[What the role is]
This role sits within the Connectivity, Cybersecurity & Resilience Group
[What the role is]
This role sits within the Connectivity, Cybersecurity & Resilience Group (C2R) Group. C2R strengthens the cybersecurity and resilience posture of the telecommunication and media sectors in Singapore. The Group keeps Singapore’s digital connectivity secure, trusted, and robust against an evolving and increasingly complex threat landscape.
[What you will be working on]
- Work with a team of Threat Intelligence analysts to maintain situational awareness for Infocomm and Media sectors, keeping abreast with related threat groups' tactics and techniques to produce timely, relevant and accurate cyber intelligence for stakeholders.
- Recommend and review intelligence requirements and collection sources to support intelligence analysis and production and research cyber threats affecting Telecommunication and Media infrastructure and systems to recommend mitigations and threat use cases/signatures to detect related attacks.
- Produce cyber intelligence products and briefings including specific ad-hoc threat reports, monthly threat trends, and annual threat landscape reports, ensuring all intelligence outputs are accurate, relevant and actionable.
- Support cyber incident investigations, threat and cybersecurity risk assessments, malware analysis, and cyber exercises with in-depth research and analysis, leveraging MITRE ATT&CK tactics and techniques, indicators of attack/compromise, and recommended mitigations.
- Ensure processes are documented and updated and contribute to the continuous improvement of threat detection capabilities, including threat detection queries in Endpoint Detection and Response (EDR) systems.
[What we are looking for]
- Background in Information Security, Computer Engineering, Computer Science, or equivalent discipline with 3 to 5 years or more of experience as a Threat Intelligence Analyst
- Demonstrated experience preparing and presenting threat briefings to information security and technology stakeholders across senior management, operations, and customer levels.
- Experience publishing cyber threat or vulnerability research and writing cyber incident or threat assessment reports incorporating MITRE ATT&CK tactics and techniques, indicators of attack/compromise, and recommended mitigations.
- Proficiency in Threat Intelligence Platforms and their integrations with security solutions, along with knowledge of telecommunications, broadcast, media equipment and technologies, and enterprise environments.
- Experience with network traffic/log analysis, computer/mobile forensics, or malware analysis, and knowledge of network and operating systems (Windows, Linux) security, cloud architecture, or application security.
- Relevant professional certifications including CREST CCTIM, CRTIA, CPTIA, GIAC GCFA, GREM, GCFE, or GCIH are highly regarded.
- Strong analytical skills with a passion to overcome challenges, and good communication and interpersonal skills to engage effectively with diverse stakeholders.