
IT Security Analyst
3 days ago
POSITION DESCRIPTION
**Position Title**: IT Security Analyst Business Unit: BAPCOR Department: IT Location: Mount Waverley, VIC Reports to: CISO Date: Developed by: Head of Cyber Security Approved by:
The Position
Business Background Bapcor Limited is Asia Pacific’s leading provider of vehicle parts, accessories, equipment, service, and solutions, owning businesses spanning trade, specialist wholesale, and retail with over 1,100 locations and employing approximately 5,000 team members across Australia, New Zealand, and Asia.
We take takes pride in developing a specialist and knowledgeable team, culture and capability, with an unrelenting focus on excellence in customer service.
**Position Scope Direct reports**: None Indirect reports: None Revenue/ budget: Annual Determination Facilities/ assets: Annual Determination Other: Leadership level: Individual contributor
Key Accountabilities - Role
- The analyst will be the main contributor to the CSIRT (Cyber Security Incident Response Team)Monitor and investigate security events, incidents and breaches, conduct root cause analysis, and report
post-incident.Plan and recommend security measures and controls.Able to research and evaluate emerging cyber security threats and ways to manage them.Keep up-to-date with the latest threats, track common vulnerabilities and exposures (CVE) based security
threats, map to internal controls, provide recommendations and support any remediation plans.Proactively identify security flaws and vulnerabilities, both internal and external.Recommend and enforce corporate security policies.Map security practices to regulatory controls (NIST, Essential 8, PCI DSS Standards).Contribute and support periodic penetration tests cyber audits and conduct other security reviews, with
the security team, vendors and consultants.Evaluation and assessment of production Changes from a security standpoint protecting Bapcor from
threats to data, processes and infrastructure including software and Operational Technology (OT).Support and review protective security controls to cover the company’s Data Loss Prevention (DLP),
Security Information and Event Management (SIEM), Web Application Firewalls (WAF),DAR/DIM protection, Network Access Control (NAC), Identity and Privileged Access Management
- Conduct proactive monitoring, investigation and report mitigation required from security incidentsEnsure compliance with all relevant IT Security and related policies
On offer is a rare opportunity to sharpen your cybersecurity skills across a number of cyber domains while working in a global business that values diversity, creativity, and encourages professional development.
**Key relationships Internal**: External: IT management and team leaders Application Vendors Business Services Stakeholders Infrastructure Vendors Business leaders and power users of systems Penetration test and external auditors
Key challenges of the position
- Ensuring appropriate priority is given to UARs by business and IT stakeholdersFollowing up with business and IT stakeholders to ensure actions are carried outSupport Cybersecurity Incident Response processes and activitiesEnsure preventative security controls are in place to minimise the risk of internal/external security threats
Organisational Chart
The Person
**Qualifications**: Degree Qualified or IT Certifications Experience: 3+ years experience in IT security-related roles 3+ years of experience with vulnerability management, incident detection
and response Experienced with ISO27001, NIST CSF, Essential 8, or similar frameworks Ability to read and write reporting scripts (PowerShell) Experience supporting retail & wholesale environments - Desirable Skills and competencies: (basic/ Identity and Access Management - Intermediate intermediate/ advanced) Security incident response - Intermediate SIEMs - Setting up alerts, Searches and Dashboards - Intermediate Penetration Testing - Intermediate Networking (DNS, DHCP, TCP/IP) - Intermediate Microsoft Exchange - Intermediate Security Tools - such as Zscaler (Proxy), CrowdStrike (endpoint protection),
We are in it Together We get it done
CISO
CTO
IT Security Analyst
We do the Right Thing
-
Cyber Security Analyst
3 days ago
Singapore Zone IT Solutions Full timeWe is seeking a talented Cyber Security Analyst based in Singapore. As a Cyber Security Analyst, you will play a key role in ensuring the security and integrity of our organization's data and systems. **Requirements**: **Responsibilities**: - Monitor, detect, and respond to cyber threats and security incidents, - Conduct vulnerability assessments and...
-
Security Analyst
8 hours ago
Singapore NEURONES IT ASIA PTE. LTD. Full timeWe are looking for a **Senior SOC Analyst **who will be responsible for supporting all areas of IR, mentoring junior cyber security analysts, and will be the mainstay for Security Operations issues within the client's team. **Responsibilities** - Ability to respond to threats and alerts whilst remaining calm under pressure. - Ability to conduct...
-
Security Analyst
2 weeks ago
Singapore IT CONSULTANCY & SERVICES PTE LTD Full timeThe security analyst will be primarily responsible for monitoring, analyzing, and interpreting alerts and system logs to identify abnormal activity indicative of potentially malicious activity. - Collaborate with in-house and external SOC team to react urgently to security events and provide observations and recommendations that may have impact to security...
-
Senior Network Security Analyst
4 days ago
Singapore IT WORLD PTE. LTD. Full time**Location: Singapore **Salary: $5,850 - $7,500 per month **Job Description: **Responsibilities: - Design and implement network security solutions to protect our organization's systems and data - Monitor and analyze network traffic for signs of malicious activity - Investigate and respond to security incidents - Conduct security assessments and penetration...
-
Security Analyst
3 days ago
Singapore Nicoll Curtin Group Full timeLocation: Singapore - Salary: Confidential - Job Type:Consulting Posted about 9 hours ago - **Sector**: Cyber Security - **Contact**: Kanatip Kantiwong - **Job Ref**: 45891 **Position: Security Analyst** As a Security Analyst, you'll play a pivotal role in safeguarding our clients' networks by monitoring, analyzing, and responding to security incidents in...
-
IT Security Analyst
1 week ago
Singapore INNOVATIVE CONSULTING PTE. LTD. Full timeThe security analyst is responsible for analysing cybersecurity events, improving threat detection capabilities and procedures. If an event results in a security incident, the analyst will work with the relevant stakeholders to respond and contain the incident. Key Responsibilities: - Improving threat detection capabilities, driving lessons learn from...
-
Security Analyst
5 days ago
Singapore R SYSTEMS (SINGAPORE) PTE LIMITED Full timeRequirement - Minimum of (3) three years direct Information Security experience in a security engineer, architect, consultant or a similar role, preferably with incident management experience in a SOC environment. - Strong practical experience in Cyber security: Cyber kill chain, TTP, threat intelligence, malware triage. - Strong understanding of Different...
-
Security Analyst
4 days ago
Singapore Yes We Hack Full timeAt YesWeHack we’re on a mission - **to make the world a** **safer place** by stopping cyber attack breaches by leveraging our global **Ethical Hackers' Network (90,000+).** Founded in 2015, YesWeHack is the **EU #1 bug bounty platform**, with offices in France, Singapore, Switzerland, Germany. We provide a disruptive approach to Cyber Security through Bug...
-
Security Analyst
1 day ago
Singapore Yes We Hack Full timeAt YesWeHack we’re on a mission - **to make the world a** **safer place** by stopping cyber attack breaches through our global **Ethical Hackers Network (35,000+).** Founded in 2015, YesWeHack is the **EU #1 bug bounty platform**, with offices in France, Singapore, Switzerland, Germany. We provide a disruptive approach to Cyber Security through Bug Bounty...
-
IT Security Analyst
7 days ago
Singapore AXS Pte Ltd Full timeAssess technologies and solutions against cyber security standard. Identify, analyse, and prioritize cyber security risks. Assess and advise security by design concepts in Cloud platforms such as AWS or Azure Cloud. Develop and oversees implementation of risk mitigation strategies and controls. Maintain and update the organization's risk register. ...