Current jobs related to Insider Threat Program Manager, Information Security - Singapore - BYTEDANCE PTE. LTD.
-
Singapore ByteDance Full timeResponsibilities About the Company Founded in 2012, ByteDance's mission is to inspire creativity and enrich life. With a suite of more than a dozen products, including TikTok as well as platforms specific to the China market, including Toutiao, Douyin, and Xigua, ByteDance has made it easier and more fun for people to connect with, consume, and create...
-
Insider Threat Analyst
6 days ago
Singapore INCOME INSURANCE LIMITED Full timeThe insider threat analyst is responsible for researching, triaging, and investigating anomalous events of concern using Behavior Analytical tools, Splunk, and other tools to determine potential malicious or risky insider activity. This analyst role will come under the IT Risk and Security department reporting to the Security Operations Manager. **Key...
-
Insider Threat Analyst
1 week ago
Singapore INNOVATIVE CONSULTING PTE. LTD. Full timeDescription: The insider threat analyst is responsible for researching, triaging, and investigating anomalous events of concern using Behavior Analytical tools, Splunk SIEM, and other tools to determine potential malicious or risky insider activity. This analyst role will come under the IT Risk and Security department reporting to the Security Operations...
-
Insider Threat Analyst
1 week ago
Singapore Quess Corp Limited Full time**Job Information**: Industry **Insurance** *** Salary **7000-7500** *** Work Experience **2-4 Years** *** City **singapore** *** State/Province **singapore** *** Country **Singapore** *** Zip/Postal Code **189557** *** - Conduct investigations by analyzing and verifying information through various investigative techniques, internal resources,...
-
Insider Threat Analyst
2 weeks ago
Singapore R SYSTEMS (SINGAPORE) PTE LIMITED Full time**Responsibilities**: - Conduct investigations by analyzing and verifying information through various investigative techniques, internal resources, forensics, and Insider threat tools such as Data Loss Prevention, End Point Detection and Response, Network Traffic Analysis & Deceptive Technology to detect malicious lateral movement & Privilege escalation in...
-
Insider Threat Analyst
3 days ago
Singapore UBS Full timeSingapore - Information Technology (IT) - Group Functions **Job Reference #** - 267237BR **City** - Singapore **Job Type** - Full Time **Your role** - Are you a cybersecurity professional with hands on experience identifying Insider threats? Do you routinely work closely with business, legal, compliance, and technology stakeholders to investigate...
-
Insider Threat Analyst
1 week ago
Singapore Quess Corp Limited Full time**Job Information**: Industry **Insurance*** Salary **5000 - 7000*** Work Experience **1 - 4 years*** State/Province **singapore*** City **singapore*** Zip/Postal Code **189557*** Country **Singapore*** - Conduct investigations by analyzing and verifying information through various investigative techniques, internal resources, forensics, and...
-
Insider Threat Investigator
2 weeks ago
Singapore beBee Careers Full timeJob OverviewWe are seeking a highly skilled Insider Threat Investigator to join our team. The ideal candidate will have a strong background in insider threat analysis, data analysis, and investigative techniques.The successful candidate will be responsible for conducting investigations by analyzing and verifying information through various investigative...
-
Singapore Bank of America Full timeJob Description: At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day. Being a Great Place to Work is core to how we drive Responsible Growth. This includes our...
-
Senior Insider Threat Detection Analyst
2 weeks ago
Singapore Chevron Full timeChevron’s strategy is straightforward: be a leader in efficient and lower carbon production of traditional energy, in high demand today and for decades to come, while growing lower carbon businesses that will be a bigger part of the future. To achieve these goals, we’ll build on the assets, experience, capabilities, and relationships we’ve developed...
Insider Threat Program Manager, Information Security
2 weeks ago
**About the Company**
Founded in 2012, ByteDance's mission is to inspire creativity and enrich life. With a suite of more than a dozen products, including TikTok as well as platforms specific to the China market, including Toutiao, Douyin, and Xigua, ByteDance has made it easier and more fun for people to connect with, consume, and create content.
**Why Join Us**
Creation is the core of ByteDance's purpose. Our products are built to help imaginations thrive. This is doubly true of the teams that make our innovations possible.
Together, we inspire creativity and enrich life - a mission we aim towards achieving every day.
To us, every challenge, no matter how ambiguous, is an opportunity; to learn, to innovate, and to grow as one team. Status quo? Never. Courage? Always.
At ByteDance, we create together and grow together. That's how we drive impact - for ourselves, our company, and the users we serve.
Join us.
**About the Team**
The Internal Security Risk Management & Governance team is responsible for managing and mitigating information security risks posed within the organisation. To ensure that the company's risk management and governance strategies are up to date and aligned across the organisation, this team is responsible for working with stakeholders from cross-functional teams to perform regular risk assessments, designing and implementing risk mitigation controls. This team is also responsible for managing the optimization, operation, training, and data analysis of the internal threat platform and UEBA (User and Entity Behavior Analytics) and DLP (Data Loss Prevention) platforms within the company.
**Responsibilities**
- Develop and maintain the organization's insider risk security governance framework, including risk scenario mapping to controls, policies, procedures, and standards that align with industry best practices and regulatory requirements. Such framework must be sufficiently detailed to allow ease of execution with clarity in roles and responsibility amongst stakeholders.
- Communicate the insider threat governance framework to key stakeholders and build effective collaboration models with stakeholders with clear roles and responsibilities, transparent tracking of metrics and seamless management reporting.
- Conduct regular security risk assessments to identify risk trends, vulnerabilities and alert patterns, and work with relevant departments to develop mitigation and remediation strategies.
- Monitor and report on the effectiveness of security controls and the status of security risks to senior management. Communicate risk assessment and trend analysis findings, risks and gaps to both technical and non-technical program stakeholders.
- Coordinate with IT and business units to ensure insider threat security measures are integrated into technology projects and business processes.
- Identify and garner the support of internal and external stakeholders to collaborate on driving change, including risk remediation and leading parties involved to meet risk remediation objectives.
- Translate business and technology requirements into relevant insider threat rules for operational teams to implement
- Stay abreast of the latest security trends, threats, and technologies to continuously improve the organization's insider threat security posture.
- Conduct analysis of large complex datasets involving insider risks, track metrics and identify gaps and vulnerabilities
- Understanding emerging insider risks to build and improve proactive threat detection.
**Minimum Qualifications**
1. Bachelor's degree or above, with a preference for majors in Information Security, Computer Science, Information Technology, privacy, risk or a related field. Professional certifications such as CISSP, CISM, CRISC, or CGEIT are highly desirable.
2. Minimum of 5 years of work experience, with a preference for experience in DLP (Data Loss Prevention), UEBA (User and Entity Behavior Analytics), or security platforms-related work.
3. Experience with security risk assessment methodologies and tools.
4. Skilled in creating and maintaining risk registers, developing risk treatment plans, and effectively communicating risk posture to stakeholders at all levels of the organization.
5. Self-driven and results-oriented, enjoys challenging tasks, demonstrates enthusiasm for work, and can handle job pressures.
6. Excellent communication and interpersonal skills, with the ability to engage and influence stakeholders at all levels.
7. Proven ability to manage and prioritize multiple projects and tasks.
**Preferred Qualifications**
- Hands on in-house experience with designing, implementation and operation of commercial or in-house UBA/UEBA solutions (e.g., Splunk, Exabeam) are highly desirable
ByteDance is committed to creating an inclusive space where employees are valued for their skills, experiences, and unique perspectives. Our platform connects people from across the globe and so does our workplace. At ByteDance,