Information Security Incident Manager

2 days ago


Singapore Citi Full time

Citi's Security Incident Management Team is a global team that manages all information security incidents for Citigroup and its affiliates with team members located globally. As a member of the Security Incident Management (SIM) Team, you participate in overseeing the SIRT process globally to provide oversight of emergency response to information security incidents to quickly identify, respond, and mitigate the risk from Information Security incidents that impact the firm. In order to achieve the above results, this position will be responsible for the below functions: - Act as the central point of contact for these activities and coordinate with other groups such as Information Security Officers (ISOs), Security Operations Center (SOC), CIRT (Cyber Investigations Response team) and the broader Global Information Security Threat Management group - Take charge of implementation of various related projects, such as the implementation of the Security Incident Severity Calculator by leading the discussions with other areas for its development and enhancement - Reviewing and analyzing IS Incidents to identify those that pose a significant risk to the Citigroup franchise and its affiliates, and escalating those IS Incidents in accordance with Citigroup policy and procedures - Reviewing the details of all reported incidents to determine whether they constitute an IS incident - Reviewing and verifying the accuracy of the reported severity level of an incident - Tracking follow-up documentation related to an IS incident including Root Cause Analyses (RCAs), lessons learned and SIRT Remediation Plans throughout the incident lifecycle till closure - **Required Qualifications**: - 4 or more years working in an Incident Response role with experience in examining suspicious/malicious network events, analyzing malicious code/exploits, and system/network forensics - 5 or more years working in IT/IT Security, preferably a 24x7 operational environment, or educational equivalent - Ability to communicate technical issues to technical and non-technical business representatives is a must. - Experience in security aspects of multiple platforms, operating systems, software, communications and network protocols or an equivalent combination of education and work experience - Understanding of networking protocols and infrastructure designs; including routing, firewall functionality, host and network intrusion detection/prevention systems, encryption, load balancing, and other network protocols - Experience with Reverse Engineering malicious code and Web/Network Penetration Testing is a plus - Experience with Databases, SQL knowledge is a plus - Experience writing Perl, Python, scripting, programming, or other languages is a plus. Any scripting language is okay. - Experience administering and troubleshooting operating systems, including Solaris, Linux, and Microsoft Windows Server is a plus - Certified Information Systems Security Professional (CISSP) certified/qualified or ability to actively work towards obtaining certification - preferred - Certified GIAC Certified Incident Handler (GCIH) or demonstrated skills and ability to obtain certification - preferred - Ability to understand strategic objectives and vision, and work towards those goals - Dedicated and self-driven desire to research current information security landscape. **Non-Technical Skills Required**: - Excellent communication skills, analytical ability, strong judgment and leadership skills, and the ability to work effectively with clients and IT management and staffs - Strong customer and quality focus is a must - Sound problem resolution, judgment and decision making skills are required - Excellent organizational, interpersonal and project management skills - Excellent communication skills both written and oral - Self-starter and ability to work in a team environment - Hard working and self-motivated - Able to work effectively under pressure CISO - **Job Family Group**: Technology - **Job Family**: Information Security - **Time Type**: Full timeCiti is an equal opportunity and affirmative action employer. Qualified applicants will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. View the "**EEO is the Law**" poster. View the **EEO is the Law Supplement**. View the **EEO Policy Statement**. View the **Pay Transparency Posting



  • Singapore NTT ASIA PACIFIC PTE. LTD. Full time

    We are seeking an experienced Senior Incident Response Specialist to lead and execute advanced cybersecurity investigations. This is not an entry-level SOC role. You will be responsible for detecting, analyzing, and responding to security incidents, proactively hunting for threats, conducting forensic investigations, and contributing to vulnerability...


  • Singapore SPARROW RESEARCH PTE. LTD. Full time

    **Job Summary** Implement and oversee Sparrow's IT security operations framework, including security operations role definitions, monitoring, incident and event management, privileged access management, and overall security architecture. Ensure compliance with industry standards and regulatory requirements. **Responsibilities**: - Define and implement IT...


  • Singapore Apple Full time

    **Summary** Posted: 6 Nov 2024 Role Number**:200552877** Imagine what you could do here. At Apple, new ideas have a way of becoming extraordinary products, services, and customer experiences very quickly. Bring passion and dedication to your job and there's no telling what you could accomplish. We’re a diverse collection of thinkers and doers,...


  • Singapore Apple Full time

    **Summary** Posted: 17 Jul 2024 Role Number**:200552877** Imagine what you could do here. At Apple, new ideas have a way of becoming extraordinary products, services, and customer experiences very quickly. Bring passion and dedication to your job and there's no telling what you could accomplish. We’re a diverse collection of thinkers and doers,...


  • Singapore Singapore Airlines Full time

    Information Technology - Cyber Security Engineer (Threat Management and Incident Response) (Scoot)Join to apply for the Information Technology - Cyber Security Engineer (Threat Management and Incident Response) (Scoot)role at Singapore Airlines . Job Description You will be a member of the Group Information Security Team responsible for responding to threats...


  • Singapore KRIS INFOTECH PTE. LTD. Full time

    The Manager of the Information Security Department is responsible for the organization's efforts to protect its information assets and ensure the security of its information systems. - This position requires a proactive approach to developing and implementing security policies, conducting security assessments, and responding to incidents. - The role involves...


  • Singapore SMART INFORMATION MANAGEMENT SYSTEMS PRIVATE LIMITED Full time

    Incident Manager Smart IMS is a leading provider of information technology solutions, offering a wide range of services to businesses worldwide. With a strong focus on innovation and customer satisfaction, we help organizations streamline operations, improve efficiency, and achieve their strategic goals. We are currently looking for an Incident Manager to...


  • Singapore JJ Consulting Services Full time

    **Roles and Responsibilities** - Manage Security Incidents from detection to closure - Analyse security events and confirm security incidents - Drive response and resolution of security incidents - Coordinate with Major Incident Management Team and WAR room setup - Lead root cause analysis, post-mortem reporting and preventive actions. **Requirements**: -...


  • Singapore Linklaters Full time $120,000 - $180,000 per year

    Your role As an Information Security Manager, you will lead a regional team to support the Firm's Information Security Programme.  Responsibilities will include:Developing and delivering security awareness training programmes.Leading a high-performing team, developing and implementing team goals and providing guidance to enhance team performance.Ensuring...


  • Singapore BIPO Service Shanghai Limited Full time

    **JOB DESCRIPTION** **Role**:Information Security Manager **Reports to**: IT Director **Location**: Singapore **Responsibilities** - Lead compliance audit activities (SOC, ISO 27001) for Singapore, Hong Kong, and China - Responsible for BIPO data privacy, serving in BIPO’s Data Privacy team and answer internal and external queries related to BIPO’s...