Senior Information Security Incident Response Lead

2 days ago


Singapore NTT ASIA PACIFIC PTE. LTD. Full time

We are seeking an experienced Senior Incident Response Specialist to lead and execute advanced cybersecurity investigations. This is not an entry-level SOC role. You will be responsible for detecting, analyzing, and responding to security incidents, proactively hunting for threats, conducting forensic investigations, and contributing to vulnerability management through red teaming or penetration testing where applicable. Strong proficiency with EDR solutions, SIEM log platforms, incident case management tools, and forensic analysis tools is essential.

**Key Responsibilities**
- Lead and manage complex security incidents, acting as a key contact for stakeholders.
- Perform deep analysis of security alerts to identify, mitigate, and remediate threats.
- Conduct forensic investigations on compromised hosts, networks, and cloud environments.
- Proactively hunt for adversarial activity and anomalous behaviors across large datasets.
- Analyze malware samples (basic level) to determine functionality, impact, and mitigation strategies.
- Develop and refine detection rules, improving alert fidelity and response workflows.
- Contribute to threat intelligence gathering, analyzing attack patterns, and enhancing defensive strategies.
- Participate in red teaming or penetration testing activities to identify and remediate vulnerabilities.
- Provide strategic recommendations for improving the organization’s security posture.
- Create detailed incident reports, threat intelligence assessments, and executive summaries.
- Mentor and provide guidance to junior analysts, fostering continuous improvement in IR methodologies.

**Qualifications & Requirements**

**Education & Experience**:

- Bachelor's or Master's degree in Computer Science, Cybersecurity, or a related field.
- Minimum of 5 years of experience in cybersecurity, with at least 2 years in incident response, threat hunting, or forensic analysis.

**Technical Expertise**:

- Extensive experience responding to targeted attacks from APT groups, cybercriminals, and nation-state actors.
- Strong forensic analysis skills across Windows, Linux, and macOS systems.
- Expertise in network forensics, traffic analysis, and packet inspection (Wireshark, Zeek).
- Proficiency in SIEM platforms (Splunk, Sentinel, QRadar) and EDR solutions (CrowdStrike, Microsoft Defender ATP).
- Knowledge of malware analysis techniques, including static and dynamic analysis.
- Familiarity with cloud security investigations (AWS, Azure, GCP).
- Strong scripting skills in Python, PowerShell, or similar languages for automation.
- Understanding of security architecture, authentication mechanisms, and enterprise IT operations is a plus.
- Experience with vulnerability management, red teaming, or penetration testing is a plus.
- Familiarity with MITRE ATT&CK framework and various cyber threat intelligence methodologies.

**Preferred Certifications**:

- GIAC (GCFA, GNFA, GCIH, GCIA, GREM)
- CISSP (Certified Information Systems Security Professional)
- CEH (Certified Ethical Hacker)
- OSCP (Offensive Security Certified Professional)
- Cloud Security Certifications (AWS Security Specialty, Microsoft Azure Security)

**Key Competencies**:

- Strong analytical and problem-solving skills in high-pressure situations.
- Ability to manage multiple investigations efficiently while meeting deadlines.
- Excellent verbal and written communication skills, with the ability to convey technical details to varied audiences.
- Strong team collaboration and leadership skills, with a proactive approach to knowledge sharing.
- Ability to work in a fast-paced environment and adapt to evolving threats and challenges.



  • Singapore QUINNOX SOLUTIONS PTE. LTD. Full time

    Roles & Responsibilities Job Responsibilities: Incident Response Leadership : - Oversee the entire incident response lifecycle from detection to resolution. - Lead investigations of IT security incidents and ensure thorough root cause analysis and remediation. - Develop and maintain incident response playbooks and procedures. - Coordinate with internal,...


  • Singapore QUINNOX SOLUTIONS PTE. LTD. Full time

    Job Responsibilities Incident Response Leadership : Oversee the entire incident response lifecycle from detection to resolution. Lead investigations of IT security incidents and ensure thorough root cause analysis and remediation. Develop and maintain incident response playbooks and procedures. Coordinate with internal, external stakeholders, and vendors...


  • Singapore Business Edge Personnel Services Full time

    Job Scope Oversee the entire incident response lifecycle from detection to resolution. Lead investigations of IT security incidents and ensure thorough root cause analysis and remediation. Develop and maintain incident response playbooks and procedures. Coordinate with internal, external stakeholders, and vendors during incidents. Conduct post-incident...


  • Singapore BUSINESS EDGE PERSONNEL SERVICES PTE LTD Full time

    Roles & Responsibilities Job Scope: Incident Response Leadership: - Oversee the entire incident response lifecycle from detection to resolution. - Lead investigations of IT security incidents and ensure thorough root cause analysis and remediation. - Develop and maintain incident response playbooks and procedures. - Coordinate with internal, external...


  • Singapore Apple Full time

    **Summary** Posted: 6 Nov 2024 Role Number**:200552877** Imagine what you could do here. At Apple, new ideas have a way of becoming extraordinary products, services, and customer experiences very quickly. Bring passion and dedication to your job and there's no telling what you could accomplish. We’re a diverse collection of thinkers and doers,...


  • Singapore TikTok Full time

    Responsibilities TikTok is the leading destination for short-form mobile video. Our mission is to inspire creativity and bring joy. TikTok has global offices including Los Angeles, New York, London, Paris, Berlin, Dubai, Singapore, Jakarta, Seoul and Tokyo. Why Join Us At TikTok, our people are humble, intelligent, compassionate and creative. We create to...


  • Singapore Singapore Airlines Full time

    Information Technology - Cyber Security Engineer (Threat Management and Incident Response) (Scoot)Join to apply for the Information Technology - Cyber Security Engineer (Threat Management and Incident Response) (Scoot)role at Singapore Airlines . Job Description You will be a member of the Group Information Security Team responsible for responding to threats...


  • Singapore SEDHA CONSULTING PTE. LTD. Full time

    **Incident Response Manager** **Job Scope**: - Develop and implement comprehensive incident response plans and procedures. - Lead and manage the incident response team during security breaches to quickly contain and mitigate impacts. - Coordinate with different organizational departments to ensure a cohesive response strategy. **Qualifications**: -...

  • Digital Forensic

    1 week ago


    Singapore HYPERSCAL SOLUTIONS PTE. LTD. Full time

    **COMPANY DESCRIPTION** NE Digital is the digital, data and technology organization that serve as a center of excellence to drive digital transformation for our group of NTUC Social Enterprises to meet the critical social needs of Singapore's community. Delivering innovative products and solutions, we empower our people to lead a better and meaningful life...


  • East Singapore Emprego SG Full time

    **Location** - Singapore, East**Job Type** - Permanent**Salary** - $5,000 - $10,000 Per Month**Date Posted** - 2 hours agoAdditional Details **Job ID** - 107620**Job Views** - 1Roles & Responsibilities **Job Summary** Our client is seeking for a highly motivated and driven Senior Associate for their Cybersecurity needs in Incident response engagements...