Overview
This role reports to the Security Operations Center (SOC) Lead under the Next Generation Security Operation Center (NGSOC) Domain. It provides end-to-end technical support for STMR management platforms such as QRadar SIEM, Palo Alto XSOAR, and other security platforms delivered by IT Security within GE NG SOC.
- Lead the Security Threat Monitoring and Response (STMR) tower and serve as the main liaison for all platforms within the NG SOC Department.
- Lead and collaborate with the designated Managed Security Service Provider (MSSP) to operate, troubleshoot, and maintain availability of STMR management platforms and all related assets across security platforms managed by Great Eastern.
- Monitor, review, and respond to security alerts escalated from NGSOC; manage cyber incidents related to threats, intrusions, compromises, and unusual or illegal activity via the CSIRT framework.
- Create and fine-tune policies and rules within STMR management security platforms and other log sources to correlate events and improve detection capability.
- Assist in recommending, planning, and implementing security measures or enhancements to protect computer systems, networks, and data.
- Work closely with Risk and Compliance during audits and with the CSIRT team during IT security incidents and crisis situations.
- Take accountability for business and regulatory compliance risks and take appropriate steps to mitigate them.
- Maintain awareness of industry trends on regulatory compliance, emerging threats, and technologies to understand risk and safeguard the company.
- Highlight potential concerns / risks and proactively share best risk management practices.
We are looking for people who
Possess at least a diploma / degree / professional degree / master’s degree in Computer Science / Information Technology / Engineering or equivalent.At least 5 years of working experience in the related field.Intermediate knowledge and skills in handling security systems such as SIEM, SOAR; knowledge of other security products is an added value.Intermediate experience in handling cybersecurity alerts and incidents.Strong analytical and problem-solving skills.Good knowledge of Incident Response and Investigative methodology.Self-motivated and a team player.Information Security Certification involving incident response, ethical hacking, or cybersecurity (e.g., GCIA, GCIH, CISSP, CEH) will be an added advantage.High level of integrity, accountability, and a positive teamwork attitude.Takes initiative to improve the current state of affairs and is adaptable to change.How you succeed
Champion and embody our Core Values in everyday tasks and interactions.Demonstrate high integrity and accountability.Take initiative to drive improvements and embrace change.Take accountability for business and regulatory compliance risks, implementing measures to mitigate them effectively.Keep abreast of industry trends, regulatory compliance, and emerging threats and technologies to identify and communicate potential risks to safeguard our company proactively.Who we are
Founded in 1908, Great Eastern is a well-established market leader and trusted brand in Singapore and Malaysia. With over S$100 billion in assets and more than 16 million policyholders, it provides insurance solutions through three distribution channels—tied agency force, bancassurance, and Great Eastern Financial Advisers. The Group also operates in Indonesia and Brunei. The Great Eastern entities have high credit ratings and are part of OCBC, one of the world’s highly rated banks.
Great Eastern does not accept unsolicited agency resumes. Please do not forward resumes to our email or our employees. We will not be responsible for any fees related to unsolicited resumes.
#J-18808-Ljbffr