job description
Join Citco as a Senior SOC Analyst in the heart of Bali and play a pivotal role in safeguarding our global financial infrastructure from cyber threats. As a leader in financial services, we seek a seasoned professional with 5+ years of SOC experience to monitor, detect, and respond to security incidents with precision and expertise.
In this dynamic role, you will work alongside a talented team to analyze security alerts, investigate potential breaches, and implement proactive measures to mitigate risks. Your expertise in threat intelligence, SIEM tools, and incident response will be critical in maintaining the integrity of our systems. Based in Bali’s vibrant tech hub, you’ll enjoy a collaborative work environment with opportunities for growth in one of the most sought-after locations for digital nomads and cybersecurity professionals.
If you are passionate about cybersecurity, thrive in fast-paced environments, and want to make an impact in a global organization, this is your chance to elevate your career while living in paradise.
Responsibility
- Monitor and analyze security alerts from SIEM, IDS/IPS, and other security tools to identify potential threats.
- Lead incident response efforts, including containment, eradication, and recovery from security breaches.
- Conduct in-depth forensic investigations to determine the root cause of security incidents.
- Develop and refine threat detection rules, signatures, and playbooks to enhance SOC capabilities.
- Collaborate with cross-functional teams to implement security best practices and improve overall posture.
- Prepare detailed incident reports and communicate findings to stakeholders and senior management.
- Stay updated on emerging cyber threats, vulnerabilities, and industry trends to proactively defend against attacks.
- Mentor junior SOC analysts and contribute to team training and knowledge-sharing initiatives.
Qualifications
- Bachelor’s degree in Computer Science, Cybersecurity, or a related field (or equivalent experience).
- Minimum 5+ years of experience as a SOC Analyst or in a similar cybersecurity role.
- Hands-on experience with SIEM platforms (e.g., Splunk, QRadar, ArcSight) and EDR/XDR solutions.
- Strong knowledge of network protocols, firewalls, IDS/IPS, and endpoint security technologies.
- Certifications such as CISSP, CEH, GIAC, or CompTIA Security+ are highly desirable.
- Proven ability to analyze logs, detect anomalies, and respond to security incidents in real time.
- Excellent problem-solving skills and the ability to work under pressure in high-stakes situations.
- Strong communication skills to articulate technical findings to non-technical stakeholders.