L1 Security Analyst
Responsibilities
- Monitor security alerts and events from SIEM and other security tools.
- Perform initial triage and analysis of security incidents to determine severity and impact.
- Escalate verified incidents to higher-level analysts (L2/L3) or relevant teams for further investigation.
- Assist in the containment and remediation of security threats under supervision.
- Maintain and update incident documentation, reports, and logs accurately.
- Conduct regular health checks of security systems and ensure continuous monitoring.
- Support the implementation of security policies, procedures, and best practices.
- Stay updated with current cybersecurity trends and emerging threats.
Qualifications
- Bachelor's degree in Computer Science, Information Security, or a related field
- 0–2 years of experience in cybersecurity, IT operations, or network monitoring
- Basic understanding of security concepts such as malware, phishing, firewalls, IDS/IPS, and SIEM tools
- Familiarity with operating systems (Windows, Linux) and basic networking principles (TCP/IP, DNS, etc.)
- Strong analytical, problem-solving, and communication skills
- Willingness to work in shifts (24x7 environment)
- Relevant certifications (e.g., CompTIA Security+, CEH, or SOC Analyst) are a plus
- Work location: On-site in Jakarta
- Flexible to undertake business trips if required.
L2 Security Analyst
Responsibilities
- Conduct thorough analyses or investigations of incidents and escalate security activities as needed, responding appropriately to mitigate risks.
- Support various security operations, including vulnerability assessments, threat assessments, and threat hunting, while contributing insights toward implementing effective security strategies.
Qualifications
- Intermediate knowledge of Information Security
- Basic Networking/Network Engineering
- Intermediate knowledge of Linux & Windows Operating Systems
- Familiarity with the NIST CyberSecurity Framework and MITRE ATT&CK framework
- Preferred certifications: CEH, CySA+, Security+, CHFI, or equivalent
- Preferred familiarity with enterprise security devices (EDR, Firewall, WAF)
- Preferred familiarity with the Java environment
- Preferred coding/scripting ability in any language
- Willingness to work in shifts (24x7 environment).
- Work location: On-site in Jakarta
- Flexible to undertake business trips if required.