Senior Security Operation Center

5 days ago


Singapur, Singapore Citigroup Inc. Full time

Overview

We are seeking a highly skilled and experienced Senior SOC Analyst to join our Cyber Threat team in the Security Operations Center (SOC). The Global SOC operates in a 24x7, follow the sun model and is the firm's first line of defense against evolving cyber threats, ensuring the safety and integrity of our digital assets. This role requires an individual with deep understanding of SOC processes, incident response, reviewing content/use case and security automation. As a senior analyst, the role would require coaching junior analysts in SOC and provide critical support to the management in handling cyber security incidents.

Responsibilities
  • Analyze security events to identify potential threats and intrusions. Events include but are not limited to Intrusion Detection/Prevention tools, anomaly detection systems, firewalls, antivirus and EDR systems, proxy devices, cloud security solutions and data leakage prevention systems.

  • Act as a Level 2 escalation point for incident triage, investigation, and response.

  • Perform a holistic use case review and tuning to enhance monitoring value and efficiency.

  • Develop and maintain advanced security monitoring content such as detection rules, correlation use cases, and security alerts.

  • Implement and optimize security automation to improve process efficiency and response times.

  • Lead incident response activities including root cause analysis, containment and remediation efforts.

  • Collaborate with security infrastructure teams to ensure effective integration of security technologies with operational processes.

  • Create and maintain comprehensive documentation for SOC procedures.

  • Participate in/support cyber drills, regulatory, and audit requests.

  • Provide mentorship for junior analysts within the SOC team.

  • Stay updated with the latest cybersecurity trends, emerging threats and technologies.

The above serves as a basis for understanding the type of work performed. Ad-hoc duties may be assigned as required.

Qualifications and desired qualities
  • Bachelor’s degree or higher, major in Cybersecurity is a plus.

  • Certifications: GCIA, GCIH, CISSP, CISM, GSEC or similar certification preferable.

  • Strong investigative and analytical mindset with attention to details.

  • A good team player, self driven and able to act as individual contributor.

  • Consistently demonstrates clear and concise written and verbal communication.

  • Manage work relationships with peers and partners.

Work Experience
  • 8+ years of relevant experience in Cybersecurity operations.

  • Security Operations Center experience required.

  • Understand the life cycle of network threats, web attacks, attack vectors, methods of exploitation and awareness of the evolving cyber threat landscape.

  • Ability to conduct analysis utilizing various logs to identify unusual behavior that may indicate malicious activity.

  • Good understanding of computer networks, email flow, and operating system logs.

  • Experience with automation and scripting, preferably PowerShell or Python.

  • Experience with XSOAR platforms.

Job family information and related notes are provided for internal reference and are not part of the responsibilities. Citi is an equal opportunity employer, and qualified candidates will receive consideration without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other characteristic protected by law.

#J-18808-Ljbffr

  • Singapur, Singapore Percept Solutions Full time

    Join to apply for the Senior Cyber Security Operation Analyst role at Percept Solutions 1 year ago Be among the first 25 applicants Join to apply for the Senior Cyber Security Operation Analyst role at Percept Solutions Get AI-powered advice on this job and more exclusive features. Job DescriptionConduct technical analysis and triage of triggered alerts...


  • Singapur, Singapore Equinix Full time

    Overview Equinix is the world’s digital infrastructure company, shortening the path to connectivity to enable the innovations that enrich our work, life and planet. A place where bold ideas are welcomed, human connection is valued, and everyone has the opportunity to shape their future. Joining our operations team means being at the center of everything...


  • Singapur, Singapore Cygnify Full time

    Security Operations Center (SOC) Analyst - Financial Services Job Title: Security Operations Center (SOC) Analyst - Financial Services About: A leading financial services organisation is seeking a skilled Security Operations Center (SOC) Analyst to join our team in Singapore. Role Overview: As a SOC Analyst, you will be an integral part of our cybersecurity...


  • Singapur, Singapore HCLTech Full time

    Overview Deputy Manager - Talent Acquisition Growth Markets, APME at HCLTech The Data Center Center Engineer will be responsible for overseeing the daily operations of our data center facilities, ensuring optimal performance, reliability, and security. The ideal candidate will have extensive experience managing data center infrastructure, troubleshooting...


  • Singapur, Singapore AZQORE SA Full time

    Asia Securities Operations Senior Associate (Derivatives) Join to apply for the Asia Securities Operations Senior Associate (Derivatives) role at AZQORE SA Asia Securities Operations Senior Associate (Derivatives) 4 days ago Be among the first 25 applicants Join to apply for the Asia Securities Operations Senior Associate (Derivatives) role at AZQORE SA ...


  • Singapur, Singapore PEREGRINE SECURITY PTE. LIMITED Full time

    Overview Responsible and accountable for effectively managing the day-to-day operations / allocated contract sites, and staff by providing the highest quality, complaint-free, and professional security service to its customers Responsibilities Conduct security and safety risk assessment surveys of the assignments Conduct investigations and vet incident...


  • Singapur, Singapore Internal Security Department Full time

    Join to apply for the Data Centre Engineer role at Internal Security Department 2 weeks ago Be among the first 25 applicants Join to apply for the Data Centre Engineer role at Internal Security Department What The Role Is ISD confronts and addresses threats to Singapore’s internal security and stability. For over 70 years, ISD and its predecessor...


  • Singapur, Singapore PERSOL APAC Full time

    Data Center Engineer (Command Center / Network Operations) Salary: Budget up to 4,500–6,000 (basic). Your Role This role is responsible for the day-to-day monitoring of network and infrastructure operations. You will deliver excellent customer service, troubleshoot issues, and escalate incidents for internal and external stakeholders contacting the...


  • Singapur, Singapore TikTok Full time

    Senior Security Specialist , Detection & Response - Global Security Organisation Senior Security Specialist , Detection & Response - Global Security Organisation Get AI-powered advice on this job and more exclusive features. ResponsibilitiesThe Global Security Organization provides industry-leading cyber-security and business protection services to TikTok...


  • Singapur, Singapore SimplyGo Pte. Ltd. Full time

    Get AI-powered advice on this job and more exclusive features. We are seeking a proactive and detail-oriented IT Security Executive to join our Technology team. You will play a key role in safeguarding our IT systems, performing security assessments, managing access controls, and supporting incident response. This role offers opportunities to work across...