Incident Response & Prevention Manager

Incident Response & Prevention Manager
Company:

Crypto.Com


Details of the offer

The Cybersecurity and Data Privacy team reports directly under the office of the CISO headed by Chief Information Security Officer (CISO) Jason Lau () who has over 23+ years of experience in the cybersecurity space, awarded Global Top 100 CISO, and also serves on the World Economic Forum, International Association of Privacy Professionals and more. The team comprises of multiple functions from Blockchain Security, Operational Security, Security Governance and Compliance and more. We drive a culture of having a growth mindset and being humble to help everyone achieve their potential. Security and Data Privacy Compliance first strategy which has been at the core of our company. The security team helped to drive us to be the first Crypto company worldwide to achieve ISO27001, ISO27701, ISO22301 and PCI:DSS (Level 1) certifications. Extremely detailed third party attested by international audit firm SGS and achieved "Adaptive (Tier 4)" – the highest level possible for the US National Institute of Standards and Technology (NIST) Cybersecurity Framework and the latest NIST Privacy Framework as well as SOC2 and many other regional certifications like the Data Protection Trust Mark.As part of the CIRIFT at , you will be involved in responding and managing cyber security incidents throughout the cycle - from Preparation to Identification, Containment, Eradication, Recovery and Lessons Learnt - along with other incident responders around the globe.You will apply all of your skills on cyber , digital forensics, log analysis, intrusion analysis and any related skills to respond to security incidents on our endpoints, network, and cloud infrastructure. In this role, you will provide prevention, detection, response and remediation activities to ensure information assets and technologies are adequately protected using different technologies like NGFW, EDR, IDS/IPS, EDR, DLP and more. You will also apply your collaboration and communication skills to work effectively with all relevant stakeholders in multicultural/global environments.ResponsibilitiesReport to Senior Manager to facilitate all phases in the incident response lifecycle Involve in various incident prevention projects to improve Security posturePreparationUnderstand different regulatory and compliance requirements like critical time to report, escalation flows, etc.Take part in self-assessment exercises like Tabletop Exercises, Attack Simulations, Red/Purple Team exercises to make sure the incident response process is working smoothlyDevelop incident response runbooks, playbooks and SOPs with reference to different regulatory requirementsEvaluate the incident response readiness of different layers - people, process, technologyDetection & AnalysisRespond to the cyber security incidents escalated from various channels including the 24/7 SOC team.Respond to cyber security incidents in compliance with the local authority / regulatory requirements.Assess the risk, impact and scope of the identified security threatsPerform deep-dive incident analysis of various data sources by analysing and investigating security related logs against medium-term threats and IOCsContainment, Eradication and RecoveryCommunicate with the stakeholders and provide guidance, recommendations to contain and eradicate the security incidentParticipate in root cause analysis using forensic and other custom tools to identify any sources of compromise and/or malicious activities taking place.Document and present investigative findings for high profile events and other incidents of interest.Post incident activitiesProvide lessons learnt meeting to the stakeholdersLead and keep track on the follow-up activitiesDocument the incident in the case management system and provide incident reportsAlways ready to jump in, in the event of security incidents.Requirements5+ years experience in the Cyber Security industryStrong technical and analytical skillsFamiliar with the cyber security incident response processHands-on experience on performing incident response activitiesHave scripting experience like Bash, PowerShell, Python, Go, etc, and the ability to use these skills to aid in responding to incidents involving Windows, Linux, macOS, as well as cloud environmentHave knowledge of cybersecurity tools and software like NGFW, EDR, IDS/IPS, EDR, DLP, SIEM, other log management platforms, etc.Be familiar with the MITRE ATT&CK Framework and/or Cyber Kill ChainBe passionate on exploring new technologies and having creative initiative to boost the team capabilitiesHolders of security related certifications is a plus (, AWS, CISSP, GCIH, GCIA, GCFA, GNFA, GREM, or other equivalent)Knowledge of regulatory and compliance requirements like GDPR, MAS, PSD2 etc is a plus.Fast learner with can do attitude and ready to get the hands dirtyA strong team player who can collaborate with compassion#LI-MK1#Hybrid


Source: Talent_Ppc

Requirements

Incident Response & Prevention Manager
Company:

Crypto.Com


Devops Developer

COMPANY DESCRIPTIONBeyondsoft (listed by the Shenzhen Stock Exchange, stock code 002649) is a global provider of IT consulting, product and solution services...


From Beyondsoft (Malaysia) Sdn. Bhd - Kuala Lumpur

Published a month ago

Service Desk - Cantonese Speaker

**Job summary**:Providing technical first level support for multiple projects.- Receiving end user calls- Provide first level resolutions for EUC and Busines...


From Cognizant Technology Solutions - Kuala Lumpur

Published a month ago

Liferay Developer

ONSITE- KL- MALAYSIAN ONLY**Liferay Developer****Responsibilities**:- Develop and maintain Liferay portlets, pages, forms, and other features using Java, Jav...


From Aarorn Technologies Inc. - Kuala Lumpur

Published a month ago

Graphic Communications Leader, Ikea Cheras

Company DescriptionIKEA is the world's largest home furnishing retailer with 460 stores across more than 60 countries. IKEA Malaysia is part of Ikano Retail,...


From Ikano-Retail - Kuala Lumpur

Published a month ago

Built at: 2024-05-19T19:42:19.555Z