Back to job search

SOC Use Case Development Engineer

True Digital Group (Bangkok Metropolitan Area)
Bangkok, Thailand 🇹🇭
True Digital Group is one of the core businesses of True Corporation Plc., Thailand’s leading Telecom-Tech company. Committed to being a digital transformation enabler and unleashing the possibilities for individuals and organizations throughout Southeast Asia, True Digital Group continually expands its network to provide customers with a diverse range of high-quality digital services. True Digital Group encompasses various key ventures, including Digital Media, Digital Platform for Small and Medium Businesses, Digital Solutions, IoT, Data Analytics, Digital Health, Cybersecurity, True Digital Academy, and True Digital Park. The company has developed extensive expertise in cutting-edge technologies, such as Artificial Intelligence, Big Data, Blockchain, Cloud Computing, Internet of Things (IoT), and Robotics. This proficiency enables True Digital Group to establish a distinctive ecosystem of digital platforms and solutions, all while emphasizing user privacy and security. Additionally, True Digital Group has extended its regional operations across Southeast Asia.

About this position

The SOC Use Case Development Engineer will collaborate with the Security Operations Center and Security Engineering teams to enhance security automation technology and improve SOC processes and workflows.

Responsibilities

• Collaborate with the Security Operations Center (SOC) and Security Engineering teams to improve existing security automation technology
• Assess, design, and improve SOC processes and workflows with an aim on automation through Security Orchestration, Automation and Response (SOAR) and cyber security technology to improve detection flexibility and reliability.
• Build SOC Use Case and Playbooks to properly triage and respond to security incidents while reducing the time needed to analyze each event.
• Analyze SOC alerts statistics and workflows to reduce false positives and properly focus engineering efforts.
• Develop custom scripts to automate current detection and response workflows.
• Enrich Incident results to provide comprehensive view for customers

Requirements

• Bachelor’s degree in information systems, information security, computer science, engineering or similar technical field of study with 2+ years of information security experience;
• Experience with network and endpoint security solution, such as IPS, Firewall, Response (EDR) platforms.
• Experience with Python scripting language for automation.
• Experience with operating system internals for both Linux and Windows platforms.
• Understanding of classic and emerging threat actor tactics, techniques and procedures in both pre and post-exploitation phases of attack lifecycles.
• Experience using Python for the purpose of automating security operations and incident response processes.
• Strong understanding of security architecture, tool integration, API development and automation.
• Understanding of common SOC and SOAR processes and workflows.
• Working knowledge of network TCP/IP protocols.
• Experience using Splunk and/or other SIEMs.
• Exceptional written and verbal communication skills.
• Exceptional organizational skills.
• Good command on both English and Thai

Benefits

\
Huneety A.I Salary Estimate
38,000 - 60,000 THB per month