Senior Information Security Analyst, CSOC

16 hours ago


Singapore TD Full time $90,000 - $120,000 per year

Work Location:

Singapore, Singapore

Hours:

40

Line of Business:

Technology Solutions

Pay Details:

We're committed to providing fair and equitable compensation to all our colleagues. As a candidate, we encourage you to have an open dialogue with a member of our HR Team and ask compensation related questions, including pay details for this role.

Job Description:

Department Overview 

Building a World-Class, Diverse and Inclusive Technology Team at TD

We can't afford to be boring. Neither can you. The scale and scope of what TD does may surprise you. The rapid pace of change makes it a business imperative for us to be smart and open-minded in the way we think about technology. TD's technology and business teams become more intertwined as new opportunities present themselves. This new era in banking does not equal boring. Not at TD, anyway.

Enterprise Protect – CTM (Cyber Threat Management) team is a group of technology, security and risk professionals in North America and Singapore, focused on managing a comprehensive program to assess, prioritize, and mitigate business risk with technology controls.

The Cyber Security Team is responsible for protecting the Bank, customers, and employees by mitigating and identifying technology threats to TD. Development of effective risk management programs help ensure TD's best-in-class cyber security approach.

What We Stand For

The Enterprise Protect program is continuously evolving to mitigate risks to the bank, including introducing new initiatives and improved defense.  With a layered approach to protect customers, employees and the bank from cyber threats, TD manages, challenges and reviews technology controls for all business applications.

Department Overview 

Building a World-Class, Diverse and Inclusive Technology Team at TD

We can't afford to be boring. Neither can you. The scale and scope of what TD does may surprise you. The rapid pace of change makes it a business imperative for us to be smart and open-minded in the way we think about technology. TD's technology and business teams become more intertwined as new opportunities present themselves. This new era in banking does not equal boring. Not at TD, anyway.

Enterprise Protect – CTM (Cyber Threat Management) team is a group of technology, security and risk professionals in North America and Singapore, focused on managing a comprehensive program to assess, prioritize, and mitigate business risk with technology controls.

The Cyber Security Team is responsible for protecting the Bank, customers, and employees by mitigating and identifying technology threats to TD. Development of effective risk management programs help ensure TD's best-in-class cyber security approach.

What We Stand For

The Enterprise Protect program is continuously evolving to mitigate risks to the bank, including introducing new initiatives and improved defense.  With a layered approach to protect customers, employees and the bank from cyber threats, TD manages, challenges and reviews technology controls for all business applications.

Key Accountabilities

The Senior Information Security Analyst is responsible for leading the team of Information Security Analysts in tier 1 and tier 2 triage investigations and incident handling for cybersecurity operations.

The Senior Information Security Analyst will be responsible for managing information between multiple technical teams, the CSOC, CSIRT and ITS, LOB TS when appropriate.

  • Lead and coordinate Real-time analysis on identified cyber incidents currently impacting the bank's operations. 
  • Analyze, triage, and remediate security incidents internally and/or escalate to Cyber Security Incident Response team (CSIRT) for further investigation, treatment or support if needed. 
  • Manage incident queue in internal ticketing system in a timely and accurate manner to resolve a multitude of information security related situations and ensure that intake of incidents and reports from internal customers are properly recorded, timely updated, followed up and closed as per agreed SLA level ensuring quality and accurately in reporting.
  • Manage and support phishing operations through ticketing system in a timely and accurate manner to mitigate any phishing campaign targeting our internal employees.
  • Manage executive communications who are directly impacted or targeted as part of a phishing campaign.
  • The ability to guide team to identify, triage and remediate security incidents related to Web Attacks, Malware incidents, and other external and internal threats is required.
  • This role functions as part of the operations team, responsible for executing 24x7 onsite security monitoring activities. The operations follow a rotating shift schedule based in Singapore, with shift timings of 7:00AM – 3:00PM, 12:00PM – 8:00PM or 7:00AM – 7:00PM.
  • The personnel will be assigned to be on-call rotationally on a weekly basis to support and coordinate with the team for any notable events during after office hours and weekend (APAC Hours).

Job Requirements 

Knowledge and Skills:

  • 5 - 7 years of experience in Information Security Operations or related field is required.
  • A minimum of 3 years experience of leading and coordinating the Security Operations Monitoring team.
  • A thorough understanding of security controls and mechanisms, as well as threat risk assessment techniques related to complex data, applications, and networking environment.
  • Must have expert knowledge of security incident and event management using an enterprise incident management framework, log analysis, network traffic analysis, malware investigation and remediation, SIEM correlation logic and alert generation.
  • Ability to perform analysis and reporting on information from multiple data sources using data mining technique for the purpose of documenting analysis results, produce report and present to a technical and executive stakeholder.
  • Must have expert knowledge in SIEM, EDR, XDR, Firewall, WAF, NIDS and equivalent.
  • Understanding of Security principles, techniques, and technologies such as NIST Cybersecurity Framework, SANS Top 20 Critical Security Controls and OWASP Top 10.
  • Strong organizational and self-directing skills. Ability to initiate, coordinate and prioritize responsibilities and follow through on tasks to completion.
  • Must demonstrate expert knowledge in Enterprise IT operations, incident management, change management, Access/Identity Management, security operations, vulnerability and compliance management, ticketing system, incident ticket life cycle and SLA terms.
  • Must have excellent written and oral communication skills.
  • Ability to work independently on a variety of assignments with minimal supervision.
  • Ability to work without supervision with the senior leadership team.
  • Good to have basic programming skills in various disciplines including scripting languages.

Background and Education:

  • Completion of a Bachelor's degree or equivalent program in Computer Science, Management Information Systems or similar field is required.
  • Completion of at least one of the following: GIAC (GSEC, GCIH, GCIA, GCFE, GCFA), CCNP, CCNA, CISSP

Who We Are

TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.


TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you've got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we're here to support you towards your goals. As an organization, we keep growing – and so will you.

Our Total Rewards Package
Our Total Rewards package reflects the investment we make in our colleagues to help them, and their families achieve their well-being goals. Total Rewards at TD includes a base salary and several other key plans such as health and well-being benefits, including medical coverage, paid time off, career development, and reward and recognition programs.

Additional Information:
We're delighted that you're considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we're committed to providing the support our colleagues need to thrive both at work and at home.
 
Colleague Development 
If you're interested in a specific career path or are looking to build certain skills, we want to help you succeed. You'll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. Whether you have a passion for helping customers and want to expand your experience, or you want to coach and inspire your colleagues, there are many different career paths within our organization at TD – and we're committed to helping you identify opportunities that support your goals.
 

Training & Onboarding
We will provide training and onboarding sessions to ensure that you've got everything you need to succeed in your new role.
 

Interview Process 
We'll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.

Accommodation 

If you require an accommodation for the recruitment / interview process (including alternate formats of materials, or accessible meeting rooms or other accommodation), please let us know and we will work with you to meet your needs.



  • Singapore beBeeSeniorInformationSecurityAnalyst Full time $90,000 - $120,000

    Job Title: Senior Information Security AnalystJob Description:The role of a Senior Information Security Analyst is to oversee the implementation and maintenance of information security policies and procedures. This position requires strong analytical and problem-solving skills, as well as excellent communication and interpersonal skills.Key...


  • Singapore Bloomberg Full time

    We're currently looking to fill 2 positions for our Cyber Security Operations Center (CSOC) in Singapore. The work schedule for each position will be as follows: **1) Weekday position - Monday-Friday 8AM-6PM (5 days a week)** 2) Weekend position - Thursday-Friday 8AM-6PM, Saturday-Sunday 8AM-9PM (4 days a week) **We protect Bloomberg.** There's no such...


  • Singapore Bloomberg Full time

    **We protect Bloomberg.** The Bloomberg CSOC is responsible for the detection of cyber threats, and when detected, responsible for the rapid response, across both the diverse lines of business and the global network. The CSOC is an open and collaborative environment, where members work together to identify and address the latest cyber security threats facing...


  • Singapore Bloomberg Full time

    **We protect Bloomberg.**: The Bloomberg CSOC is responsible for the detection of cyber threats, and when detected, responsible for the rapid response, across both the diverse lines of business and the global network. The CSOC is an open and collaborative environment, where members work together to identify and address the latest cyber security threats...


  • Singapore Anton Murray Consulting Full time

    Singapore- Ancillary Areas- PermanentOur client is a global financial services company seeking a Senior Information Security Analyst. As a **Senior Cyber Threat Analyst**, you will be given the opportunity to join a team of security analysts about both traditional and unconventional ways to detect, analyse, and mitigate potential intrusions and other...


  • Singapore Nanyang Technological University Singapore Full time

    Senior IT Security Analyst (Information Security Department) (NIE) About The National Institute Of Education (nie)The National Institute of Education (NIE), Singapore , is Singapore’s national teacher education institute and we are proud to be an integral part of the nation’s education service. We play a key role in the preparation of teachers and in...


  • Singapore Revolut Full time

    Information Security Analyst (Security Operations) Join to apply for the Information Security Analyst (Security Operations) role at Revolut About Revolut People deserve more from their money. More visibility, more control, and more freedom. Since 2015, Revolut has been on a mission to deliver just that. Our powerhouse of products — including spending,...


  • Singapore Bloomberg Full time

    **We protect Bloomberg.** **The Bloomberg CSOC is responsible for the detection of cyber threats, and when detected, responsible for the rapid response, across both the diverse lines of business and the global network. The CSOC is an open and collaborative environment, where members work together to identify and address the latest cyber security threats...


  • Singapore IntApp Full time

    Information Security Analyst Location: Singapore Intapp is looking for an Information Security Analyst to join our Information security team. The Information Security Analyst plays a vital role in keeping an organization’s proprietary and sensitive information secure. Also, the Information Security Analyst works inter-departmentally to identify and...


  • Singapore beBeeSecurity Full time $80,000 - $120,000

    Information Security AnalystWe are seeking a seasoned Information Security Analyst to strengthen our organization's cybersecurity posture.This is a challenging role that requires in-depth knowledge of security principles, threat analysis, and mitigation strategies. The successful candidate will have the ability to work effectively in a collaborative...