- Страна
- Малайзия
Откликайтесь
на вакансии с ИИ

Security Operations Engineer
Отличная позиция для специалиста среднего уровня в стабильной международной компании с четким путем карьерного роста. Привлекает работа с современным стеком технологий и возможность влиять на процессы безопасности.
Сложность вакансии
Роль требует глубоких практических знаний стека Microsoft (Defender, Intune, Conditional Access) и не менее 5 лет опыта. Кандидат должен уметь работать автономно и принимать операционные решения в рамках установленных правил.
Анализ зарплаты
Предлагаемая роль соответствует рыночным стандартам для опытных специалистов по кибербезопасности в Куала-Лумпуре. Уровень оплаты в этом регионе для Middle/Senior SecOps инженеров обычно находится в диапазоне 90,000 - 150,000 MYR в год.
Сопроводительное письмо
I am writing to express my strong interest in the Security Operations Engineer position at Mintel. With over five years of experience in security operations and a deep focus on the Microsoft 365 security stack, I am confident in my ability to strengthen your day-to-day security posture and improve operational maturity. My background includes end-to-end triage management and hands-on experience with Microsoft Defender, Intune, and Conditional Access, which aligns perfectly with the responsibilities outlined for this role.
In my previous roles, I have successfully managed complex security investigations and coordinated remediation efforts across cross-functional IT teams. I am particularly drawn to Mintel’s culture of continuous improvement and your investment in modern security capabilities. I am eager to bring my technical expertise in KQL and identity management to your team, helping to reduce noise and improve baseline security hygiene while exploring the potential of AI-assisted response workflows.
Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в mintel уже сейчас
Присоединяйтесь к лидеру рынка Mintel и станьте ключевым экспертом по безопасности в экосистеме Microsoft!
Описание вакансии
We’re looking for a Security Operations Engineer to strengthen the day‑to‑day security operations of the organisation, improve operational maturity, and help ensure that the security controls we rely on are implemented and run effectively.
This is a hands‑on role with real responsibility and influence. You’ll work closely with the Operational Security Lead and wider IT teams to operate, tune, and improve our security controls, with particular focus on the Microsoft security and identity stack. The role combines operational ownership, investigation and response, and practical configuration improvement.
You’ll join the Information Security team and help us make meaningful changes that improve the quality, resilience, and consistency of our security operations across user, device, identity, and cloud environments.
Why join Mintel?
Mintel is the world’s leading market intelligence agency. Technology underpins our success, enabling us to deliver trusted data, insights, and analysis to clients across the globe. Security plays a critical role in protecting our people, platforms, and data and we’re continuing to invest in building a mature, modern security capability.
We deliver a culture that values collaboration, learning, and continuous improvement.
What you will do
- Own the security triage workflow end‑to‑end (intake → prioritisation → coordination → closure), ensuring issues are handled consistently and driven to completion
- Investigate and respond to security alerts and incidents across endpoint, identity, and email security
- Operate and improve security controls within the Microsoft securityecosystem, including Defender, Intune, identity, and Conditional Access
- Actively contribute to security configuration hygiene and tuning, reducing noise and improving baseline posture over time
- Coordinate remediation activities with wider IT teams
- Support incident response activities within agreed guardrails and escalation thresholds
- Contribute to security improvement projects, including configuration uplift and operational maturity initiatives
- Identify recurring issues and patterns, feeding them into continuous improvement cycles with the Operational Security Lead
What are we looking for?
This role is intended for a mid‑level security operations professional. It is not an entry‑level or SOC‑only position.
To operate effectively, this role is expected to have delegated operational access (within guardrails) to:
- Microsoft Defender (XDR components relevant to endpoint, identity, email, and cloud app security)
- Microsoft Intune (device compliance, configuration profiles, investigation support)
- BYOD security controls
- Identity & access management, including account investigation, remediation, security group membership management, and participation in scoped Conditional Access changes
You’ll operate independently within defined guardrails, escalating to the Operational Security Lead when thresholds are crossed, including:
- Suspected data exfiltration, privileged account compromise, or uncontained malware/ransomware
- Changes to Conditional Access or global security policies
- Incidents requiring executive awareness or involvement of Legal / Privacy / DPO
- Actions that risk widespread disruption or service downtime (e.g. tenant‑wide blocking, mass device isolation)
Collaboration is the normal operating mode for complex investigations, significant configuration changes, and improvement initiatives.
Essential knowledge and experience we are seeking
- Ideally 5 + years of practical experience in security operations, including triage, investigation, and response
- Experience managing security issues from intake through to closure, coordinating across teams
- Hands‑on experience with parts of the Microsoft 365 security stack, such as Microsoft Defender
- Working knowledge of identity and access management, including accounts and group memberships
- Exposure to endpoint and device security investigations
- Experience with Microsoft Intune configuration and policy management
- Experience supporting or contributing to Conditional Access policy hygiene or tuning
- Confidence making day‑to‑day operational and configuration decisions within defined guardrails
- Clear written and verbal communication skills
Desirable knowledge
- Querying or investigation languages (e.g. KQL)
- Scripting or automation exposure (PowerShell, Python, Logic Apps)
- Cloud security exposure (e.g. AWS investigations or hygiene)
- Experience supporting audits or assurance activities from an operational perspective
Emergent
- Interest in how AI and automation are being applied in modern security operations
- Curiosity about AI‑assisted investigation and response workflows
- Willingness to learn and adapt as AI‑enabled security capabilities become embedded in day‑to‑day SecOps
What you’ll get in return
- A collaborative culture that supports hybrid working
- Strong emphasis on learning, development, and sharing knowledge
- The opportunity to build deep, hands‑on experience across modern Microsoft security tooling
- Real operational ownership and the ability to influence how security works in practice
- A clear growth path into senior security operations, security engineering, or operational security leadership roles
Mintel operates globally, with teams based across Europe, the Americas, and Asia‑Pacific.
Создайте идеальное резюме с помощью ИИ-агента

Навыки
- AWS
- Python
- Identity and Access Management
- Incident Response
- PowerShell
- Microsoft Intune
- KQL
- Microsoft Defender
- XDR
- Conditional Access
Возможные вопросы на собеседовании
Проверка практического опыта работы с основным инструментом вакансии.
Расскажите о вашем опыте настройки и оптимизации политик Microsoft Defender для снижения количества ложноположительных срабатываний.
Оценка навыков реагирования на критические инциденты.
Опишите ваши действия при обнаружении подозрения на компрометацию привилегированной учетной записи.
Проверка знаний в области управления доступом и устройствами.
Как вы подходите к управлению политиками Conditional Access в среде с использованием BYOD-устройств?
Оценка технических навыков анализа данных.
Насколько уверенно вы используете KQL для поиска угроз (threat hunting) и расследования инцидентов?
Проверка умения взаимодействовать с другими командами.
Приведите пример, когда вам приходилось координировать процесс устранения уязвимостей с ИТ-командой, которая имела другие приоритеты.
Похожие вакансии
Специалист по защите информации (Mobile Security Engineer)
Senior Information Security (ИБ)
Senior Android Security / Reverse Engineer (HTTPS Traffic, Google Services)
Internal Audit IT Manager
Специалист по информационной безопасности (Пентестер)
Исследователь безопасности Android
1000+ офферов получено
Устали искать работу? Мы найдём её за вас
Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!
- Страна
- Малайзия