- Location
- Perennial Business City, Singapore
- Type
- Full-time
- Department
- Security
- Education
- Master
- Source
- Workday
Description
WE TAKE YOU ABOVE BEYOND
Take your passion to the next level and work alongside other masters of their craft to build a fulfilling and rewarding career at Marina Bay Sands.
Job Responsibilities
The candidate is expected to perform the following activities:
Threat Hunting
- Conduct proactive threat hunting activities based on cyber threat intelligence sources, known adversary tactics, techniques and procedures (TTPs), and emerging threat trends.
- Identify malicious or suspicious activities across endpoints, servers, cloud environments and network infrastructure.
- Document findings and recommend further investigative actions where necessary.
Atomic Testing & Security Validation
- Perform atomic testing activities to validate security controls, visibility, and response capabilities.
- Validate the organisation's ability to detect known adversary behaviours and attack techniques.
- Document findings and recommendations for defensive improvements.
Red & Purple Team Activies
- Support red team and purple team exercises to assess the effectiveness of security controls and defensive capabilities.
Forensics and Incident Response
- Participate in cyber incident investigations and response activities.
- Perform digital forensic collection, preservation and analysis of systems, endpoints and relevant artefacts.
- Assist in determining attack scope, affected assets, root cause and attacker activities.
- Support containment, eradication and recovery activities during cybersecurity incidents.
- Conduct event correlation, timeline reconstruction and investigation of suspicious or malicious activities to determine affected assets, root cause, attacker techniques, indicators of compromise (IOCs), and potential data exposure.
General Responsibilities:
- Ensure consistent and regular attendance.
- Perform other related duties as assigned.
Job Requirements
Education & Certification
- Degree or diploma with at least 5-10 years of hands-on cybersecurity experience in relevant areas.
- Preferred certifications: CISSP, GCFA, GREM, OSCP, CRTP, CRTO, OSWE.
Experience
- Experience in Gaming, Banking, or Critical Infrastructure InfoComm Industry is an advantage.
- Proficiency with offensive security tools such as Cobalt Strike, Empire, Havoc, Mythic.
- Experience in setting up red teaming Command and Control (C2) infrastructure, including web/proxy servers, redirectors, domain fronting.
- Skills in developing malicious payloads and understanding obfuscation and encryption techniques.
- Proficiency in at least one scripting language (e.g., Bash, PowerShell) and/or programming language (e.g., Python, C, C#, C++, Java).
- Understanding of basic networking concepts and Internet protocols (e.g., TCP/IP, HTTP(S), SMTP, DNS, SSL/TLS).
- Knowledge of industry-recognized security testing standards and penetration testing methodology.
Other Prerequisites
- Effective verbal and written communication skills.
- Strong understanding of enterprise technologies, operations, and security evaluations.
Marina Bay Sands is committed to building a diverse, equitable and inclusive workforce, providing equal opportunities as we grow our talent base to match our growth ambitions in Singapore. Our employees are committed to adhere to and abide by all rules, regulations, policies and procedures, including the rules of conduct and business ethics of the Company.