Overview
R Systems WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia
Position : Senior Cyber Security SOC and Incident Manager
Mode : Renewable contract
Experience : 8+ years
Key Responsibilities
- Manage a team to oversee the administration of security operation and incident response.
- Lead the Incident Handlers and Security Analysts, providing guidance, setting goals, and assisting the team in achieving them.
- Manage all aspects of cyber incident response, including initiation, identification, containment, escalation, reporting, communication, recovery, forensic analysis, and post mortem.
- Act as the point of contact for cyber security incident escalations from Group SOC and internal teams; coordinate with relevant stakeholders within agreed SLAs to resolve incidents.
- Prepare monthly SOC / incident monitoring reports and present them to stakeholders and senior management.
- Stay informed of current security events, exploits, and threats; work with the team on proactive threat hunting in banking environments.
- Develop and maintain a procedural set of responses for cyber security problems; create new playbooks for incident response as new threats emerge.
- Monitor security tools (e.g., IPS, SIEM, VA scanners, DLP, AV, ATP, XDR) and respond to alerts; manage tool renewals, maintenance, and enhancements.
- Manage MSSP monitoring, outsourcing arrangements, and renewals.
- Identify security flaws and vulnerabilities and communicate findings to the organization.
- Collate and provide evidence for risk management, audits, and regulators to confirm policies, processes, guidelines, and controls are followed.
Requirements
Bachelor’s Degree in Computer Science, Engineering, Information Systems or equivalent.Minimum 8–15 years of related experience; knowledge of IT security required. Industry certifications such as CRISC, CISSP, CEH, CISM, and CISA are a plus.Highly results-oriented, able to work independently; capable of managing multiple tasks and responsibilities.Strong relationship-building and engagement skills with internal and external stakeholders (business and technology).Good analytical, technical, written, and verbal communication skills.Ability to exercise discretion and independent judgment in applying established techniques, procedures or standards.Technical expertise in one or more of the following areas : Network concepts and security, encryption / authentication fundamentals, access management, application security, platform security (Windows / UNIX / Linux), and database security.Hands-on experience with security tools (SIEM, IPS, firewall, vulnerability scanners, APT, XDR, NDR, forensic tools).Familiar with security standards and best practices and regulatory requirements (e.g., BNM RMIT, MAS, Paynet, PCI-DSS); knowledge of operating system security architecture.#J-18808-Ljbffr