Department:
Technology & IT Operations Dept, Solution Service Delivery Div, MIMOS Solutions Sdn. Bhd.
Job Purpose
The IT Security Engineer is responsible for supporting the organisation’s cybersecurity efforts by reducing the technical attack surface through secure asset hardening, continuous monitoring, and vulnerability management. The Engineer also help to ensure business continuity, regulatory compliance, and the protection of organisational assets against internal and external cyber threats.
Key Responsibilities:
1. Security Architecture & Engineering (Building Defenses)
- Designing Secure Networks and Implementing Controls: Work with the Firewall team to secure routing architectures.
- Automation & Scripting: Work with the server team and developer team to automate mundane security checks, log alerts, and system configuration deployments.
2. Vulnerability Management (Proactive Auditing)
- Vulnerability Scanning: Running automated tools like Nessus to spot missing patches or software flaws.
- Penetration Testing: Conducting controlled, simulated cyberattacks to discover hidden entry points before bad actors find them.
- Remediation & Patching: Working alongside system administrators to push security updates and system hardening configurations.
3. Threat Hunting & Incident Response (Active Defense)
- Log Analysis: Checking server logs, user activities, and network packets to catch anomalies.
- Incident Triage: Investigating suspicious activity alerts, containing infected machines, and neutralizing active malware.
- Forensic Clean-up: Performing root-cause analysis after a breach, patching the vulnerability, and safely restoring systems.
4. Identity & Access Management (IAM)
- Access Control and MFA Management: Monitoring access control and Multi-Factor Authentication systems by providing the report.
5. Compliance & Threat Intelligence
- Framework Alignment: Ensuring configurations match global baselines like NIST, CIS, or the ISO 27001 guidelines mentioned in your document.
- Threat Intel Tracking: Keeping track of newly released Zero-Days and emerging cyber threat trends to secure systems against new attack vectors.
Qualification
- Bachelor’s degree in Computer Science/Information Technology/Engineering or equivalent.
Professional Qualification
- AWS Certified Security – Specialty or Azure Security Engineer (AZ-500).
- Cybersecurity certifications such as Comptia security+, CISSP, OSCP (Offensive Security) or BTL1 (Blue Team Level 1), etc is desirable.
Work Experience
- At least 1-5 years of working experience in IT enterprise infrastructure team.
- At least 1-2 years of working experience in security operations – networking and firewall.
- Experience in generating designs, documenting, installing, testing, implementing, monitoring, and maintaining complex systems and applications.
- Participated in project requirement design, implementation, deployment, and support.
- Performing any security framework auditing.
Technical Skills
- Cybersecurity Foundations: Strong foundational understanding of core security principles, common cyber-attack vectors (e.g., phishing, malware, OWASP Top 10), and basic defense mechanisms.
- Fundamental Networking Concepts: Solid knowledge of the OSI model, TCP/IP networking, subnetting, common ports, and basic packet analysis using Wireshark.
- Security Appliance Awareness: Basic familiarity with configuring or assisting in the maintenance of firewalls, Virtual Private Networks (VPNs), and basic endpoint protection agents.
- Multi-OS Familiarity: Ability to navigate and perform basic system administration tasks via command line in both Windows (Active Directory basics) and Linux environments.
- Vulnerability Scanning Basics: Familiarity with executing automated scanning tools (such as Nessus, OpenVAS, or Qualys) and extracting standard vulnerability reports for review.
- Basic Scripting (Highly Desirable): Exposure to reading and writing simple scripts (Python, Bash, or PowerShell) to automate repetitive administrative or scanning tasks.
Soft Skills
- Active Learning Mindset: A strong drive to continuously upskill, learn new enterprise security tools, and absorb mentorship from senior engineering staff.
- Clear Technical Reporting: Ability to accurately document security incidents, write clear ticket summaries, and communicate findings to the immediate team.
- Strong Teamwork & Support: Ability to collaborate effectively within a team environment and reliably support senior engineers on larger infrastructure projects.
- Attention to Detail: Keen observational skills to spot anomalies in system alerts, log files, or user access requests without overlooking discrepancies.
- Receptive to Feedback: Openness to constructive feedback, with a structured approach to troubleshooting and adapting to standard operational workflows.
How to Apply
If you’re ready to unleash your potential and be part of a dynamic team driving innovation at MIMOS, apply now! Please submit your resume and cover letter highlighting your relevant experience and why you’re the perfect fit for the position to recruit@mimos.my and put the position applied for in the subject line.
Join us at MIMOS and be part of a culture of innovation, collaboration, and excellence. Your opportunity to shape the future starts here!
About MIMOS
MIMOS is Malaysia’s leading applied research and development center, dedicated to driving innovation and technology adoption across various industries. With a focus on cutting-edge research, collaborative partnerships, and impactful solutions, we are committed to shaping a brighter future for Malaysia and beyond.
At MIMOS, we engineer Malaysia’s future. As the National Applied R&D Centre, we bridge the gap between innovation and impact, fuelling Malaysia’s digital revolution. From microchips to smart nations, MIMOS shapes the technologies that transform. MIMOS champions cutting-edge R&D that generates technology solutions in semiconductor, microelectronic and ICT. We fuel socio-economic growth, national competitiveness, and job
creation by developing innovative technology platforms, products and solutions for the government and industry. Our R&D activities currently focus on semiconductors and thin film research, advanced electronics and embedded systems, and ICT technologies for manufacturing and smart nation. MIMOS manages world-class national technology facilities equipped with state-of-the-art machinery providing technical expertise and consultancy services to the industry. Malaysian industry players enhance their industry knowledge and expertise by leveraging MIMOS’ domain experts, a strong network of local and international strategic collaborators and global market insights. There’s never been a more thrilling time to join MIMOS as we push the boundaries of our expertise and capabilities as a leading technology provider in this country. We envision the key role technology plays in continued economic development and social progress.
Why Join Us
- Opportunity to work at the forefront of technology and innovation.
- Collaborative and dynamic work environment with talented colleagues.
- Access to cutting-edge research facilities and resources.
- Opportunities for career growth and development.
- Make a meaningful impact on society through groundbreaking projects.
- Competitive salary and benefits package.

