company-logo-image

Security Analyst (SOC Level 2)

ashley-avatar-image

AI-generated summary

beta

This job is for a Security Analyst (SOC Level 2) who checks and investigates security alerts to keep the organization safe. You might like this job because you get to solve problems and improve security strategies while guiding junior analysts!

Undisclosed

Malaysia, Kuala Lumpur

Job Description

Ensign is hiring !

Job Summary:

The Security Analyst Level 2 (L2) is responsible for investigating, analyzing, and responding to security events and incidents escalated from Level 1 analysts. This role requires a strong technical background, analytical thinking, and hands-on experience in threat detection, incident response, and security monitoring. The L2 analyst plays a critical role in containing threats and improving the organization’s security posture.
 

Key Responsibilities:

  • Triage and investigate escalated alerts from L1 analysts to determine the nature and severity of potential threats.

  • Perform in-depth analysis of network traffic, security logs, and system events.

  • Conduct malware analysis and forensic investigations as needed.

  • Document and escalate verified incidents to the Incident Response team.

  • Provide guidance and mentorship to L1 analysts.

  • Recommend and implement detection improvements and playbook enhancements.

  • Collaborate with other teams (IT, Threat Intel, IR) for comprehensive response efforts.

  • Participate in root cause analysis and post-incident reviews.

  • Continuously update knowledge on current threats, tactics, and procedures (TTPs).

Requirements:

  • Bachelor’s degree in Cybersecurity, Information Technology, or related field (or equivalent work experience).

  • 3+ years of experience in a SOC or similar security role.

  • Strong understanding of security technologies: SIEM, IDS/IPS, firewalls, EDR, etc.

  • Experience with tools such as Splunk, Sentinel, QRadar, CrowdStrike, Carbon Black, or similar.

  • Familiarity with MITRE ATT&CK framework, NIST, and incident handling frameworks.

  • Ability to analyze logs, packets, and indicators of compromise (IOCs).

  • Solid problem-solving and communication skills.

  • Relevant certifications (e.g., CompTIA Security+, CySA+, GCIA, GCIH, or equivalent) are a plus.


Job Requirements


Company Benefits

Health Benefits

Medical insurance for employees and dependents.

On-Site Meals and Snacks

Ensiders are served free bento sets every Monday and Friday.

On-Site Fitness Centre

Sweat it out in our own indoor gym, within a few walking steps from your office space.

Teach@Ensign / Brown Bag Sessions

Dive deeper into a variety of topics at Ensign’s regular knowledge-sharing sessions, taught by Ensign’s very own staff.

E-Learning Platform

Expand your knowledge in a wide range of subjects including cloud, cyber, and other technology-related courses.


Additional Info

Company Activity

Last active - few hours ago


Company Profile

Ensign Infosecurity (Malaysia)-logo-image

Ensign Infosecurity (Malaysia)

Ensign InfoSecurity, one of Asia’s largest pure play cyber security firms, formed as a result of a joint venture (JV) between Temasek and StarHub. Certis’s cyber security arm, Quann will be merged with StarHub’s Centre of Excellence and fully owned subsidiary, Accel Systems & Technologies Pte Ltd (ASTL). Quann, formerly known as e-Cop, is a Singapore-based cyber security services provider since 2000. The company...