Senior Incident Response Specialist, Cyber Security-Malaysia

cygnifyยท Cygnify
Apply Now โ†—
๐Ÿ“ Kuala Lumpur, MalaysiaFullTime

About this role

Role Mission

The Senior Analyst - Cyber Security Incident Response is responsible for monitoring, detecting, and analyzing cybersecurity incidents through the Security Operations Centre (SOC) platform. The role supports the end-to-end incident lifecycle โ€” including triage, investigation, containment, and closure โ€” ensuring timely response to security events and maintaining cyber resilience. This role acts as the Level 2 (L2) Incident Responder, bridging SOC analysts and Incident Response management by performing deep technical analysis and coordinating with internal teams for resolution.

Accountabilities:

  • Perform end-to-end incident triage and investigation of security alerts escalated from L1 SOC analysts.

  • Ensure timely incident analysis, containment, and escalation aligned with MTTD and MTTR goals.

  • Support the SIEM platform (Elastic Stack) by fine-tuning existing rules and suggesting new detections.

  • Conduct log analysis and correlation across multiple data sources (network, endpoint, and cloud).

  • Create and maintain incident documentation, reports, and lessons learned.

  • Support incident response playbook execution during containment and recovery phases.

  • Collaborate with IT, network, and application teams for incident remediation and root cause analysis.

  • Provide insights for use case improvements and participate in use case validation and testing.

  • Escalate confirmed incidents to CSIRT / Assistant Manager - Incident Response for further action.

  • Participate in post-incident reviews, contributing to process and detection improvements.

  • Monitor alerts generated from the SOC/SIEM and perform initial to intermediate-level investigations.

  • Review and validate security events from multiple log sources and identify legitimate threats.

  • Perform deep-dive investigations for incidents involving malware, phishing, insider threats, and cloud breaches.

  • Assist in detection rule creation and tuning under the guidance of senior incident responders.

  • Use frameworks like MITRE ATT&CK for mapping and improving detection quality.

  • Conduct threat hunting using Elastic Stack and related tools.

  • Collaborate with MSSP, CSIRT, and IT infrastructure teams to ensure timely incident handling.

  • Support incident response reporting, evidence collection, and documentation for compliance and audit.

  • Contribute to automation opportunities in detection and response workflows.

  • Participate in training sessions, simulations, and tabletop exercises to enhance readiness.

  • Responsible for the log source onboarding and managing the continuous logs availability on the SIEM platform.

Requirements

  • Monitor alerts generated from the SOC/SIEM and perform initial to intermediate-level investigations.

  • Review and validate security events from multiple log sources and identify legitimate threats.

  • Perform deep-dive investigations for incidents involving malware, phishing, insider threats, and cloud breaches.

  • Assist in detection rule creation and tuning under the guidance of senior incident responders.

  • Use frameworks like MITRE ATT&CK for mapping and improving detection quality.

  • Conduct threat hunting using Elastic Stack and related tools.

  • Collaborate with MSSP, CSIRT, and IT infrastructure teams to ensure timely incident handling.

  • Support incident response reporting, evidence collection, and documentation for compliance and audit.

  • Contribute to automation opportunities in detection and response workflows.

  • Participate in training sessions, simulations, and tabletop exercises to enhance readiness.

  • Responsible for the log source onboarding and managing the continuous logs availability on the SIEM platform.

Frequently Asked Questions

Is the salary disclosed for the Senior Incident Response Specialist, Cyber Security-Malaysia position at cygnify?
The salary for this Senior Incident Response Specialist, Cyber Security-Malaysia role at cygnify is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Senior Incident Response Specialist, Cyber Security-Malaysia position at cygnify located?
This Senior Incident Response Specialist, Cyber Security-Malaysia role at cygnify is based in Kuala Lumpur, Malaysia. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Senior Incident Response Specialist, Cyber Security-Malaysia role at cygnify full-time or part-time?
This is listed as a FullTime position. It is posted as a Senior Incident Response Specialist, Cyber Security-Malaysia role in the Cygnify department at cygnify.
Which team or department does the Senior Incident Response Specialist, Cyber Security-Malaysia at cygnify belong to?
This Senior Incident Response Specialist, Cyber Security-Malaysia position is part of the Cygnify department at cygnify. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Senior Incident Response Specialist, Cyber Security-Malaysia position at cygnify?
Click the "Apply Now" button on this page. You will be redirected to cygnify's official application portal hosted on ashby where you can submit your application directly.
When was the Senior Incident Response Specialist, Cyber Security-Malaysia job at cygnify posted?
This Senior Incident Response Specialist, Cyber Security-Malaysia position at cygnify was posted on May 28, 2026. Apply as soon as possible โ€” early applications are often reviewed first.
Senior Incident Response Specialist, Cyber Security-Malaysia
cygnify
Apply for this role โ†—

You'll be redirected to cygnify's official application page on Ashby ATS.