Responsibilities
โข Setup and operating Managed Endpoint and Detection Response (MDR) program and proposing enhancement to achieve better efficiency/ effectiveness
โข Operating Network Traffic Analytics (NTA) program, identification of abnormalities in clientโs environment
โข Performs threat hunting within the clientsโ technology environments to uncover indicators of threat activities
โข Performs digital forensic preservation, legal documentation and electronic discovery for incidents and investigations
โข Supports the development of tactics, techniques, and procedures in providing proactive threat hunting and analysis against the available information sources (e.g. Netflow, DNS and Firewall logs, etc.)
โข Supports the identification and documentation of Indicators of Compromise (IoCs)
โข Leverages internal and external resources to research threats, vulnerabilities and intelligence on various threat actors and exploitation tools and platforms
โข Use an analytics platform to identify threats in the available information repositories
โข Perform threat research to identify potential threat vectors and work with multi-disciplines to improve prevention and detection methods
โข Identify gaps in an organisationโs measurement metrics, telemetry and logging capabilities and propose enhancement strategies to achieve the intended outcomes
โข Work with clientโs appointed Incident Response Management team for cyber security incidents such as data security breach, Advanced Persistent Threat (APT)
Requirements
โข Bachelorโs Degree in Computer Engineering, Computer Science, Cyber Security, Information Security or other equivalents
โข 1 to 3 years of experience with threat hunting
โข 1 to 3 years of experience in incident response handling
โข 1 to 2 years of experience with digital forensics investigations
โข Experience in consulting, including both internal and client facing experiences
โข Ability to obtain a security clearance
โข Ability to travel 20% of the time
Preferred Skills /Qualities
โข 1 to 3 years of experience supporting or providing expert witness testimonials
โข 1 to 3 years of experience in data analysis
โข 1 to 3 years of experience in log analysis
โข 1 to 3 years of experience in reverse malware analysis
โข Experience with research, technical and business documentation and analysis
โข Knowledge of the Singapore Law, Singapore Government regulations and policies
โข Ability to demonstrate flexibility, initiative and innovation in dealing with ambiguous, fast-paced situations
โข Ability to show proficiency in one or more regional languages and dialects
โข Ability to show proficiency in Microsoft Office, Power BI and Tableau
โข Ability to show proficiency in Forensic Toolkits, e.g. EnCase Forensics, FTK Forensics, Magnet Forensics and Write Blockers
โข Ability to show proficiency in reverse malware engineering tools, e.g. IDA Pro
โข Ability to show proficiency in programming and scripting, e.g. Java, .NET Programming, Python & PERL scripting, etc
โข Possession of excellent presentation and briefing skills
โข Possession of excellent oral and written communication skills
โข Professional certifications, including EnCE, GCIH, GCFE, GCFA, GREM, GNFA, GASF, GCTI, CISSP, or other SANS certifications