Threat Investigation Specialist
1 week ago
**The Main Responsibilities**
Threat Hunting and Analysis
- Conduct proactive threat hunting activities across various environments (endpoints, networks, cloud).
- Develop and maintain threat hunting hypotheses based on current threat intelligence and organizational risk assessments.
- Deep technical knowledge of adversary tactics, malware analysis, intrusion detection and cloud security.
Tooling and Automation
- Familiar with EDR/XDR solutions, SIEM platform, data pipeline and threat hunting tooling to detect and disrupt adversary tactics.
- Develop custom scripts and tools to automate threat hunting processes and improve efficiency.
- Leverage various threat hunting techniques, including but not limited to, YARA rules, IOC analysis, and behavioral based analysis.
Incident Investigation
- Analyze security logs, network traffic, and endpoint data to identify malicious activity and potential threats.
- Investigate security incidents and provide detailed reports on findings, including root cause analysis and remediation recommendations.
- Collaborate with other security teams (incident response, vulnerability management, etc.) to share threat intelligence and coordinate security efforts.
Cyber Threat Intelligence (CTI)
- Develop and manage Cyber Threat Intelligence while staying up to date on the latest threat landscape, attack techniques, and emerging technologies.
- Map advisory behaviors to ATT&CK techniques and translate findings into actionable intelligence.
- Share actionable intelligence with internal teams and external stakeholders.
- Present findings and recommendations to technical and executive audiences.
Continuous Improvement
- Contributes to the development and improvement of threat hunting strategies, processes and playbooks aligning with PEAK and TAHITI cycles for structural threat hunting.
- Drive maturing of the overall security operations service.
Qualifications & Skills:
Required
- Bachelor's degree in Computer Science, Cybersecurity, or a related field.
- At least 3+ years of experience in cybersecurity, with a minimum of 1-2 years focused on threat hunting.
- Strong understanding of various operating systems (Windows, Linux, macOS).
- Experience with various security tools and technologies (SIEM, EDR, network monitoring tools).
- Proficiency in scripting (Python, PowerShell).
- Strong analytical and problem-solving skills.
- Excellent communication and presentation skills to translate technical findings into business impact.
Preferred
- Experience with threat intelligence platforms, feeds and CTI frameworks.
- Relevant security certifications (e.g., SANS GIAC, GNFA, GCFA, Offensive Security, etc)
- Experience with cloud platforms (AWS, Azure, GCP) and container security is a plus.
EA License # 14C6941
-
Behavioral Threat Investigator
1 week ago
Singapore American Express Full timeBehavioral Threat Investigator - Cybercrime Investigations, Global Security & Investigations **You Lead the Way. We've Got Your Back.** With the right backing, people and businesses have the power to progress in incredible ways. When you join Team Amex, you become part of a global and diverse community of colleagues with an unwavering commitment to back...
-
Senior Cyber Threat Investigator
1 day ago
Singapore Centre for Strategic Infocomm Technologies (CSIT) Full timeOverview Senior Cyber Threat Investigator role at Centre for Strategic Infocomm Technologies (CSIT). Responsibilities Overcome techniques employed to mask anomalous behaviours. Improve and automate validation or detection techniques. Identify alternate fingerprinting techniques to extend visibility. Assess adversary's objectives, sophistication, resources...
-
Senior Cyber Threat Investigator
5 days ago
Singapore Centre for Strategic Infocomm Technologies (CSIT) Full timeOverview Senior Cyber Threat Investigator role at Centre for Strategic Infocomm Technologies (CSIT). Responsibilities Overcome techniques employed to mask anomalous behaviours. Improve and automate validation or detection techniques. Identify alternate fingerprinting techniques to extend visibility. Assess adversary’s objectives, sophistication, resources...
-
Singapore Amazon Full timeDESCRIPTION Key job responsibilities - Analyze data sets and third-party intel to uncover fraud patterns. - Investigate fraud forums, and fraud-as-a-service marketplaces. - Write and execute SQL queries to identify abuse signals and telemetry trends. - Collaborate across Risk, Cybersecurity, and Abuse teams to mitigate fraud. - Conduct link analysis to...
-
Threat Hunting Specialist
5 days ago
Singapore IMDA Full timeThreat Hunting Specialist (Advanced Cybersecurity)Join to apply for the Threat Hunting Specialist (Advanced Cybersecurity)role at IMDA Threat Hunting Specialist (Advanced Cybersecurity)Join to apply for the Threat Hunting Specialist (Advanced Cybersecurity)role at IMDA Get AI-powered advice on this job and more exclusive features. Design and deliver Cyber...
-
Cyber Threat Investigator
1 day ago
Singapore Centre for Strategic Infocomm Technologies Full timeJob Scope Detect anomalous behaviours via IOCs Assess potential malicious nature Build and expand threat profile Describe adversary's tactics Respond to threats identified where needed Requirements Degree in Infocomm Security, Computer Science, Computer/Electrical Engineering, Information Technology Strong interest in cyber security, particularly in advanced...
-
Cyber Threat Investigator
4 days ago
Singapore Government of Singapore Full timeCentre for Strategic Infocomm Technologies - Permanent **What you will be working on** - Detect anomalous behaviors via IOCs. - Assess potential malicious nature. - Build and expand threat profile. - Describe adversary’s tactics. - Respond to threats identified where needed. **What we are looking for** - Degree in Infocomm Security, Computer Science,...
-
Singapore Amazon Asia-Pacific Holdings Private Limited Full timeFluent in Mandarin, reading, writing and speaking - 4+ years in fraud investigation, threat intel, or trust & safety roles. - SQL proficiency to extract and analyze structured data. - Knowledge of online fraud schemes and behavioral abuse. - OSINT skills and experience with tools like traditional threat intelligence vendors and tools. - Strong communication...
-
Regional Threat Intelligence Specialist
5 days ago
Singapore Control Risks Group (S) Pte Ltd Full timeThe Regional Threat Intelligence Specialist will work within the Global Security Intelligence function, supporting the collection, analysis, and dissemination of threat intelligence to stakeholders across the organization. This position will focus on a specific region, providing in-depth analysis and assessments of regional threats and trends, as well as...
-
Cyber Threat Investigator
2 weeks ago
Singapore Ministry of Defence Singapore Full time $90,000 - $120,000 per yearCentre for Strategic Infocomm TechnologiesPermanentWhat you will be working on• Detect anomalous behaviors via IOCs.• Assess potential malicious nature.• Build and expand threat profile.• Describe adversary's tactics.• Respond to threats identified where needed.What we are looking for• Degree in Infocomm Security, Computer Science,...