Cyber Defense Specialist

Ericsson


Date: 2 hours ago
City: Shah Alam
Contract type: Full time
Grow with us

As the tech firm that created the mobile world, and with more than 54,000 patents to our name, we’ve made it our business to make a mark. When joining our team at Ericsson you are empowered to learn, lead and perform at your best, shaping the future of technology. This is a place where you're welcomed as your own perfectly unique self, and celebrated for the skills, talent, and perspective you bring to the team. Are you in?

Come, and be where it begins.

Job Summary

We are seeking an experienced Cyber Defence Specialist responsible for monitoring, detecting, investigating, and responding to cybersecurity threats while ensuring compliance with regulatory and organizational security requirements. The ideal candidate possesses strong hands-on experience in Security Operations Center (SOC) functions, incident response, threat intelligence, vulnerability management, and security governance.

The role also requires supporting cybersecurity compliance initiatives, forensic investigations, and continuously improving the organization's cyber defence capabilities.

Key Responsibilities

Security Operations Center (SOC)

  • Monitor security events using SIEM, EDR, NDR, SOAR, IDS/IPS, and other security monitoring platforms.
  • Perform Level 2/Level 3 incident investigation and response.
  • Conduct malware analysis and threat hunting activities.
  • Investigate phishing, ransomware, insider threats, account compromise, and advanced persistent threats (APT).
  • Analyze logs from servers, firewalls, cloud platforms, endpoints, databases, and network devices.
  • Develop and optimize SIEM correlation rules and detection use cases.
  • Lead incident triage, containment, eradication, recovery, and post-incident reviews.
  • Coordinate with infrastructure, application, cloud, and network teams during security incidents.
  • Maintain incident documentation, root cause analysis (RCA), and lessons learned.

Threat Intelligence & Threat Hunting

  • Monitor emerging cyber threats and vulnerabilities.
  • Correlate Indicators of Compromise (IOCs) and Indicators of Attack (IOAs).
  • Integrate threat intelligence feeds into SOC operations.
  • Perform proactive threat hunting using MITRE ATT&CK techniques.
  • Recommend improvements to security controls based on threat trends.

Forensics

  • Perform forensic acquisition of endpoints, servers, virtual machines, and cloud workloads.
  • Support cyber investigations with law enforcement or external agencies where required.
  • Support customer in investigation related to respective OS.
  • Knowledge of telco network applications and interfaces.


  • Compliance & Governance

    • ISO/IEC 27001
    • NIST Cybersecurity Framework (CSF)
    • CIS Controls
    • Local regulatory requirements (e.g., MCMC NCII, PDPA, sector-specific regulations)
    • Assist with internal and external security audits.
    • Review and maintain security policies, procedures, and standards.
    • Track compliance findings and remediation activities.

    Vulnerability & Security Management

    • Coordinate vulnerability assessments and penetration testing.
    • Prioritize remediation based on business risk.
    • Track vulnerabilities through closure.
    • Validate security hardening across Windows, Linux, cloud, databases, and network devices.
    • Support secure configuration reviews.

    Security Engineering & Automation

    • Enhance SOC automation using SOAR platforms.
    • Develop security playbooks and response procedures.
    • Improve detection engineering using Sigma, YARA, and SIEM rules.
    • Support integration of security tools through APIs and automation scripts.


  • Reporting & Communication

    • Prepare executive and technical incident reports.
    • Present security findings to management and stakeholders.
    • Develop SOC dashboards and KPIs.
    • Conduct awareness sessions for technical teams.
    • Support cyber crisis management and tabletop exercises.

    Required Technical Skills

    • Security Operations
    • SIEM (Splunk, Microsoft Sentinel, QRadar, ArcSight, Elastic)
    • EDR/XDR (Microsoft Defender, CrowdStrike, SentinelOne, Carbon Black)
    • SOAR platforms


  • Networking

    • TCP/IP
    • DNS
    • HTTP/HTTPS
    • SMTP
    • VPN
    • Routing and Switching
    • Network packet analysis (Wireshark)

    Threat Frameworks: MITRE ATT&CK; Cyber Kill Chain; Diamond Model

    Qualifications

    • Bachelor's degree in Computer Science, Cyber Security, Information Technology, or related discipline.
    • 5–10 years of cybersecurity experience and telco network background is preferred.
    • Minimum 3 years in a Security Operations Center (SOC).
    • Experience handling major cyber incidents.
    • Experience performing forensic investigations.
    • Strong understanding of compliance and audit processes.
    • ITIL certification, CEH, Security +, CompTIA Security+, CCNA Security, or similar will be an advantage
    • Basic knowledge of telecommunications networks will be an added advantage

    Why join Ericsson?At Ericsson, you´ll have an outstanding opportunity. The chance to use your skills and imagination to push the boundaries of what´s possible. To build solutions never seen before to some of the world’s toughest problems. You´ll be challenged, but you won’t be alone. You´ll be joining a team of diverse innovators, all driven to go beyond the status quo to craft what comes next.

    What happens once you apply?Click Here to find all you need to know about what our typical hiring process looks like.Encouraging a diverse and inclusive organization is core to our values at Ericsson, that's why we champion it in everything we do. We truly believe that by collaborating with people with different experiences we drive innovation, which is essential for our future growth. We encourage people from all backgrounds to apply and realize their full potential as part of our Ericsson team. Ericsson is proud to be an Equal Opportunity Employer. learn more.

    Primary country and city: Malaysia (MY) || Shah Alam

    Req ID: 788892

    How to apply

    To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

    Post a resume

    Similar jobs

    Field Service Engineer

    Alfa Laval, Shah Alam
    2 hours ago
    Every day, we get opportunities to make a positive impact – on our colleagues, partners, customers and society. Together, we’re pioneering the solutions of the future and unlocking the full potential of precious resources. Trusted to act on initiative, we challenge conventional thinking to develop world-leading technologies that inspire progress in vital areas, including energy, food, water and shipping.As we...

    Night Duty Manager

    Hilton, Shah Alam
    2 days ago
    Job DescriptionExceptional Hospitality Starts with YouPicture yourself brightening someone’s day. When you join our Hotels team, that’s exactly what you’ll do every time you come to work! As a Duty Manager, you will be responsible for overseeing the hotel’s daily operations, ensuring that all departments work together seamlessly to deliver outstanding guest service. Your leadership and problem-solving skills will be...

    Sales Associate, Setia City Mall

    Crocs, Inc., Shah Alam
    1 week ago
    At Crocs, Inc., every career offers a chance to make a real impact. No two journeys look the same. And that's exactly how we like it. Whether you’re welcoming customers into our stores, collaborating with global teams at our headquarters, or keeping operations moving at our distribution centers, your impact is real and valued. At Crocs, Inc. you’re not expected...