Role Description
- Lead 24x7 security operations center in managing threat analysts for enterprise threat intelligence and incident response
- Oversee threat intelligence platform operations, security orchestration, automation and advanced threat hunting activities
- Ensure SLA compliance for incident response, threat validation and exposure management with strict response time requirements
- Coordinate cross-functional operations between multiple security vendors, managing handoffs and escalation procedures
- Drive continuous improvement in security workflows, playbook development, and AI-powered security platform optimization
- Manage shift rotations and ensure seamless coordination between Level 1 and Level 2 analyst teams
- Monitor and maintain operational metrics, ensuring quality of threat analysis and reporting
- Serve as primary operational contact for stakeholder management, service reviews, and critical incident communications
- Lead operational escalations and coordinate with Service Delivery Manager for customer success
- Participate in service improvement initiatives and contribute to strategic security roadmap development
Requirements
- Minimum 2 years of experience in SOC management or security team leadership with proven track record of managing 10+ analysts
- Strong operational experience in threat intelligence platforms (TIP), CTI feeds, SIEM, SOAR and security orchestration tools
- Deep understanding of STIX/TAXII protocols, threat data formats, and intelligence sharing frameworks
- Experience with AI/ML security platforms and automated threat detection systems
- Proficiency in ticketing systems and ITIL service management processes
- Professional certifications preferred (any combination):
SANS: GCIH, GCFA, GNFA, GCIA, GSOC, GMON
CompTIA: Security+, CySA+, CASP+
EC-Council: CTIA, CHFI, CEH, CIH, ECSA
CREST: CRT, CRTIA, CRIA
Offensive Security: OSCP, OSWP
ITIL: Foundation, Practitioner
OR any SIEM Platform certifications
OR any TIP/CTI certifications
- Experience in financial services sector is highly preferred
- Excellent written and spoken communication skills in English
- Strong leadership capabilities with proven ability to manage 24x7 shift operations
- Critical thinking and analytical skills for advanced threat analysis and incident response
- High level of accountability and commitment to operational excellence
- Malaysian citizenship or permanent resident status required