job description
Join our dynamic cybersecurity team as a Cyber Threat Analyst (Level 1) and play a pivotal role in safeguarding our digital infrastructure. In this critical position, you will monitor, detect, and respond to cyber threats in real-time using cutting-edge Security Operations Center (SOC) tools. Your expertise will help identify vulnerabilities, analyze security incidents, and implement proactive measures to mitigate risks.
Based in the vibrant and fast-growing tech hub of Bali, this role offers the unique opportunity to work in a tropical paradise while contributing to global cybersecurity efforts. Whether you're analyzing intrusion detection alerts, investigating suspicious activities, or collaborating with cross-functional teams, your work will directly impact our organization's security posture.
We are looking for a detail-oriented professional with a passion for cybersecurity and a commitment to continuous learning. If you thrive in a fast-paced environment and are eager to grow your career in threat intelligence, this is the perfect role for you.
Responsibility
- Monitor and analyze security alerts from intrusion detection/prevention systems (IDS/IPS), SIEM tools, firewalls, and other cyber defense technologies.
- Investigate and triage potential security incidents, determining their severity and potential impact on the organization.
- Document and report security incidents, including root cause analysis and recommended remediation steps.
- Conduct threat intelligence research to identify emerging cyber threats and vulnerabilities relevant to the organization.
- Assist in the development and refinement of SOC playbooks, standard operating procedures (SOPs), and incident response plans.
- Collaborate with IT and security teams to implement security controls and improve overall cyber resilience.
- Perform log analysis and correlation to detect anomalous behavior or indicators of compromise (IOCs).
- Stay updated on the latest cybersecurity trends, tools, and best practices through continuous learning and professional development.
Qualifications
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field. Relevant certifications (e.g., CompTIA Security+, CEH, CISSP, or GIAC) are a plus.
- 1-3 years of experience in cybersecurity, SOC operations, or threat analysis. Fresh graduates with strong foundational knowledge are encouraged to apply.
- Hands-on experience with SIEM tools (e.g., Splunk, QRadar, ArcSight), IDS/IPS, and endpoint detection and response (EDR) solutions.
- Familiarity with network protocols, firewall configurations, and log analysis techniques.
- Strong analytical and problem-solving skills with the ability to interpret complex data and identify patterns.
- Excellent written and verbal communication skills for reporting and collaborating with stakeholders.
- Knowledge of malware analysis, threat hunting, and digital forensics is advantageous.
- Ability to work in shift-based environments and respond to incidents outside of standard business hours when necessary.