About the Role
A growing information security team is looking for a Security Operations Analyst to take ownership of threat detection, incident response, and technology risk compliance. You'll work hands-on with modern SOC tooling (SIEM, xDR, IAM/PAM) while also shaping how the organization manages regulatory and third-party risk — a rare blend of technical depth and governance exposure in one seat.
What You'll Do
Security Operations & Threat Detection
- Monitor network traffic, systems, and applications for anomalies and potential incidents
- Identify security flaws and weaknesses across networks, systems, and applications before they're exploited
- Deploy, configure, and manage security tools — endpoint, IAM, PAM, xDR, SIEM — aligned to NIST, CISA, and MITRE ATT&CK protocols
- Conduct detailed assessments and audits of controls across email, endpoint, application, and data layers
Incident Response
- Lead the incident response lifecycle end-to-end: detection, triage, containment, eradication, recovery
- Own escalated incident tickets and draft reports covering root cause, forensic evidence, and mitigation plans
- Conduct or support forensic analysis of endpoints, logs, and network traffic
- Build and maintain IR playbooks; coordinate with internal teams and external partners during critical incidents
Technology Risk & Compliance
- Conduct technology risk assessments aligned with business and regional regulatory requirements
- Maintain policies, SOPs, and risk registers; support third-party and regulatory adherence assessments
- Contribute to certification, audit, and compliance efforts
What You Bring
- 5 years of experience in security operations, blue team, or technology risk (or 3+ years with strong DFIR/compliance exposure)
- Diploma or degree in IT, Cybersecurity, or related field
- Hands-on expertise with SIEM, IAM, PAM, endpoint security, and access control
- Strong knowledge of security frameworks, layered defense, VPN security, and DLP
- Familiarity with vulnerability management and security automation
- DFIR experience is a strong plus
- Ability to analyze issues, recommend solutions, and communicate across technical and business stakeholders
Nice to Have
- CompTIA Security+, CISSP, or equivalent vendor/industry certifications
Lin Wee
License No. 22C1076 | EA Reg: R1878551