Cyber Threat Intelligence Analyst

Location Singapore
Job Type Permanent
Salary Attractive Package
Reference 29070

Direct Responsibilities

  • Build Threat Intelligence framework for E-Fraud controls to deliver adapted intelligence to the APAC business such as: Compliance, Legal, Operational Risk Control
  • Work closely with Cyber Threat Intelligence team to select the adapted threat intelligence feeds to integrate into multi-feeds platform to cover the e-fraud threats
  • Adapt the Threat intelligence methodology to address the E-fraud threats
  • Identify and track E-fraud threats (actors, campaigns) across domains (crime, espionage, hacktivism) of potential concern to utilizing both technical and actor information, threat intelligence platforms, and other sources.
  • Monitor closely the e-fraud threats actors across various business lines.
  • Conduct awareness campaigns to business and relevant teams (Control and business) that presents a high e-fraud risks for the businesses in APAC
  • Work with APAC Cyber Threat Intelligence team to define e-fraud scenarios for the threat hunting exercises in APAC
  • Participate in test, implement and deploy threat hunting tools for Internal collaboration and networking experience with business lines to collect and formulate intelligence requirements for key banking activities and their related risks. Knowledge and application of the Intelligence Cycle and TTP profiling frameworks

 

  • At least 5 years of experience in the information security (cyber security) field with at least 2 year of experience working with or as part of a CTI organization.
  •  A knowledge of e-fraud threats (actors, campaigns) is a plus
  • Prior experience as part of a security operations or incident response organization extremely beneficial
  • Independent, self-motivated and innovative with good problem solving, interpersonal and communication skills, and can foster teamwork
  • Fluent spoken and written Chinese preferred to interact with counterparts in the region
  • Strong understanding of cyber threat analysis models such as kill chain, diamond model, etc and how they apply to both targeted and non-targeted threats
  • Experience using commercial and open source (OSINT) information to support intelligence analysis
  • Experience in common scripting languages such as Python, Ruby, LUA, Powershell or BASH
  • Strong understanding of common security products and technologies utilized in Enterprise environments (proxies, WAF, Firewalls, IDPS, Anti-Malware, Endpoint, etc
  • Understanding of the OSI stack and the various protocols from layer 1 – 7 including SNMP, HTTP, VPN, DNS, etc

Qualification

  • University degree or equivalent in IT discipline
  • Professional credentials in one of the relevant cyber security disciplines
  • Agile (optional)
  • CISSP/CISM
  • CompTIA Security+/ITIL certification
Apply Now