Senior Cyber Security Incident Responder
1 day ago
**What we offer**
**Summary**
As an investigator in SAP's Global Security Operations team you will join a global team of security practitioners to mature SAP's security. You will be located in Singapore, one of the global security hubs, and reporting directly to the Head of Security Operations APJ. The main work will be to develop the SOC and DFIR functions as well as conducting and leading investigations and analysis.
This role will have the opportunity to work within SAP's Global Security functions and interacting in a complex and challenging environment to detect, react to and remediate cyber security incidents as well as to drive detection use case development forward.
**The Role**
- Conducts investigations and forensics on internal and cloud assets for SAP and its line of businesses
- Leads incidents of local and regional scale, sets investigations goals and prioritizes tasks
- Drives continuous improvement and increases efficiency through standardization and automation
- Works independently and with management on highly visible and complex projects
- Contributes to major, global scale incidents and crisis situations by conducting analysis and writing summaries or reports
- Designs, implements and verifies new detection mechanisms and queries
- Mentors analysts and helps develop skills
- Is part of a 24/7 follow-the-sun organisation
**Requirements**:
- Degree in Computer Science or equivalent experience
- Experience working in a 24/7 operational environment (Cyber Intelligence Fusion Center, SOC, NOC, Operations Center).Has Security certification (e.g. Security+, GCIA, GCIH, CISSP)
- Knowledge in the area of creation and maintenance of detection use cases and design of playbooks
- Experience managing cases with enterprise SIEM or Incident Management systems (Information Security, Information Systems, Engineering or related work experience)
- Technology: Good knowledge of one or more of the following: Windows/AD file system, registry functions and memory artifacts, Unix/Linux file systems and memory artifacts, Mac file systems and memory artifacts, Cybersecurity automation, SIEM tools (Splunk, Loggly, Sumo Logic, LogZilla, jKool, QRadar)
Experience in network security and network systems including LANs/WANs/VPNs/Firewalls and IDS’s
- Experience with one or more scripting languages (PowerShell, Python, Bash, etc.)
- Knowledge of APT actors; their tools, techniques, and procedures (TTPs), TTP methods and frameworks
- Ability to demonstrate analytical expertise, close attention to detail, excellent critical thinking, logic, and solution orientation and to learn and adapt quickly
- Ability to summarize and communicate findings and issues concise and clearly.
**#SAPSecurity #IncidentResponse #SecurityOperations #SAPSecurityCareersSGS**
**We are SAP**
**Our inclusion promise**
SAP’s culture of inclusion, focus on health and well-being, and flexible working models help ensure that everyone - regardless of background - feels included and can run at their best. At SAP, we believe we are made stronger by the unique capabilities and qualities that each person brings to our company, and we invest in our employees to inspire confidence and help everyone realize their full potential. We ultimately believe in unleashing all talent and creating a better and more equitable world.
EOE AA M/F/Vet/Disability:
Qualified applicants will receive consideration for employment without regard to their age, race, religion, national origin, ethnicity, age, gender (including pregnancy, childbirth, et al), sexual orientation, gender identity or expression, protected veteran status, or disability.
Requisition ID:301208 | Work Area: Information Technology | Expected Travel: 0 - 10% | Career Status: Professional | Employment Type: Regular Full Time |
-
Cyber Incident Responder
1 week ago
Singapore UBS Full timeSingapore Risk Group Functions **Job Reference #** 247495BR **City** Singapore **Job Type** Full Time **Your role** Are you from the World of Cyber? Are you the one to defend the organization against advance threat? Do you have what it takes to coordinate and respond to cyber-attacks? - respond to cyber security incidents covering all phases...
-
Cyber Incident Responder
3 days ago
Singapore UBS Full timeJob Reference # BR Job Type Full Time Your role Are you keen on working in world class Cyber Security Operations Center for one of the best Swiss private banks? Do you have related experience and are willing to take it further by learning how to defend an enterprise against cyber-attacks? We are looking for an incident response expert who will:...
-
Cyber Security Incident Responder
1 week ago
Singapore JJ CONSULTING SERVICES Full time** **Roles and Responsibilities** - Manage Security Incidents from detection to closure - Analyse security events and confirm security incidents - Drive response and resolution of security incidents - Coordinate with Major Incident Management Team and WAR room setup - Lead root cause analysis, post-mortem reporting and preventive...
-
Cyber Incident Responder
1 week ago
Central Singapore BNP Paribas Full time**POSITION PURPOSE**: APAC Production Security teams are responsible for multiple IT Security activities for BNP Paribas in Asia Pacific region, such as: IT Production Security Governance, PMO & Risks Network Security and Security Design & Architecture Vulnerability & Compliance Management IAM Production Production CSIRT, Detection & SIEM...
-
Digital Forensics Incident Responder
3 days ago
Singapore IMDA Full timeJoin to apply for the Digital Forensics Incident Responder role at IMDA Join to apply for the Digital Forensics Incident Responder role at IMDA Get AI-powered advice on this job and more exclusive features. Work with current team and ensure smooth operations of daily operations Work with DFIR analysts to ensure timely response to security incidents, root...
-
Cyber Security Incident Response
3 days ago
Singapore CYBER SENSE TECHNOLOGIES PTE. LTD. Full time**Role Overview**: Cybersense Advanced Cyber Threat Services team is looking for a technical, passionate pragmatic information security professional with vast Emergency Incident Response/Cybersecurity experience to be part of our Emergency Incident Response team. You must be a strong leader/Snr with excellent people and management skills with ability to...
-
Deputy Director/Snr Asst Director, SingCERT
3 days ago
Singapore Cyber Security Agency of Singapore (CSA) Full timeDeputy Director/Snr Asst Director, SingCERT (SG Cyber Emergency Response), NCIRC Join to apply for the Deputy Director/Snr Asst Director, SingCERT (SG Cyber Emergency Response), NCIRC role at Cyber Security Agency of Singapore (CSA)Deputy Director/Snr Asst Director, SingCERT (SG Cyber Emergency Response), NCIRC 1 day ago Be among the first 25 applicants Join...
-
Principal Incident Responder
2 weeks ago
Singapore London Stock Exchange Group Full time $100,000 - $150,000 per yearPrincipal Incident Responder (GSOC)LSEG Security Operations is a central function employing people, process and technology to continuously monitor and respond to cyber security incidents. Security Operations spans multiple domains including cyber threat intelligence, cyber threat detection, data loss prevention and cyber incident response.This role will act...
-
Principal Incident Responder
2 weeks ago
Singapore LSEG (London Stock Exchange Group) Full time $100,000 - $150,000 per yearPrincipal Incident Responder (GSOC)LSEG Security Operations is a central function employing people, process and technology to continuously monitor and respond to cyber security incidents. Security Operations spans multiple domains including cyber threat intelligence, cyber threat detection, data loss prevention and cyber incident response.This role will act...
-
Senior Incident Responder
1 week ago
Singapore SIX FINANCIAL INFORMATION SINGAPORE PTE. LTD. Full timeSIX operates the infrastructure underpinning the Swiss financial sector and offers a comprehensive range of services around the world in the fields of securities trading and settlement, financial information and payment transactions.- **JJob Introduction The SIX Security Monitoring & Incident Response (SMIR) is the central incident response team for the SIX...