Jobedly Post a Job

Senior SOC Analyst

Deriv · Cyberjaya
Full-timeConstructionSenior$81,000–$109,000/yr
Apply on Jobedly ⚡ One-click AI Apply

About the Senior Soc Analyst role

Senior Soc Analyst positions focus on delivering results in their domain. This page aggregates open Senior Soc Analyst roles and what employers typically expect.

We're not hiring a security engineer to keep up with threats. We're hiring someone to make threats irrelevant before they become incidents. Most security teams react. They tune SIEM rules after the alert fires. They write playbooks after the incident closes. They patch after the scan flags. At Deriv, we're building an autonomous security operations platform that hunts proactively, responds automatically, and learns continuously. Real money, real regulations, real consequences - and a security function built to match. * * * **Why This Matters** Deriv's mission is Trading for Anyone, Anywhere, Anytime. Millions of traders across the globe, around the clock, across regulatory environments. At this scale, a misconfigured WAF rule or undetected lateral movement isn't a technical inconvenience - it's a trader's funds at risk and a regulator on the phone. Our Security Operations team isn't defending a perimeter. We're protecting a living, distributed system that processes transactions 24/7. When the threat surface never sleeps, your detection and response capabilities can't either - which is exactly why we're embedding AI and automation at every layer of the security stack. * * * **The Challenge** Most of the job is quiet. Alerts fire, most of them are noise, you clear them and move on. Then one day something doesn't smell right - a login from a place it shouldn't be, a process spawning something it never has before - and the whole shift changes shape in five minutes. That's the job. Long stretches of discipline, then a sprint where the root cause has to be found before the damage does. $600B moves through this platform every month. That draws real attention: state-sponsored crews, financially motivated groups, insiders. We don't wait for a vendor's threat intel feed to tell us something's wrong. We hunt for it. If your idea of SOC work is clearing a queue against a runbook, this isn't for you. If you want to build the detections that catch what the runbook doesn't, and you're willing to be the one who says "this exclusion is a blind spot" before it becomes an incident, keep reading. * * * **Why Deriv** We're in production, not planning. - Autonomous security operations platform triaging real alerts in real time, not a roadmap slide - Automated security review running on every pull request across engineering - Detection coverage actively extending into our AI agent stack: prompt injection, tool misuse, credential exposure in agent workflows, ground most SOCs haven't even started mapping - A Security & AI Engineering org where detection and response is treated as its own discipline, not a compliance checkbox tucked under IT We share what we learn. [Deriv](https://derivai.substack.com) is where we write about what we're building, what breaks, and what we figure out the hard way. * * * **What You’ll Do** - Hunt proactively across infrastructure, cloud, identity, and endpoint, working from hypotheses, not just waiting on alerts - Build, tune, and maintain detections mapped to real attacker TTPs (MITRE ATT&CK), not whatever ships default from the vendor - Own incidents end to end: triage, containment, root cause, and a report that leads to an actual fix - Push back on any tuning decision, exclusion, or "known good" assumption that trades visibility for noise reduction, and catch it before it ships - Partner with Red Team on purple-team exercises, turning every finding into a detection - Extend detection and monitoring coverage into our AI agent stack: prompt injection, tool misuse, credential exposure in agent workflows - Do enough malware analysis and reverse engineering to actually understand what you're looking at, not just what a sandbox report says - Mentor junior analysts and raise the bar on what "triaged" actually means * * * **Who You Are** - 6+ years in a SOC, threat hunting, or DFIR role, with real incident ownership, not just alert queue work - GCFA, GCIH, GCIA, or equivalent DFIR/detection engineering credential strongly pre…

Salary estimate

$81,000 – $109,000/yr
Provided by the employer.

Skills for this role

ReactSecurityAutomation

Resume tips for Senior Soc Analyst applicants

Interview preparation

Prepare concrete STAR-format stories that show Senior Soc Analyst outcomes you drove.

Research the employer's product and recent news before the interview.

Be ready to explain how you'd approach a typical Senior Soc Analyst problem end to end.

Have thoughtful questions ready about the team, tools and success metrics.

About Deriv

Deriv is actively hiring on Jobedly. Explore their open roles and what it's like to work there.

Apply on Jobedly ⚡ One-click AI Apply

Similar jobs

Companies hiring for similar roles