
Threat Analyst
20 hours ago
Ensign is hiring
**Responsibilities**:
- Monitor third party security feeds, forums, and mailing lists to gather information related to the client through automated means
- Produce intelligence outputs to provide an accurate depiction of the current threat landscape and associated risk through the use of customer, community, and open source reporting
- Produce actionable intelligence information for delivery to colleagues and customers in the form of technical reports, briefings, and data feeds
- Review vulnerabilities advisories
- Review and process threat intelligence reports
- Perform detailed investigative works into all traffic anomalies against established, historical baselines of individual agencies. Reviewing and profiling the events of all monitored clients
- Assess each event based on factual information and wider contextual information available
- Review, propose and generate reports to automate or reduce low value event escalations
- Build rules and intelligence to detect such threats and proliferate to all monitored networks
- Implementing and devising detection method of such threats in our security operations through SIEM Rules, DB scripts etc
- Perform periodic analysis of security events, network traffic, and logs to engineer new detection methods, or create efficiencies when available
- Supports the development of tactics, techniques, and procedures in providing proactive threat hunting and analysis against the available information sources (e.g. Netflow, DNS and Firewall logs, etc.)
- Assist the Security Analysts with the investigative works
- Prepare training programme for Security Analyst and conduct knowledge sharing sessions for Security Analyst
- Fulfil Change Requests, Service Requests and respond to internal / external enquiries with regards to detection Use Case
- Any other tasks as assigned
**Requirements**:
- Degree holder with at least 2-3 years' of experience in related field and capacity
- Prior experience working in a Security Operations Centre (SOC) or Computer Emergency Response Team (CERT/CIRT)
- Possessed deep interest in open source research and critical thinking / contextual analysis abilities
- Investigative and analytical problem solving skills
- An understanding of the current vulnerabilities, response, and mitigation strategies used in cyber security
- Related professional cyber security certification, such as GCIA, CEH, will be preferred
- Experience with intelligence analysis processes, including Open Source Intelligence (OSINT) and closed source intelligence gathering, source verification, data fusion, link analysis, and threat actor
- Ability to research and characterize security threats to include identification and classification of threat indicators
-
Mdr Analyst
3 days ago
Kallang, Singapore Ensign InfoSecurity Full timeEnsign is hiring ! - Baseline for normal operations and detect abnormalities - Perform hunt for anomalous events and investigate compromised systems. - Manage research related to threat hunting adversaries in our environments. - Participate effectively in investigations related to threat hunting adversaries in our environments - Perform Real-Time monitoring...
-
SOC Analyst
4 days ago
Kallang, Singapore Jobline Resources Pte Ltd Full time**Responsibilities**: - Responsible for working in a 24×7 IT Security Operation Centre (SOC) environment. - Identification, quantifying and tracking of cyber security incidents - Triage and management of information security events including, where necessary, participation in security incident management - Respond to inbound Change Requests (CRs), Service...
-
Associate SOC Analyst
2 weeks ago
Kallang, Singapore Ensign InfoSecurity Full timeEnsign is hiring ! **Responsibilities**: - Assist with the development of incident response plans, workflows, and SOPs - Maintain security sensors and tools - Monitor security sensors and review logs to identify intrusions - Escalate security incidents using established policies and procedures - Perform initial analysis of security events, network traffic,...
-
Associate SOC Analyst
1 week ago
Kallang, Singapore Ensign InfoSecurity Full timeEnsign is hiring ! **Duties and Responsibilities** - Assist with the development of incident response plans, workflows, and SOPs - Maintain security sensors and tools - Monitor security sensors and review logs to identify intrusions - Escalate security incidents using established policies and procedures - Perform initial analysis of security events, network...
-
Associate SOC Analyst
1 week ago
Kallang, Singapore Ensign InfoSecurity Full timeEnsign is hiring ! - Perform security monitoring, vulnerability management, data loss / policy violation prevention and threat hunting - Monitor security sensors and review logs to identify network anomalies or intrusions - Provide analysis from monitoring, research and assessment of security log data from a large number of heterogeneous security devices -...
-
Security Analyst L3
20 hours ago
Kallang, Singapore Ensign InfoSecurity Full timeEnsign is hiring ! **Responsibilities**: - Setup and operating Managed Endpoint and Detection Response (MDR) program and proposing enhancement to achieve better efficiency/ effectiveness - Operating Network Traffic Analytics (NTA) program, identification of abnormalities in client’s environment - Performs threat hunting within the clients’ technology...
-
Resident Engineer
1 week ago
Kallang, Singapore NTT DATA Full time**Make an impact with NTT DATA** Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it’s a place where you can grow, belong and thrive. **Your day at NTT DATA** This...