Security Incident Response Analyst

Morgan Street Holdings


Date: 2 weeks ago
City: Klang
Contract type: Full time
About Us

Morgan Street Holdings is a privately owned enterprise with a diverse portfolio of operating companies, including HAVI Supply Chain, tms, Stanley and Continental. Our operating companies offer best-in-class sourcing and supply chain capabilities, brand-defining and marketing and promotion services, innovative consumer products, and dining and refreshment food solutions.

Morgan Street Holdings employs over 10,000 people and serves 300+ customers across the globe.

Why Work Here?

At Morgan Street Holdings, We Are Proud To Make Moments That Matter Every Day For Our People And Our Customers. We Do This Through Living Our Morgan Street Holdings’ Values

  • Do What’s Right
  • Respect and Value All
  • Think Big Together
  • Elevate our Customers and People

Our commitment goes beyond the written word; we bring these values to life every day, lighting our path and shaping our decisions and actions with unwavering purpose. Join us in experiencing the true essence of Morgan Street Holdings where our values are not just written, but lived.

We support our people with competitive pay, benefits, and flexibility, and strongly emphasize a growth mindset for achieving personal and career growth while at Morgan Street Holdings.

Job Summary

This position serves as an escalation resource for an externally managed SOC service who operates the enterprise SIEM and SOAR. This person is someone who will learn the HAVI lines of business and participate in decisions to isolate endpoints based on operational risk. They would support business leaders and IT process owners through the implementation of technical controls and provide support for Governance, Risk, and Compliance initiatives in the region.

A successful Security Incident Response Analyst will leverage their understanding of modern threat actors and MITRE ATT&CK TTPs to reduce the mean time to respond and recover from Security Incidents. They will also rely on excellent communication skills to coordinate communication between managed security services and internal technology leaders working for Morgan Street companies. Additionally, the Security Incident Response Analyst would support the Offensive Security Practice in scoping activities for external penetration tests and help prioritize remediation recommendations from testing activities. This role would be a good fit for a SOC Tier 3 analyst looking to pivot to defensive cyber operations without daily responsibilities for live monitoring.

Primary Accountabilities

  • Assist in development of SIEM rules and SOAR Automations.
  • Perform Root Cause Analysis for EDR detections.
  • Support Incident Response Investigations in the Preparation, Identification, and Recovery phases through modernizing runbooks, identifying IOCs, building attacker timelines, and coordinating recovery efforts.
  • Work with managed threat hunting services to enhance detection engineering.
  • Contribute to TTX development and delivery.
  • Validate technical controls to assure regulatory and customer requirements are met.
  • Evaluate potential security solutions and services to determine effectiveness.
  • Support other security operations functions as required, to include vulnerability remediation guidance and local approvals for routine security exemptions.
  • Collaborate with Security team members across the globe and provide direct support for the Governance, Risk, and Compliance security leader in the region.

Qualifications

  • 3-5 years of experience performing SOC monitoring and incident response
  • 2+ years as a level 3 SOC analyst
  • Awareness of security standards and frameworks, such as ISO 27000 series, NIST 800.53, ISF SOGP, CIS Critical Controls, etc.
  • Knowledge and experience with most of the following:
  • SIEM (Google Chronicle)
  • SOAR (Google Chronicle)
  • EDR (SentinelOne)
  • MITRE ATT&CK

Strongly Desired

  • Security+, or equivalent, GSEC, GCIH, or equivalent Incident Response Certification
  • Strong preference for GCIH or GICSP
  • CISSP or similar Governance, Risk, and Compliance certifications
  • IT Operations experience; including network management, server operations, cloud administration, etc.

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

Post a resume

Similar jobs

Draughtsman

FedAPI, Klang
MYR 2,500 - MYR 4,500 per month
5 days ago
Job ResponsibilityPrepare detailed technical drawings and plans based on architectural and engineering specifications using AutoCAD software.Collaborate with engineers, architects, and project managers to understand project requirements and translate them into accurate drawings.Review and interpret architectural and engineering plans, specifications, and other technical documents.Create detailed shop drawings for fabrication and installation of structural and architectural components.Ensure all drawings comply with industry...

QA cum HALAL OFFICER/EXECUTIVE

Francestle Confectioneries (M) Sdn. Bhd., Klang
2 weeks ago
Job DecsriptionManage QC department manpower allocation, training and performance in meeting all QC department functionsDirectly involved in establishing, upgrading, implementing and maintaining of HACCP, GMP, ISO 9001, ISO 22000 & FSSC 22000 system.Ensure all operational staff complies with policies, procedure, work instructions, rules and regulation related to food safety and qualityPlan and manage maintenance schedule for Food Safety & Quality...

MARKETING EXECUTIVE

Francestle Confectioneries (M) Sdn. Bhd., Klang
2 weeks ago
ResponsibilitiesCommunicate with local and export corporate customers (B2B), ensuring smooth coordination and relationship managementMaintain strong relationships with existing customers and propose new products to meet their needsPrepare marketing materials, presentations, and reports as neededDevelop and implement marketing strategies aimed at attracting new customer and retaining existing oneConduct market research to gather insights on trends, consumer preferences, and competitor activities.RequirementsCandidate must...