Lead, Cyber Threat Hunting

4 months ago


Singapur, Singapore Careers@Gov Full time
The Government Technology Agency (GovTech) is the lead agency driving Singapore’s Smart Nation initiatives and public sector digital transformation. As the Centre of Excellence for Infocomm Technology and Smart Systems (ICT & SS), GovTech develops the Singapore Government’s capabilities in Data Science & Artificial Intelligence, Application Development, Smart City Technology, Digital Infrastructure, and Cybersecurity. 
 
At GovTech, we offer you a purposeful career to make lives better. We empower our people to master their craft through continuous and robust learning and development opportunities all year round. Our GovTechies embody our Agile, Bold and Collaborative values to deliver impactful solutions.
 
GovTech aims to transform the delivery of Government digital services by taking an "outside-in" view, putting citizens and businesses at the heart of everything we do.
 
Play a part in Singapore’s vision to build a Smart Nation and embark on your meaningful journey to build tech for public good. Join us to advance our mission and shape your future with us today 
 
Learn more about GovTech at tech.gov.sg.

You will play a key role in the Cyber Defence Operations & Intelligence Cluster (CDOI) of Cyber Security Group (CSG) as a Lead, Cyber Threat Hunter (CTH) to proactively and iteratively detect threats that evade security solutions, to reduce the dwell time of detection of cyber threats.

Successful candidate who is able to lead a team and is proficient in either network/host-based intrusion analysis, digital forensics or cyber threat intelligence, and develop custom analytics to proactively defend against cyber attacks.

What you will be working on:

  • Manage and ensure timely delivery of threat hunting missions

  • Provide proactive hunting and analysis against the dataset (e.g. Netflow, DNS and Firewall logs etc)

  • Leverage internal and external resources to research threats, vulnerabilities and intelligence on various attackers and attack infrastructure

  • Use Big Data Analytics platform to identify threats in various dataset

  • Able to provide strong technical guidance to the team in advanced threat research to proactively identify potential threat vectors and work with multi-disciplines to improve prevention and detection methods

  • Identify gaps in logging capabilities and propose enhancement strategies

  • Assist the team in tasks priorisation

What we are looking for:

  • Bachelor’s Degree in Computer Science/Information Security or equivalent

  • Professional certifications, including EnCE, GCFA, GREM, GNFA, GCTI, CISSP or other relevant certifications

  • Preferably 4 years or more of experience as a full time threat hunting

  • Experience managing a team

Technical Expertise:

  • Experience with digital forensics, focusing on Windows and Linux systems from a malware perspective, and Operating System (OS) exploitation methodologies

  • Experience in log analysis using Splunk, ELK, or similar tools, and malware triage

  • Strong understanding of cyber threat analysis models such as kill chain, diamond model, and MITRE

  • Strong knowledge of malware families and network attack vectors

  • Knowledge of creating YARA or Snort signatures is a plus

  • Experience with a common scripting or programming language, including Perl, Python, Bash or Powershell

  • Knowledge of web applications and APIs

Other Requirements:

  • Demonstrate a high degree of integrity, initiative, energy and endurance

  • Highly developed research and analytical skills

  • Critical thinking and contextual analysis abilities

  • Knowledge in one or more scripting languages (e.g. Python, Perl) an advantage

  • Possess good communication and interpersonal skills

  • Singapore Citizen only

GovTech is an equal opportunity employer committed to fostering an inclusive workplace that values diverse voices and perspectives, as we believe that diversity is the foundation to innovation.  

 

Our employee benefits are based on a total rewards approach, offering a holistic and market-competitive suite of perks. These include leave benefits to meet your work-life needs and employee wellness programmes .  

   

We champion flexible work arrangements (subject to your job role) and trust that you will manage your own time to deliver your best, wherever you are, and whatever works best for you.  

 

Learn more about life inside GovTech at go.gov.sg/ GovTechCareers .

 

Stay connected with us on social media at go.gov.sg/ ConnectWithGovTech .



  • Singapur, Singapore Careers@Gov Full time

    . Job Responsibilities Design and deliver Cyber Threat Hunting programmes Perform threat hunting, including hypothesis creation, search queries and reporting. Manage and coordinate threat hunts with asset owners and security teams Analyse system and network logs and forensic images to identify threats Draft reports and present findings to...


  • Singapur, Singapore SMRT Corporation Ltd Full time

    Job Purpose Security, privacy and operational resilience are critical issues facing all organizations today. We are currently looking for qualified and capable security minded individuals to be the driving force behind SMRT’s cyber security measures with the goal of enabling ongoing, secure and reliable operations across the enterprise. ...


  • Singapur, Singapore Careers@Gov Full time

    . Job Responsibilities Conceptualise, design and deliver Cyber Threat Hunting programmes Proactively track cyber threats to keep Threat Hunting capabilities updated Participate in cyber security exercises Perform Threat hunting in coordination with Incident Response and asset owners Analyse system and network logs and forensic images to identify...


  • Singapur, Singapore JPMorgan Chase & Co. Full time

    Harness your expertise to shape robust cybersecurity strategies and safeguard critical assets. Your leadership will be pivotal in enhancing our resilience against evolving global cyber threats. As a Cybersecurity Intelligence Vice President in Cybersecurity & Tech Controls, Intelligence Operations, you will play a critical role in safeguarding the firm's...

  • Cyber Threat

    2 months ago


    Singapur, Singapore Steenbok Full time

    Over the years, it has cultivated a niche in interconnecting applications from mobile and web frontends to the traditional ERP systems through middleware. Today, its best value to the customer is its experience and ability in cross-application connectivity.To date, its business has remained as that of an outsourced IT arm to the industries.The RolePosition...

  • Cyber Threat

    2 months ago


    Singapur, Singapore Snaphunt Full time

    The OfferWork within a company with a solid track record of successWork alongside & learn from best in class talentExcellent career development opportunitiesThe JobPosition Summary:As a Cyber Threat (SOC) Analyst, you will monitor and analyze security events using various cyber defense tools. You'll perform 24x7 surveillance, assess potential threats, and...

  • Cyber Threat

    2 months ago


    Singapur, Singapore Snaphunt Full time

    The OfferWork within a company with a solid track record of successWork alongside & learn from best in class talentExcellent career development opportunitiesThe JobAs a Cyber Threat (SOC) Engineer, you will use various cyber defense tools (e.g., intrusion detection, firewalls, system logs) to monitor and analyze events within the company's environment....

  • Cyber Threat

    2 months ago


    Singapur, Singapore Steenbok Full time

    Over the years, it has cultivated a niche in interconnecting applications from mobile and web frontends to the traditional ERP systems through middleware. Today, its best value to the customer is its experience and ability in cross-application connectivity.To date, its business has remained as that of an outsourced IT arm to the industries.The RoleAs a Cyber...

  • Cyber Threat Analyst

    7 months ago


    Singapur, Singapore Marina Bay Sands Full time

    Summary of the role The Cyber Threat Analyst is an experienced threat detection and response analyst within Marina Bay Sands’ (MBS) Cyber Security Operations Centre (CSOC). MBS CSOC operates a follow-the-sun model, partnering with Las Vegas Sands (LVS) Corp CSOC. The mission of MBS CSOC is to protect and defend MBS and LVS against cyber-attacks...

  • Threat Analyst

    7 months ago


    Singapur, Singapore IHiS Full time

    Position OverviewPosition Summary The Threat Analyst will play a critical role in defending Singapore’s public healthcare institutions from all cyber threats. The primary responsibility will be to assist the manager in ensuring smooth and effective conduct of threat hunting operations across the public healthcare to quickly detect, disrupt and eradicate...


  • Singapur, Singapore Control Risks Full time

    Control Risks' Digital Risks practice works with our global clients to anticipate and mitigate threats, whilst harnessing digital opportunities to drive innovation and growth.This APAC based role primarily involves delivering analysis of cyber threats and their implications to all business sectors and to public sector organisations and working with global...


  • Singapur, Singapore Ensign InfoSecurity Full time

    Ensign is hiring !ResponsibilitiesSetup and operating Managed Endpoint and Detection Response (MDR) program and proposing enhancement to achieve better efficiency/ effectivenessOperating Network Traffic Analytics (NTA) program, identification of abnormalities in client’s environmentPerforms threat hunting within the clients’ technology environments to...


  • Singapur, Singapore Amazon Asia-Pacific Holdings Private Limited Full time

    Amazon’s Selling Partner Risk (SPR) team within the Selling Partner Services (SPS) space designs and implements policies, tools and technological innovations to protect customers by identifying and preventing abuse worldwide. Our growth requires highly skilled candidates who move fast, have an entrepreneurial spirit to create new solutions, a tenacity to...


  • Singapur, Singapore Palo Alto Networks Full time

    Job DescriptionYour CareerAs a member of the Unit 42, National Security Team (NATSEC) team, you will be working closely with a globally distributed team of researchers and threat intelligence analysts. You will be embedded into a customer environment where you will track cyber criminals, ransomware groups, and advanced persistent threats in support of...


  • Singapur, Singapore JPMorgan Chase & Co. Full time

    Harness your expertise to shape robust cybersecurity strategies and safeguard critical assets. Your leadership will be pivotal in enhancing our resilience against evolving global cyber threats. As a Cybersecurity Intelligence Vice President in Cybersecurity & Tech Controls, Intelligence Operations, you will play a critical role in safeguarding the firm's...


  • Singapur, Singapore Horangi Cyber Security Full time

    The Cybersecurity Consultant will work in Horangi’s Cyber Operations (Offensive) team, and works directly with Horangi’s customers to perform offensive security assessments. Members of the Cyber Operations (Offensive) team are generally familiar with most aspects of cyber security but specialize in penetration testing of web and mobile applications and...


  • Singapur, Singapore TikTok Full time

    Team Introduction The Global Security Organization provides industry-leading cybersecurity and business protection services to TikTok globally. Our organization employs four principles that guide our strategic and tactical operations. Firstly, we champion Transparency & Trust by leading the charge in organizational transparency, prioritizing customer...

  • Information Technology

    3 months ago


    Singapur, Singapore Singapore Airlines Full time

    Job DescriptionYou will be a member of the Group Information Security Team responsible for responding to threats and incidents to the corporate networks, systems (on-prem and cloud), and digital assets. Key Responsibilities Perform security monitoring and incident response activities across the scoot networks, leveraging a variety of tools and techniques....


  • Singapur, Singapore IHiS Full time

    Position OverviewWe are seeking a malware/forensic expert to join the IHiS Cyber Defence Group. You will play an important role in the cyber defence of the public healthcare sector against all cyber threats. Your primary responsibility will be to lead investigations into cyber threats facing public healthcare institutions. You will also collaborate with...

  • Information Technology

    6 months ago


    Singapur, Singapore Singapore Airlines Full time

    Job DescriptionYou will be a member of the Group Information Security Team responsible for responding to threats and incidents to the corporate networks, systems (on-prem and cloud) and digital assets. Key Responsibilities include: Oversee and manage vendor relationships to ensure effective delivery of security services. Lead and drive major incidents...