Jobiglo

No results.

Cyber SOC Incident Response Specialist

Nestle Operational Services Worldwide SA · Kuala Lumpur

New
Hybrid Senior 🇬🇧 English
SIEM EDR/XDR cloud security identity security threat intelligence platforms KQL SPL SQL Python PowerShell digital forensics memory capture disk imaging

Job description

About the role

Join Nestlé’s Regional Service Centre as a Cyber SOC Incident Response Specialist, leading investigations and response to sophisticated cyber‑attacks across a global enterprise environment. You will protect critical digital assets, drive threat‑hunting initiatives and ensure continuous security improvements in collaboration with global security and business teams.

Key responsibilities

  • Lead end‑to‑end technical investigations across endpoint, identity, email, network, public‑cloud and SaaS environments, reconstructing full attack chains.
  • Perform deep‑dive analysis using SIEM, EDR/XDR telemetry, cloud audit logs, identity sign‑in logs and network flow data to determine scope, root cause and attacker objectives.
  • Drive containment, eradication and recovery actions such as credential rotation, session revocation, policy hardening and host isolation while coordinating with Security Engineering, Legal and Privacy teams.
  • Act as Incident Commander for major incidents, run the bridge, provide 30‑minute cadence updates and make evidence‑based decisions across global time zones.
  • Mentor L1/L2 analysts, participate in on‑call rotation and represent the CSIRT in cross‑functional and purple‑team exercises.

Required profile

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Security or a related field.
  • 6–8 years of experience in security operations, incident response or digital forensics at an enterprise scale.
  • Proven track record managing full‑life‑cycle cyber incidents and delivering executive‑level briefings.
  • Relevant certifications such as CISSP, GCIH, GCFA, GCFE or cloud‑security credentials are preferred.
  • Business‑level proficiency in Mandarin is an advantage.

Required skills

  • Hands‑on experience with SIEM platforms, EDR/XDR solutions and cloud‑security tools.
  • Proficiency in security query languages and scripting: KQL, SPL, SQL, Python, PowerShell.
  • Deep knowledge of MITRE ATT&CK framework, threat‑intelligence platforms and forensic evidence collection (memory capture, disk imaging, registry hives).
  • Expertise in investigating endpoint, network, email, identity and cloud security incidents.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Nestle Operational Services Worldwide SA.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.
Source : ats:successfactors

Why are you reporting this job?

Thank you for your report. We will review this job.

Explore further

Salaries, guides and searches in Malaysia.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

Apply now →

By continuing, you accept our terms of use.

Already have an account? Login

A question about this job?

Ask it here: you will get the full job summary by e-mail, right away.

💬 Chat with us on Telegram

Published 3 days ago

Expires 1 month from now

16 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

Nestle Operational Services Worldwide SA

Kuala Lumpur