Free with a WorkJio account: we compare your profile with this job and show what you already meet.
Share with a friend
Start
Not stated
Work mode
On-site
Experience
Experienced
About the role
SPH Media is looking for a strategic and hands-on security leader to head its enterprise cyber defence capabilities. You will lead a small team of analysts plus external SOC providers, protecting infrastructure, content and digital assets across on-premise and cloud environments in a fast-paced media setting. This role suits an experienced SecOps professional who is comfortable both leading and working directly on incident response.
What you'll do
Lead and manage a team of 4–5 security analysts, as well as external MSSPs and SOC providers.
Own and continuously enhance threat detection, investigation, and response processes using modern tooling and automation.
Oversee real-time threat monitoring, threat hunting, and incident triage to identify and mitigate risks promptly.
Develop and integrate proactive threat intelligence into SecOps processes and security technologies.
Serve as a key escalation point (role of SIRM) for security incidents and lead incident response, root cause analysis, and post-incident reporting.
Lead the continuous improvement of detection rules, correlation logic, and threat-hunting techniques across SIEM and EDR platforms.
Collaborate with Cloud, DevOps, and IT teams to ensure security is embedded in enterprise systems and media production workflows.
Stay ahead of emerging threats, TTPs, and relevant threat actor campaigns, especially those targeting the media industry.
Define, track, and report operational metrics and KPIs to senior leadership.
Ensure compliance with relevant frameworks, standards, and regulations (e.g., NIST, ISO/IEC 27001, GDPR, SOC 2).
Work with Infrastructure teams on the design, implementation, and maintenance of security solutions, including firewalls, intrusion detection systems, encryption technologies, and identity management systems.
Establish and regularly test incident response playbooks, escalation procedures, crisis management processes, and recovery plans.
Lead efforts to continuously monitor the threat landscape and provide timely insights on emerging threats and vulnerabilities.
Build relationships with external stakeholders, including threat intelligence sharing communities, government agencies, and security vendors, to strengthen organisational defences.
Own and manage relevant security contracts, procurement activities, and projects, including collaborating with other teams to implement and roll out new tools under the Cyber Defence Team.
Perform other duties as assigned by the CISO.
Good to know
Location: Singapore.
Requirements
7+ years of experience in cybersecurity with at least 3 years in a leadership or managerial role within a SecOps function.
Proven experience in threat hunting, threat intelligence integration, and managing security incidents at scale.
Hands-on expertise in modern SIEM platforms (e.g., Splunk, Sentinel), SOAR platforms, EDR tools, and threat intelligence feeds.
Experience managing hybrid or outsourced SOC environments, including managing service providers against agreed performance standards and SLAs.
Solid understanding of cloud-native security (AWS, GCP, or Azure), preferably within media streaming or content distribution environments.
Strong grasp of MITRE ATT&CK framework and experience building detection coverage around it.
Jio can write this application for you
Jio reads this job and your profile, then writes a short letter in your words. You read it, change anything, and send it yourself. Nothing is sent until you say so.