TDI - Information Security Specialist - AVP - Singapore - Deutsche Bank

    Deutsche Bank
    Deutsche Bank Singapore

    2 weeks ago

    Default job background
    Full time
    Description
    What we will offer you:

    A healthy, engaged and well-supported workforce are better equipped to do their best work and, more importantly, enjoy their lives inside and outside the workplace. That's why we are committed to providing an environment with your development and wellbeing at its center.

    You can expect:
    • Flexible benefits plan including virtual doctor consultation services
    • Comprehensive leave benefits
    • Gender Neutral Parental Leave
    • Flexible working arrangements
    • 25 days of annual paid leave, plus public holiday & Flexible Working Arrangement
    Your key responsibilities:

    The Threat Response Analyst supports the Global Security Operations Center from the APAC region. The SOC operates 24x7x365 in a follow-the-sun mode with distributed teams across APAC, EMEA and AMER.

    Responsible for monitoring and investigating alerts and events escalated from SIEM or other security channels. This role involves conducting in-depth log analysis, correlating IOCs, and implementing threat containment measures when necessary. Mitigate security risks and threats relating to cloud-based systems, applications, and data. This includes working closely with cross-functional teams to enhance our cloud security posture. The incumbent also assumes responsibility for overseeing and coordinating all facets of incident management like initial evaluation, stakeholder management, technical triage, and incident resolution. Proactively search and identify patterns of compromise, emerging threats, evidence of breach and anomalies by analysing historical data. Responsible for leading and coordinating operations and processes that are necessary for the smooth management of the security operations center Involved in managing various projects like detection use cases, security automation (SOAR), and threat hunting. The overarching goal is to enhance efficacy and proactively detect adversaries and malicious activities.

    Your skills and experience:
    • Minimum 5 years cyber security working experience in security operations, incident response, threat assessment etc, with at least 2 years working in an enterprise-grade security operations center (SOC).
    • Working experience in network protocols, monitoring of logs and analysis, XDR, cloud infrastructure, and security controls in investigation and threats containment.
    • Working experience investigating cloud security alerts and understanding of cloud infrastructure and operations
    • Working experience in security tools such as SIEM, SOAR, XDR, and Cloud-based IR tools.
    • Experience in blue/red/purple team techniques, adversary tactics, techniques, and procedures (TTPs), and cyber kill-chain.
    • Analytical and critical thinking with an inquisitive mindset, collaboration, and conflict management with good communication skills.
    Others:
    • Must be willing to be on early morning shift on weekdays (for ex: 7AM to 4PM)
    • On-rotation weekend / public holiday work 7AM to 7PM (time off in-lieu will be offered)
    Role is required to be performed on-site at One Raffles Quay office. Relevant vaccination requirements may apply.

    How we'll support you:
    • Flexible working to assist you balance your personal priorities
    • Coaching and support from experts in your team
    • A culture of continuous learning to aid progression
    • A range of flexible benefits that you can tailor to suit your needs
    • Training and development to help you excel in your career