Funding Societies | Modalku is the largest SME digital finance platform in Southeast Asia, operating in multiple countries and backed by prominent investors.
The company is seeking a Security Engineer - Detection & Response to join their Information Security Team.
The role involves identifying, analyzing, evaluating, and acting upon security risks and threats.
Responsibilities include developing and operationalizing scalable detections and collaborating with IT, DevOps, Engineering, and Compliance to protect systems and customer data.
Key tasks include building and maintaining detection rules, maintaining detection coverage maps, integrating threat intelligence, leveraging generative AI for detection workflows, and automating detection and response tasks.
The position also involves triaging and investigating security alerts, maintaining playbooks for attack scenarios, conducting DFIR activities, and leading root cause analysis for incidents.
The engineer will configure log sources into Splunk cloud, develop log management strategies, and ensure compliance with regulatory requirements.
Collaboration with IT, Engineering, and Risk teams is essential to identify gaps and implement security controls.
Requirements:
Candidates must have 3+ years of hands-on experience in detection engineering, SOC, or security operations.
Experience with SIEM platforms such as Splunk, Elastic, or Sentinel is required.
A strong understanding of adversary behaviors, detection logic, and the MITRE ATT&CK framework is necessary.
Proficiency in scripting, particularly in Python, for log parsing, enrichment, and automation is essential.
Familiarity with cloud-native telemetry, such as CloudTrail and GCP Audit Logs, is required.
Active participation in platforms like Blue Team Labs Online (BTLO) or relevant certifications in offense/defense is preferred.
Experience in regulated industries like FinTech or Banking is a plus.
Contributions to open-source detection projects or relevant blogs/research are also desirable.
Benefits:
The company offers flexible paid vacations and additional holidays, encouraging employees to take time off for rest and special occasions.
Flexible working arrangements are provided to accommodate individual working styles and personal lives.
Health insurance coverage is available for employees and their dependents.
Initiatives for mental health and wellness are organized, including fitness programs and well-being coaching.
Employees receive a company laptop and support for the necessary equipment and tools to ensure high productivity.