Search by job, company or skills

Specialist, Security Operations

Early Applicant
  • Posted 6 days ago
  • Be among the first 10 applicants

Job Description

At TNG Digital, part of TNG Digital Group, we build the tech behind TNG eWallet, one of Malaysia's most used apps for payments and everyday life.

Millions of people rely on us daily, not just to pay, but to manage money, access financial services, and get things done faster and simpler.

Behind it all is a team that likes to question how things are done, move quickly, and try new ideas. If you enjoy solving real problems and seeing your work used at scale, you will feel right at home here.

What You'll Do:

  • Regular security monitoring and assessment across TNGD infrastructures, mainly business network, systems as well as applications
  • Continuously identify gaps, harden and improve overall security posture of business network, system and applications.
  • Ensure any new changes or deployment made on network, systems and applications adhere to security best practices.
  • Monitor and analyze security events, logs, and network traffic to detect suspicious, unauthorized, or malicious activities across on-premises and cloud environments.
  • Implement, monitor, and enhance Data Loss Prevention (DLP) controls to safeguard customer, financial, and sensitive business information across on-premises and cloud environments.
  • Respond to security incidents in a timely and effective manner, following established incident response procedures and playbooks.
  • Investigate and document security incidents, including root cause analysis and lessons learned.
  • Utilize and correlate and analyze data from various security technologies, including SIEM, IDS/IPS, endpoint detection and response (EDR), firewalls, and cloud security platforms, to identify and mitigate threats.
  • Maintain and configure security tools to optimize detection and response capabilities.
  • Apply threat intelligence data to enhance the organization's security posture and incident response capabilities.
  • Keep abreast with emerging cybersecurity threats, vulnerabilities, attack techniques, security technologies, and industry developments through threat intelligence and security research, applying relevant insights to enhance the organization's security controls and resilience.
  • The duties and responsibilities of the Employee outlined herein may be subject to change and the Employee may be required to perform additional tasks as deemed necessary by the Company.

Role Requirements:

  • Bachelor's degree in computer science, information technology, or a related field. Degree in IT Security related field is preferred.
  • Minimum of 3-5 years of experience in cloud security or related fields, such as cybersecurity or information security.
  • Basic technical understanding of IT and cybersecurity technologies, processes, and controls (e.g., Antivirus, Firewall, IDS/IPS, EDR/XDR, WAF, Proxy, CASB).
  • Familiarity with Linux operating systems and administration fundamentals.
  • Good understanding of networking concepts and protocols (TCP/IP, DNS, HTTP/HTTPS).
  • Basic knowledge of cloud technologies and security concepts.
  • Ability to develop simple scripts or automate tasks using languages such as Shell, Python, or C/C++.
  • Strong teamwork, communication, and stakeholder coordination skills.
  • Ability to work effectively both independently and collaboratively in a team environment.
  • Strong analytical and problem-solving skills with attention to detail.
  • Familiarity with security monitoring concepts and technologies such as SIEM, IDS/IPS, and endpoint security solutions.
  • Commitment to continuous learning and professional development in cybersecurity.
  • Hands-on experience managing security technologies such as firewalls, IDS/IPS, WAF, EDR/XDR, SIEM, or cloud security solutions.
  • Familiarity with public cloud platforms such as AWS, Azure or Alibaba Cloud.
  • Familiarity with Zscaler Internet Access and Zscaler Private Access, Crowdstrike, Microsoft Intunes/Defender/Purview and on premise security device management.
  • Experience with log analysis, malware investigation, or digital forensics.
  • Exposure to security automation, orchestration, or SOAR platforms.
  • Relevant cybersecurity certifications such as CompTIA Security+, CySA+, CEH, SC-200 or equivalent industry-recognized certifications are preferred.

What You Get

Work your way

  • Flexible working hours

Your wellbeing matters

  • Medical coverage, with option to include dependants
  • Extra leave for family and caregiving needs

Rewards that grow with you

  • Monthly lifestyle allowance via TNG eWallet
  • Long-term rewards for your contributions

Everyday support

  • Mobile and broadband reimbursement
  • Discounts and wellness perks

What it's like to work here

We care about people who take ownership, speak up, and want to make things better. Titles matter less than impact. Good ideas can come from anyone.

You will be working with people who are curious, practical, and not afraid to challenge each other in a good way.

Note: Only shortlisted candidates will be contacted.

More Info

Job Type:
Industry:
Function:
Employment Type:

About Company

Job ID: 151350005

Similar Jobs

Malaysia, Kuala Lumpur

Skills:

Incident ResponseSiem ToolsFirewallsincident management toolshardening OSSecurity Monitoringforensic analysis

Malaysia, Kuala Lumpur

Skills:

MlSiemCybersecurity OperationsPQCCyber Kill-ChainAiAttack Lifecycle Methodology

Malaysia, Kuala Lumpur

Skills:

PowerShellBashIpsIncident ResponseGcpIso 27001IdsSiemPythonAWSSecurity Monitoring OperationsCIS Controlsvulnerability scannerscloud security platformsThreat Vulnerability ManagementEDROperational Resilience Planning CoordinationnistSecurity Operations

Malaysia, Kuala Lumpur

Skills:

SiemSplunkQradarSOARMITRE ATT CKPalo Alto Cortex XSOARCrowdStrikeNIST SP 800-61EDRUEBASentinelOneNDRMISP

Malaysia, Kuala Lumpur

Skills:

Vulnerability ManagementIntuneDlpWindowsAutomationIncident ResponseMicrosoft 365LinuxMacosAzureEntra IDAiActive DirectoryAlert MonitoringSecure Configuration ManagementInternet Security ProtocolsEDR