onsite
Information Security Analyst II - airasia
Security Engineer
Senior analyst driving security operations, incident response, and vulnerability management across cloud and on‑prem environments, leveraging SIEM and risk assessment tools to protect enterprise assets.
About the role
Key Responsibilities
- Monitor, analyze, and respond to security events using SIEM platforms, ensuring timely containment and remediation.
- Conduct vulnerability assessments and penetration testing, prioritizing findings and coordinating remediation with IT teams.
- Develop and maintain incident response playbooks, performing post‑incident reviews and root‑cause analysis.
- Implement and manage cloud security controls, including IAM, encryption, and compliance frameworks for AWS and Azure environments.
- Collaborate with cross‑functional teams to assess risk, enforce security policies, and support compliance audits (ISO 27001, PCI‑DSS).
Requirements
- 3+ years of experience in information security operations or related field.
- Proficiency with SIEM tools (Splunk, QRadar, or similar) and vulnerability scanners (Nessus, Qualys).
- Strong understanding of cloud security best practices and compliance standards.
- Excellent analytical, communication, and problem‑solving skills.
- Relevant certifications (CISSP, CEH, or equivalent) preferred.