Cyber Security Analyst
Cyber Security Analyst
bumi amartha teknologi mandiri- Posted 3 days ago
- Be among the first 10 applicants
Job Description
- Utilize a combination of leading security technologies and SIEM tools (Including Elastic SIEM) to detect, classify, and respond to security threats, in coordination with the L1 SOC team and L2 team.
- Propose feasible mitigations and long-term solutions for identified threats, vulnerabilities, and recurring incidents.
- As Detection engineer, to perform review, Assess and identify improvement plan for all detection rules over security platforms especially on SIEM.
- Perform review and assessments over the logs of security platforms as well as the effectiveness of Cyber security Platforms
- Leading the Cyber Security Project implementation, including XDR, DLP, HSM, SIEM improvement, BYOD, Cloud Security, Patch Management tool, Privilege Access management
- Monitor security alerts and incidents from SIEM and other tools.
- Analyze threat intelligence and suspicious activities across systems
- Enforce secure configurations for servers, endpoints, and cloud resources.
- Apply patches and security updates in coordination with IT teams.
- Implement and manage IAM, MFA, and privileged access systems
- Ensure least privilege access principles are followed Lead response efforts for security incidents and breaches.
- Perform root cause analysis and recommend remediation steps.
- Plan, implement, and upgrade cybersecurity controls and monitoring mechanisms to align with evolving threat landscapes.
- Provide technical support during incident investigations.
- Automate ad improve response capabilities using scripting/tools.
- Continuously enhance threat detection capabilities by developing correlation rules, visual dashboards, and automated alerting in Elastic/Kibana.
- Define and improve cybersecurity methodologies, processes, and tools used by analysts and engineers.
- Review and endorse security-related documentation such as system architecture, test plans, and technical designs to ensure secure-by-design principles are followed.
- Bachelor's degree in Computer Science, Information Technology, Information Systems, or related discipline.
- Minimum 3-6 years of experience in cybersecurity, preferably in SOC or SIEM operations.
- Hands-on experience with Elastic SIEM / ELK Stack or equivalent SIEM platforms.
- Strong analytical skills in understanding network, application, and system-level threats and logs.
- Solid understanding of system/solution architecture and ability to recommend secure design alternatives.
- Detail-oriented with strong problem-solving abilities and root cause analysis skills.
- Excellent communication skills; able to collaborate across technical and nontechnical teams.
- Self-driven, quick learner, and able to work independently with minimal supervision.
- Certifications such as CEH, CompTIA Security+, GCIH, or Elastic Certified Analyst are a plus.
More Info
Key Skills
Elastic Kibana
XDR
Privilege Access Management
Elastic SIEM
scripting tools

