
Senior Incident Response Specialist, Bangkok Based (Relocation Provided)
- Bangkok
- Permanent
- Full-time
We are a skillful, driven and diverse team from across the globe, united by a passion to make an impact. Harnessing our innovative technologies and strong partnerships, we aim to make travel easy and rewarding for everyone.Get to Know our TeamThe Security Department oversees security, compliance, GRC, and security operations for all Agoda. We are vigilant in ensuring there is no breach or vulnerability threatening our company or endangering our employees in order to keep Agoda safe and protected. This would be a great challenge for those who want to work with the best technology in a dynamic and advanced environment.The OpportunityWe are looking for a industry experienced, highly motivated and self driven, Incident Response Specialist, someone who can rapidly address security incidents and threats as they appear with the ability to strategize and lead Incident engagements with all staffing levels. On the ground level, your job is to monitor the threats targeting Agoda and keeping attacks from occurring and/or prevent them from getting worse.In This Role, You'll Get to:
- Perform end-to-end handling of all critical, high and medium cyber security incidents at Agoda.
- Drafting incident reports & communicating incident summaries to senior leadership, end users, legal teams
- Write playbooks for different types of cyber security incidents and use automation to reduce MTTR time.
- Automating repetitive tasks of incident response using automation platforms and/or programming
- Optimizing existing security controls to finetune the alerts & reduce false positives
- Gather open source and commercial threat intelligence and perform hunting across the enterprise for undetected threats.
- Support the legal & regulatory teams as a technical SME for cyber incidents with regulatory requirements
- Evaluate new technologies and Driving POCs for new security products
- 5+ years experience in Cyber Security specifically in Incident Response field and working with 24/7 SOC teams
- Must have strong understand of NIST, CSF, MITRE and other cyber security framework
- Skilled in programming or scripting skills (e.g., Python or C++) are required for automating incident response tasks and developing custom security tools.
- Ability to write and tune detection rules in different security platforms
- Must have hands-on knowledge of dealing with major security incidents
- Ability to automate using automation platforms or programming skills is a must
- Malware analysis experience and digital forensics experience is a plus
- Certification of Cyber Security, Forensic and Incident Response is a plus (CISSP, ECSA, GISP, GCIH, GCFE, GCFA)
- We need you to be flexible, fast moving, adaptable and down-to-earth and an expert in multi-tasking.
- Very good communication skills in English (both oral and written)
- Hybrid Working Model
- WFH Set Up Allowance
- 30 Days of Remote Working from anywhere globally every year
- Employee discount for accommodation globally
- Global team of 90+ nationalities
- 40+ offices and 25+ countries
- Annual CSR / Volunteer Time off
- Benevity Subscription for employee donations
- Volunteering opportunities globally
- Free Headspace subscription
- Free Odilo & Udemy subscriptions
- Access to Employee Assistance Program (third party for personal and workplace support)
- Enhanced Parental Leave
- Life, TPD & Accident Insurance