Security Analyst

2 weeks ago


Downtown Core, Singapore Toku Pte Ltd Full time
At Toku, we create bespoke cloud communications and customer engagement solutions to reimagine customer experiences for enterprises.

We provide an end-to-end approach to help businesses overcome the complexity of digital transformation in APAC markets and enhance their CX with mission-critical cloud communication solutions.

Toku combines local strategic consulting expertise, bespoke technology, regional in-country infrastructure, connectivity and global reach to serve the diverse needs of enterprises operating regionally.


As we continue creating momentum for our products in the APAC region and helping customers with their communications needs, we are seeking a Security Analyst to be a trusted consultant and advisor on all matters relating to threat detection, alerts monitoring, and incident response.

Reporting to our Information Security Manager, you will be a key point of contact both on in-house initiatives at Toku and consultatively for specific client projects.

You will have ownership on identifying, diagnosing, solutioning, escalating, documenting and reporting incidents and threats, performing risk assessments and working towards improving and optimising systems and procedures.


This role offers broad exposure over a number of information security aspects, with potential growth paths towards GRC, InfoSec, Cybersecurity and more.

In addition, you be part of a new and growing security function at Toku, and will be highly visible across stakeholders and teams, liaising regularly with senior architecture, development, cybersecurity and network stakeholders both in-house and externally.

Join us as we strengthen our security posture, inspire a culture of compliance, and drive our organization towards a secure and resilient future.

Want to be part of our journey?

What would you be doing?

  • Identify and evaluate existing security risks, both inhouse and on client projects, and implement enhancements.
  • Review and respond to alarms/tickets, taking action to prioritise, resolve / escalate, log and report to internal and external stakeholders according to best practices. From here, perform and document risk assessment reports.
  • Attend client site meeting periodically, answering clients' risk management and security questions and addressing / reporting security concerns.
  • Review security incident and event logs, and monitor threat intelligence feeds, optimising and contributing to ongoing threat intelligence.
  • Collaboratively work with security vendors for incident response and alerts monitoring.
  • Analyse, and report compliance against security controls, identifying areas for improvement in data collection, assurance processes, and security procedures.
  • Identify acceptable levels of residual risk and assist with action plans, policy, and procedural changes for risk mitigation.
  • In addition to monitoring and threat detection, proactively assist / manage various inhouse security projects and initiatives and provide guidance on security matters for other projects.
  • Ensuring audit trails, system logs and other monitoring data sources are reviewed periodically and follow and adhere to regulatory policies.
  • Stay up to date on latest security trends and standards, conduct research on security improvements and provide recommendations to clients and stakeholders.

We would love to hear from you if you have:

  • A degree in a reputable university.
  • At least 35 years of relevant work experience in IT information security analysis, governance, risk, and compliance.
  • Working knowledge of Security Information & Event Management (SIEM) systems, Vulnerability Management, and Patch Management
  • Experience in monitoring, tracking, and troubleshooting user activity logs using AWS CloudWatch and CloudTrail.
  • Experience in scripting languages like Python, Powershell, Bash and SQLs.
  • Knowledge of networks, firewalls, proxies, intrusion detection/prevention systems, concepts, and technologies, ideally with knowledge of EC2 incidences, GuardDuty or similar, and actions using AWS Lambda
  • 3+ years of endpoint administration or support experience with Linux and Windows devices
  • Experience with intrusion/manipulation techniques, and standard methodologies for Linux system hardening and process isolation.
  • Prior experience in incident response and threat hunting
  • Knowledge of DevSecOps principles and practices
  • Professional information security certifications such as CISSP, CompTIA Security+, AWS Security Certifications, or equivalent are a bonus for this role.
  • Confidence in presenting, with strong verbal and written business communication skills, and the ability to educate a nontechnical audience about various security measures.
  • Excellent analytical skills and attention to detail.

What would you get?

  • Flexible working locations
  • Training and Development
  • Discretionary Yearly Bonus & Salary Review
  • Healthcare Coverage based on location.
  • 20 days Paid Annual Leave (excluding Bank holidays)
**If
  • Analyst

    2 weeks ago


    Downtown Core, Singapore Moody's Full time

    Moody's is a global integrated risk assessment firm that empowers organizations to make better decisions.Description:The Role:The lead analyst will be responsible for managing a portfolio of South and South East Asia (SSEA)-based issuers rated by Moody's. The role involves conducting high quality quantitative and qualitative analysis to assess the credit...


  • Downtown Core, Singapore Knight Frank Full time

    About the jobKnight Frank's Consultancy Department offers a wide range of real estate business advisory services to clients, including site selection, project feasibility, real estate economic analysis of master plans, market studies, consumer research, real estate strategy and other bespoke studies. Knight Frank has completed a large number of projects for...


  • Downtown Core, Singapore Engelhart Commodities Trading Partners Full time

    Engelhart operate a diversified platform with a scientific, quantitative and technology focused approach. Engelhart's currently transacts in Energy, Agriculture, Freight, Metals & Minerals, and Risk Premia. We operate our model with our core values at heart, and we demonstrate Agility, Collaboration, and Entrepreneurship in everything we do.Our teams of 180...


  • Downtown Core, Singapore Samsung SDS Asia Pacific Pte Ltd Full time

    Responsibilities:As an IT Specialist, your responsibilities involve:Assist IT Service Delivery Specialists and Analyst in resolving complex IT Infrastructure issues Support and maintain the IT Infrastructure security standards to be compliant with the company security policy Support and maintain the IT Infrastructure systems and data access Support and...


  • Downtown Core, Singapore Crisis24 Full time

    At Crisis24, A GardaWorld Company, we take a proactive approach to solving business challenges and our customers are at the heart of everything we do. It's the reason we love rolling up our sleeves and getting down to work - and it's why we're so successful. It takes an entire team to stand behind something big. Interested?Position overview:As a Watch...

  • Global Head of Ot

    2 weeks ago


    Downtown Core, Singapore WIZLYNX PTE. LTD. Full time

    About the JobAs Global Head of OT & ICS Cyber Security services, you will lead, manage, and develop our worldwide OT & ICS Cyber Security testing consulting team and practice.Your main duties will involve the continuous improvement of our current OT & ICS Cyber Security assessment services portfolio but also the creation of new assessment and services...

  • Assistant Trainer

    2 weeks ago


    Downtown Core, Singapore Institute of Data Full time

    The Institute of Data is a Professional Network of Data Scientists, Cyber Security Analysts, and Software Engineers. In partnership with leading universities in Australia, New Zealand & America, and the government of Singapore, we transform careers for a data-driven world through practical, industry-focused courses.About the roleWe are looking for an...


  • Downtown Core, Singapore Allianz Singapore Full time

    Entity: Allianz SE Singapore BranchJob Purpose:Performing IT and Operational audits in the AZAP region.Key Responsibilities:The IT Auditor is responsible for the planning and execution of audits in IT and Operational.The IT Auditor is expected to perform audits independently and ensure everything has been properly documented.In addition to providing the...

  • Solution Architect

    2 weeks ago


    Downtown Core, Singapore SoftwareOne Full time

    Job Function:Software & Cloud Services The role:Responsibilities:- **Solution Design**: Collaborate with cross-functional teams to gather requirements, design end-to-end data analytics solutions, and create architectural diagrams and documentation.- AWS Expertise: Leverage your extensive knowledge of AWS services such as Amazon Redshift, Amazon EMR, Amazon...


  • Downtown Core, Singapore Open Government Products Full time

    Who we are:Open Government Products is an experimental tech start-up team within the government that builds technology for public good. We proactively identify areas where technology can help, test our prototypes with actual users, and bring our best ones to launch.In the pursuit of innovation, we move quickly, take risks and fail fast if we must - scaling...