Senior Cyber Intrusion Analyst
2 weeks ago
**ROLE SUMMARY**
The Global Information Security (GIS) organization at Pfizer delivers three core responsive capabilities for Pfizer - Intrusion Detection & Analysis, Cyber Threat Intelligence, and Digital Forensics & Insider Threat. GIS secures Pfizer’s most important information assets through world-class controls and protections. GIS enables Pfizer’s business results by making security an enabler and not a roadblock. GIS strives to broaden the cybersecurity ownership culture across the company through targeted awareness campaigns and empowering colleagues to be risk aware.
The Senior Cyber Intrusion Analyst will report into the Intrusion Detection & Analysis team and will focus on responding to network security events and building a deep understanding of cybersecurity attacks against Pfizer. The Senior Cyber Intrusion Analyst will be expected to lead event correlation across large datasets, perform and drive complete attack lifecycle analysis, develop remediation plans, implement proactive and reactive countermeasures, and create innovative solutions to the security issues that face the Pfizer environment.
**ROLE RESPONSIBILITIES**
- Leveraging security data from internal sensors (IDS, Firewall, SIEM, Proxy, hosts) and external sources (Industry portals, threat intel feeds, etc) to identify high priority alerts and perform attack life-cycle analysis to develop/implement proactive mitigations.
- Utilize understanding of the life cycle of network threats, attacks, attack vectors, and methods of exploitation to conduct analysis across forensic evidence, log data, compromised hosts, and network traffic
- Review security incidents and alerts; determine their severity and impact to the Pfizer enterprise along with detailed response actions
- Required to stay up to date with current vulnerabilities, attacks, and countermeasures, along with staying current with all security related news and developments.
- Drive process creation and improvement by developing internal Tactics, Techniques, and Procedures (TTPs) for analysis, establishing reporting criteria, structure, and operational reports
- Assist to mentor junior analysis and provide guidance on technical steps and incident response processes
- Demonstrate commitment to training, self-study and maintaining proficiency in the technical cyber security domain.
- The analyst must be able to work well with a team, including cross-unit and cross-divisional teams, and must be able to maintain poise and composure in difficult situations, with a professional attitude at all times
**BASIC QUALIFICATIONS**
- BS in Computer Sciences, Information Security, Information Systems, Engineering, Sciences or related field.
- 2-4 years of domain relevant experience preferred
- Demonstrated understanding of the life cycle of network threats, attacks, attack vectors and methods of exploitation with an understanding of intrusion set tactics, techniques and procedures (TTPs)
- Demonstrated understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth and common security elements.
- Entry level knowledge of the Windows operating system, system utilities, admin functions
- Ability to interpret log data and draw analytical conclusions
- Experience with open source security analysis tools such as Wireshark, SNORT, Splunk, Kali Linux, Sift, etc.
- Experience with Computer programming and scripting languages such as C, Python, Java, etc.
- Ability to proactively solve complex problems both individually and as part of a team.
- Effective oral, written, and interpersonal communications skills are required as well as organizational, planning, and administrative abilities and the ability to coordinate multiple complex projects simultaneously.
**PHYSICAL/MENTAL REQUIREMENTS**
**NON-STANDARD WORK SCHEDULE, TRAVEL OR ENVIRONMENT REQUIREMENTS**
Domestic and International travel of 10-20% (as required)
-
Cyber Threat Analyst
3 days ago
Singapore LMA Full time**Cyber Threat Analyst** **Description** **Main Responsibility** - Perform monitoring, analysis/investigation and escalation of real-time security events. - Provide timely detection, identification and containment of possible cyber-attacks/intrusions. - Determine the effectiveness and impact assessment of an observed attack. - Log security events and...
-
Senior Cyber Threat Anaylst
5 days ago
Singapore THE BANK OF NEW YORK MELLON Full timeWe're seeking a future team member for the role of Senior Cyber Threat Analyst to join our Information Security Division, Security Monitoring team. This role is located in Singapore - HYBRID. You’ll make an impact in the following ways: - Collect, analyze, and enrich event information and perform threat or target analysis duties. - Interpret, analyze,...
-
Cyber Threat Analyst, Gts
6 days ago
Singapore OCBC Bank Full time**Cyber Threat Analyst, GTS - Technology Command Centre** **-** **(**240001MB**)** **Main Responsibility** - Perform monitoring, analysis/investigation and escalation of real-time security events. - Provide timely detection, identification and containment of possible cyber-attacks/intrusions. - Determine the effectiveness and impact assessment of an...
-
Senior Security Operation Center
2 weeks ago
Singapore Citigroup Full time**Discover your future at Citi**: Working at Citi is far more than just a job. A career with us means joining a team of more than 230,000 dedicated people from around the globe. At Citi, you’ll have the opportunity to grow your career, give back to your community and make a real impact. **Job Overview**: We are seeking a highly skilled and experienced...
-
Senior Cyber Security Operation Analyst
5 days ago
Singapore Percept Solutions Full timeJoin to apply for the Senior Cyber Security Operation Analyst role at Percept Solutions 1 year ago Be among the first 25 applicants Join to apply for the Senior Cyber Security Operation Analyst role at Percept Solutions Get AI-powered advice on this job and more exclusive features. Job Description Conduct technical analysis and triage of triggered alerts...
-
Cyber Security Operations Analyst
5 days ago
Singapore iCapital Full timeCyber Security Operations Analyst - Associate Join to apply for the Cyber Security Operations Analyst - Associate role at iCapital iCapital is looking to hire a Cyber Security Operations Associate to join the Information Security team. This role is a first responder for reviewing and responding to cyber security alerts. The Associate will work alongside the...
-
Cyber Monitoring Analyst
2 weeks ago
Singapore UBS Full timeSingapore - Information Technology (IT) - Group Functions **Job Reference #** - 307085BR **City** - Singapore **Job Type** - Full Time **Your role** - Are you keen on working in world class Cyber Security Operations Center for one of the best Swiss private banks? Do you have related experience and are willing to take it further by learning how to defend...
-
Senior Cyber Threat Investigator
5 days ago
Singapore Centre for Strategic Infocomm Technologies (CSIT) Full timeOverview Senior Cyber Threat Investigator role at Centre for Strategic Infocomm Technologies (CSIT). Responsibilities Overcome techniques employed to mask anomalous behaviours. Improve and automate validation or detection techniques. Identify alternate fingerprinting techniques to extend visibility. Assess adversary's objectives, sophistication, resources...
-
Cyber Security Analyst
5 days ago
Singapore Quess Corp Limited Full time**Job Information**: Industry **Insurance*** Salary **6000*** Work Experience **1 - 4 years*** State/Province **singapore*** City **singapore*** Zip/Postal Code **189557*** Country **Singapore*** - Proven experience using analytical and data visualization tools to automate the analysis and provide insights of large dataset and correlate with...
-
SOC Analyst
3 days ago
Singapore CAREERALLY PTE. LTD. Full time**SOC Analyst (Cyber Threat/ Perm Role/ Central) **- Location: Central Area** **- Permanent Role** **- Salary: up to $8,000 (commensurates with experience) + Attractive Bonus & Benefits **Responsibility**: - You will utilize data from various cyber defense tools, such as intrusion detection system alerts, firewall and network traffic logs, and host system...