Soc Analyst jobs in Malaysia
- Provido GlobalKuala Lumpur
- Escalate suspected or confirmed incidents to senior SOC analysts, incident responders, or relevant technical teams according to defined runbooks.
- View all Provido Global jobs - Kuala Lumpur jobs - Soc Analyst jobs in Kuala Lumpur
- Salary Search: SOC Analyst (L1 / L2 / L3) salaries in Kuala Lumpur
View similar jobs with this employerOrange BusinessKuala Lumpur- Map your knowledge to a defense in depth strategy implemented on our detection capabilities.
- Analyze security events raised by our tooling and take adequate…
- View all Orange Business jobs - Kuala Lumpur jobs - Soc Analyst jobs in Kuala Lumpur
- Salary Search: SOC Analyst salaries in Kuala Lumpur
- Orange BusinessKuala Lumpur
- Flexible Work Environment: Flexible working hours and possibility to combine work from office and home (hybrid ways of working).
- View all Orange Business jobs - Kuala Lumpur jobs - Soc Analyst jobs in Kuala Lumpur
- Salary Search: SOC Analyst salaries in Kuala Lumpur
View similar jobs with this employerMasORangeKuala Lumpur- Map your knowledge to a defense in depth strategy implemented on our detection capabilities.
- Analyze security events raised by our tooling and take adequate…
- View all MasORange jobs - Kuala Lumpur jobs - Soc Analyst jobs in Kuala Lumpur
- Salary Search: SOC Analyst salaries in Kuala Lumpur
- MasORangeKuala Lumpur
- Flexible Work Environment: Flexible working hours and possibility to combine work from office and home (hybrid ways of working).
- View all MasORange jobs - Kuala Lumpur jobs - Soc Analyst jobs in Kuala Lumpur
- Salary Search: SOC Analyst salaries in Kuala Lumpur
- PwCKuala Lumpur
- Empowered to escalate potential security incidents to higher-level analysts (L2 or L3) based on predefined criteria.
- Monitor for newly triggered alerts.
- View all PwC jobs - Kuala Lumpur jobs - Soc Analyst jobs in Kuala Lumpur
- Salary Search: Specialist - L1 SOC Analyst salaries in Kuala Lumpur
- See popular questions & answers about PwC
- Dwell TechnologiesKuala Lumpur
- Professional development
- Health insurance
- Perform initial incident response and escalate critical cases to senior analysts or incident response teams.
- The SOC Analyst will be responsible for monitoring,…
- View all Dwell Technologies jobs - Kuala Lumpur jobs - Soc Analyst jobs in Kuala Lumpur
- Salary Search: L1 - SOC Analyst salaries in Kuala Lumpur
- Oxydata SoftwareKuala Lumpur
- Oxydata Software Sdn Bhd established since 2012, helping regional enterprises drive digital transformation through Agentic AI Services, AI Automation &…
- View all Oxydata Software jobs - Kuala Lumpur jobs - Soc Analyst jobs in Kuala Lumpur
- Salary Search: SOC Analyst salaries in Kuala Lumpur
- Internet NowPuchong
- Develop a professional working relationship with fellow analysts.
- Ensure the SOC analyst team is providing excellent customer service and support.
- View all Internet Now jobs - Puchong jobs - GSOC Operator jobs in Puchong
- Salary Search: Security Operations Center (SOC) Analyst salaries in Puchong
- Internet NowPuchong
- Develop a professional working relationship with fellow analysts.
- Ensure the SOC analyst team is providing excellent customer service and support.
- View all Internet Now jobs - Puchong jobs - GSOC Operator jobs in Puchong
- Salary Search: Security Operations Center (SOC) Analyst salaries in Puchong
- Techlab Security Sdn BhdPetaling Jaya
- Deliver knowledge transfer and continuous training for SOC analysts.
- Review and validate escalated events from SOC Level 1 analysts.
- View all Techlab Security Sdn Bhd jobs - Petaling Jaya jobs - Soc Analyst jobs in Petaling Jaya
- Salary Search: SOC Analyst L2 salaries in Petaling Jaya
- Hong Leong BankPetaling Jaya
- Provide guidance, coaching, and technical mentorship to junior security analysts.
- Lead and conduct in-depth investigations into security incidents, identifying…
- View all Hong Leong Bank jobs - Petaling Jaya jobs - Soc Analyst jobs in Petaling Jaya
- Salary Search: Senior SOC Analyst salaries in Petaling Jaya
- See popular questions & answers about Hong Leong Bank
- SolveIT ConsultantCyberjaya
- We are looking for a skilled SOC L2 Analyst to join our Security Operations Center (SOC) team.
- The ideal candidate will be responsible for monitoring security…
- View all SolveIT Consultant jobs - Cyberjaya jobs - Soc Analyst jobs in Cyberjaya
- Salary Search: SOC L2 Analyst salaries in Cyberjaya
View similar jobs with this employerExperian Information SolutionsCyberjaya- Security Governance, Assurance & Risk Support.
- Support security governance, compliance, and risk management activities.
- View all Experian Information Solutions jobs - Cyberjaya jobs
- Salary Search: Security Analyst salaries in Cyberjaya
- Golden Agri Resources - GARKuala Lumpur
- SIEM solutions – Threat hunting and forensic analysis.
- Identify and digest threat data from various open and closed sources, correlating it against…
- DerivCyberjaya
- They tune SIEM rules after the alert fires.
- They write playbooks after the incident closes.
- Real money, real regulations, real consequences - and a security…
- View all Deriv jobs - Cyberjaya jobs - Soc Analyst jobs in Cyberjaya
- Salary Search: Senior SOC Analyst salaries in Cyberjaya
- See popular questions & answers about Deriv
Job Post Details
SOC Analyst (L1 / L2 / L3) - job post
Location
Full job description
At Provido Global, we’re more than a technology company. We are a global hub of innovation, creativity, and engineering excellence.
Our teams design and deliver intelligent, secure, and high-performance digital solutions that help organizations modernize operations, scale their platforms, and succeed in an increasingly digital world.
As part of a dynamic international ecosystem, we bring together forward-thinking engineers, technology specialists, designers, and delivery professionals who transform ideas into scalable, real-world solutions with measurable business impact.
If you are motivated by challenge, inspired by technology, and ready to grow with a company that truly invests in its people, your journey starts here.
Why We Need You
The SOC Analyst is responsible for security monitoring, alert triage, incident investigation, threat analysis, and escalation support within the Security Operations Center.
This role supports the protection of enterprise systems by identifying suspicious activity, analysing security events, documenting investigations, and coordinating response activities according to established procedures.
We are hiring SOC Analysts across multiple levels (L1, L2, and L3). The role level will be determined based on the candidate’s experience, technical capability, and hands-on exposure in cybersecurity operations.
The role is based on-site in Kuala Lumpur and is designed for candidates who can operate effectively in a structured, shift-based environment while coordinating with global teams to operate Security Operations in a Follow-the-Sun model.
What You’ll Be Doing
SOC Analyst (L1)
-
Monitor security alerts and events across SIEM, endpoint, network, email, and cloud security tools.
-
Perform first-level triage to validate alerts, identify false positives, and determine whether escalation is required.
-
Escalate suspected or confirmed incidents to senior SOC analysts, incident responders, or relevant technical teams according to defined runbooks.
-
Document alerts, investigations, and response actions accurately in ticketing and case management systems for audit and reporting purposes.
-
Correlate logs and events from multiple sources to identify suspicious patterns, indicators of compromise, or repeated attack activity.
-
Support 24/7 monitoring operations through shift work, handovers, and adherence to service level expectations where applicable.
-
Communicate effectively in English when documenting incidents, coordinating with internal stakeholders, or supporting regional operations.
-
Maintain awareness of current threats affecting enterprise environments.
SOC Analyst (L2)
-
Monitor security alerts and events across SIEM, endpoint, network, email, and cloud security tools.
-
Perform L2 triage and investigation of security alerts, including validation, enrichment, impact assessment, containment recommendations, and escalation where required.
-
Escalate suspected or confirmed incidents to incident responders, platform owners, infrastructure teams, or business stakeholders according to defined runbooks and severity criteria.
-
Document investigations, response actions, evidence, and closure rationale accurately in ticketing and case management systems for audit, reporting, and knowledge management purposes.
-
Correlate logs and events from multiple sources to identify suspicious patterns, indicators of compromise, or repeated attack activity.
-
Administer and support security platforms by performing user access updates, configuration changes, log source onboarding, connector health checks, alert tuning, rule updates, dashboard maintenance, and operational troubleshooting.
-
Support 24/7 monitoring operations through shift work, handovers, and adherence to service level expectations where applicable.
-
Communicate effectively in English when documenting incidents, coordinating with internal stakeholders, and supporting regional or global security operations.
-
Maintain awareness of current threats affecting enterprise environments across financial services, retail, logistics, telecommunications, and other industries.
SOC Analyst (L3)
-
Lead advanced triage, investigation, and analysis of high-severity alerts and incidents across SIEM, endpoint, network, email, identity, and cloud security platforms.
-
Perform deep-dive log analysis, event correlation, threat hunting, and root-cause analysis to identify attack patterns, indicators of compromise, and control gaps.
-
Administer and maintain security platforms, including configuration updates, rule tuning, alert logic validation, data source onboarding, connector health checks, and access administration where applicable.
-
Develop, refine, and maintain detection use cases, correlation rules, dashboards, playbooks, standard operating procedures, and response runbooks.
-
Coordinate incident response activities with security engineering, infrastructure, cloud, network, identity, application, and business teams to ensure timely containment and remediation.
-
Provide technical guidance, quality review, and mentoring to L1 and L2 SOC analysts, including escalation review and investigation coaching.
-
Ensure accurate documentation of investigations, evidence, actions taken, lessons learned, and control recommendations in ticketing and case management systems for reporting and audit purposes.
-
Support 24/7 SOC operations through structured handovers, shift support, service level adherence, and collaboration with global teams operating in a Follow-The-Sun model.
What You Bring to the Team
SOC Analyst (L1)
-
Bachelor’s degree or currently completed studies in Cybersecurity, Information Technology, Computer Science, Systems Engineering, or a related discipline.
-
2+ years of experience in cybersecurity, IT support, network operations, security monitoring, or a related technical role.
-
Basic understanding of networking, operating systems, identity and access concepts, and common cyber threats such as phishing, malware, and unauthorized access attempts.
-
Familiarity with SIEM platforms, endpoint detection tools, or log analysis concepts acquired through work experience, academic training, internships, or labs.
-
Ability to write clear incident notes, follow procedures consistently, and work effectively in a structured operational environment.
-
Working proficiency in English is strongly preferred to support multinational teams and stakeholders.
-
Availability to work on-site in Kuala Lumpur, Malaysia required.
SOC Analyst (L2)
-
Bachelor’s degree or currently completed studies in Cybersecurity, Information Technology, Computer Science, Systems Engineering, or a related discipline.
-
3–5 years of experience in cybersecurity operations, SOC monitoring, incident investigation, security engineering support, platform administration, or a related technical role.
-
Strong understanding of networking, operating systems, identity and access concepts, cloud services, attacker techniques, and common cyber threats such as phishing, malware, credential compromise, and unauthorized access attempts.
-
Hands-on experience with SIEM, EDR, email security, vulnerability management, cloud security, identity security, or case management platforms, including basic administration or operational support activities.
-
Ability to write clear investigation notes, follow runbooks, support detection tuning, maintain operational documentation, and work effectively in a structured security operations environment.
-
Working proficiency in English is strongly preferred to support multinational teams and stakeholders.
-
Availability to work on-site in Kuala Lumpur required.
SOC Analyst (L3)
-
Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Systems Engineering, or a related discipline, or equivalent practical experience.
-
5+ years of experience in cybersecurity operations, including hands-on SOC analyst experience with exposure to incident response, threat hunting, or detection engineering.
-
Practical experience administering or supporting security platforms such as SIEM, EDR/XDR, SOAR, email security gateways, cloud security tools, vulnerability management platforms, identity security tools, or network security monitoring solutions.
-
Strong understanding of security monitoring, cyber kill chain or MITRE ATT&CK techniques, incident response lifecycle, log analysis, endpoint telemetry, network protocols, authentication flows, and common attack methods.
-
Ability to tune alerts, validate detection logic, assess control effectiveness, and recommend improvements to monitoring coverage and response procedures.
-
Strong written and verbal communication skills, with the ability to document investigations clearly and brief technical and non-technical stakeholders.
-
Working proficiency in English is required to support multinational teams and stakeholders.
-
Availability to work on-site in Kuala Lumpur required.
Preferred Skills
-
Professional certifications such as CompTIA Security+, CySA+, GCIA, GCIH, GCFA, CEH, SC-200, AZ-500, Microsoft Security Operations Analyst, or equivalent security operations credentials.
-
Hands-on experience with Microsoft Sentinel, Microsoft Defender XDR, Splunk, QRadar, CrowdStrike, Palo Alto, Fortinet, Proofpoint, Zscaler, or comparable enterprise security technologies.
-
Experience onboarding log sources, maintaining connectors, building dashboards, managing alert queues, integrating SOAR workflows, or supporting security platform upgrades.
-
Exposure to cloud security monitoring across Microsoft Azure, AWS, Google Cloud, or hybrid enterprise environments.
-
Experience working in regulated or compliance-focused environments with strong documentation, control adherence, evidence management, and audit support expectations.
-
Ability to mentor junior analysts, lead technical escalations, and contribute to continuous improvement of SOC processes, detection maturity, and operational reporting.
-
Experience supporting SOC, NOC, help desk, IT operations, or managed security environments.
-
Experience with use case development, alert rule tuning, automation playbooks, threat intelligence enrichment, log source integration, or platform health monitoring.
-
Understanding of compliance-focused environments and the importance of documentation, control adherence, and audit support.
-
Strong customer service mindset and the ability to coordinate professionally with internal users, technical teams, and business stakeholders.
Why You’ll Love Working with Us
- Employee Benefits & Advantages
At Provido Global, we value our employees and nurture a culture of progress and creativity. Our team members enjoy a supportive, inclusive, and growth-focused environment.
- Competitive Compensation & Performance Incentives
- Flexible Working Options
- Health & Well-being Support
- Career Advancement & Development Programs
- Team-Oriented & Inclusive Workplace
- Team Events & Social Activities