Senior Soc Cyber Threat Analyst (Vp / Hybrid)

Details of the offer

Senior SOC Cyber Threat Analyst (VP / Hybrid)3 CHANGI BUSINESS PARK CRESCENT CHANGI BUSINESS PARK SINGAPORECiti is a leading global bank for institutions with cross-border needs, a global provider in wealth management and a U.S. personal bank.
We are seeking a highly skilled and experienced Senior SOC Analyst to join our Cyber Threat team in the Security Operations Center (SOC). The Global SOC operates in a 24x7, follow the sun model and is the firm's first line of defense against evolving cyber threats, ensuring the safety and integrity of our digital assets. This role requires an individual with deep understanding of SOC processes, incident response, reviewing content/use case and security automation. As a senior analyst, the role would require coaching junior analysts in SOC and provide critical support to the management in handling cyber security incidents.

Responsibilities: Analyze security events to identify potential threats and intrusions, including Intrusion Detection/Prevention tools, anomaly detection systems, Firewalls, Antivirus and EDR systems, proxy devices, cloud security solutions, and data leakage prevention systems.Act as a Level 2 escalation point for incident triage, investigation, and response.Perform a holistic use cases review and tuning to enhance monitoring value and efficiency.Develop and maintain advanced security monitoring content such as detection rules, correlation use cases, and security alerts.Implement and optimize security automation to improve process efficiency and response times.Lead incident response activities including root cause analysis, containment, and remediation efforts.Collaborate with security infrastructure teams to ensure effective integration of security technologies with operational processes.Create and maintain comprehensive documentation for SOC procedures.Provide mentorship for junior analysts within the SOC team.Stay updated with the latest cybersecurity trends, emerging threats, and technologies.The above serves as a basis for understanding the type of work performed. Ad-hoc duties may be assigned as required.
Qualifications and desired qualities: Bachelor's degree or higher, major in Cybersecurity is a plus.Certifications: GCIA, GCIH, CISSP, CISM, GSEC or similar certification preferable.Strong investigative and analytical mindset with attention to detail.A good team player, self-driven, and able to act as an individual contributor.Consistently demonstrates clear and concise written and verbal communication.Manage work relationships with peers and partners.Work Experience: 8+ years of relevant experience in Cybersecurity operations.Security Operations Center experience required.Understand the life cycle of network threats, web attacks, attack vectors, methods of exploitation, and be aware of the evolving cyber threat landscape.Ability to conduct analysis utilizing various logs to identify unusual behavior that may indicate malicious activity.Good understanding of computer networks, email flow, and operating system logs.Experience with automation and scripting, preferably in Powershell/Python.Experience in XSOAR platforms.Job Family Group: Technology
Job Family: Information Security
Time Type: Full time
Citi is an equal opportunity and affirmative action employer. Qualified applicants will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Citigroup Inc. and its subsidiaries ("Citi") invite all qualified interested applicants to apply for career opportunities. If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity, review Accessibility at Citi.

#J-18808-Ljbffr


Nominal Salary: To be agreed

Source: Grabsjobs_Co

Requirements

Data Operations Manager Phl - Data Operations · Clark Center

TheData Operations Manager plays a crucial role with the management team at New York Family Dental, taking on meaningful responsibilities to ensure the succe...


Newyorkfamilydentistry - Tarlac

Published a month ago

Senior Product Security Architect

IlluminaIllumina sequencing and array technologies drive advances in life science research, translational and consumer genomics, and molecular diagnostics. W...


Illumina - Tarlac

Published a day ago

Devsecops Engineer

Ensign InfoSecurity Ensign InfoSecurity is Asia's premier cybersecurity provider. Our Threat-informed Defence approach offers tailored insights on regional c...


Ensign Infosecurity - Tarlac

Published a day ago

Senior Full Stack Engineer

ST Engineering At ST Engineering, we harness technology and innovation to enable a more secure and sustainable world. Discover our innovations for smart citi...


St Engineering - Tarlac

Published a day ago

Built at: 2024-12-23T10:31:41.511Z