Search by job, company or skills

Senior Security Analyst (Security Operations)

8-10 Years
  • Posted 3 hours ago
  • Be among the first 10 applicants

Job Description

We are looking for a Senior Security Analyst (Security Operations) to manage EMC's 24x7 Security Operations and Security Incident Management, protecting the organisation's computing and digital assets.

The Senior Security Analyst reports to the VP, Technology (Security).

Key responsibilities include:

  • Manage EMC's Security Operations (24x7) and Security Incident Management activities to ensure the protection of the organisation's computing and digital assets against cyber threats and security incidents.
  • Manage and maintain security operations, including security infrastructure availability, threat monitoring, security event analysis, vulnerability management, penetration testing, and incident response activities to ensure a strong and resilient security posture.
  • Establish, implement, review, and maintain information security policies, frameworks, standards, guidelines, and Security Incident Response processes in compliance with government regulations, organisational requirements, and industry best practices.
  • Provide security architecture guidance and Security-by-Design advisory for technology projects and initiatives, including the conduct of security risk assessments, evaluation of security controls, and review of vendor security solutions.
  • Manage and oversee cybersecurity risk assessments, security change controls, audit activities, remediation plans, and initiatives relating to information security governance and compliance requirements.
  • Support and maintain the organisation's Information Security Management System, including ISO/IEC 27001 certification and compliance activities, policy reviews, audit coordination, and continuous improvement efforts.
  • Lead security incident management activities, including incident investigation, containment, eradication, recovery, forensic analysis, post-incident reviews, and coordination with relevant internal and external stakeholders.
  • Drive security awareness, training, and education programmes to strengthen cybersecurity awareness and promote security best practices among employees, contractors, and other stakeholders.
  • Work closely with internal business units, technology teams, external vendors, auditors, government agencies, and regulatory authorities on cybersecurity, risk management, compliance, and incident management matters.
  • Monitor the evolving cybersecurity landscape, emerging threats, vulnerabilities, and industry developments, and recommend appropriate security measures to enhance the organisation's overall cybersecurity capabilities.

Requirements

  • Degree in IT, Computer Science, or equivalent.
  • Security certifications such as CISSP, CRISC, CISM, CISA, or CEH.
  • At least 8 years of security operations management experience.
  • Working experience with ISO 27001 implementation.
  • Operational knowledge of security processes and standards in all security domains. High level knowledge of security audit and audit processes. Broad IT knowledge and experience is a plus.
  • Possess diagnostic skills and recovery experience in IT infrastructure, systems and applications.
  • Operationally minded, with sound knowledge of security incident management practices.
  • Excellent communication skills, with the ability to engage stakeholders effectively and manage vendor relationships professionally.
  • Strong collaboration, analytical, and planning skills, with solid understanding of professional best practices.
  • Ability to set priorities and work in a fast-paced, multi-project environment. Strong attention to detail. Works well as a team player. Self-motivated. Ability to be creative in developing solutions.

More Info

Job Type:
Industry:
Employment Type:

Job ID: 153814213

Similar Jobs

Shenton Way, Singapore

Skills:

Vulnerability ManagementIncident ResponsePenetration TestingIncident ManagementCybersecurity Risk ManagementSecurity Risk AssessmentsSecurity ArchitectureThreat MonitoringSecurity Event AnalysisInformation Security PoliciesISO IEC 27001Security Operations

Beware of Scammers

We don’t charge money for job offers