The Technology and Operations function is comprised of five teams of specialists with distinct capabilities: business partnership, technology, operations, risk governance and planning support and services. We work closely together to harness the power of technology to support our physical and digital banking services and operations. This includes developing, centralising and standardising technology systems as well as banking operations in Singapore and overseas branches.
Job Responsibilities
- Active hunting activity involving the analysis of machine data from multiple sources to determine anomalies, threats and suspected compromises.
- Conduct network investigations and deep packet analysis.
- Conduct cyber forensics investigation and analysis.
- Utilize advanced big data analytics tools and technology to determine anomalies and threats
- Continuously re-engineer and tune GSOC workflows and capabilities to improve operational effectiveness.
- Develop and streamline GSOC prevent, detect, response processes using automation and orchestration tools.
- Respond to Cyber threats.
- Provide subject matter expertise to the incident response manager.
- Develop and operationalize new threat response mechanism and processes.
- Conduct Cyber response exercises to tune processes and maintain operational readiness.
- Support and maintain GSOC’s detection, prevention, response and monitoring systems and infrastructure via change management process.
- Enhance current detection capabilities and develop new detection use-cases
- Conduct POC, testing and build enhancements on GSOC security systems. Implement new technology and process improvements to security monitoring and cyber defense mechanisms.
- Research and define requirements for new projects; perform product evaluations and technical Proof of Concepts
Others
- Perform as a member of the Cyber security capability enhancement team to drive or participate in product evaluation, project discussion and deployments
- Work within established practices and handling guidelines to develop and deploy preventive maintenance processes for GSOC infrastructure
- Work with internal technical teams and engineers in technical troubleshooting, exercises and forums
- Available to respond to client requests and assist with troubleshooting activities
- Able to resolve customer related issues with minimal guidance
- Communicate effectively with a variety of internal teams and external contacts including technical and executive contacts
- Capable of juggling variety of priorities and deliverables in an interrupt driven environment with minimal guidance or supervision
Job Requirements
Education
- ITC/Diploma/Degree in engineering/Computer Science / IT/Cyber Security from a recognized education institution
- Professional security related qualification (e.g. SANS GCIA, GCIH, GCFA, GREM etc.) is favorable
Technical Skills And Experience
- Min 6-8 years of relevant Cyber security experience
- Good knowledge in networking technology and network security (i.e. Firewalls, X/EDR, NTR, WAF, IDS, IPS, VPN, HIPS, ADS, SIEM, UBA and TCP/IP protocols)
- Minimum 2 years of relevant working experience in a SOC environment
- Experienced with SOC operations and processes
- Advanced understanding of Cyber security, threat response and incident response
- Advanced understanding of Unix/Linux and Windows infrastructure and systems
- Hands-on experience in Security Information Event Management System (SIEMS)
- Some hands-on coding experience: python, shell scripts
- Strong foundation in securityTTPs and attack counter measure
- Analytical problem solver and good at troubleshooting technical issues
- Effective time management and organizational skills
- Operational knowledge of X/EDR, NTA/R, SIEMS, Breach Detection System, Network Forensic System, Big Data analytics, User Behavior Analytics and endpoint security technology
- Use of malware analysis platforms and tools
- Use of cyber forensics platforms and tools
- Use of threat intelligence platforms and tools
- Technical/logical understanding of FW/IDS/IPS/WAF rule and SIEM use cases
- Programming, concepts and scripting languages – Python, Powershell, Java, C/C++
- Good understanding of network forensics and packet analysis
- Good understanding of data and integration tools SQL/Database, JSON, Restful API
Soft Skills
- Good written and verbal communication skills
- Process and procedure adherence
- Strong analytical and problem solving skill
Be a part of UOB Family
UOB is an equal opportunity employer. UOB does not discriminate on the basis of a candidate's age, race, gender, color, religion, sexual orientation, physical or mental disability, or other non-merit factors. All employment decisions at UOB are based on business needs, job requirements and qualifications. If you require any assistance or accommodations to be made for the recruitment process, please inform us when you submit your online application.
Apply now and make a difference.