Our client, a company specialising in providing high-end security consulting and incident response support to organizations worldwide, is looking for a Cyber Incident Responder to join their team in Singapore.
Main Responsibilities:
- Participate in forensic and incident response investigations, including large scale sophisticated attacks, conduct log analysis, host and network-based forensics and malware analysis.
- Participate in threat hunting: proactively hunt for targeted attacks and new emerging threats in client’s networks; as well as security assessments and simulations.
- Identify indicators of compromise (IOCs) and tools, tactics, and procedures (TTPs) to help ascertain whether and how breaches have occurred.
- Utilize and develop tools and methodologies to improve Sygnia’s existing investigative and hunting technological stack.
- Collaborate with IT and Security teams during investigations.
- Generate and present a comprehensive and professional report of findings from investigations.
Requirements:
- At least 3 years of a relevant experience in cyber security
- Determined team player, who strives for excellence
- Problem solver, in-depth thinker with growth mindset
- Demonstrated in-depth understanding of the life cycle of advanced security threats, attack vectors and variant methods of exploration
- Deep technical understanding of network fundamentals and common Internet protocols
- Solid understanding of system and security controls on at least two OSs (Windows, Linux / Unix and MacOS), including host-based forensics and experience with analyzing OS artifacts
- Fluency with one or more scripting language (i.e. Python)
- Multidisciplinary knowledge and competencies, such as: hands-on experience in data analysis (preferably network traffic or log analysis) in relevant data analysis and data science platforms (Jupyter, Splunk, pandas, SQL)
- Familiarity with cloud infrastructure, web application and servers, android and iOS mobile platforms
- Experience with malware analysis and reverse engineering
- Familiarity with enterprise SIEM platforms (e.g. Splunk, QR.adar, ArcSight)
- Excellent communication and interpersonal skills
- Fluent English, including the ability to document and explain technical information in a concise, understandable manner
- Willing to travel abroad (about 30% of the time)
We regret that only shortlisted candidates will be notified.
EA License No.: 08C3209
Registration No.: R1101742