
Senior Cyber Security Incident Responder
21 hours ago
**What we offer**
**Summary**
As an investigator in SAP's Global Security Operations team you will join a global team of security practitioners to mature SAP's security. You will be located in Singapore, one of the global security hubs, and reporting directly to the Head of Security Operations APJ. The main work will be to develop the SOC and DFIR functions as well as conducting and leading investigations and analysis.
This role will have the opportunity to work within SAP's Global Security functions and interacting in a complex and challenging environment to detect, react to and remediate cyber security incidents as well as to drive detection use case development forward.
**The Role**
- Conducts investigations and forensics on internal and cloud assets for SAP and its line of businesses
- Leads incidents of local and regional scale, sets investigations goals and prioritizes tasks
- Drives continuous improvement and increases efficiency through standardization and automation
- Works independently and with management on highly visible and complex projects
- Contributes to major, global scale incidents and crisis situations by conducting analysis and writing summaries or reports
- Designs, implements and verifies new detection mechanisms and queries
- Mentors analysts and helps develop skills
- Is part of a 24/7 follow-the-sun organisation
**Requirements**:
- Degree in Computer Science or equivalent experience
- Experience working in a 24/7 operational environment (Cyber Intelligence Fusion Center, SOC, NOC, Operations Center).Has Security certification (e.g. Security+, GCIA, GCIH, CISSP)
- Knowledge in the area of creation and maintenance of detection use cases and design of playbooks
- Experience managing cases with enterprise SIEM or Incident Management systems (Information Security, Information Systems, Engineering or related work experience)
- Technology: Good knowledge of one or more of the following: Windows/AD file system, registry functions and memory artifacts, Unix/Linux file systems and memory artifacts, Mac file systems and memory artifacts, Cybersecurity automation, SIEM tools (Splunk, Loggly, Sumo Logic, LogZilla, jKool, QRadar)
Experience in network security and network systems including LANs/WANs/VPNs/Firewalls and IDS’s
- Experience with one or more scripting languages (PowerShell, Python, Bash, etc.)
- Knowledge of APT actors; their tools, techniques, and procedures (TTPs), TTP methods and frameworks
- Ability to demonstrate analytical expertise, close attention to detail, excellent critical thinking, logic, and solution orientation and to learn and adapt quickly
- Ability to summarize and communicate findings and issues concise and clearly.
**#SAPSecurity #IncidentResponse #SecurityOperations #SAPSecurityCareersSGS**
**We are SAP**
**Our inclusion promise**
SAP’s culture of inclusion, focus on health and well-being, and flexible working models help ensure that everyone - regardless of background - feels included and can run at their best. At SAP, we believe we are made stronger by the unique capabilities and qualities that each person brings to our company, and we invest in our employees to inspire confidence and help everyone realize their full potential. We ultimately believe in unleashing all talent and creating a better and more equitable world.
EOE AA M/F/Vet/Disability:
Qualified applicants will receive consideration for employment without regard to their age, race, religion, national origin, ethnicity, age, gender (including pregnancy, childbirth, et al), sexual orientation, gender identity or expression, protected veteran status, or disability.
Requisition ID:301208 | Work Area: Information Technology | Expected Travel: 0 - 10% | Career Status: Professional | Employment Type: Regular Full Time |
-
Cyber Incident Responder
1 week ago
Singapore UBS Full timeSingapore Risk Group Functions **Job Reference #** 247495BR **City** Singapore **Job Type** Full Time **Your role** Are you from the World of Cyber? Are you the one to defend the organization against advance threat? Do you have what it takes to coordinate and respond to cyber-attacks? - respond to cyber security incidents covering all phases...
-
Cyber Incident Responder
3 days ago
Singapore UBS AG Full timeRoles & ResponsibilitiesYour role :Are you keen on working in world class Cyber Security Operations Center for one of the best Swiss private banks? Do you have related experience and are willing to take it further by learning how to defend an enterprise against cyber-attacks? We are looking for an incident response expert who will:• respond to cyber...
-
Cyber Incident Responder
6 days ago
Singapore UBS Full timeSingaporeInformation Technology (IT)Group Functions Job Reference #BR City Singapore Job Type Full Time Your role Are you keen on working in world class Cyber Security Operations Center for one of the best Swiss private banks?Do you have related experience and are willing to take it further by learning how to defend an enterprise against cyber-attacks?We...
-
Cyber Security Incident Responder
2 weeks ago
Singapore JJ Consulting Services Full time**Roles and Responsibilities** - Manage Security Incidents from detection to closure - Analyse security events and confirm security incidents - Drive response and resolution of security incidents - Coordinate with Major Incident Management Team and WAR room setup - Lead root cause analysis, post-mortem reporting and preventive actions. **Requirements**: -...
-
Cyber Incident Responder
1 week ago
Central Singapore BNP Paribas Full time**POSITION PURPOSE**: APAC Production Security teams are responsible for multiple IT Security activities for BNP Paribas in Asia Pacific region, such as: IT Production Security Governance, PMO & Risks Network Security and Security Design & Architecture Vulnerability & Compliance Management IAM Production Production CSIRT, Detection & SIEM...
-
Cyber Security Incident Response
2 days ago
Singapore CYBER SENSE TECHNOLOGIES PTE. LTD. Full time**Role Overview**: Cybersense Advanced Cyber Threat Services team is looking for a technical, passionate pragmatic information security professional with vast Emergency Incident Response/Cybersecurity experience to be part of our Emergency Incident Response team. You must be a strong leader/Snr with excellent people and management skills with ability to...
-
Expert Cyber Threat Responder
2 days ago
Singapore beBeeCyber Full time $120,000 - $180,000Cyber Security Incident Response ProfessionalYour Role:As a Cyber Security Incident Response Professional, you will work in our world-class Cyber Security Operations Center. We are looking for an expert who will respond to cyber security incidents, conduct forensic analysis, and act as an engagement point for wider technology teams.You will be responsible...
-
Principal Incident Responder
1 week ago
Singapore LSEG Full time $100,000 - $150,000 per yearPrincipal Incident Responder (GSOC)LSEG Security Operations is a central function employing people, process and technology to continuously monitor and respond to cyber security incidents. Security Operations spans multiple domains including cyber threat intelligence, cyber threat detection, data loss prevention and cyber incident response.This role will act...
-
Senior Incident Responder
1 week ago
Singapore SIX FINANCIAL INFORMATION SINGAPORE PTE. LTD. Full timeSIX operates the infrastructure underpinning the Swiss financial sector and offers a comprehensive range of services around the world in the fields of securities trading and settlement, financial information and payment transactions.- **JJob Introduction The SIX Security Monitoring & Incident Response (SMIR) is the central incident response team for the SIX...
-
Principal Incident Responder
1 week ago
Singapore LSEG (London Stock Exchange Group) Full timeLSEG Security Operations is a central function employing people, process and technology to continuously monitor and respond to cyber security incidents. Security Operations spans multiple domains including cyber threat intelligence, cyber threat detection, data loss prevention and cyber incident response. This role will act help to protect the Group from...