Senior Information Security Incident Response Lead

19 hours ago


Singapore NTT ASIA PACIFIC PTE. LTD. Full time

We are seeking an experienced Senior Incident Response Specialist to lead and execute advanced cybersecurity investigations. This is not an entry-level SOC role. You will be responsible for detecting, analyzing, and responding to security incidents, proactively hunting for threats, conducting forensic investigations, and contributing to vulnerability management through red teaming or penetration testing where applicable. Strong proficiency with EDR solutions, SIEM log platforms, incident case management tools, and forensic analysis tools is essential.

**Key Responsibilities**
- Lead and manage complex security incidents, acting as a key contact for stakeholders.
- Perform deep analysis of security alerts to identify, mitigate, and remediate threats.
- Conduct forensic investigations on compromised hosts, networks, and cloud environments.
- Proactively hunt for adversarial activity and anomalous behaviors across large datasets.
- Analyze malware samples (basic level) to determine functionality, impact, and mitigation strategies.
- Develop and refine detection rules, improving alert fidelity and response workflows.
- Contribute to threat intelligence gathering, analyzing attack patterns, and enhancing defensive strategies.
- Participate in red teaming or penetration testing activities to identify and remediate vulnerabilities.
- Provide strategic recommendations for improving the organization’s security posture.
- Create detailed incident reports, threat intelligence assessments, and executive summaries.
- Mentor and provide guidance to junior analysts, fostering continuous improvement in IR methodologies.

**Qualifications & Requirements**

**Education & Experience**:

- Bachelor's or Master's degree in Computer Science, Cybersecurity, or a related field.
- Minimum of 5 years of experience in cybersecurity, with at least 2 years in incident response, threat hunting, or forensic analysis.

**Technical Expertise**:

- Extensive experience responding to targeted attacks from APT groups, cybercriminals, and nation-state actors.
- Strong forensic analysis skills across Windows, Linux, and macOS systems.
- Expertise in network forensics, traffic analysis, and packet inspection (Wireshark, Zeek).
- Proficiency in SIEM platforms (Splunk, Sentinel, QRadar) and EDR solutions (CrowdStrike, Microsoft Defender ATP).
- Knowledge of malware analysis techniques, including static and dynamic analysis.
- Familiarity with cloud security investigations (AWS, Azure, GCP).
- Strong scripting skills in Python, PowerShell, or similar languages for automation.
- Understanding of security architecture, authentication mechanisms, and enterprise IT operations is a plus.
- Experience with vulnerability management, red teaming, or penetration testing is a plus.
- Familiarity with MITRE ATT&CK framework and various cyber threat intelligence methodologies.

**Preferred Certifications**:

- GIAC (GCFA, GNFA, GCIH, GCIA, GREM)
- CISSP (Certified Information Systems Security Professional)
- CEH (Certified Ethical Hacker)
- OSCP (Offensive Security Certified Professional)
- Cloud Security Certifications (AWS Security Specialty, Microsoft Azure Security)

**Key Competencies**:

- Strong analytical and problem-solving skills in high-pressure situations.
- Ability to manage multiple investigations efficiently while meeting deadlines.
- Excellent verbal and written communication skills, with the ability to convey technical details to varied audiences.
- Strong team collaboration and leadership skills, with a proactive approach to knowledge sharing.
- Ability to work in a fast-paced environment and adapt to evolving threats and challenges.



  • Central Singapore Emprego SG Full time

    **Location** Singapore, Central Singapore **Job Type** Full Time **Salary** $14,000 - $20,000 Per Month **Date Posted** 7 hours ago Additional Details **Job ID** 3462 **Job Views** 2 **Job Description**: Roles & Responsibilities **Position Description** Morgan Stanley is looking for a talented individual to join a team of information security...


  • Singapore Tetra Pak Full time

    At Tetra Pak we commit to making food safe and available, everywhere; and we protect what's good – protecting food, protecting people, and protecting the planet. By doing so we touch millions of people's lives every day. And we need people like you to make it happen. We empower you to reach your potential with opportunities to make an impact to be...


  • Singapore StarHub Full time

    Join to apply for the Lead, Cybersecurity Incident Response role at StarHub Job Description The Assistant Manager - Incident Response and Threat Hunting is responsible for leading the detection, investigation, and mitigation of cybersecurity incidents. This role involves proactive threat hunting, forensic analysis, and developing response strategies to...


  • Singapore Argyll Scott Full time

    OverviewWe are seeking a Senior Cybersecurity Incident Responder to join our team on a long-term engagement. The successful candidate will play a key role in incident triage, response, and investigation, operating at Level 2 to Level 3 (L2-L3) within the Security Operations Center (SOC).ResponsibilitiesPerform advanced incident triage, response and...


  • Singapore Argyll Scott Full time

    Overview We are seeking a Senior Cybersecurity Incident Responder to join our team on a long-term engagement. The successful candidate will play a key role in incident triage, response, and investigation , operating at Level 2 to Level 3 (L2-L3) within the Security Operations Center (SOC). Responsibilities Perform advanced incident triage, response and...


  • Singapore StarHub Full time

    Overview Assistant Manager - Incident Response and Threat Hunting is responsible for leading the detection, investigation, and mitigation of cybersecurity incidents. This role involves proactive threat hunting, forensic analysis, and developing response strategies to minimize risks and impact on an organization's IT infrastructure. The specialist also...


  • Singapore beBeeIncidentResponse Full time $120,000 - $180,000

    KPMG is seeking a highly skilled Incident Response Lead to join our team. The successful candidate will be responsible for leading and managing the response to cyber-security incident response engagements, helping with commercial proposals to clients based on existing templates, coaching and managing colleagues, being hands-on as required to deliver incident...


  • Singapore Tetra Pak Full time

    Overview Join to apply for the Incident Response Lead role at Tetra Pak . At Tetra Pak we commit to making food safe and available, everywhere; and we protect what's good – protecting food, protecting people, and protecting the planet. By doing so we touch millions of people's lives every day. And we need people like you to make it happen. We empower you...


  • Singapore Apple Full time

    **Summary** Posted: 6 Nov 2024 Role Number**:200552877** Imagine what you could do here. At Apple, new ideas have a way of becoming extraordinary products, services, and customer experiences very quickly. Bring passion and dedication to your job and there's no telling what you could accomplish. We’re a diverse collection of thinkers and doers,...


  • Singapore beBeeCyber Full time $100,000 - $150,000

    Cyber Security is one of our strategic pillars in the fight against cyber threats. The team provides critical assistance to clients who have fallen victim to a cyber security incident, such as ransomware or business email compromise.The team's primary function is to investigate the root cause of the incident and the extent of the breach - which systems were...