Insider Threat Analyst

2 weeks ago


Singapore UBS Full time

Singapore
- Information Technology (IT)
- Group Functions

**Job Reference #**
- 267238BR

**City**
- Singapore

**Job Type**
- Full Time

**Your role**
- Are you a cybersecurity professional with hands on experience identifying Insider threats? Do you routinely work closely with business, legal, compliance, and technology stakeholders to investigate incidents, improve processes through technology, policy, and employee education? Do you have knowledge of insider threat frameworks and best practices? Do you have hands on experience with User/Entity behavior analysis tool implementation or operationalization? Are you self-driven, motivated and have experience working on a global security team?
- We are looking for an Insider Threat Analyst to:
- utilize investigation techniques to deter, detect, and mitigate Insider Threat activity in collaboration with business, HR, line manager, and other key stakeholders
- monitor, analyze, and interpret system logs for events and incidents reflective of unauthorized access or operational irregularities and escalates for action as appropriate
- develop response strategies and technical support documents, summaries, reports, presentations and other designated work products that help support the Insider Threat program
- assist in the Identification, implementation, and management of associated technologies, services and solutions needed for the insider threat program to operate
- operate effectively on a global team with limited oversight supporting “follow the sun” operational model

**Your team**
- You will be working as a team member of a critical Insider Threat Risk Management and monitoring team that operates globally. We are global team with the presence in Switzerland, USA, UK and Singapore. Operating under the Cyber Defense and Strategy (CD&S) organization of the office of the CISO, the Insider Threat function is the premier team responsible for collaborating across multiple enterprise teams, business partners/functions and lines of business to monitor for, and protect the bank against insider threats. The Insider Threat team function is an integral part of a broader Security Operations Center (SOC) Fusion team responsible for the detection, monitoring, investigation and response to cyber threats across the enterprise to protect, preserve, and prolong the value of the UBS data and digital services, and enhance UBS’s brand and competitiveness in a digitized world.

**Your expertise**
- bachelor’s degree graduate and certified CISSP, CISSP-ISSMP, CISM, CISA, GCIA, GCFA or equivalent 5+ years’ work experience in, or leading cyber threat monitoring operations teams (in lieu of degree)
- 5 years+ hands on experience with Insider Threat & Information Security, with past job roles in operationally monitoring and responding to cyber threat events
- 3+ years leading a team of cyber threat monitoring analysts or recognized as an independent, senior level InT technical and operational SME, advising on independent projects, serving as an InT operations senior trainer and serve as both a technical and investigative escalation point supporting InT operational monitoring and response
- advanced, SME level understanding of insider threat best practices, operations and current threat landscape and using these skills to effectively monitoring, triage and investigate insider threats across a complex and diverse global enterprise
- experience creating or implementing information security requirements, policies, and regulations in support of security control audit compliance while performing hands on analysis and triage of potential Insider Threats and maintain strong relationships with stakeholders across the firm
- utilize advanced and leading analytical skills and insider tradecraft knowledge to assist in designing, creating, building, testing and implementing Insider Threat use-cases utilizing various security event data sources
- exposure to and understanding of query languages in directing detection and alerting analytics and correlations involving security event data to triage, investigate and respond to insider threat events

**About us**
- UBS is the world’s largest and only truly global wealth manager. We operate through four business divisions: Global Wealth Management, Personal & Corporate Banking, Asset Management and the Investment Bank. Our global reach and the breadth of our expertise set us apart from our competitors.
- With more than 70,000 employees, we have a presence in all major financial centers in more than 50 countries. Do you want to be one of us?

**How we hire**

**Join us**
- At UBS, we embrace flexible ways of working when the role permits. We offer different working arrangements like part-time, job-sharing and hybrid (office and home) working. Our purpose-led culture and global infrastructure help us connect, collaborate, and work together in agile ways to meet all our business needs.
- From gaining new experiences in different roles to acquirin



  • Singapore R SYSTEMS (SINGAPORE) PTE LIMITED Full time

    **Responsibilities**: - Conduct investigations by analyzing and verifying information through various investigative techniques, internal resources, forensics, and Insider threat tools such as Data Loss Prevention, End Point Detection and Response, Network Traffic Analysis & Deceptive Technology to detect malicious lateral movement & Privilege escalation in...


  • Singapore Chevron Full time

    Chevron’s strategy is straightforward: be a leader in efficient and lower carbon production of traditional energy, in high demand today and for decades to come, while growing lower carbon businesses that will be a bigger part of the future. To achieve these goals, we’ll build on the assets, experience, capabilities, and relationships we’ve developed...


  • Singapore American International University, Kuwait Full time

    Senior Cybersecurity Engineer and Insider Threat Specialist (Position Requires Relocation to Kuwait)Senior Cybersecurity Engineer and Insider Threat SpecialistPosition Overview: Will play a key role in implementing and monitoring the universitys cybersecurity infrastructure, with an emphasis on detecting and responding to threats originating from within the...

  • Threat Analyst

    2 weeks ago


    Singapore Proficio Full time

    Proficio is an award-winning managed detection and response (MDR) services provider. We provide 24/7 security monitoring, investigation, alerting and response services to organizations in healthcare, financial services, manufacturing, retail and other industries. Proficio has been highlighted in Gartner’s Market Guide for Managed Detection and Response...


  • Singapore BYTEDANCE PTE. LTD. Full time

    **About the Company** Founded in 2012, ByteDance's mission is to inspire creativity and enrich life. With a suite of more than a dozen products, including TikTok as well as platforms specific to the China market, including Toutiao, Douyin, and Xigua, ByteDance has made it easier and more fun for people to connect with, consume, and create content. **Why...


  • Singapore Citi Full time

    Excited to grow your career? We value our talented employees, and whenever possible strive to help one of our associates grow professionally before recruiting new talent to our open positions. If you think the open position you see is right for you, we encourage you to apply! Our people make all the difference in our success.Key Responsibilities - The...

  • Insider Threat Lead

    2 weeks ago


    Singapore TikTok Full time

    Responsibilities TikTok is the leading destination for short-form mobile video. At TikTok, our mission is to inspire creativity and bring joy. TikTok's global headquarters are in Los Angeles and Singapore, and its offices include New York, London, Dublin, Paris, Berlin, Dubai, Jakarta, Seoul, and Tokyo. Why Join Us Creation is the core of TikTok's purpose....


  • Singapore IMDA Full time

    Threat Intelligence Analyst Apply locations IMD - Mapletree Business City, MBC BLK 10 time type Full time posted on Posted 12 Days Ago job requisition id JR- . Responsibilities Work with a team of Threat Intelligence analysts to maintain situational awareness for Infocomm and Media sectors. Keep abreast with related threat groups' tactics and techniques and...


  • Singapore Deutsche Bank Full time

    **Details of the Division and Team**: Everyday Deutsche Bank observes thousands of intrusion attempts. DB’s COO Chief Security Office (CSO) integrates both Corporate Security (CS) and Information Security (CISO) as both teams are responsible for mitigating these risks. The CSO team enables the business of Deutsche Bank by providing agile security...

  • Threat Analyst

    1 week ago


    Singapore Ensign InfoSecurity Full time

    Ensign is hiring ! **Responsibilities**: - Ensure timely response to security incidents, root cause analysis and closure of incident - Triage detection alerts, investigate and respond to cybersecurity incidents that may involve log analysis, forensic analysis and incident management, based on technology available - Assess cybersecurity threats and...