Free with a WorkJio account: we compare your profile with this job and show what you already meet.
Share with a friend
Start
Not stated
Work mode
On-site
Experience
Some experience
About the role
You will join the Cyber Intelligence and Response team, reporting to the Team Manager, to produce timely and actionable threat and vulnerability intelligence that strengthens the organisation's cyber defence. The role also supports wider cyber operations such as threat hunting, incident investigation, forensic analysis and intrusion analysis when needed. It suits someone with a few years of cyber security experience who enjoys analysis, clear writing and working closely with other security teams.
What you'll do
Define and maintain intelligence requirements and collection plans aligned with organisational priorities.
Gather, validate and analyse threat intelligence from approved internal, open-source, commercial and managed-service sources.
Assess threat actors, campaigns, vulnerabilities, indicators, and tactics, techniques and procedures relevant to the organisation.
Produce vulnerability intelligence by assessing emerging vulnerabilities, exploit trends and threat actor activity, and translating them into actionable recommendations for prioritisation, monitoring and risk reduction.
Prepare and disseminate clear intelligence products, including threat advisories, vulnerability briefs, campaign summaries, threat profiles and landscape briefings.
Translate intelligence into operational outcomes, including detection use cases, monitoring recommendations and control improvement opportunities.
Work closely with Security Operations, Digital Forensics, Incident Management and Vulnerability Management teams to ensure intelligence supports day-to-day cyber defence activities.
Support broader cyber operations work beyond CTI, such as threat hunts, investigations, forensic support and intrusion analysis when operational needs arise.
May be activated outside normal working hours on an occasional basis to support significant cyber security incidents, emerging threats or other time-critical cyber operations.
Coordinate with the CTI managed security service provider to ensure that external cyber threat intelligence and digital risk protection outputs are relevant, of good quality, and meet the expectations of internal stakeholders.
Administer the threat intelligence platform, including threat feeds, enrichment, tagging and workflow configuration.
Maintain threat profiles, operating procedures, knowledge bases and service metrics that support consistent intelligence delivery.
Improve CTI processes, tools and stakeholder engagement to increase the quality, relevance and impact of intelligence outputs.
Good to know
May be activated outside normal working hours on an occasional basis for significant incidents, emerging threats or other time-critical operations.
Requirements
Degree with 1–3 years of experience in cyber threat intelligence, security operations or a related cyber security role
Active interest in and up-to-date awareness of the evolving cyber threat landscape
Working knowledge of cyber threat intelligence concepts, including indicators of compromise, the MITRE ATT&CK framework, tactics, techniques and procedures, and the intelligence lifecycle
Familiarity with STIX/TAXII standards, Sigma rules, or YARA rules
Strong analytical judgement, attention to detail and written communication skills
Ability to communicate clear, evidence-based recommendations to both technical and non-technical audiences
Apply on the company website
You will leave WorkJio. Never pay a fee or share your Singpass password, OTP or bank log-ins to apply.