368,530open jobs
9,432companies
50,439added this week
Browse all
Location
In office (Kuala Lumpur, Malaysia)
Seniority
Junior · 2+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Ensign InfoSecurity is one of Asia's largest pure play cybersecurity firms and is Singaporean owned. It provides consulting, managed security operations, threat intelligence and incident response. The company was formed by combining the security businesses of Singtel and Certis.

Ensign is hiring !

As a Level 2 Security Analyst in a Managed Security Service Provider (MSSP) environment, you will serve as an advanced escalation point for Tier 1 analysts, handling complex alerts and security incidents across multiple client environments. Your primary responsibility is to investigate threats in-depth, guide incident response efforts, enhance detection capabilities, and ensure clients are protected with timely and accurate responses. This role demands strong technical, analytical, and communication skills to succeed in a fast-paced, multi-tenant SOC.

Key Responsibilities:

  • Analyze and respond to escalated alerts from Tier 1 analysts across multiple clients.
  • Conduct in-depth investigations using SIEM, EDR, NDR, firewall logs, and other security tools.
  • Perform malware analysis, log correlation, and network traffic analysis to identify attack vectors.
  • Execute containment, eradication, and recovery procedures using predefined runbooks and playbooks.
  • Escalate and coordinate with Level 3 analysts or incident response teams for high-severity incidents.
  • Provide technical guidance, support, and mentoring to Tier 1 analysts.
  • Identify gaps in detection capabilities and recommend improvements in correlation rules, tuning, and alerts.
  • Support proactive threat hunting initiatives based on IOCs, TTPs, and contextual threat intelligence.
  • Monitor external threat intelligence feeds and correlate them with client telemetry to identify potential risks.
  • Maintain clear and accurate documentation of all investigations, actions taken, and incident outcomes.
  • Contribute to the continuous improvement of SOC processes, including the development of SOPs, playbooks, and runbooks.
  • Ensure all activities are performed in compliance with client-specific SLAs, internal policies, and applicable regulatory standards.
  • Participate in client-specific onboarding activities and ensure monitoring tools are correctly configured.
  • Join incident review meetings and provide root cause analysis and post-incident reporting when required.
  • Handle shift handovers with detailed summaries and ensure continuity of investigations and tasks.
  • Participate in internal knowledge-sharing sessions and contribute to SOC-wide initiatives and improvements.

Requirements:

Education & Experience:

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field-or equivalent work experience.
  • 2-4 years of experience in a Security Operations Center or similar cybersecurity environment.
  • Experience working in an MSSP or multi-tenant environment is highly desirable.

Technical Skills:

  • Strong experience with SIEM platforms (e.g., Splunk, Sentinel, QRadar).
  • Hands-on experience with EDR tools (e.g., CrowdStrike, SentinelOne, Microsoft Defender).
  • Familiarity with NDR and SOAR platforms is a plus (e.g., Darktrace, Corelight, Cortex XSOAR).
  • Strong understanding of networking protocols, log analysis, and system administration (Windows/Linux).
  • Knowledge of malware behaviors, phishing techniques, and MITRE ATT&CK framework.
  • Experience with scripting and automation tools (e.g., Python, PowerShell) is a plus.
  • Familiarity with case management tools (e.g., Jira, ServiceNow, TheHive).

Certifications (preferred):

  • CompTIA Security+, CySA+, or equivalent.
  • GIAC certifications (e.g., GCIH, GCIA, GCFA).
  • CEH, or vendor-specific certifications (e.g., Microsoft SC-200, CrowdStrike CCFR).

Key Competencies:

  • Strong analytical and problem-solving skills.
  • Excellent written and verbal communication-especially in client-facing documentation and briefings.
  • Ability to handle multiple investigations and prioritize effectively under pressure.
  • Customer-centric mindset with attention to SLA adherence and service quality.
  • Collaborative, team-oriented, and proactive with continuous learning attitude.

Shift Expectations:

  • Participation in shift rotations (24/7 support model, if applicable), including weekends and public holidays.
  • On-call support may be required depending on client SLAs and incident severity.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,530 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Kuala Lumpur
$84k – $178k per year (Estimated) • In office • Full-Time • 10+ years exp • Wellington
Java
Python
DevOps
Ansible
AWS
Azure
CI/CD
Docker
GCP
Helm
Kubernetes
Platform Engineering
Prometheus
Service Mesh
Terraform
GitLab
IAM
Apply
Founding Engineer 1 day ago
$81k – $116k per year • In office • Full-Time • Bachelor's Degree • Munich
JavaScript
Python
TypeScript
Databases
MySQL
PostgreSQL
Frontend
Next.js
React.js
Tailwind CSS
DevOps
AWS
Azure
CI/CD
Docker
GCP
Grafana
Kubernetes
OpenTelemetry
Prometheus
Apply
$25k – $42k per year • Equity 0–0.2% • Remote • Full-Time • 3+ years exp
Bash
Go
JavaScript
Python
TypeScript
DevOps
AWS
Azure
CI/CD
Datadog
Docker
GCP
GitHub Actions
GitLab CI
Grafana
Incident Management
Kubernetes
Platform Engineering
Prometheus
Terraform
Amazon CloudWatch
GitHub
GitLab
IAM
Cybersecurity
Least Privilege
Apply
$100k – $210k per year • Equity 0–0.5% • Remote • Full-Time • 3+ years exp • San Francisco
Bash
Go
JavaScript
Python
TypeScript
DevOps
AWS
Azure
CI/CD
Datadog
Docker
GCP
GitHub Actions
GitLab CI
Grafana
Incident Management
Kubernetes
Platform Engineering
Prometheus
Terraform
Amazon CloudWatch
GitHub
GitLab
IAM
Cybersecurity
Least Privilege
Apply
$10k – $34k per year (Estimated) • In office • Tashkent
Java
Kotlin
Java
Hibernate
Maven
Spring Boot
Kotlin
Mockito
Databases
PostgreSQL
DevOps
CI/CD
Docker
Git
Grafana
Kubernetes
Loki
Prometheus
GitLab
Apply
In office • Internship • Indonesia
PowerShell
Python
AI/ML
Red Teaming
DevOps
Kubernetes
Cybersecurity
Burp Suite
Frida
MITRE ATT&CK
Nessus
OWASP Top 10
Apply
Security Analyst L3 8 days ago
In office • Full-Time • 4+ years exp • Bachelor's Degree • Kuala Lumpur
Bash
PowerShell
Python
DevOps
AWS
Azure
Splunk
Cybersecurity
Crowdstrike
Cyber Kill Chain
Google SecOps
HIPAA
IBM QRadar
ISO 27001
MITRE ATT&CK
PCI DSS
SentinelOne
Threat Modeling
Apply
L2 - Security Analyst 12 days ago
In office • Full-Time • 2+ years exp • Bachelor's Degree • Kuala Lumpur
PowerShell
Python
DevOps
Cortex
SLI/SLO/SLA
Splunk
Prometheus
Cybersecurity
Corelight
Cortex XSOAR
Crowdstrike
Darktrace
IBM QRadar
Microsoft Defender
MITRE ATT&CK
SentinelOne
TheHive
Management
Jira
ServiceNow
Apply
$93k – $235k per year (Estimated) • In office • Full-Time • Singapore
C++
Java
Python
TypeScript
AI/ML
Kubeflow
LLM
MLFlow
TensorRT
vLLM
LLMOps
TGI
DevOps
AIOps
AWS
Azure
CI/CD
GCP
Kubernetes
Platform Engineering
Apply
Security Analyst 1 month ago
In office • Full-Time • 5+ years exp • Malaysia
Cybersecurity
MITRE ATT&CK
Apply
In office • Bachelor's Degree • Kuala Lumpur
Apply
In office • Full-Time • 10+ years exp • Kuala Lumpur
COBOL
SQL
Apply
In office • Full-Time • 5+ years exp • Bachelor's Degree • Kuala Lumpur
ABAP
ABAP
ABAP Objects
DevOps
Rest API
SLI/SLO/SLA
Apply
In office • Full-Time • 8+ years exp • Bachelor's Degree • Kuala Lumpur
ABAP
DevOps
SLI/SLO/SLA
Apply
In office • Internship • Bachelor's Degree • Kuala Lumpur
AI/ML
ChatGPT
Copilot
Analytics
Power BI
Tableau
Management
Confluence
Jira
Apply
See all jobs
This is one of many
368,530 more open roles from verified company boards, updated every day.