Job Openings
Senior Security Operation Engineer
About the job Senior Security Operation Engineer
Hiring Position: Senior Security Operation Engineer: Open to All Nationalities
Working Condition: 100% On-Site: BTS Accessible
Location: Bangkok, Thailand
Pay Rate: THB 75000 TO THB 90000
Our client is an eminent and fast-growing FinTech Company, in Bangkok Thailand and is looking for a Senior Security Operation Engineer to help expanding the business.
This is an MNC working environment and if you want to grow with us, please contact us with your updated CV. We will make certain to contact you back with the company details.
______________________________________________________________
Main Duties & Responsibilities:
- Lead and manage all stages of incident response, including detection, analysis, containment, eradication, recovery, and post-incident reviews.
- Continuously monitor, triage, and respond to security alerts generated by the SIEM and other SOC-related security controls.
- Oversee daily security monitoring and incident response activities for AWS security services, such as GuardDuty, WAF, Shield Advanced, and Detective.
- Collaborate closely with internal SOC and external MDR teams to enhance and optimize incident monitoring and response capabilities.
- Conduct forensic analysis of security incidents by investigating networks, systems, and logs to determine root causes.
- Design, implement, and maintain security controls, including SIEM, IPS, EDR, DLP, NGFW, PAM, sandbox environments, threat intelligence, and dark web monitoring.
- Establish and maintain robust security controls across hybrid environments (on-premises and cloud), emphasizing AWS security best practices.
- Optimize AWS security services such as GuardDuty, CloudTrail, Security Hub, Inspector, WAF, and Shield to improve cloud security posture.
- Support security audits and ensure compliance with standards and regulations, including PCI-DSS, CSA-STAR, ISO 27001 ISMS, and SOC-2.
- Perform proactive threat hunting to identify potential threats and indicators of compromise (IOCs) using advanced tools and methodologies.
________________________________________________________
Qualifications
- 5+ years of experience in SOC Incident Response and Security Control Implementation.
- Expertise in AWS security services, including IAM, GuardDuty, Shield Advanced, WAF, CloudTrail, Security Hub, Detective, and VPC Security.
- Hands-on experience with SIEM tools such as Splunk and a strong understanding of incident response frameworks like NIST SP 800-61.
- Proficiency in network security, cloud security, and threat hunting across diverse environments.
- Extensive experience in vulnerability management and conducting forensic investigations in hybrid infrastructures.
- Strong knowledge of firewalls, IDS/IPS, FIM, EDR/MDR, sandboxing, DLP, PAM, and encryption technologies, with proven implementation expertise.
- Skilled in designing and implementing security controls for large-scale AWS environments, focusing on automation and continuous monitoring.
- Familiarity with security compliance standards and regulations, including PCI-DSS, CSA-STAR, SOC-2, and ISO 27001 ISMS.
- Proven experience deploying and managing security controls in hybrid environments (on-premises and cloud) with an emphasis on AWS security best practices.
- Exceptional communication skills, capable of clearly explaining technical concepts to both technical and non-technical stakeholders.