- Posted a day ago
- Be among the first 10 applicants
Job Description
About us:
We are a regional digital bank group, passionately Built With Heart, revolutionizing financial banking services across Southeast Asia. Our mission is to unlock big dreams and drive financial inclusion throughout the region. We believe that real impact starts with people, serving Southeast Asia with empathy, respect, and a commitment to building trust. We have the right foundation—data, technology, and trust—and are looking for individuals who are ready to Own The Mission, taking responsibility for the successful outcomes, impact and legacy we will leave behind. Join us in shaping the future of Digital banking.
Responsibilities
- Lead implementation and management of endpoint security platforms (EDR/XDR) including tuning, threat detection and response improvements
- Work closely with SOC team to investigate alerts, respond to incidents and enhance detection rules and playbooks
- Analyze and act on Indicators of Compromise (IoCs) using threat intelligence to proactively detect and mitigate threats
- Manage and optimize DLP solutions to prevent data exfiltration across endpoints and platforms
- Implement and maintain platform security controls including DNS security, web filtering and browser security hardening
- Perform continuous endpoint hardening, vulnerability remediation and attack surface reduction
- Monitor and respond to DDoS alerts and network-based threats, coordinating with infrastructure teams
- Lead IAM platform operations including SailPoint IGA, PAM solutions and endpoint privilege management
- Conduct access reviews and regulatory workflows for privileged users
- Collaborate with risk, cybersecurity, IT and business teams to enforce RBAC and least-privilege access policies
- Ensure security controls align with policies and regulatory requirements (e.g., BNM FinTips)
- Support incident response activities including containment, eradication and recovery
- Evaluate and implement new security tools, automation and improvements to enhance operational efficiency
- Maintain technical documentation and operational procedures for security platforms
Requirements
- Minimum 3–5 years of experience in cybersecurity engineering or operations
- Hands-on experience with EDR/XDR platforms including detection tuning and incident handling
- Strong experience with DLP, DNS security and endpoint/browser security controls
- Experience working with SOC team, SIEM tools and threat intelligence feeds
- Understanding of IoCs, attack techniques and threat hunting concepts
- Familiarity with network security and DDoS mitigation
- Experience in vulnerability management and endpoint hardening
- Experience in IAM/IGA administration, privileged access or enterprise identity management
- Hands-on experience with PAM solutions and endpoint privilege management is a plus
- Ability to lead compliance programs, access review initiatives and IAM platform improvements
- Basic scripting/automation skills (PowerShell, Python) is a plus
- Strong analytical and problem-solving skills
More Info
Key Skills
IGA
XDR
browser security hardening
DNS security

