Routiqo

Regional Senior Security Operations

ZUS Coffee

  • Malaysia
  • Full-time

As a Regional Senior Security Operations, you will serve as a key technical contributor within the SecOps function. You will be responsible for detecting and responding to cyber threats, managing security technologies, supporting vulnerability management, and strengthening operational security capabilities across the organization. The role requires strong analytical and technical skills, a proactive security mindset, and the ability to collaborate effectively with infrastructure, application, cloud, and business teams to reduce cyber risk and enhance the organization's overall security resilience

Position Responsibilities

1.Threat Detection &Monitoring

  • Monitor security events and alerts across endpoints, servers, cloud environments, networks,

andcollaboration platforms.

  • Investigate and triage security alerts generated by security monitoring tools, SIEM platforms,

EDR/XDR solutions, and threat intelligence sources.

  • Identify suspicious activities, indicators of compromise (IOCs), and potential security

incidents.

  • Perform event correlation and analysis to detect emerging threats and security anomalies

2.Incident Response &Threat Hunting

  • Participate in cybersecurity incident response activities, including identification,

containment, eradication, recovery, and post-incident reviews.

  • Conduct threat hunting activities to proactively identify malicious behaviors, attack

techniques, and hidden threats within the environment.

  • Support forensic investigations by collecting and analyzing logs, system artifacts, and

security evidence.

3.Vulnerability & Risk Management

  • Coordinate and perform vulnerability management programs, ensuring regular scanning,

risk prioritization, and timely remediation.

  • Conduct advanced risk assessments to identify and address security gaps within

infrastructure, applications, and cloud environments.

  • Implement risk mitigation strategies aligned with business objectives

4.Security Policy Development &Compliance

  • Design, implement, and maintain security policies, standards, and procedures to meet

regulatory requirements (e.g., GDPR, HIPAA, NIST, ISO 27001).

  • Guide compliance audits and ensure continuous improvement of security controls

5.Security Tool Management & Optimization

  • Manage and enhance security tools, including firewalls, SIEM platforms, endpoint protection

solutions, and intrusion detection systems.

  • Evaluate and integrate new security technologies to improve defense mechanisms.

6.Cloud Security

  • Monitor cloud environments for security threats, policy violations, misconfigurations, and

suspicious activities.

  • Review cloud security alerts and investigate identified security events.
  • Support implementation and monitoring of cloud security controls, including identity

security, logging, and access management.

  • Assist in cloud security posture reviews and remediation of identified risks.
  • Work with Platform & Infrastructure team to strengthen cloud security governance and

operational controls.

7.Log Analysis & Automation

  • Perform deep-dive analysis of security logs from multiple sources to identify anomalies and

potential threats.

  • Automate security processes using scripting languages (Python, Bash) and security

orchestration tools.

8.Security Awareness & Mentorship

  • Design and deliver security training programs for employees to foster a security-first culture.
  • Support the execution of security awareness and phishing simulation programs across the

organization.

Qualifications & Experiences

Qualifications

  • Bachelor's Degree in Cybersecurity, Information Technology, Computer Science, Information

Systems, or a related field.

  • Relevant professional certifications such as CEH, CISSP, CCSP, AWS Security Specialty, or

equivalent are preferred.

Experience

  • 3+ years of hands-on experience in Security Operations (SecOps), Cloud Security, and

Information Security.

  • Proven expertise in managing enterprise security tools, incident response, and cloud

security best practices

Technical Skills

  • Proficiency in SIEM platforms (e.g., Splunk, QRadar), EDR solutions, IDS/IPS, and

vulnerability management tools.

  • Extensive experience with cloud security frameworks and tools (AWS, Azure, Google Cloud).
  • Strong knowledge of encryption, IAM, secure cloud configurations, and microservices

security.

  • Familiarity with automation and scripting (Python, Bash, PowerShell) for security operations

Knowledge

  • Deep understanding of security frameworks (e.g., NIST, ISO 27001) and industry best

practices.

  • Strong grasp of networking, threat intelligence, and security architecture principles.
  • Experience with regulatory compliance and governance in security environments.

Problem-Solving & Leadership

  • Exceptional analytical skills for assessing complex security threats and devising effective

solutions.

  • Ability to lead security initiatives, drive continuous improvements, and influence security

decisions across teams.

Communication

  • Excellent verbal and written communication skills, with the ability to convey complex

security concepts to technical and non-technical audiences.

  • Strong documentation and reporting abilities to support security governance and

compliance efforts

a Necessity, not a Luxury

Skills

  • Analytical
  • AWS
  • Azure
  • Bash
  • Business continuity
  • Collections
  • Communication
  • Compliance
  • Cybersecurity
  • Event management
  • Gcp
  • Iam
  • Leadership
  • Networking
  • Problem solving
  • Process improvement
  • Python
  • Risk assessment
  • Solution architecture
  • Splunk
  • Teamwork