Cybersecurity Incident Response

1 week ago


Singapore StarHub Full time

Overview
Assistant Manager - Incident Response and Threat Hunting is responsible for leading the detection, investigation, and mitigation of cybersecurity incidents. This role involves proactive threat hunting, forensic analysis, and developing response strategies to minimize risks and impact on an organization's IT infrastructure. The specialist also collaborates with cross-functional teams to improve security posture and ensure compliance with industry standards. The candidate will report to Head of Incident Response Team and will plan and oversee the performance of security response to security incidents in an IT environment. The candidate will identify and define cyber threats and their root causes.
Responsibilities
Lead the response to cybersecurity incidents, including malware infections, data breaches, and insider threats.
Perform real-time and retrospective analysis of security events to identify threats.
Coordinate with MSSP Security Operations Centre (SOC) teams for monitoring and alerting.
Develop and document incident response plans and playbooks.
Should be expertise on handling the incidents end to end.
Conduct proactive threat hunting to identify unknown threats.
Perform digital forensic analysis on compromised systems to determine root causes.
Use forensic tools to collect and analyse logs, memory dumps, and disk images.
Work with SIEM (Security Information and Event Management) tools to detect anomalous behaviour.
Analyse logs from firewalls, intrusion detection/prevention systems (IDS/IPS), endpoint protection, and cloud security tools.
Improve detection capabilities by tuning security alerts and developing new rules.
Recommend and implement security controls to reduce exposure.
Provide technical leadership to junior incident responders and security analysts.
Skills And Qualifications
Strong expertise in incident response, threat hunting, and forensic analysis.
Experience with SIEM tools (e.g., Elastic, Splunk).
Proficiency in network security, malware analysis, and log analysis.
Familiarity with cloud security (AWS, Azure, GCP) and container security.
Experience with cloud security tools and AI-powered security analytics (AWS GuardDuty, Azure Sentinel, Google Chronicle).
Familiarity with AI/ML-driven anomaly detection and behavioural analysis techniques.
Knowledge of security solutions (EDR, XDR, NDR, WAF, Proxy, Firewall, Email Security).
Scripting and automation skills (Python, PowerShell, Bash).
Deep understanding of MITRE ATT&CK framework, cyber kill chain, and machine learning models for cybersecurity applications.
Excellent communication and report-writing skills and ability to work under pressure scenarios.
Seniorities
Mid-Senior level
Employment Type
Full-time
Job Function
Information Technology
Industries
Telecommunications
Referrals increase your chances of interviewing at StarHub by 2x
#J-18808-Ljbffr



  • Singapore SOURCEO PTE. LTD. Full time $90,000 - $120,000 per year

    Job Description Job Title Lead, Cybersecurity Incident Response Job Description & Requirements Key Responsibilities Lead the response to cybersecurity incidents, including malware infections, data breaches, and insider threats. Minimum of 5 years of experience in lead Cybersecurity incident response Strong expertise in incident...


  • Singapore beBeeConsultant Full time $150,000 - $200,000

    Job OpportunityAt Palo Alto Networks, we are looking for a seasoned cybersecurity professional to join our team as a Principal Consultant in Incident Response.The successful candidate will be responsible for leading incident response engagements with our largest clients and managing complex projects from start to finish.We seek an individual with exceptional...


  • Singapore PERSOLKELLY Singapore Full time

    Role and responsibilities - Responsible for the daily real time monitoring and analysis of security events /threats from multiple sources - Triage security incidents including unauthorised access, phishing, malware infection etc - Refine current use cases implemented on the SIEM solution to reduce/minimise false positives - First point of contact for...


  • Singapore StarHub Full time

    Join to apply for the Lead, Cybersecurity Incident Response role at StarHub Job Description The Assistant Manager - Incident Response and Threat Hunting is responsible for leading the detection, investigation, and mitigation of cybersecurity incidents. This role involves proactive threat hunting, forensic analysis, and developing response strategies to...


  • Singapore STELLAR LINK PARTNERS PTE. LTD. Full time

    My client, a port operator is looking to hire for a Manager, Cybersecurity Tech and Incident Response Do you thrive in high-pressure situations and possess a passion for safeguarding critical infrastructure? This role is for you - a seasoned cybersecurity professional to join their growing team. **Responsibilities**: - **Lead the charge**:Oversee...


  • Singapore beBeeResponse Full time $120,000 - $180,000

    Incident Response SpecialistThe role of Incident Response Specialist requires strategic leadership and coordination to ensure effective incident management. The successful candidate will oversee a team responsible for monitoring and responding to critical incidents, while ensuring seamless communication with stakeholders.This position demands strong...


  • Central Singapore Frasers Property Full time $90,000 - $120,000 per year

    Security Monitoring: Ensure continuous security monitoring to detect and respond to threats in real-time. Server & Endpoint Detection & Response: Deploy and manage detection and response solutions for servers (Windows, Linux) and endpoints (Windows, Mac, Linux). Cyber Threat Intelligence: Gather and analyze data from various sources to identify...


  • Singapore beBeeCybersecurity Full time $80,000 - $120,000

    Cybersecurity Incident InvestigatorWe are seeking a highly skilled Cybersecurity Incident Investigator to join our team. As a key member of our cybersecurity team, you will be responsible for uncovering and analyzing complex cybersecurity incidents.The ideal candidate will have a strong background in digital forensics, threat analysis, and incident response....


  • Singapore Government Technology Agency (GovTech) Full time

    **(What the role is)**GovTech is the lead agency driving Singapore’s Smart Nation initiatives and public sector digital transformation. As the Centre of Excellence for Infocomm Technology and Smart Systems (ICT & SS), GovTech develops the Singapore Government’s capabilities in Data Science & Artificial Intelligence, Application Development, Smart City...


  • Singapore BLACKPANDA PTE. LTD. Full time

    **About the tribe/ Blackpanda: Blackpanda is Asia’s premier cyber security incident response group, hyper-focused on digital forensics and cyber crisis response. Our team consists of an elite cadre of risk and security experts from various specializations military special forces, intelligence, forensics,and law enforcement. We are also a fully...