Reporting to the Team Lead of the Security Operations Center, the candidate will be responsible for monitoring and responding to any potential security related risk targeting the Group. It is essential for the candidate to have the background and knowledge to discuss incident response activities internally and support security incident investigations.
This is a 24-by-7 shift work including graveyard shifts.
Primary Location: Singapore, Changi Business Park
Education: Minimally a Technology Diploma
Job Function: Technology, Information Security
Shift: Rotating 24 hours/8 hours per shift, 7 days per week
Principal Job Functions
1. Monitor developing cybersecurity events around the world, and escalate to L2 team if relevant events are observed
2. Performs monitoring, risk assessment and analysis on security tools such as Anomaly Detection systems, Firewalls, Antivirus systems, Proxy devices
3. Follow pre-defined actions to handle security alerts including escalating to L2 team and other support groups
4. Execute daily ad-hoc tasks or lead small projects as needed
5. Participate in daily and ad-hoc documentation related tasks
6. Create and maintain operational reports for Key Performance Indicators and weekly and Monthly Metrics
7. Perform assessment phase of Vulnerability & Threat Management process
8. Receive threat intelligence from feeds the Group subscribed to and update to Threat Intel knowledge base
9. Be ready to support any security incident response investigation in the Group regardless of location and environment
10. Work closely with Team Lead to review, provide feedback and take actions to improve the methodology use in the Security Operations
11. Responsible to ensure all tickets logged are closed correctly and timely
12. Ensure timely submission of routine reports on threats, vulnerabilities and incidents handled by the Security Operations Center
13. Keep the Security Operations Center runbooks and procedures updated
Recommended prerequisites:
1. 3+ years working in security operations, preferably with incident management experience
2. Experience in the Banking industry will be an advantage
3. Familiar with security products and network devices
4. Extensive technical experience with network security practices including Intranet, Extranet and Internet access
5. Technical experience with UNIX, AIX, Linux, Windows
6. Knowledge of TCP/IP, DNS, web, wireless security architectures and enterprise-grade security solutions
7. Knowledge of encryption and authentication methods such as 2FA, DES/AES/RSA, Digital Certificates, SSL/TLS, IPSec and development of DMZ’s
8. Knowledge of intrusion detection (deep TCP/IP knowledge, and cybersecurity), various operating systems (Windows/UNIX), and web technologies (especially internet security)
9. Able to read and understand packet level data, handle Network/Host Security products (NIDS/NIPS, firewalls, HIPS, AV, scanners, etc.) and understand security events from these tools
10. Able to perform vulnerability assessment and manage such tools/processes, as well as application penetration testing or forensic analysis fields
11. Certifications from EC-Council, GIAC, (ISC)² are preferred [CISSP, CEH, GCIA, CCNA].
12. People Skills:
i. Be performance oriented; always try to excel past achievements
ii. Able to work under pressure during critical situations
iii. Able to work in a collaborative manner with peers
13. Communication Skills:
i. Can communicate effectively with peers in discussions/meet
“This is in partnership with the Employment and Employability Institute Pte Ltd (“e2i”).
e2i is the empowering network for workers and employers seeking employment and employability solutions. e2i serves as a bridge between workers and employers, connecting with workers to offer job security through job-matching, career guidance and skills upgrading services, and partnering employers to address their manpower needs through recruitment, training, and job redesign solutions. e2i is a tripartite initiative of the National Trades Union Congress set up to support nation-wide manpower and skills upgrading initiatives. By applying for this role, you consent to A-IT Software Services Pte Ltd’s PDPA and e2i PDPA.