Location
In office (Malaysia)
Seniority
Middle · 4+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Headquartered in Kuala Lumpur, Malaysia, RHB Banking Group is one of the largest fully integrated financial services institutions in Southeast Asia. The group offers a comprehensive suite of conventional and Shariah-compliant financial solutions, including retail and commercial banking, investment banking, asset management, stockbroking, and general insurance. Additionally, it serves retail customers, small businesses, and large corporate clients across Malaysia and multiple regional markets, including Singapore, Indonesia, Thailand, and Cambodia.
To be part of Cyber Threat team, tier 3 SME and mentor to the SOC team. This role required continuous detection, analysis, investigation, response, and mitigation of advanced threats before they affected the bank's IT infrastructure via a proven and documented cyberthreat model, e.g., Mitre Attack Framework
Preferred level of Experience (by years/function/industry):
- 4 - 5 years of information security experience
- 1 - 2 years supporting incident response and/or investigations
- Experience reviewing and assessing logs for anomalous activity indicating the presence of a threat
- Knowledge and ability to identify threat actor attack methods and track their developments
- Experience using Threat Model e.g. Cyber Kill Chain & Mitre ATT&CK
- Extensive experience conveying complex information in simple, succinct explanations
- Exceptional attention to detail
Other skills required (if applicable):
- Strong technical writing skills
- Extensive experience with analytical tradecraft
- Thorough understanding of cybersecurity principles
- Ability to work independently and build relationships
- Efficient research methodologies
- Ability to relate & convert technical threats with business risks
- Strong proficiency with scripting and programming languages (e. g. Python, PowerShell, Java, NodeJS, Perl, etc).
- Strong communication & writing skills for reporting and analysis on cumulative findings
KEY RESPONSIBLITIES
Solution
- Maintaining of SIEM solution including Splunk, Imperva and etc. (Task including compliance to patch and obsolescence framework requirement)
- Ensure events / logs from all relevant devices are sending to SIEM solution in a complete and accurate manner
- To produce monthly SIEM system health report (completeness and accurate)
Hunting
- Perform threat hunting through industry accepted methodologies including Hypothesis Driven investigation, IOC driven Investigation or Machin Leaning Investigation
- Analyze host, network traffic, IDS/IPS/DLP events, packet capture, firewall logs and other relevant solutions
- Provide forensic analysis of network packet captures, DNS, proxy, Netflow, malware, host-based security and application logs, as well as logs from various types of security sensors
- Identify gaps in IT infrastructure by mimicking an attacker s behaviors and responses
- Perform offensive validation on identified TTP’s
Detection & Response
- Continuously develop SIEM use cases based on Mitre Attack framework based on threat landscape
- To onboard all use cases to Security Operation Center for 24 x 7 monitoring and timely response
- Continuously onboard new IOC to threat prevention solution to ensure known threat are prevented at all time
- Continuously improve processes for use across multiple detection sets for more efficient Security Operations
- Develop dashboards and reports to identify potential threats, suspicious/anomalous activity, malware, etc.
- Assist in the design, evaluation, and implementation of new security technologies
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,634 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Free forever. No card. Under a minute.
Your match
How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.
Recommended for you based on this role
Similar stack
Same company
Malaysia
≈ $26k – $64k per year (Estimated) • In office • Full-Time • 12+ years exp • Bachelor's Degree • Hyderabad
DevOps
AWS
Azure
GCP
Cybersecurity
Cyber Kill Chain
Diamond Model
MITRE ATT&CK
Apply
≈ $28k – $65k per year (Estimated) • In office • Full-Time • 12+ years exp • Bengaluru
Bash
PowerShell
Python
Node JS
JavaScript
Node JS
Commander.js
AI/ML
AI Agents
DevOps
Amazon EC2
Amazon EKS
AWS
Azure
Kubernetes
Amazon ECS
IAM
Cybersecurity
Crowdstrike
Zero Trust
Apply
≈ $14k – $34k per year (Estimated) • Remote • Full-Time • Moscow
Java
SQL
QA
Selenium
TestNG
Apply
≈ $20k – $54k per year (Estimated) • In office • Full-Time • Pune
Java
SQL
DevOps
GCP
Incident Management
Kubernetes
IAM
QA
JMeter
Selenium
Apply
≈ $15k – $39k per year (Estimated) • Remote/Hybrid • Full-Time • Bachelor's Degree • Bengaluru
COBOL
Java
TypeScript
JavaScript
Java
Hibernate
Databases
Apache Solr
AI/ML
AI Agents
Edge AI
Frontend
Angular
DevOps
Azure
Apply
Senior Network Engineer, DC Network Services
22 days ago
In office • Full-Time • 5+ years exp • Malaysia
DevOps
SLI/SLO/SLA
Apply
Senior Business Analyst
1 month ago
In office • Full-Time • Kuala Lumpur
Design
Figma
Management
Confluence
Jira
Apply
Apply
Senior Cloud Platform Engineer
4 months ago
In office • Full-Time • Malaysia
SQL
Databases
Oracle
DevOps
CI/CD
Git
Apply
Apply
In office • Internship • 3+ years exp • Bachelor's Degree • Malaysia
SQL
Apex
Apex
MuleSoft
Databases
MS SQL
Apply
In office • Internship • Malaysia
Visual Basic
Apply
Apply
Remote/Hybrid • Full-Time • 3+ years exp • Bachelor's Degree • Bengaluru
ABAP
DevOps
Incident Management
Apply
Remote/Hybrid • Full-Time • 7+ years exp • Malaysia
Node JS
TypeScript
JavaScript
Node JS
Nest.JS
Databases
Redis
Frontend
Next.js
React.js
DevOps
Azure
Azure DevOps
Bicep
CI/CD
Docker
Kubernetes
Terraform
Apply
This is one of many
368,634 more open roles from verified company boards, updated every day.

