L2 Cybersecurity Analyst
Company: Sumber Solusi Hebat
Location: Placed at a Security Operations Center (SOC)
Employment Type: Full-time / Contract
Job Description:
We are looking for an experienced L2 Cybersecurity Analyst to join our team at Sumber Solusi Hebat, working within a SOC environment. The ideal candidate will be responsible for incident response, vulnerability detection, and ensuring cybersecurity operations are well-coordinated across teams and clients.
Requirements:
Minimum S1/equivalent in Computer Science OR ECIH/CHFI certification.
At least 2 years of experience in Incident Response or Cybersecurity.
Certifications in Security Operations, Penetration Testing, and Vulnerability Assessment (CEH/equivalent & CIHE).
Strong understanding of information security and network security technologies.
Detail-oriented with problem-solving skills and a procedural approach.
Key Responsibilities:
Develop incident handling programs, escalation processes, and improvements based on feedback from IT Operations & Monitoring (L1).
Identify access control attacks.
Detect security vulnerabilities and potential breaches.
Analyze cybersecurity posture trends.
Coordinate incident handling and crisis management with internal teams (IT Operations & Monitoring, Cyber Security Section Head, MSS Operation Dept. Head, Infrastructure Engineer) and external clients.
Escalate incidents or issues according to priority to relevant functions like the Cyber Security Section Head or MSS Operation Dept. Head and coordinate with clients.
Provide guidance on cybersecurity issue solutions to L1 IT Operations & Monitoring.
Prepare detailed incident reports and technical summaries and communicate them to management, administrators, end-users, and other cybersecurity entities.
Develop use cases and integrate them into SIEM in collaboration with the Infrastructure Engineer.
Oversee daily operations at the client site and conduct regular (weekly) meetings.
Prepare closing reports on resolved incidents and coordinate with clients.
Maintain service quality and client satisfaction by ensuring effective communication with L1, PMO, clients, and other relevant parties.
Implement and manage cybersecurity awareness and training programs.
Conduct IT Security Risk Assessments for products and services, ensuring compliance with cybersecurity regulations.