About the Role
As members of our Security Operations Centre (SOC) Team, you will be at the forefront of cybersecurity defence, playing a critical role in safeguarding HDB's ICT infrastructure. You will deliver timely and actionable threat intelligence to anticipate, detect, and respond to evolving cyber threats, and engineer and maintain a robust security operations capability.
Responsibilities
- Cyber Threat Intelligence Analysis: Continuously review and enhance the cyber intelligence framework; integrate it with the SOC and incident response team; monitor and collect data from threat intelligence feeds, security vendors, dark web, social media, and other online platforms; analyse data to identify patterns, trends, and risks; prioritise and triage threats; conduct in‑depth analysis of threat actors; produce reports, briefings, and alerts; provide intelligence support during incidents; support vulnerability management.
- SOC Engineering: Research and evaluate new and emerging security tools, platforms, and technologies; liaise with vendors to conduct proofs‑of‑concept and technical evaluations; procure and implement security tools; prepare documentation and hand over operations to the SOC team.
- Process Innovation and Automation: Design and refine SOC processes and procedures to enhance operational efficiency; implement automation and artificial intelligence solutions to optimise SOC operations and improve threat detection and response capabilities.
Qualifications
- At least 2 years of experience as an engineer and/or cyber intelligence analyst in a SOC environment or equivalent cybersecurity engineering/operations role.
- Demonstrable experience and in‑depth knowledge in cyber threat intelligence analysis and SOC engineering.
- Strong experience with cybersecurity technologies including IDS/IPS, firewalls, SIEM platforms, email security, web security, cloud security, and endpoint security solutions.
- Strong analytical and problem‑solving skills with meticulous attention to detail.
- Ability to work effectively under pressure, meet critical deadlines, and make sound decisions during security incidents.
- Strong written and verbal communication skills, with ability to explain technical concepts to diverse stakeholders.
- Experience in cyber intelligence analysis, implementation of security monitoring and detection solutions, and project management.
- Professional certifications such as EC-Council Certified Threat Intelligence Analyst (CTIA), SIEM, SOAR, XDR/EDR product certifications, or other relevant cybersecurity qualifications.
- Good to have: Exceptional attention to detail and commitment to quality; proven ability to work autonomously with high standards of reliability, trustworthiness, and integrity; initiative to drive continuous improvement; collaborative mindset; knowledge of cloud security frameworks and experience with modern security orchestration tools.
Successful candidates will be offered a 1+1 year contract in the first instance.