System Improvement: Update detection rules, tune SIEM platforms, and refine automated SOAR playbooks.
A cyber security incident response role focuses on advanced threat hunting, malware reverse engineering, and leading high-severity breach resolutions. It is the highest technical tier in a Security Operations Center (SOC).
Risk Exception Processing: Review, evaluate, and track Digital Security Policy exception requests (DTAP/policy waivers), ensuring business justifications are valid and compensating controls are properly established.
Compensating Controls Validation: Collaborate with engineering and operations teams to define, validate, and monitor effective compensating controls for accepted risks and policy deviations.
Risk Mapping & Register Maintenance: Feed risk analysis findings and approved risk exceptions into the enterprise D&IT risk register, ensuring visibility and periodic re-evaluation.
...
Assist Cyber Security Lab team in attack surface management, threat hunting and detection, site take down, brand protection, incident response, compromise assessment
Graduates majoring in cyber security or computer forensics or of related course
...
Conduct threat modeling and design reviews for features, APIs, third-party integrations, and major changes.
Coordinate with mobile engineers on cross-platform findings and backend controls protecting native iOS and Android clients.
Own application security implementation for SC TRM and BNM RMiT, including secure SDLC evidence, vulnerability management, testing, and audit remediation.
...
Prepare project documentation such as Project Plan, Technical Document, Material Document Submission, drawings and OMM.
Participate in the regular meeting of the project, allocate, arrange and complete the relevant work on time according to the meeting requirements and report daily or weekly progress at site.
Manage/Monitor/Track project and control cost to ensure project is completed on time within budget, contractual and safety standard
...
Document investigations, findings, and remediation actions accurately within case management systems.
Contribute to security use-case tuning and continuous detection improvement. Support automation initiatives through SOAR playbooks and workflow optimization.
Demonstrate ability to perform event analysis and tools utilization (identification, response, escalation)
...
Document investigations, findings, and remediation actions accurately within case management systems.
Contribute to security use-case tuning and continuous detection improvement. Support automation initiatives through SOAR playbooks and workflow optimization.
Demonstrate ability to perform event analysis and tools utilization (identification, response, escalation)
...
Basic understanding of cyber-attack scenarios, information security and cyber defense
Experience with at least some of the relevant tools and applications - in particular SIEM (preferrable Chronicle), IDS/IPS, Web Application Firewalls, Defender)
Basic understanding of relevant infrastructure architecture and systems in the bank (firewall, proxy, logging & monitoring, MS-Defender, Office 365, Exchange Online, Cloud, Active Directory, etc.)
...
Risk Exception Processing: Review, evaluate, and track Digital Security Policy exception requests (DTAP/policy waivers), ensuring business justifications are valid and compensating controls are properly established.
Compensating Controls Validation: Collaborate with engineering and operations teams to define, validate, and monitor effective compensating controls for accepted risks and policy deviations.
Risk Mapping & Register Maintenance: Feed risk analysis findings and approved risk exceptions into the enterprise D&IT risk register, ensuring visibility and periodic re-evaluation.
...
Prepare project documentation such as Project Plan, Technical Document, Material Document Submission, drawings and OMM.
Participate in the regular meeting of the project, allocate, arrange and complete the relevant work on time according to the meeting requirements and report daily or weekly progress at site.
Manage/Monitor/Track project and control cost to ensure project is completed on time within budget, contractual and safety standard
...
We seek to strike a balance between diversity, inclusion and merit to achieve our mission of infusing diversity in thinking and skillsets into our organisation. Candidates are assessed based on merit and potential, in line with our mission to attract and recruit the best talent available. Expanding on our “Digital at the Core” ethos, we are progressively digitising the employee journey and experience to provide a strong foundation for our people to drive life-long learning, achieve their career aspirations and grow talent from within our organisation.