Encora Logo

Encora

CTI - CTH Lead Engineer

Reposted 5 Days Ago
Be an Early Applicant
In-Office
Singapore, SGP
Senior level
In-Office
Singapore, SGP
Senior level
Lead proactive threat hunting and analysis across endpoints, networks, and cloud. Develop hunting hypotheses using frameworks (MITRE ATT&CK, PEAK, TAHITI), use EDR/XDR and SIEM tooling, automate hunts with scripts and YARA, investigate incidents, produce root cause and remediation, manage CTI mapping to ATT&CK, and improve hunting playbooks and security operations.
The summary above was generated by AI

CTI - CTH LEAD EANGINEER


Important Information

Location: Singapore


JOB DESCRIPTION

Threat Hunting and Analysis

 Conduct proactive threat hunting activities across various environments (endpoints, networks, cloud).

  • Develop and maintain threat hunting hypotheses based on current threat intelligence and organizational risk assessments.
  • Apply structured threat hunting methodologies leveraging frameworks such as MITRE ATT&CK, PEAK, TAHITI, THMM and Diamond Model to guide hypothesis creation, evidence collection

and iterative improvements.

  • Deep technical knowledge of adversary tactics, malware analysis, intrusion detection and cloud security.

 Tooling and Automation

  • Familiar with EDR/XDR solutions, SIEM platform, data pipeline and threat hunting tooling to detect and disrupt adversary tactics.
  • Develop custom scripts and tools to automate threat hunting processes and improve efficiency.
  • Leverage various threat hunting techniques, including but not limited to, YARA rules, IOC analysis, and behavioral based analysis.

 Incident Investigation

  • Analyze security logs, network traffic, and endpoint data to identify malicious activity and potential threats.
  • Investigate security incidents and provide detailed reports on findings, including root cause analysis and remediation recommendations.
  • Collaborate with other security teams (incident response, vulnerability management, etc.) to share threat intelligence and coordinate security efforts.

 Cyber Threat Intelligence (CTI)

  • Develop and manage Cyber Threat Intelligence while staying up to date on the latest threat landscape, attack techniques, and emerging technologies.
  • Map advisory behaviors to ATT&CK techniques and translate findings into actionable intelligence.
  • Share actionable intelligence with internal teams and external stakeholders.
  • Present findings and recommendations to technical and executive audiences.

 Continuous Improvement

  • Contributes to the development and improvement of threat hunting strategies, processes and playbooks aligning with PEAK and TAHITI cycles for structural threat hunting.
  • Develop and maintain a strong understanding of the organization's infrastructure and applications to strengthen awareness of evolving threats and adversary behavior.
  • Drive maturing of the overall security operations service

About Encora

Encora is a global company that offers Software and Digital Engineering solutions. Our practices include Cloud Services, Product Engineering & Application Modernization, Data & Analytics, Digital Experience & Design Services, DevSecOps, Cybersecurity, Quality Engineering, AI & LLM Engineering, among others.

At Encora, we hire professionals based solely on their skills and do not discriminate based on age, disability, religion, gender, sexual orientation, socioeconomic status, or nationality


Top Skills

Cloud Security
Data Pipeline
Diamond Model
Edr
Intrusion Detection
Ioc Analysis
Mitre Att&Ck
Peak
SIEM
Tahiti
Thmm
Xdr
Yara

Similar Jobs

An Hour Ago
In-Office
Singapore, SGP
Internship
Internship
Artificial Intelligence • Hardware • Information Technology • Machine Learning
The intern will analyze workflows related to CVD equipment, identify improvements, develop solutions, and present findings to save productivity in a semiconductor environment.
Top Skills: Excel
Entry level
Artificial Intelligence • Hardware • Information Technology • Machine Learning
The role involves product development and validation for HBM products, optimizing test coverage, improving yields, supporting new designs, and collaborating with cross-functional teams.
Top Skills: Circuit DesignCmos TechnologyDram ArchitectureElectrical And Electronics EngineeringJmpProduct ValidationPythonSemiconductor Devices
An Hour Ago
In-Office
Singapore, SGP
Mid level
Mid level
Artificial Intelligence • Hardware • Information Technology • Machine Learning
As a Validation Engineer, you will develop and execute validation test plans for SSD devices, analyze results, and assist in debugging. You will also perform failure analysis and enhance customer integration experiences.
Top Skills: LinuxNvmePcieWindows

What you need to know about the Singapore Tech Scene

The digital revolution has driven a constant demand for tech professionals across industries like software development, data analytics and cybersecurity. In Singapore, one of the largest cities in Southeast Asia, the demand for tech talent is so high that the government continues to invest millions into programs designed to develop a talent pipeline directly from universities while also scaling efforts in pre-employment training and mid-career upskilling to expand and elevate its workforce.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account