job description
Join NTT DATA as a Tier 2 SOC Analyst and play a pivotal role in safeguarding digital assets against cyber threats. This is your opportunity to work in a dynamic environment where you will investigate real cyber incidents, lead response activities, and contribute to the security posture of global enterprises. Based in the vibrant locations of Bali, you'll collaborate with a team of cybersecurity experts to analyze, mitigate, and resolve security incidents while advancing your career in one of the fastest-growing fields in technology.
At NTT DATA, we empower our analysts with cutting-edge tools and continuous training to stay ahead of evolving threats. If you are passionate about cybersecurity, thrive in high-pressure situations, and want to make a tangible impact, this role is for you. Elevate your career with a company that values innovation, expertise, and professional growth.
Responsibility
- Conduct in-depth investigations of security incidents, including malware analysis, log correlation, and threat hunting.
- Lead incident response activities, including containment, eradication, and recovery efforts.
- Analyze and interpret security alerts from SIEM tools, EDR/XDR platforms, and other monitoring systems.
- Collaborate with Tier 1 analysts to escalate and prioritize high-severity incidents.
- Develop and refine incident response playbooks and standard operating procedures (SOPs).
- Provide detailed incident reports and post-mortem analyses to stakeholders and management.
- Stay updated on the latest cyber threats, vulnerabilities, and attack techniques.
- Mentor junior analysts and contribute to team knowledge-sharing initiatives.
Qualifications
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field.
- Minimum of 3 years of experience in a SOC (Security Operations Center) or incident response role.
- Strong understanding of cybersecurity frameworks (e.g., NIST, MITRE ATT&CK, ISO 27001).
- Experience with SIEM tools (e.g., Splunk, QRadar, ArcSight) and EDR/XDR solutions.
- Familiarity with network protocols, forensic analysis, and malware reverse engineering.
- Relevant certifications such as CISSP, CEH, GCIH, or CompTIA Security+ are a plus.
- Excellent analytical, problem-solving, and communication skills.
- Ability to work in shifts and respond to incidents outside of standard business hours.