Manager, Cyber Threat Management & Security Operations

KWE-APLL TECHNOLOGY SERVICES PTE. LTD.

Singapore

On-site

SGD 180,000 - 240,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

KWE-APLL TECHNOLOGY SERVICES PTE. LTD. is seeking a seasoned leader for Cyber Threat Management & Security Operations to drive proactive cybersecurity, threat intelligence, detection engineering, and vulnerability management across the organization.

You will collaborate with SOC, Infrastructure, Network, Cloud, and Application teams to reduce cyber risk and strengthen resilience. The role emphasizes threat-informed security programs leveraging intelligence, automation, analytics, and continuous

Qualifications

  • Bachelor's Degree in Cybersecurity, Computer Science, Information Technology, Engineering, or related discipline.
  • Master's Degree in Cybersecurity or Information Security preferred.
  • 10+ years of cybersecurity experience.
  • 5+ years of experience in Cyber Threat Management, Threat Intelligence, Security Operations, Detection Engineering, or Vulnerability Management.
  • 3+ years of people leadership experience.
  • Experience developing threat-informed defense strategies and cyber risk reduction programs.
  • Experience working within enterprise network, infrastructure, cloud, and cybersecurity environments.
  • Experience managing cross-functional cybersecurity initiatives and executive stakeholders.

Responsibilities

  • Lead and mature the enterprise Cyber Threat Management program.
  • Establish threat-informed defense strategies based on emerging threat intelligence, adversary tactics, and business risk.
  • Identify and assess cyber threats relevant to the organization's technology landscape and industry.
  • Translate threat intelligence into actionable security controls, detection content, and risk mitigation initiatives.
  • Maintain awareness of evolving threat actors, attack campaigns, and emerging attack techniques.
  • Provide strategic threat reporting and recommendations to Information Security leadership.
  • Establish and manage Cyber Threat Intelligence capabilities.
  • Develop intelligence requirements aligned to organizational risks and critical assets.
  • Lead proactive threat hunting activities across endpoints, cloud environments, networks, and enterprise systems.
  • Correlate intelligence from internal and external sources to identify potential compromises and emerging threats.
  • Develop adversary profiles and threat scenarios relevant to the business.
  • Maintain alignment with MITRE ATT&CK and other threat intelligence frameworks.
  • Own enterprise detection engineering processes and standards.
  • Develop and improve detection use-cases based on intelligence, vulnerabilities, incidents, and emerging threats.
  • Ensure integration of security telemetry across cloud, endpoint, network, identity, and application environments.
  • Measure and improve detection coverage against MITRE ATT&CK techniques.
  • Lead the creation and optimization of security analytics and detection logic.
  • Partner with SOC teams to improve detection quality and reduce false positives.
  • Own vulnerability management program and risk-based prioritization.
  • Oversee vulnerability remediation governance and reporting.
  • Drive remediation accountability across infrastructure, cloud, application, and business technology teams.
  • Implement and mature Continuous Threat Exposure Management (CTEM) practices.
  • Track external exploit trends and evaluate organizational exposure.
  • Lead External Attack Surface Management (EASM) and Internal Attack Surface Management initiatives.
  • Identify internet-facing assets, shadow IT, exposed services, and security misconfigurations.
  • Oversee continuous security assessments of external-facing infrastructure.
  • Develop metrics and reporting related to enterprise attack surface reduction.
  • Drive remediation programs to reduce organizational exposure.
  • Lead security control validation initiatives across critical environments.
  • Coordinate threat-led testing, purple team exercises, breach and attack simulations, and adversary emulation activities.
  • Validate effectiveness of preventive and detective controls.
  • Identify detection gaps and control weaknesses.
  • Work closely with infrastructure and engineering teams to improve defensive capabilities.
  • Define Security Operations standards, procedures, and operational effectiveness measures.
  • Establish KRIs, KPIs, and cyber resilience metrics.
  • Drive security automation and orchestration opportunities to improve efficiency.
  • Develop executive reporting on cyber threats, exposure trends, and security posture.
  • Manage security technology roadmaps related to threat management capabilities.
  • Provide security oversight and guidance for network, cloud, and infrastructure security initiatives.
  • Support secure implementation of firewalls, VPNs, network segmentation, SD-WAN, proxy, and security monitoring platforms.
  • Work with infrastructure teams to ensure security controls remain aligned with business and threat requirements.
  • Advise on security architecture and risk mitigation strategies.
  • Lead and develop Security Engineers and cybersecurity specialists.
  • Manage strategic security initiatives and transformation programs.
  • Partner with Infrastructure, Cloud, Architecture, Risk, Compliance, and Business leaders.
  • Present cyber risk, threat landscape information, and security posture updates to senior management.
  • Manage relationships with security vendors, service providers, and threat intelligence partners.

Skills

Cyber Threat Management
Threat Intelligence
Security Operations
Detection Engineering
Vulnerability Management
Threat Hunting
Security Analytics
Adversary Emulation
Leadership

Education

Bachelor's Degree in Cybersecurity, Computer Science, Information Technology, Engineering, or related discipline
Master's Degree in Cybersecurity or Information Security preferred

Job description

Position Summary

The Manager, Cyber Threat Management & Security Operations is responsible for leading the organization's proactive cybersecurity capabilities to identify, assess, prioritize, and mitigate cyber threats and exposures before they result in business impact.

This role owns Cyber Threat Intelligence, Threat Hunting, Detection Engineering, Vulnerability Management, Attack Surface Management, Threat Exposure Management, Security Analytics, and Security Operations governance. The position works closely with the Security Operations Center (SOC), Infrastructure, Network, Cloud, and Application teams to strengthen the organization's cyber resilience and security posture.

The successful candidate will establish a threat-informed security program that leverages intelligence, automation, analytics, and continuous assessment to reduce organizational cyber risk.

Key Responsibilities
1. Cyber Threat Management
  • Lead and mature the enterprise Cyber Threat Management program.
  • Establish threat-informed defense strategies based on emerging threat intelligence, adversary tactics, and business risk.
  • Identify and assess cyber threats relevant to the organization's technology landscape and industry.
  • Translate threat intelligence into actionable security controls, detection content, and risk mitigation initiatives.
  • Maintain awareness of evolving threat actors, attack campaigns, and emerging attack techniques.
  • Provide strategic threat reporting and recommendations to Information Security leadership.
2. Threat Intelligence & Threat Hunting
  • Establish and manage Cyber Threat Intelligence(CTI) capabilities.
  • Develop intelligence requirements aligned toorganizational risks and critical assets.
  • Lead proactive threat hunting activities acrossendpoints, cloud environments, networks, and enterprise systems.
  • Correlate intelligence from internal andexternal sources to identify potential compromises and emerging threats.
  • Develop adversary profiles and threat scenariosrelevant to the business.
  • Maintain alignment with MITRE ATT&CK andother threat intelligence frameworks.
3. Detection Engineering & Security Analytics
  • Own enterprise detection engineering processesand standards.
  • Develop and continuously improve detection usecases based on intelligence, vulnerabilities, incidents, and emerging threats.
  • Ensure effective integration of securitytelemetry across cloud, endpoint, network, identity, and applicationenvironments.
  • Measure and improve detection coverage againstMITRE ATT&CK techniques.
  • Lead the creation and optimization of securityanalytics and detection logic.
  • Partner with SOC teams to improve detectionquality and reduce false positives.
4. Vulnerability & Threat Exposure Management
  • Own the enterprise vulnerability managementprogram.
  • Establish risk-based vulnerabilityprioritization using threat intelligence, exploitability, business criticality,and attack path analysis.
  • Oversee vulnerability remediation governance andreporting.
  • Drive remediation accountability acrossinfrastructure, cloud, application, and business technology teams.
  • Implement and mature Continuous Threat ExposureManagement (CTEM) practices.
  • Track external exploit trends and evaluateorganizational exposure.
5. Attack Surface Management
  • Lead External Attack Surface Management (EASM)and Internal Attack Surface Management initiatives.
  • Identify internet-facing assets, shadow IT,exposed services, and security misconfigurations.
  • Oversee continuous security assessments ofexternal-facing infrastructure.
  • Develop metrics and reporting related toenterprise attack surface reduction.
  • Drive remediation programs to reduceorganizational exposure.
6. Security Validation & Adversary Simulation
  • Lead security control validation initiativesacross critical environments.
  • Coordinate threat-led testing, purple teamexercises, breach and attack simulations, and adversary emulation activities.
  • Validate effectiveness of preventive anddetective controls.
  • Identify detection gaps and control weaknesses.
  • Work closely with infrastructure and engineeringteams to improve defensive capabilities.
7. Security Operations Governance
  • Define Security Operations standards,procedures, and operational effectiveness measures.
  • Establish Key Risk Indicators (KRIs), KeyPerformance Indicators (KPIs), and cyber resilience metrics.
  • Drive security automation and orchestrationopportunities to improve operational efficiency.
  • Develop executive reporting on cyber threats,exposure trends, and security posture.
  • Manage security technology roadmaps related tothreat management capabilities.
8. Infrastructure & Network SecurityPartnership
  • Provide security oversight and guidance fornetwork, cloud, and infrastructure security initiatives.
  • Support the secure implementation oftechnologies including firewalls, VPNs, network segmentation, SD-WAN, proxy,and security monitoring platforms.
  • Work with infrastructure teams to ensuresecurity controls remain aligned with business and threat requirements.
  • Advise on security architecture and riskmitigation strategies.
9. Leadership & Stakeholder Management
  • Lead and develop Security Engineers andcybersecurity specialists.
  • Manage strategic security initiatives andtransformation programs.
  • Partner with Infrastructure, Cloud,Architecture, Risk, Compliance, and Business leaders.
  • Present cyber risk, threat landscapeinformation, and security posture updates to senior management.
  • Manage relationships with security vendors,service providers, and threat intelligence partners.
Qualifications
Education
  • Bachelor's Degree in Cybersecurity, ComputerScience, Information Technology, Engineering, or related discipline.
  • Master's Degree in Cybersecurity or InformationSecurity preferred.
Experience
  • 10+ years of cybersecurity experience.
  • 5+ years of experience in Cyber ThreatManagement, Threat Intelligence, Security Operations, Detection Engineering, orVulnerability Management.
  • 3+ years of people leadership experience.
  • Experience developing threat-informed defensestrategies and cyber risk reduction programs.
  • Experience working within enterprise network,infrastructure, cloud, and cybersecurity environments.
  • Experience managing cross-functionalcybersecurity initiatives and executive stakeholders.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Manager
Security Manager

ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. • Singapore

On-site
SGD 120,000 - 170,000
Specialist (Cybersecurity)
Specialist (Cybersecurity)

NTUC First Campus • Singapore

On-site
SGD 90,000 - 130,000
Cyber Threat Management Senior/Security Engineer
Cyber Threat Management Senior/Security Engineer

INTELLIPRO SINGAPORE PTE. LTD. • Singapore

On-site
SGD 90,000 - 130,000
Security Operations, Consultant
Security Operations, Consultant

aia • Singapore

On-site
SGD 120,000 - 180,000
Security Operations Vice President
Security Operations Vice President

JPMORGAN CHASE BANK, N.A. • Singapore

On-site
SGD 180,000 - 280,000
Senior Cyber Security Consultant
Senior Cyber Security Consultant

Singtel • Singapore

On-site
Confidential
Cyber Security and Managed IT Services Manager
Cyber Security and Managed IT Services Manager

Morgan McKinley • Singapore

On-site
SGD 120,000 - 180,000
Security Operations Vice President
Security Operations Vice President

JPMorgan Chase & Co. • Singapore

On-site
SGD 300,000 - 420,000
Cyber Threat Intelligence & Incident Response Specialist
Cyber Threat Intelligence & Incident Response Specialist

Base Camp Recruitment Pte Ltd • Singapore

On-site
SGD 140,000 - 210,000
Senior Associate/ Assistant Manager, Cyber Threat Intelligence Analyst
Senior Associate/ Assistant Manager, Cyber Threat Intelligence Analyst

Changi Airport Group • Singapore

On-site
SGD 70,000 - 110,000