Insider Threat Analyst
4 days ago
Description:
The insider threat analyst is responsible for researching, triaging, and investigating anomalous events of concern using Behavior Analytical tools, Splunk SIEM, and other tools to determine potential malicious or risky insider activity. This analyst role will come under the IT Risk and Security department reporting to the Security Operations Manager.
Key Responsibilities:
- Conduct investigations by analyzing and verifying information through various investigative techniques, internal resources, forensics, and Insider threat tools such as Data Loss Prevention, End Point Detection and Response, Network Traffic Analysis & Deceptive Technology to detect malicious lateral movement & privilege escalation in On-prem and Cloud environment.
- Provide actionable Insider threat analysis for remediation on all escalations.
- Triage all Insider Threat alerts within SLA guidelines.
- Collaborate with internal teams to drive insider threat program continuous improvement.
- Assess and make recommendations for improvement and refinement of Use Cases, software tools, and other risk reduction methods used to improve the insider threat program.
- Proven experience using analytical and data visualization tools to automate the analysis and provide insights of large dataset and correlate with Splunk SIEM and other sources of information and conduct investigative works into all traffic anomalies against established, historical baselines to identify the root cause to an incident, reported suspicious events or red teaming activities.
- Stay current with the latest Cyber threats, Attacks and vulnerabilities, and updated with the evolving and emerging attack techniques and methods.
- Maintain and update related insider threat documentations such as IT Standards and Standard Operation Procedures, and carry out activities specified in these documentations.
- Participate in various Cybersecurity exercises such as Cyber Ranges and BCP.
- Work on other project and tasks duties.
Qualifications:
- Minimum of (3) three years direct Information Security experience as an insider threat analyst, or security engineer, or a similar role, preferably with insider threat management experience in a Financial Institution environment.
- Hands on experience with investigative and/or insider threat tools, such as UEBA, DLP, EDR, Computer Forensics, Monitoring, Splunk SIEM, Incident Response, Databases, or data visualization tools in On-prem and Cloud environment.
- Understanding and/or working knowledge of insider threats in the Dark and Deep Web underground forums.
- Strong practical experience in Cyber security: MITRE ATT&CK Framework, Cyber kill chain, TTP, threat intelligence, malware triage.
- Strong understanding of Different Attacks on System, Network, Applications.
- Relevant industry certifications such as Splunk SIEM certification, CERT, CFE, CFCE, CISSP, GCIH, SANS, GIAC.
- Possess strong analytical skills, self-motivated, detail oriented and team player.
- Willing to learn and work in a collaborative manner with peers and team.
- Good interpersonal and communication skill.
- Able to work under pressure during critical situations.
- A passion for information security and data security.
-
Insider Threat Analyst
3 hours ago
Singapore INCOME INSURANCE LIMITED Full timeThe insider threat analyst is responsible for researching, triaging, and investigating anomalous events of concern using Behavior Analytical tools, Splunk, and other tools to determine potential malicious or risky insider activity. This analyst role will come under the IT Risk and Security department reporting to the Security Operations Manager. **Key...
-
Insider Threat Analyst
2 days ago
Singapore Quess Corp Limited Full time**Job Information**: Industry **Insurance** *** Salary **7000-7500** *** Work Experience **2-4 Years** *** City **singapore** *** State/Province **singapore** *** Country **Singapore** *** Zip/Postal Code **189557** *** - Conduct investigations by analyzing and verifying information through various investigative techniques, internal resources,...
-
Senior Insider Threat Detection Analyst
7 days ago
Singapore Chevron Full timeChevron’s strategy is straightforward: be a leader in efficient and lower carbon production of traditional energy, in high demand today and for decades to come, while growing lower carbon businesses that will be a bigger part of the future. To achieve these goals, we’ll build on the assets, experience, capabilities, and relationships we’ve developed...
-
Insider Threat Analyst
4 days ago
Singapore Quess Corp Limited Full time**Job Information**: Industry **Insurance*** Salary **5000 - 7000*** Work Experience **1 - 4 years*** State/Province **singapore*** City **singapore*** Zip/Postal Code **189557*** Country **Singapore*** - Conduct investigations by analyzing and verifying information through various investigative techniques, internal resources, forensics, and...
-
Singapore ByteDance Full timeInsider Threat Lead, Security Governance and Compliance 1 day ago Be among the first 25 applicants Responsibilities About the Team The Internal Threat Management team is responsible for managing and mitigating information security risks posed within the organisation. To ensure that the company's risk management and governance strategies are up to date and...
-
Cyber Threat Analyst
2 days ago
Singapore LMA Full time**Cyber Threat Analyst** **Description** **Main Responsibility** - Perform monitoring, analysis/investigation and escalation of real-time security events. - Provide timely detection, identification and containment of possible cyber-attacks/intrusions. - Determine the effectiveness and impact assessment of an observed attack. - Log security events and...
-
Singapore ByteDance Full timeInsider Threat Lead, Security Governance and Compliance 1 week ago Be among the first 25 applicants Responsibilities About the TeamThe Internal Threat Management team is responsible for managing and mitigating information security risks posed within the organisation. To ensure that the company's risk management and governance strategies are up to date and...
-
Singapore BYTEDANCE PTE. LTD. Full time**About the Company** Founded in 2012, ByteDance's mission is to inspire creativity and enrich life. With a suite of more than a dozen products, including TikTok as well as platforms specific to the China market, including Toutiao, Douyin, and Xigua, ByteDance has made it easier and more fun for people to connect with, consume, and create content. **Why...
-
SOC Insider Threat Lead Analyst
1 week ago
Singapore Citi Full timeExcited to grow your career? We value our talented employees, and whenever possible strive to help one of our associates grow professionally before recruiting new talent to our open positions. If you think the open position you see is right for you, we encourage you to apply! Our people make all the difference in our success.Key Responsibilities - The...
-
Threat Intelligence Analyst
2 days ago
Singapore IMDA Full timeThreat Intelligence Analyst Apply locations IMD - Mapletree Business City, MBC BLK 10 time type Full time posted on Posted 12 Days Ago job requisition id JR- . Responsibilities Work with a team of Threat Intelligence analysts to maintain situational awareness for Infocomm and Media sectors. Keep abreast with related threat groups' tactics and techniques and...