IT Security Operation L1
ocbc indonesia- Posted 15 hours ago
- Be among the first 10 applicants
Job Description
Why Join:
You'll work in a high-impact SOC where your investigations protect the organization from real threats--not just noise. We invest in smarter detection, threat hunting, and cross-functional collaboration so your time goes to the cases that matter, not alert fatigue. Plus, you'll grow into leadership by mentoring L1 analysts and shaping our detection engineering roadmap using enterprise-grade tools.
How You Succeed:
You think like an attacker and act like a defender. You don't stop at alert closed; you dig deeper, reduce noise by tuning rules, and turn chaos into precise signal. Whether it's an incident report to leadership or a walkthrough with a junior analyst, you make complexity feel simple while staying one step ahead.
What You Do:
- Analyze and triage high-fidelity alerts across SIEM, EDR, and IDS platforms.
- Conduct deep-dive investigations using logs, network traffic, and endpoint telemetry.
- Proactively hunt for hidden threats and threat intelligence feeds.
- Contain active incidents and coordinate remediation with IT and operations teams.
- Tune and optimize detection rules to reduce false positives and improve SOC efficiency.
- Document incidents thoroughly and contribute to post-incident reports and lessons learned.
- Mentor L1 analyst — transferring knowledge and stepping in on the most complex cases.
Who You Are:
- Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field.
- 2+ years in a SOC environment (monitoring 24/7)
- Proficient with SIEM platforms (Splunk, Sentinel, QRadar) and EDR tools (CrowdStrike, Microsoft Defender).
- Solid foundation in TCP/IP networking, Windows/Linux systems, and attacker tactics mapped to MITRE ATT&CK.
- Certified in CompTIA Security+, CySA+, or equivalent is a strong plus.
- Bonus points if you script in Python or PowerShell to automate the boring stuff.
- Must be willing and able to work rotating shifts, including nights, weekends, and public holidays, as required by the 24/7 security operations model.
You'll be Part of:
Group Operations and Technology co-creates products and solutions. We build the underlying technology applications and services. And manage the Group's IT operations & cyber defense. 24/7. 365. End-to-end transaction fulfillment services. For the whole Group. With singular focus. Delivering exceptional customer experience. At the forefront of our digital transformation journey. Relentless innovation. Pushing boundaries. And it's all powered by serious investment in your development.
About OCBC:
At PT Bank OCBC NISP Tbk (OCBC), we don't just serve customers, but we walk alongside them being a trusted partner to enrich the quality of their lives. Since 1941, we have been committed to helping individuals and businesses navigate their financial journey with solutions that grow alongside their evolving needs.
By combining deeply rooted Indonesian values with the comprehensive global capability of the OCBC Group, we offer meaningful, relevant financial services, from daily banking to long-term planning, all delivered with care, understanding, and responsibility.
We are always looking for bright, driven individuals who are curious, collaborative, and eager to grow. At OCBC, you will find a workplace that respects your journey, supports your development, and gives you space to contribute meaningfully–because your Opportunity Starts Here!
What We Offer:
OCBC offers a competitive compensation & benefit, including a comprehensive suite of flexible benefits that fit your lifestyle and livelihood, community engagement programs, industry-leading learning, and professional development opportunities in the banking sector. We genuinely care about your well-being, growth, and aspirations−just as much as we care about our customers needs. By joining our team, you will not only thrive personally and professionally but also contribute to become a Trusted Partner to Improve Quality of Life.
More Info
Key Skills
SIEM platforms
Microsoft Defender
Linux systems
EDR tools
