
As a Lead Platform Engineer at Axiata Group, you will enhance security through threat-informed detection engineering and the development of use cases based on Red Team insights. This role focuses on mapping detections to MITRE ATT&CK, validating telemetry, and collaborating with teams to improve platform security. It suits candidates with strong technical expertise in cybersecurity and a passion for continuous improvement.
As a Lead Platform Engineer, you will be responsible for threat-informed detection engineering, converting insights from Red Team simulations into formal detection enhancements. Your role includes mapping detections to MITRE ATT&CK, defining telemetry requirements, and validating log sources. You will also perform gap analysis post-engagement, ensuring findings lead to improved use cases and updated triage guidance. Additionally, you will oversee the full use case development lifecycle, from design to deployment, and collaborate with various teams to enhance platform security and detection efficacy.
06 – 10 years in SIEM engineering/detection engineering (Sentinel preferred) - Deep hands-on experience with Microsoft Sentinel, KQL, ASIM, Logic Apps - Proven experience partnering with Red Team/Pentesters - Ability to translate attacker TTPs into telemetry - Skilled with CI/CD for SIEM (Git, Azure DevOps) - Strong grasp of cloud identity & auth protocols - Scripting for automation (PowerShell/Python)
Company
Axiata Group
Location
Kuala Lumpur
Salary
Undisclosed
Skills Required
7 skills
Click to submit your application
SIEM
Microsoft Sentinel
KQL
Logic Apps
CI/CD
Powershell
Python