368,657open jobs
9,442companies
50,883added this week
Browse all
Location
In office (Kuala Lumpur)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Trend Micro is a global cybersecurity software company headquartered in Tokyo, Japan, and founded in 1988. The company develops enterprise security software for cloud environments, networks, and endpoints, including threat intelligence and risk management platforms. It operates as a publicly listed entity with 62 global offices, serving thousands of enterprise organizations across 185 countries.

TrendAI™, the global AI security leader and enterprise business unit of Trend Micro, empowers organizations with full AI visibility and consolidated security that inspires confidence, drives innovation, and eliminates risk.

At TrendAI™, we’re always seeking exceptional talent; people who want to collaborate with the best and push boundaries together. Here, your work goes beyond building a career. You will help protect what matters and play a vital role in shaping a safer, more trustworthy AI-powered future.

AI Fearlessly.

Department: Regional Incident Response (AMEA)

Reports To: Manager of the Incident Response Team

About the Role

We are seeking an experienced Senior Incident Response Analyst to join our security team. The ideal candidate will lead and support end-to-end incident response engagements, from initial detection and triage through containment, eradication, and recovery.

This role requires strong technical expertise, sound judgment under pressure, and the ability to communicate clearly with both technical teams and business stakeholders during high-stakes incidents.

We are especially interested in candidates with hands-on experience applying AI tools to security operations and incident response, as we continue to expand AI-driven detection, triage, and analysis capabilities across the team.

Key Responsibilities

  • Lead investigations into security incidents, including malware infections, data breaches, and advanced persistent threats (APTs)

  • Perform forensic analysis on compromised systems, network traffic, and log data (e.g., WAF, firewall, endpoint, cloud, and application logs)

  • Evaluate, pilot, and integrate AI-based tools (e.g., AI-powered SIEM/XDR triage, anomaly detection, LLM-assisted log analysis and report generation) into the incident response lifecycle

  • Provide timely, accurate incident reports and executive summaries to stakeholders and customers

  • Identify indicators of compromise (IOCs) and threat actor tactics, techniques, and procedures (TTPs), including AI-enabled attack methods.

  • Mentor and guide junior analysts on investigation methodology, best practices, and use of AI-assisted tooling

  • Create and implement improvements to detection, monitoring, and response capabilities, including AI/automation-driven enhancements

  • Maintain awareness of the evolving threat landscape, including emerging vulnerabilities, attack techniques, and AI-related threats (e.g., AI-generated phishing, adversarial ML)

  • Support post-incident reviews and root cause analysis to strengthen organizational security posture

Required Qualifications

  • 5+ years of experience in incident response and digital forensics

  • Demonstrated experience with AI-related projects or activities in a security context (e.g., deploying or tuning AI-based detection/triage tools, using generative AI/LLMs to accelerate investigations or reporting, building automation that leverages machine learning models)

  • Prior experience working directly with clients/customers during live incident engagements

  • Strong understanding of network protocols, operating systems (Windows/Linux), and cloud environments (AWS, Azure, GCP)

  • Proven experience conducting cloud forensics investigations across major cloud service providers (AWS, Azure, GCP), including:

    • Acquiring and analyzing cloud-native artifacts (VM snapshots/disk images, memory captures, container images, serverless function logs)

    • Analyzing cloud control plane and audit logs (e.g., Azure Activity Log, AWS CloudTrail, GCP Audit Logs) to reconstruct attacker activity and timelines

    • Understanding shared responsibility models and their impact on evidence availability and collection methods

    • Investigating incidents involving cloud storage (e.g., S3 buckets, Azure Blob Storage), managed databases, and Kubernetes/container orchestration environments

    • Working with volatile and ephemeral cloud resources where traditional forensic imaging techniques may not apply

  • Hands-on experience with SIEM platforms, EDR/XDR tools, and log analysis (e.g., Splunk, CrowdStrike, Microsoft Sentinel), including AI-enabled features of these platforms

  • Relevant certifications such as GCIH, GCFA, GNFA, CISSP, CEH, OSCP, or cloud-specific credentials.

  • Familiarity with WAF, load balancer, and application gateway logs (e.g., Azure Application Gateway, Cloudflare, AWS WAF)

  • Solid understanding of the MITRE ATT&CK framework and threat intelligence concepts

  • Experience conducting forensic investigations and chain-of-custody procedures, including in distributed and multi-cloud environments

  • Excellent written and verbal communication skills, with the ability to translate technical findings for non-technical audiences

  • Ability to work under pressure and manage multiple concurrent investigations

  • Bachelor's degree in Computer Science, Information Security, or related field (or equivalent experience)

Preferred Qualifications

  • Experience with scripting/automation (Python, PowerShell) for investigation tasks, including integrating AI libraries or APIs into workflows

  • Practical exposure to concepts such as model training, prompt engineering, or AI governance/risk as applied to cybersecurity

  • Experience with cloud-native security tools and container security

  • Familiarity with cloud-native forensic and incident response tooling (e.g., AWS Detective, Azure Sentinel, Google Chronicle, Magnet AXIOM Cloud)

#LI-ZA1

#LI-Hybrid

We embrace change, empower people, and encourage innovation. Join Trend Micro and Thrive with us.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,657 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Kuala Lumpur
$44k – $58k per year • Remote/Hybrid • Full-Time • 2+ years exp • Associate's Degree • Vancouver
Bash
Python
SQL
Databases
MS SQL
MySQL
Oracle
PostgreSQL
DevOps
AWS
Azure
GCP
VMWare
Windows Server
Apply
$70k – $150k per year • In office • Full-Time • 5+ years exp • Calgary
Java
Node JS
Python
SQL
TypeScript
JavaScript
Java
Spring Boot
Databases
Apache Kafka
Chroma
OpenSearch
pgvector
Pinecone
PostgreSQL
AI/ML
AWS Bedrock
Copilot
Embeddings
LangChain
LangGraph
LLM
Prompt Engineering
RAG
AI Agents
Anthropic
Function Calling
Human-in-the-Loop
OpenAI
Structured Outputs
Frontend
Angular
React.js
DevOps
AWS
Azure
CI/CD
Docker
Kubernetes
Vector
Apply
Lead Data Engineer 7 hours ago
$140k – $231k per year • Remote/Hybrid • Full-Time • Bachelor's Degree • O'Fallon
Java
Python
SQL
Python
pySpark
Databases
Apache Kafka
Databricks
Delta Lake
AI/ML
Airflow
Hadoop
Spark
DevOps
AWS
Azure
CI/CD
GCP
Git
GitHub
Analytics
ETL/ELT
Apply
$115k – $184k per year • Remote/Hybrid • Full-Time • Bachelor's Degree • O'Fallon
JavaScript
SQL
TypeScript
Java
Java
Hibernate
Spring Boot
Spring Framework
Databases
Apache Kafka
PostgreSQL
Frontend
Angular
React.js
DevOps
AWS
Azure
CI/CD
Docker
GitHub
Kubernetes
Rest API
Apply
$73k – $186k per year (Estimated) • Remote/Hybrid • Full-Time • Bachelor's Degree • Toronto
Java
Python
SQL
Databases
Databricks
AI/ML
Spark
DevOps
AWS
Azure
Bitbucket
GCP
Git
Analytics
ETL/ELT
Apply
In office • Full-Time • 6+ years exp • Taipei
C#
Go
Python
SQL
AI/ML
Claude
Claude Code
Copilot
AI Agents
OpenAI Codex
DevOps
AWS
Azure
CI/CD
GCP
GitHub
Apply
In office • Full-Time • Taipei
C++
Python
Rust
Assembly
Assembly
WinDbg
AI/ML
Claude
Claude Code
Copilot
Cursor
Model Context Protocol
DevOps
AWS
Azure
CI/CD
Docker
eBPF
GCP
GitHub Actions
Platform Engineering
GitHub
QA
Pytest
Robot Framework
Selenium
Apply
In office • Full-Time • Bachelor's Degree • Taipei
C++
Python
C++
PyTorch C++
AI/ML
AI Agents
Computer Vision
Fine-tuning
LangGraph
LLM
NLP
PyTorch
Scikit-learn
LangChain
DevOps
AWS
Azure
GCP
Cybersecurity
Trend Micro
Apply
In office • Part-Time • Bachelor's Degree • Taipei
C++
Java
Python
Apply
GRID DEVOPS INTERN 5 days ago
In office • Internship • Manila
Cybersecurity
Trend Micro
Apply
Remote/Hybrid • Full-Time • 1+ year exp • Kuala Lumpur
Apply
In office • Bachelor's Degree • Kuala Lumpur
Apply
In office • Full-Time • 10+ years exp • Kuala Lumpur
COBOL
SQL
Apply
In office • Full-Time • 5+ years exp • Bachelor's Degree • Kuala Lumpur
ABAP
ABAP
ABAP Objects
DevOps
Rest API
SLI/SLO/SLA
Apply
In office • Full-Time • 8+ years exp • Bachelor's Degree • Kuala Lumpur
ABAP
DevOps
SLI/SLO/SLA
Apply
See all jobs
This is one of many
368,657 more open roles from verified company boards, updated every day.