{"id":1745613,"url":"https://alion.io/job/paynet-security-engineer-blue-team","title":"Security Engineer (Blue Team)","company":{"id":2112342,"name":"PayNet","domain":"paynet.my","url":"https://alion.io/company/paynet-my","size_band":null,"is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"BrioHR","truth_index":null},"role":"Security","role_family":"Security","seniority":null,"employment_type":null,"work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Malaysia"],"countries":["MY"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":15000,"max_usd":42000,"period":"year","method":null,"sample_n":3655},"experience_years_min":null,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"PowerShell","optional":false},{"name":"Python","optional":false},{"name":"ISO 27001","optional":true},{"name":"MITRE ATT&CK","optional":true},{"name":"PCI DSS","optional":true},{"name":"SIEM","optional":true},{"name":"SOC 2","optional":true}],"status":"live","first_seen_at":"2026-10-03T05:43:06Z","employer_posted_date":"2026-10-03","last_verified_at":"2026-10-08T00:50:08Z","board_verified":true,"closed_at":null,"days_open":4,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":4},"description":"Why PayNet / Why Now\nPayNet operates at a scale where technology, reliability, and trust are fundamental to the services we provide. \nAs our platforms, partnerships, and capabilities continue to evolve, so does the complexity of the environment we operate in.\nYou'll join a team that values curiosity, autonomy, and the ability to turn challenges into lasting improvements. \nWe are investing in people who can navigate ambiguity, make sound decisions, and help build sustainable capabilities for the future. \nThis is an opportunity to shape meaningful outcomes in an organisation where ownership, accountability, and continuous improvement are highly valued. \nTL; DR\nOwn the detection, investigation, and response to cyber threats across PayNet's technology environment.\nBuild and improve security detections, automation, and response capabilities that reduce risk and improve resilience.\nDrive proactive threat hunting and use intelligence to identify threats before they become incidents.\nInfluence how security is embedded across cloud, infrastructure, and technology platforms.\nPlay a key role during cyber incidents, making evidence-based decisions when speed and accuracy matter most.\nWhy This Role Matters\nThe quality of our detection and response capabilities determines how quickly threats are identified and contained.\nEffective automation creates faster more consistent outcomes while allowing human expertise to focus on higher-value investigations.\nStrong detection engineering reduces noise, improves visibility, and helps security teams focus on genuine threats.\nTurning security testing, incident lessons, and threat intelligence into meaningful improvements strengthens PayNet's overall security posture.\nThis role requires judgment over process, particularly when balancing security risk, operational impact, and response urgency\nWhat You Will Actually Do\nOwn end-to-end incident investigations, from initial triage through containment, eradication, and recovery. \nBuild, tune, and continuously improve detection logic across security monitoring platforms to increase threat visibility and reduce false positives. \nShape and expand security automation through response playbooks and workflow orchestration. \nDrive threat-hunting initiatives using threat intelligence, adversary techniques, and behavioural analysis. \nInfluence DevSecOps practices by integrating security controls into technology delivery pipelines. \nTranslate findings from security assessments, purple-team exercises, and vulnerabilities into stronger controls, detections, and defensive capabilities.\nExamples of This Role in Practice\nA high-severity alert triggers during an on-call shift, and you quickly determine whether it is a real threat, contain the impact, and guide the response effort. \nA recurring alert generates excessive noise, and you redesign the detection to improve accuracy without weakening coverage. \nA threat-hunting exercise uncovers suspicious activity that existing controls missed, leading you to develop new detection logic and response procedures. \nA cloud workload exhibits unusual behaviour, requiring you to combine evidence from multiple sources to determine risk and next actions. \nA red-team exercise reveals a defensive gap, and you convert the findings into measurable improvements across monitoring and response capabilities.\nWhat Will Help You Succeed\nRequired\nStrong analytical thinking and the ability to investigate complex security events using incomplete or rapidly changing information. \nPractical experience with security monitoring, threat detection, incident response, and security operations. \nWorking knowledge of cloud security principles and modern detection and response technologies. \nAbility to automate tasks and workflows using Python, PowerShell, Bash, or similar scripting languages. \nClear communication skills and the confidence to work independently while collaborating with technical and business stakeholders.\nGood to Have\nFamiliarity with SIEM, SOAR, NDR, IDS/IPS, and detection engineering practices. \nof frameworks such as MITRE ATT&CK, NIST, ISO 27001, SOC 2, PCI DSS, and Bank Negara Malaysia RMiT. \nExposure to Infrastructure as Code, DevSecOps, and cloud-native security technologies. \nExperience with vulnerability assessments, penetration testing, adversary emulation, or purple-team activities. \nRelevant cybersecurity certifications that demonstrate technical capability and continuous learning.","description_format":"text","description_chars":4457,"description_truncated":false,"requirements":{"experience_years_min":null,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":["Continuous learning"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Penetration Testing"],"lifecycle":[{"event":"open","at":"2026-10-03T05:43:06Z"}],"visa":[],"liveness":{"score":74,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.778,"p_room":0.945,"age_days":4,"expected_fill_days":7,"reasons":["conf:0","velocity","win:mid"],"computed_at":"2026-10-07T05:47:15Z"},"pay":null,"html_url":"https://alion.io/job/paynet-security-engineer-blue-team","json_url":"https://alion.io/job/paynet-security-engineer-blue-team.json","meta":{"generated_at":"2026-10-08T01:16:48Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","about":"Alion is a live layer of people, companies and AI agents: who they are, whether they are real and active right now, what they do and how to work with them, readable by people and by agents and paid per call.","catalog":"https://alion.io/catalog.json","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":2269,"day_limit":5000,"remaining_today":2731,"minute_limit":60,"resets_at":"2026-10-09T00:00:00Z"}},"offers":[{"id":"company.slices","title":"One company in depth, by slice","status":"live","price":{"credits":0.02,"usd":0.002,"plus_per_slice":{"credits":0.05,"usd":0.005}},"unit":"per company, plus each slice with data","note":"the employer in depth","call":{"mcp_tool":"get_company","arguments":{"id":2112342},"rest":"https://alion.io/mcp/rest/get_company?id=2112342"},"human":"https://alion.io/catalog?offer=company.slices&for=job%2Fpaynet-security-engineer-blue-team"},{"id":"market.stats","title":"A market slice: pay, demand and time to fill","status":"live","price":{"credits":1,"usd":0.1},"unit":"per slice","note":"pay, demand and time to fill for this role and place","call":{"mcp_tool":"market_stats"},"human":"https://alion.io/catalog?offer=market.stats&for=job%2Fpaynet-security-engineer-blue-team"},{"id":"job.search","title":"Open jobs by role, technology, place, pay and visa","status":"live","price":{"credits":0.02,"usd":0.002},"unit":"per posting in a list","note":"similar open postings","call":{"mcp_tool":"search_jobs"},"human":"https://alion.io/catalog?offer=job.search&for=job%2Fpaynet-security-engineer-blue-team"},{"id":"company.verify","title":"Is this company real and active right now","status":"pilot","price":null,"unit":"per company","request":{"url":"https://alion.io/catalog/request","method":"POST","body":"{\"offer\": \"company.verify\", \"for\": \"job/paynet-security-engineer-blue-team\", \"note\": \"what you need it for\"}"},"human":"https://alion.io/catalog?offer=company.verify&for=job%2Fpaynet-security-engineer-blue-team"}]}