your career and guide you at BAE Systems Digital Intelligence.Support for personal cybersecurity training and certification exams.Work-life balance with 18 days of holiday per year (increases to 21 after 5 years’ service).Hybrid working with flexibility for team leads to balance remote and office-based work.Benefits package includes private family medical cover, maternity (4 months), paternity (2 weeks), study leave, and health screening allowances.Annual bonus and share award scheme participation.Why BAE Systems?
This is a place to make a real difference within an inclusive culture that values diversity, integrity, and merit. We encourage applications from all backgrounds and can provide reasonable adjustments for prospective employees with disabilities or health conditions during assessments.
Note : Some roles at BAE Systems are subject to security and export control restrictions, which may affect eligibility based on nationality, previous nationalities, or place of birth.
#J-18808-Ljbffr