Information Security Incident Manager

19 hours ago


Singapore Citi Full time

Citi's Security Incident Management Team is a global team that manages all information security incidents for Citigroup and its affiliates with team members located globally. As a member of the Security Incident Management (SIM) Team, you participate in overseeing the SIRT process globally to provide oversight of emergency response to information security incidents to quickly identify, respond, and mitigate the risk from Information Security incidents that impact the firm.

In order to achieve the above results, this position will be responsible for the below functions:

- Act as the central point of contact for these activities and coordinate with other groups such as Information Security Officers (ISOs), Security Operations Center (SOC), CIRT (Cyber Investigations Response team) and the broader Global Information Security Threat Management group
- Take charge of implementation of various related projects, such as the implementation of the Security Incident Severity Calculator by leading the discussions with other areas for its development and enhancement
- Reviewing and analyzing IS Incidents to identify those that pose a significant risk to the Citigroup franchise and its affiliates, and escalating those IS Incidents in accordance with Citigroup policy and procedures
- Reviewing the details of all reported incidents to determine whether they constitute an IS incident
- Reviewing and verifying the accuracy of the reported severity level of an incident
- Tracking follow-up documentation related to an IS incident including Root Cause Analyses (RCAs), lessons learned and SIRT Remediation Plans throughout the incident lifecycle till closure
- **Required Qualifications**:

- 4 or more years working in an Incident Response role with experience in examining suspicious/malicious network events, analyzing malicious code/exploits, and system/network forensics
- 5 or more years working in IT/IT Security, preferably a 24x7 operational environment, or educational equivalent
- Ability to communicate technical issues to technical and non-technical business representatives is a must.
- Experience in security aspects of multiple platforms, operating systems, software, communications and network protocols or an equivalent combination of education and work experience
- Understanding of networking protocols and infrastructure designs; including routing, firewall functionality, host and network intrusion detection/prevention systems, encryption, load balancing, and other network protocols
- Experience with Reverse Engineering malicious code and Web/Network Penetration Testing is a plus
- Experience with Databases, SQL knowledge is a plus
- Experience writing Perl, Python, scripting, programming, or other languages is a plus. Any scripting language is okay.
- Experience administering and troubleshooting operating systems, including Solaris, Linux, and Microsoft Windows Server is a plus
- Certified Information Systems Security Professional (CISSP) certified/qualified or ability to actively work towards obtaining certification
- preferred
- Certified GIAC Certified Incident Handler (GCIH) or demonstrated skills and ability to obtain certification - preferred
- Ability to understand strategic objectives and vision, and work towards those goals
- Dedicated and self-driven desire to research current information security landscape.
**Non-Technical Skills Required**:

- Excellent communication skills, analytical ability, strong judgment and leadership skills, and the ability to work effectively with clients and IT management and staffs
- Strong customer and quality focus is a must
- Sound problem resolution, judgment and decision making skills are required
- Excellent organizational, interpersonal and project management skills
- Excellent communication skills both written and oral
- Self-starter and ability to work in a team environment
- Hard working and self-motivated
- Able to work effectively under pressure

CISO
- **Job Family Group**:
Technology
- **Job Family**:
Information Security
- **Time Type**:
Full timeCiti is an equal opportunity and affirmative action employer.

Qualified applicants will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

View the "**EEO is the Law**" poster. View the **EEO is the Law Supplement**.

View the **EEO Policy Statement**.

View the **Pay Transparency Posting



  • Central Singapore Emprego SG Full time

    **Location** Singapore, Central Singapore **Job Type** Full Time **Salary** $14,000 - $20,000 Per Month **Date Posted** 7 hours ago Additional Details **Job ID** 3462 **Job Views** 2 **Job Description**: Roles & Responsibilities **Position Description** Morgan Stanley is looking for a talented individual to join a team of information security...


  • Singapore Singapore Airlines Full time

    You will be a member of the Group Information Security Team responsible for responding to threats and incidents to the corporate networks, systems (on-prem and cloud) and digital assets. **Key Responsibilities include**: - Lead and drive major incidents towards mitigation and resolution with multiple counterparts - Manage and track incidents from opening...


  • Singapore SIX FINANCIAL INFORMATION SINGAPORE PTE. LTD. Full time

    SIX operates the infrastructure underpinning the Swiss financial sector and offers a comprehensive range of services around the world in the fields of securities trading and settlement, financial information and payment transactions.- **JJob Introduction The SIX Security Monitoring & Incident Response (SMIR) is the central incident response team for the SIX...


  • Singapore SPARROW RESEARCH PTE. LTD. Full time

    **Job Summary** Implement and oversee Sparrow's IT security operations framework, including security operations role definitions, monitoring, incident and event management, privileged access management, and overall security architecture. Ensure compliance with industry standards and regulatory requirements. **Responsibilities**: - Define and implement IT...


  • Singapore NTT ASIA PACIFIC PTE. LTD. Full time

    We are seeking an experienced Senior Incident Response Specialist to lead and execute advanced cybersecurity investigations. This is not an entry-level SOC role. You will be responsible for detecting, analyzing, and responding to security incidents, proactively hunting for threats, conducting forensic investigations, and contributing to vulnerability...


  • North-East Singapore Flintex Consulting Pte Ltd Full time

    **Information Security Manager**: - Minimum yearss' experience in IT Governance and Cyber Security as HOD (mandatory) - Vendor industry experience (mandatory) - Hands on and ability to implement security technical solutions (mandatory) - Manage communication with MAS auditor, incident reporting, engagement - Leading tasks and multiple teams of information...


  • Singapore KRIS INFOTECH PTE. LTD. Full time

    The Manager of the Information Security Department is responsible for the organization's efforts to protect its information assets and ensure the security of its information systems. - This position requires a proactive approach to developing and implementing security policies, conducting security assessments, and responding to incidents. - The role involves...


  • Singapore LIBERTY WIRELESS PTE. LTD. Full time

    Circles.Life is not just Your digital telco provider. Since our launch, we revolutionised the telco industry by seamlessly integrating both telco and digital lifestyle services on our Circles-X platform. Over the past years, we have captured more than 5% market share in Singapore, launched in Australia and Taiwan while attaining record breaking CSAT and NPS...


  • Singapore Apple Full time

    **Summary** Posted: 17 Jul 2024 Role Number**:200552877** Imagine what you could do here. At Apple, new ideas have a way of becoming extraordinary products, services, and customer experiences very quickly. Bring passion and dedication to your job and there's no telling what you could accomplish. We’re a diverse collection of thinkers and doers,...


  • Singapore Apple Full time

    **Summary** Posted: 6 Nov 2024 Role Number**:200552877** Imagine what you could do here. At Apple, new ideas have a way of becoming extraordinary products, services, and customer experiences very quickly. Bring passion and dedication to your job and there's no telling what you could accomplish. We’re a diverse collection of thinkers and doers,...