Talent.com
Tawaran kerja ini tidak tersedia di negara anda.
Cyber Defense Senior Analyst

Cyber Defense Senior Analyst

Experian GroupCyberjaya, Selangor, Malaysia
30+ hari lalu
Penerangan pekerjaan

As a Cyber Defense Senior Analyst, you will join the frontline of the Cyber Fusion Center, performing in-depth analysis, triage, and response to security threats by following documented policies, processes, and playbooks to meet Service Level Objectives (SLOs). The frontline team provides global 24x7 security operations and monitoring for cybersecurity events impacting Experian and is a division of Experian’s Cyber Fusion Center (CFC) which is organized under the Experian Global Security Office (EGSO). It acts as the first line of defense in Experian's broader incident response and incident management functions and is responsible for receiving, triaging, and prioritizing cybersecurity alerts, including being the dedicated point of contact for potential security incidents reported by users (e.g., Experian employees). Depending on the results of triage, this team is then responsible for investigating, containing, eradicating, and recovering from events falling in its purview or escalating higher-risk events to dedicated incident response and management teams in the CFC as necessary.

This role is critical in ensuring the effective handling of potential threats and plays a part in driving continuous improvement in security operations.

Summary of Primary Responsibilities

As the Cyber Defense Senior Analyst, you will :

  • Execute daily security operations by monitoring, triaging and conducting response activities for security events and alerts associated with cyber threats, intrusions, and / or compromises alongside a team of global security analysts in accordance with documented SLOs, policies, processes, and playbooks.
  • Leverage investigative experience and technical skills to effectively analyze events using security tooling and logging (e.g., SIEM, EDR) and assess potential risk / severity level of cyber threats; escalate higher-risk events to dedicated incident response and management teams in the CFC in alignment with established processes.
  • Collaborate with external teams for incident resolution and escalations, driving effective incident handling
  • Notify team Lead(s) of concerns related to operations, such as anomalous changes in metrics, notable open incidents, quality concerns, or observed risks; support with resolution if appropriate
  • Manage and complete assigned caseload efficiently throughout the incident response lifecycle, including analysis, containment, eradication, recovery, and lessons learned; maintain high standards of quality and thoroughness to resolve events appropriately
  • Maintain all case documentation, including notes, analysis findings, containment steps, and root cause for each assigned security incident. Ensure incident updates or contact with end users are performed in a timely manner and documented accordingly and that case hand-off processes are completed as appropriate, such as completing / verifying shift logs
  • When requested, assist in training and onboarding of new team members to help their transition to our processes
  • Develop and apply subject matter expertise in security operations processes to assist in driving improvements to relevant playbooks, Standard Operating Procedures (SOPs), and training materials
  • Support management's overall strategy for CFC by participating in execution of improvement initiatives in conjunction with management's plans
  • Assist the team Leads and management on use case development by suggesting enhancement or tuning of use cases to improve the security posture of Experian

Successful candidate is required to work on 12 hours rotational shift.

What We Offer

  • Hybrid work model
  • 20 days of annual leave
  • Comprehensive medical and hospitalization coverage (including dependents)
  • About Experian

    Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to realize their financial goals and help them save time and money.

    We operate across a range of markets, from financial services to healthcare, automotive, agribusiness, insurance, and many more industry segments.

    We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at experianplc.com.

    Experience and Skills

    Education and Professional Experience :

  • 3+ years or equivalent of information security experience working within a Security Operations Center or Cyber Security Incident Response Teams
  • Bachelor's degree in computer science, Computer Engineering, Information Systems, Information Security, or a related field. 6+ years or more experience working within a Security Operations Center, Incident Response Team, law enforcement, or military experience may be accepted in lieu of this requirement.
  • One or more professional, currently-held certifications related to Digital Forensics, Incident Response, or Ethical Hacking highly preferred (e.g., GCIH, GMON, GCED, GSOC, CEH, GCFE, GCFA, CFCE, ENCE). Information security management certifications (CISSP, CISM) or vendor-specific certifications are a plus.
  • Technical Knowledge and Skills :

  • Demonstrate working knowledge of the Incident Response Life Cycle, MITRE ATT&CK Framework, Cyber Kill Chain, and other cybersecurity frameworks.
  • Demonstrated knowledge of common intrusion methods and cyber-attack tactics, techniques, and procedures (TTPs), as well as common industry practices to investigate and respond to threats including phishing, malware, network attacks, suspicious activity, data security incidents, etc.
  • Demonstrated proficiency in determining appropriate methods to contain, eradicate, and recover from a wide variety of security incidents. Provides recommendations to proactively prevent incidents from re-occurring in the future.
  • Possesses an understanding of common Operating Systems (Windows, Linux, Mac OS), Networking (Firewalls, Proxies, NetFlow, etc.), Cloud Infrastructure (AWS, Azure, GCP), and Security Technologies (Anti-Virus, Intrusion Prevention, Web Application Firewalls, etc.)
  • Ability to review and interpret device and application logs from a variety of sources (e.g., Firewalls, Proxies, Web Servers, System Logs, Splunk, Packet Captures, etc.) to identify root cause and determine next steps for containment, eradication, and recovery.
  • Experience with common Incident Response and Security Monitoring applications such as SIEM (e.g., Qradar, Splunk), EDR (e.g., FireEye HX, CrowdStrike Falcon, Microsoft Defender, etc.); experience with Security Orchestration, Automation, and Response (SOAR) technologies such as Palo Alto XSOAR and Google Secops (Chronicle) are a plus
  • Actively seeks to build advanced technical skills and hands-on knowledge in areas such as :
  • In-depth packet analysis skills, core forensic familiarity, incident response skills, public could security practices, and data fusion skills based on multiple security data sources

  • Security analysis and architecture of Azure and AWS cloud environment using security tools including Defender for Cloud, Wiz, GuardDuty, CloudTrail, or CloudWatch.
  • System administration on Unix, Linux, or Windows
  • Network forensics, logging, and event management
  • Defensive network infrastructure (operations or engineering)
  • Vulnerability assessment and penetration testing concepts
  • Malware analysis concepts, techniques, and reverse engineering
  • In-depth knowledge of network and host security technologies and products (such as firewalls, network IDS, scanners) and continuously improve these skills
  • Security monitoring technologies, such as SIEM, IPS / IDS, UEBA, DLP, among others
  • Scripting and automation
  • Behavioral Skills

  • Demonstrate critical thinking skills, problem solving, analytical expertise, attention to detail, and the ability to function in a team-oriented, fast-paced, dynamic, global environment.
  • Strong written and verbal communication skills including the ability to describe findings, concerns and / or required actions to users, teams, or leadership for potential incidents. The ability to explain technical terminology to the lay person is frequently required.
  • Proven record of improving the way work is performed, originating action and ideas to drive enhancements to existing conditions and processes.
  • Ability to conduct security incident investigation efforts and effectively coordinate communications
  • Self-motivated and able to work with little supervision.
  • Ability to participate in paid overtime when operational needs may require additional support
  • Additional Information

    Our uniqueness is that we truly celebrate yours. Experian's culture and people are key differentiators. We take our people agenda very seriously and focus on what truly matters; DEI, work / life balance, development, authenticity, engagement, collaboration, wellness, reward & recognition, volunteering... the list goes on. Experian's strong people first approach is award winning; Great Place To Work in 24 countries, FORTUNE Best Companies to work and Glassdoor Best Places to Work (globally 4.4 Stars) to name a few. Check out Experian Life on social or our Careers Site to understand why.

    Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is a critical part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.

    # LI-Hybrid

    Experian Careers - Creating a better tomorrow together

    Find out what its like to work for Experian by clicking here

    #J-18808-Ljbffr

    Buat amaran kerja untuk carian ini

    Senior Analyst • Cyberjaya, Selangor, Malaysia

    Pekerjaan yang berkaitan
    • Dinaikkan pangkat
    Cybersecurity Engineer

    Cybersecurity Engineer

    Tech Titan Group - Titan Guard and Tech Titan DistributionKuala Lumpur, Kuala Lumpur, Malaysia
    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia Tech Titan.Flexible to accommodate urgent customer needs over weekends and public holidays. Perform tasks such as issues, deploying products...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Senior Penetration Tester

    Senior Penetration Tester

    Agensi Pekerjaan Reeracoen Malaysia Sdn. Bhd.Selayang Municipal Council, Selayang Municipal Council, Malaysia
    As part of the Kuala Lumpur based Offensive Security team, you will be responsible for planning, conducting penetrations tests across our company, documenting the results and providing advisory on ...Tunjukkan lagiKemas kini terakhir: 4 hari yang lalu
    • Dinaikkan pangkat
    Cyber Security Consultant

    Cyber Security Consultant

    EYKuala Lumpur, Kuala Lumpur, Malaysia
    EY Federal Territory of Kuala Lumpur, Malaysia.Cybersecurity is no longer just an IT issue—it's a business imperative.At EY, we help organizations protect their assets, minimize disruption, and bui...Tunjukkan lagiKemas kini terakhir: 11 hari yang lalu
    • Dinaikkan pangkat
    L1 Cyber Security Engineer (Hybrid – Onsite & Remote)

    L1 Cyber Security Engineer (Hybrid – Onsite & Remote)

    EM INDUSTRIAL AUTOMATION SDN. BHD.Seremban, Negeri Sembilan, Malaysia
    The L1 Security Engineer plays a critical role in the successful onboarding, maintenance, and operational health of our security technology stack. You will work closely with the SOC, Customer Succes...Tunjukkan lagiKemas kini terakhir: 2 hari yang lalu
    • Dinaikkan pangkat
    Network Security Engineer

    Network Security Engineer

    DellSepang, Selangor, Malaysia
    The Dell Security & Resiliency organization manages the security risk across all aspects of Dell’s business.You will have an excellent opportunity to influence the security culture at Dell and furt...Tunjukkan lagiKemas kini terakhir: 2 hari yang lalu
    • Dinaikkan pangkat
    Ubuntu Security Engineer

    Ubuntu Security Engineer

    CanonicalPort Klang, Port Klang, Malaysia
    Canonical Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Join or sign in to find your next job.Canonical Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Be among the first 25 a...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Cyber Security Consultant

    Cyber Security Consultant

    The eCEOsKuala Lumpur, Kuala Lumpur, Malaysia
    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Responsible for supporting the development, implementation, and governance of cyb...Tunjukkan lagiKemas kini terakhir: 1 hari yang lalu
    • Dinaikkan pangkat
    T&T Consultant - Cyber Defense & Resilience - SG

    T&T Consultant - Cyber Defense & Resilience - SG

    Deloitte PLTKuala Lumpur, Kuala Lumpur, Malaysia
    Are you ready to unleash your potential? At Deloitte, our purpose is to make an impact that matters for our clients, our people, and the communities we serve. We believe in delivering purpose-led gr...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Cyber Senior SOC Analyst

    Cyber Senior SOC Analyst

    Skill Quotient ResourcesSepang, Selangor, Malaysia
    This is a contract role for a Cyber Senior SOC Analyst to join the team at Skill Quotient Resources Sdn.You will be responsible for providing advanced security monitoring and analysis to safeguard ...Tunjukkan lagiKemas kini terakhir: 1 hari yang lalu
    • Dinaikkan pangkat
    Network Security Engineer.

    Network Security Engineer.

    Dell GmbHKuala Lumpur, Kuala Lumpur, Malaysia
    The Dell Security & Resiliency organization manages the security risk across all aspects of Dell’s business.You will have an excellent opportunity to influence the security culture at Dell and furt...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Web3 Senior Security Engineer

    Web3 Senior Security Engineer

    Hyphen ConnectSepang, Sepang, Malaysia
    We are working with a decentralised exchange which looks to innovate on providing the best of CEXs and DEXs, focusing on building a safe, simple and scalable platform for trading.They differentiate...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Cyber Security Engineer

    Cyber Security Engineer

    IRIS Corporation BerhadKuala Lumpur, Kuala Lumpur, Malaysia
    This Cyber Security Engineer role involves protecting computer systems and networks, developing and maintaining Information Security Plans and Policies, and planning and carrying out an organizatio...Tunjukkan lagiKemas kini terakhir: 8 hari yang lalu
    • Dinaikkan pangkat
    Cyber Security Engineer

    Cyber Security Engineer

    RHB BankKuala Lumpur, Kuala Lumpur, Malaysia
    To be part of Cyber Threat team, tier 3 SME and mentor to the SOC team.This role requires continuous detection, analysis, investigation, response, and mitigation of advanced threats before they aff...Tunjukkan lagiKemas kini terakhir: 2 hari yang lalu
    • Dinaikkan pangkat
    Oracle Developer (remote)

    Oracle Developer (remote)

    PEOPLE PROFILERSSepang, Sepang, Malaysia
    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Job Description : Job Ref : QY7VW585.People Profilers is hiring on behalf of a global tire company, fully integrated across R&D, manufacturing...Tunjukkan lagiKemas kini terakhir: 24 hari yang lalu
    • Dinaikkan pangkat
    Cyber Security Engineer

    Cyber Security Engineer

    RHB Banking GroupSelangorMalaysia, Selangor, Malaysia
    To be part of Cyber Threat team, tier 3 SME and mentor to the SOC team.This role requires continuous detection, analysis, investigation, response, and mitigation of advanced threats before they aff...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Cyber Security Engineer

    Cyber Security Engineer

    IRIS CorporationKuala Lumpur, Kuala Lumpur, Malaysia
    Protecting computer systems and networks.Develop & maintain Information Security Plans and Policies with yearly review or as need arise. Develop & maintain hardening checklist by adopting industrial...Tunjukkan lagiKemas kini terakhir: 2 hari yang lalu
    • Dinaikkan pangkat
    L1 Cybersecurity Engineer

    L1 Cybersecurity Engineer

    Logicalis Asia PacificKuala Lumpur, Kuala Lumpur, Malaysia
    Get AI-powered advice on this job and more exclusive features.Conduct health checks, onboard log sources, validate logs, and escalate anomalies across SIEM platforms like Microsoft Sentinel, QRadar...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Senior Penetration Tester

    Senior Penetration Tester

    Commerz Global Service SolutionsKuala Selangor, Kuala Selangor, Malaysia
    As part of the Kuala Lumpur based Offensive Security team, you will be responsible for planning, conducting penetrations tests across Commerzbank Group, documenting the results and providing adviso...Tunjukkan lagiKemas kini terakhir: 2 hari yang lalu
    • Dinaikkan pangkat
    Senior Security Engineer Sec Ops

    Senior Security Engineer Sec Ops

    Barry CallebautPetaling Jaya, Selangor, Malaysia
    Senior Security Engineer SecOps,.Director of Security Operations.Your responsibilities will include coordinating incident response, improving security configurations and integrations of the SOC too...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Linux Cryptography and Security Engineer

    Linux Cryptography and Security Engineer

    CanonicalKlang City, Selangor, Malaysia
    Linux Cryptography and Security Engineer.Canonical Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.This is a unique opportunity to use your software engineering and cryptography skills to...Tunjukkan lagiKemas kini terakhir: 8 hari yang lalu