Security Operations Centre (SOC) Team
Millennium Technology Services- Posted 9 hours ago
- Be among the first 10 applicants
Job Description
Urgent Hiring: SOC Team – 21 Positions | Jakarta
We are urgently building a full Security Operations Centre (SOC) team for a major telecommunications environment in Jakarta, Indonesia.
We welcome cybersecurity professionals across different experience levels—from SOC Analysts to specialist and leadership positions. Successful candidates must be available to join by 1 December 2026.
Open Positions
1. SOC Manager
- Lead the overall SOC operation, team performance and service delivery.
- Manage security incidents, escalations, reporting and stakeholder communication.
- Establish SOC processes, operational procedures, KPIs and incident-response standards.
- Oversee shift coverage, resource planning and continuous service improvement.
- Strong experience managing enterprise SOC or MSSP operations is required.
2. SOC Team Lead / Shift Lead
- Supervise SOC analysts during assigned shifts.
- Review alerts, validate incidents and coordinate escalations.
- Guide analysts during investigation, containment and remediation.
- Ensure proper incident documentation, handovers and SLA compliance.
- Previous experience leading SOC shifts or cybersecurity operations is preferred.
3. L1 SOC Analyst
- Monitor security alerts and events through SIEM, EDR/XDR and other security platforms.
- Perform initial alert triage, investigation and classification.
- Escalate confirmed or complex incidents to L2/L3 teams.
- Maintain accurate incident records, investigation notes and shift handovers.
- Suitable for candidates with foundational SOC or cybersecurity monitoring experience.
4. L2 SOC Analyst
- Investigate escalated security alerts and confirmed incidents.
- Analyse logs, network traffic, endpoints and suspicious activities.
- Correlate events from multiple security technologies.
- Recommend containment and remediation actions.
- Support detection-rule tuning, incident reporting and root-cause analysis.
5. Senior SOC Analyst / L3 Analyst
- Lead advanced investigations involving complex or high-severity incidents.
- Perform deep analysis across endpoint, network, identity, cloud and application environments.
- Support malware analysis, forensic investigation and incident containment.
- Develop detection use cases and improve SOC response capabilities.
- Mentor junior analysts and provide technical guidance during major incidents.
6. Threat Intelligence Analyst
- Collect and analyse intelligence relating to threat actors, campaigns, vulnerabilities and indicators of compromise.
- Produce actionable intelligence reports and threat advisories.
- Enrich SOC investigations using internal and external intelligence sources.
- Maintain threat-intelligence feeds, indicators and contextual information.
- Experience with MITRE ATT&CK and threat-intelligence platforms is preferred.
7. Threat Hunter
- Conduct proactive threat-hunting activities across endpoints, networks, identities and cloud environments.
- Develop hypotheses based on threat intelligence and emerging attack techniques.
- Identify suspicious behaviour not detected through existing security rules.
- Create new detection logic and recommend improvements to SOC monitoring.
- Experience with advanced queries, behavioural analytics and MITRE ATT&CK is required.
8. Incident Responder
- Lead the investigation, containment, eradication and recovery of cybersecurity incidents.
- Coordinate response activities with SOC, infrastructure, application and business teams.
- Conduct root-cause analysis and prepare detailed incident reports.
- Support evidence preservation, forensic investigation and post-incident reviews.
- Experience handling ransomware, malware, account compromise and data breaches is preferred.
9. SIEM / SOAR Engineer
- Implement, administer and optimise SIEM and SOAR platforms.
- Integrate security log sources and troubleshoot ingestion or parsing issues.
- Develop correlation rules, dashboards, reports and automated response playbooks.
- Tune detection content to reduce false positives and improve coverage.
- Experience with enterprise SIEM or SOAR technologies is required.
General Requirements
- Diploma or degree in Cybersecurity, Information Technology, Computer Science or a related discipline.
- Relevant experience in SOC operations, incident response, threat hunting, threat intelligence or security engineering.
- Hands-on exposure to technologies such as SIEM, SOAR, EDR/XDR, IDS/IPS, firewalls, network security and cloud-security tools.
- Understanding of common attack techniques, vulnerabilities and incident-response processes.
- Familiarity with frameworks such as MITRE ATT&CK, NIST or the Cyber Kill Chain.
- Relevant certifications such as Security+, CEH, CySA+, GCIH, GCIA, CHFI, CISSP or equivalent would be advantageous.
- Good written and verbal communication skills in Bahasa Indonesia and English.
- Willingness to work onsite in Jakarta and on rotating shifts where required.
- Candidates must be able to onboard by 1 December 2026.
Employment Information
- Location: Jakarta, Indonesia
- Industry: Telecommunications / Cybersecurity
- Total Openings: 21
- Work Arrangement: Onsite; shift work applies to designated SOC operational roles
- Target Start Date: 1 December 2026
How to Apply
Interested candidates may apply through LinkedIn or send their updated CV with the following information:
- Position applied for
- Current and expected salary
- Notice period / earliest availability
- Current location
- Relevant cybersecurity certifications
- SIEM, SOAR and EDR/XDR platforms used
Please indicate SOC Team – Jakarta in your application.
Suitable applicants will be contacted for further discussion. Due to the urgent onboarding timeline, candidates who are immediately available or serving a short notice period will be prioritised.
