The SOC Developer designs and maintains security monitoring content and automation workflows for SIEM and SOAR platforms. This role focuses on enhancing detection capabilities and streamlining incident response through code, scripts, and data integration.
We are seeking a SOC Developer to develop, customize, and maintain security monitoring content for SIEM and SOAR platforms. You will build automation playbooks to streamline incident response, integrate diverse data sources, and create tools for threat detection. Collaborating with SOC Analysts and Threat Hunters, you will implement detection logic based on the MITRE ATT&CK framework while maintaining robust documentation and ensuring proper logging telemetry across infrastructures.
Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field.
Strong experience with SIEM technologies such as Splunk, QRadar, or ELK.
Proficiency in SOAR platforms like Cortex XSOAR, Splunk Phantom, or IBM Resilient.
Advanced scripting skills in Python, JavaScript, or Bash.
Familiarity with REST APIs, JSON, and system integration methods.
Understanding of MITRE ATT&CK, threat intelligence, and incident handling workflows.
Professional certifications like GIAC GMON, GCDA, or GCIA are preferred.
Company
—
Location
Kuala Lumpur
Salary
Undisclosed
Skills Required
13 skills
Click to submit your application
SIEM
SOAR
Python
Javascript
Bash
REST API
JSON
MITRE ATT&CK
Cybersecurity
Threat Detection
Incident Response
Splunk
Qradar