SOC Advanced Cyber Defense Analyst

3 months ago


Singapore Citi Full time
The Advanced Cyber Defense (ACD) team is a group inside the Citi Security Operations Center (SOC). The ACD is a full-time threat hunt team that focuses on advanced threat analysis, custom threat detection techniques, process improvement and evaluation of new security tools and technology. ACD team members are subject matter experts in multiple cyber security disciplines including threat hunting, content creation, network and end-point log analysis, malware analysis, Windows/Linux/Unix command line and scripting. ACD team member duties include but not limited to development of new SOC processes and procedures to enhance operations, research in emerging cyber security threats, participation and contribution as a Subject Matter Expert (SME) in major security events and provide guidance to SOC Tier 1 and SOC Tier 2 analysts

Principle Responsibilities:
  • Proactively hunt for potential malicious activities in the bank's environment
  • Research and identify emerging cyber security threats
  • Enhance current deployment of commercial tools used by Security Operations Center.
  • Participate in major security events as subject matter expert.
  • Development of new tools, processes and procedures to enhance SOC monitoring and analysis capabilities
  • Evaluate new technologies against SOC requirements in proof of concepts
  • Provide guidance to SOC Tier 1 and SOC Tier 2 analysts
Requirements:

The candidate should have Security Operations Center / Threat Hunt / Incident Response experience. He/she should be able to perform the SOC analyst Tier 3 duties in addition to following experience and advanced threat analysis skills:
  • 8+ years working in the security & operations fields
  • Bachelor's Degree or higher preferred
  • Possess strong fundamental knowledge of network (TCP/IP) and operating system (Windows/Linux)
  • Hands-on experience with cyber security solutions; SIEM, AV, NIDS, EDR etc
  • Ability to investigate network traffic, read and interpret logs and packet captures
  • Ability to investigate email threats; Email sample analysis, handling phishing campaigns etc
  • Experience in web/shell programming and debugging codes
  • Experience in cloud computing and security controls
  • Familiar with malware and memory analysis techniques
  • Critical thinking and analytical skills
  • Good written and oral communications skills
  • Team player with the ability to work independently
  • Experiences in malware analysis and/or reverse engineering is a plus.
------------------------------------------------------

Job Family Group:
Technology
------------------------------------------------------

Job Family:
Information Security
------------------------------------------------------

Time Type:
Full time
------------------------------------------------------

Citi is an equal opportunity and affirmative action employer.

Qualified applicants will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Citigroup Inc. and its subsidiaries ("Citi) invite all qualified interested applicants to apply for career opportunities. If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review Accessibility at Citi .

View the " EEO is the Law " poster. View the EEO is the Law Supplement .

View the EEO Policy Statement .

View the Pay Transparency Posting


  • Singapore Citi Full time

    Job SummaryCiti is seeking a highly skilled Advanced Cyber Defense Analyst to join our Security Operations Center (SOC) team. As a key member of our Advanced Cyber Defense team, you will be responsible for proactively hunting for potential malicious activities in our environment, researching and identifying emerging cyber security threats, and enhancing our...


  • Singapore Citi Full time

    We are seeking a highly skilled and experienced Senior SOC Analyst to join our Cyber Threat team in the Security Operations Center (SOC). The Global SOC operates in a 24x7, follow the sun model and is the firm's first line of defense against evolving cyber threats, ensuring the safety and integrity of our digital assets. This role requires an individual with...


  • Singapore CAREERALLY PTE. LTD. Full time

    Roles & ResponsibilitiesCyber SOC Analyst/ Engineer (Cyber Threat/ Perm Role/ Central)• Location: Central Area• Permanent Role• Salary: up to $8,500 (commensurates with experience) + Attractive Bonus & BenefitsResponsibility: You will utilize data from various cyber defense tools, such as intrusion detection system alerts, firewall and network traffic...


  • Singapore Citi Full time

    Job DescriptionWe are seeking a highly skilled and experienced Senior SOC Cyber Threat Analyst to join our Cyber Threat team in the Security Operations Center (SOC). Our Global SOC operates in a 24x7, follow the sun model and is the firm's first line of defense against evolving cyber threats, ensuring the safety and integrity of our digital assets.About the...

  • Cyber Threat Analyst

    1 month ago


    Singapore NETS Singapore Full time

    Position Summary   As a Cyber Threat (SOC) Analyst, you are required to use data collected from a variety of cyber defense tools such as intrusion detection system alerts, firewall and network traffic logs, and host system logs to analyse events that occur within the Company’s environment.    You are also required to perform 24x7 monitoring on both...


  • Singapore CAREERALLY PTE. LTD. Full time

    Careerally Pte Ltd Job DescriptionCyber SOC Analyst/ Engineer RoleJob SummaryCareerally Pte Ltd is seeking a highly skilled Cyber SOC Analyst/ Engineer to join our team. As a Cyber SOC Analyst/ Engineer, you will be responsible for analyzing and responding to cyber threats, ensuring the effectiveness of our 24x7 monitoring operations, and identifying...

  • SOC Engineer

    3 weeks ago


    Singapore CAREERALLY PTE. LTD. Full time

    Roles & ResponsibilitiesResponsibilities: Analyze data from various cyber defense tools, such as intrusion detection systems, firewalls, network traffic logs, and host system logs. Ensure the effectiveness and efficiency of 24/7 monitoring for both internal and external sources, maintaining up-to-date awareness of threat conditions, and identifying...


  • Singapore Citi Full time

    We are seeking a highly skilled and experienced Senior SOC Analyst to join our Cyber Threat team in the Security Operations Center (SOC). The Global SOC operates in a 24x7, follow the sun model and is the firm's first line of defense against evolving cyber threats, ensuring the safety and integrity of our digital assets.Key Responsibilities:Analyze security...

  • Cyber Threat Hunter

    2 days ago


    Singapore Snaphunt Full time

    Job DescriptionThis role requires a highly skilled individual to monitor and analyze security events using various cyber defense tools. The ideal candidate will have a strong background in cybersecurity and be able to identify potential threats and vulnerabilities.The Cyber Threat (SOC) Analyst will work closely with the team to assess potential threats and...


  • Singapore Citi Full time

    The Security Operations Center (SOC) Cyber Threat Analyst will be part of the Global SOC Team. This center operates 24x7, follow-the-sun model to monitor, analyze and respond to cyber attacks and information/data breaches. SOC Analysts are the critical first line of defense, in charge of monitoring Citi’s environment globally through state-of-the-art...

  • SOC Analyst

    1 week ago


    Singapore CAREERALLY PTE. LTD. Full time

    Roles & ResponsibilitiesThe SOC Analyst will be responsible for monitoring, detecting, and responding to security threats and incidents in a 24/7 Security Operations Center.Responsibilities: Continuously monitor and analyze system activities and security alerts from SIEM and EDR tools to identify malicious activity. Analyze security events to identify and...


  • Singapore Citi Full time

    Job SummaryCiti is seeking a highly skilled and experienced Senior SOC Cyber Threat Analyst to join our Cyber Threat team in the Security Operations Center (SOC). As a key member of our team, you will play a critical role in ensuring the safety and integrity of our digital assets.ResponsibilitiesAnalyze security events to identify potential threats and...


  • Singapore NETS Singapore Full time

    Cyber Threat Analyst Job DescriptionAt NETS Singapore, we are seeking a highly skilled Cyber Threat Analyst to join our team. As a Cyber Threat Analyst, you will play a critical role in protecting our organization's information assets from cyber threats.Key Responsibilities:Monitor and analyze internal and external sources for potential cyber threats, using...


  • Singapore NETS Singapore Full time

    Job Title: Cyber Threat AnalystJob Summary:NETS Singapore is seeking a skilled Cyber Threat Analyst to join our team. As a Cyber Threat Analyst, you will play a critical role in analyzing and responding to cyber threats within our organization.Key Responsibilities:Monitor and analyze internal and external sources for potential security threatsIdentify and...

  • Cyber Fraud Analyst

    4 weeks ago


    Singapore Citi Full time

    Job SummaryThe Security Operations Center Cyber Fraud Analyst is an intermediate level position responsible for leading efforts to prevent, monitor and respond to information/data breaches and cyber-attacks on a 24x7 basis. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's...

  • SOC Analyst

    1 month ago


    Singapore TEKsystems (Allegis Group Singapore Pte Ltd) Full time

    The L2/L3 SOC Analyst is responsible for responding to security events, collaborating with teams to implement corrective actions, handling incident requests per SIRT protocols, and meeting service level objectives. The role requires occasional shift work and proficiency in Mandarin and English. Responsibilities: Primary or secondary handling of security...


  • Singapore UBS AG Full time

    Roles & ResponsibilitiesYour role:Are you keen on working in world class Cyber Security Operations Center for one of the best Swiss private banks?Do you have related experience and are willing to take it further by learning how to defend an enterprise against cyber-attacks?We are looking for Cyber Monitoring Analyst who will: Perform continuous cyber...


  • Singapore Nanyang Technological University Full time

    Senior Assistant Director, Cyber Security (Cyber Security Defense) Nanyang Technological University is one of the top universities in Singapore offering undergraduate and postgraduate education in engineering, business, science, humanities, arts, social sciences, education, and medicine. NTU’s Centre for IT Services (CITS) manages the campus-wide IT...


  • Singapore Snaphunt Full time

    About the RoleWe are seeking a skilled Cyber Threat (SOC) Engineer to join our team at Snaphunt. As a Cyber Threat (SOC) Engineer, you will play a critical role in monitoring and analyzing events within our environment to identify security threats and assess incidents for escalation.Key ResponsibilitiesContinuously monitor and analyze system activities to...


  • Singapore Citi Full time

    The Security Operations Center Cyber Fraud Analyst is an intermediate level position responsible for leading efforts to prevent, monitor and respond to information/data breaches and cyber-attacks on a 24x7 basis. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data...