Manager, Cyber Threat Management & Security Operations
About this job
Position Summary
The Manager, Cyber Threat Management & Security Operations is responsible for leading the organization's proactive cybersecurity capabilities to identify, assess, prioritize, and mitigate cyber threats and exposures before they result in business impact.
This role owns Cyber Threat Intelligence, Threat Hunting, Detection Engineering, Vulnerability Management, Attack Surface Management, Threat Exposure Management, Security Analytics, and Security Operations governance. The position works closely with the Security Operations Center (SOC), Infrastructure, Network, Cloud, and Application teams to strengthen the organization's cyber resilience and security posture.
The successful candidate will establish a threat-informed security program that leverages intelligence, automation, analytics, and continuous assessment to reduce organizational cyber risk.
Key Responsibilities
1. Cyber Threat Management
- Lead and mature the enterprise Cyber Threat Management program.
- Establish threat-informed defense strategies based on emerging threat intelligence, adversary tactics, and business risk.
- Identify and assess cyber threats relevant to the organization's technology landscape and industry.
- Translate threat intelligence into actionable security controls, detection content, and risk mitigation initiatives.
- Maintain awareness of evolving threat actors, attack campaigns, and emerging attack techniques.
- Provide strategic threat reporting and recommendations to Information Security leadership.
2. Threat Intelligence & Threat Hunting
- Establish and manage Cyber Threat Intelligence(CTI) capabilities.
- Develop intelligence requirements aligned toorganizational risks and critical assets.
- Lead proactive threat hunting activities acrossendpoints, cloud environments, networks, and enterprise systems.
- Correlate intelligence from internal andexternal sources to identify potential compromises and emerging threats.
- Develop adversary profiles and threat scenariosrelevant to the business.
- Maintain alignment with MITRE ATT&CK andother threat intelligence frameworks.
3. Detection Engineering & Security Analytics
- Own enterprise detection engineering processesand standards.
- Develop and continuously improve detection usecases based on intelligence, vulnerabilities, incidents, and emerging threats.
- Ensure effective integration of securitytelemetry across cloud, endpoint, network, identity, and applicationenvironments.
- Measure and improve detection coverage againstMITRE ATT&CK techniques.
- Lead the creation and optimization of securityanalytics and detection logic.
- Partner with SOC teams to improve detectionquality and reduce false positives.
4. Vulnerability & Threat Exposure Management
- Own the enterprise vulnerability managementprogram.
- Establish risk-based vulnerabilityprioritization using threat intelligence, exploitability, business criticality,and attack path analysis.
- Oversee vulnerability remediation governance andreporting.
- Drive remediation accountability acrossinfrastructure, cloud, application, and business technology teams.
- Implement and mature Continuous Threat ExposureManagement (CTEM) practices.
- Track external exploit trends and evaluateorganizational exposure.
5. Attack Surface Management
- Lead External Attack Surface Management (EASM)and Internal Attack Surface Management initiatives.
- Identify internet-facing assets, shadow IT,exposed services, and security misconfigurations.
- Oversee continuous security assessments ofexternal-facing infrastructure.
- Develop metrics and reporting related toenterprise attack surface reduction.
- Drive remediation programs to reduceorganizational exposure.
6. Security Validation & Adversary Simulation
- Lead security control validation initiativesacross critical environments.
- Coordinate threat-led testing, purple teamexercises, breach and attack simulations, and adversary emulation activities.
- Validate effectiveness of preventive anddetective controls.
- Identify detection gaps and control weaknesses.
- Work closely with infrastructure and engineeringteams to improve defensive capabilities.
7. Security Operations Governance
- Define Security Operations standards,procedures, and operational effectiveness measures.
- Establish Key Risk Indicators (KRIs), KeyPerformance Indicators (KPIs), and cyber resilience metrics.
- Drive security automation and orchestrationopportunities to improve operational efficiency.
- Develop executive reporting on cyber threats,exposure trends, and security posture.
- Manage security technology roadmaps related tothreat management capabilities.
8. Infrastructure & Network SecurityPartnership
- Provide security oversight and guidance fornetwork, cloud, and infrastructure security initiatives.
- Support the secure implementation oftechnologies including firewalls, VPNs, network segmentation, SD-WAN, proxy,and security monitoring platforms.
- Work with infrastructure teams to ensuresecurity controls remain aligned with business and threat requirements.
- Advise on security architecture and riskmitigation strategies.
9. Leadership & Stakeholder Management
- Lead and develop Security Engineers andcybersecurity specialists.
- Manage strategic security initiatives andtransformation programs.
- Partner with Infrastructure, Cloud,Architecture, Risk, Compliance, and Business leaders.
- Present cyber risk, threat landscapeinformation, and security posture updates to senior management.
- Manage relationships with security vendors,service providers, and threat intelligence partners.
Qualifications
Education
- Bachelor's Degree in Cybersecurity, ComputerScience, Information Technology, Engineering, or related discipline.
- Master's Degree in Cybersecurity or InformationSecurity preferred.
Experience
- 10+ years of cybersecurity experience.
- 5+ years of experience in Cyber ThreatManagement, Threat Intelligence, Security Operations, Detection Engineering, orVulnerability Management.
- 3+ years of people leadership experience.
- Experience developing threat-informed defensestrategies and cyber risk reduction programs.
- Experience working within enterprise network,infrastructure, cloud, and cybersecurity environments.
- Experience managing cross-functionalcybersecurity initiatives and executive stakeholders.
Market insight
114% above medianExplore related jobs
Similar jobs
Senior Network Engineer
Governance, Risk & Compliance Analyst
Cloud Manager
Senior Security Engineer
Operations Assistant - Diving
Quality Specialist (QA/QC)
Frequently asked questions
What salary can I expect?
The employer lists 9 000 – 11 500 $ for this role at KWE-APLL TECHNOLOGY SERVICES PTE. LTD. in Singapore. For comparison, the local market median is about 4 800 $ based on 75 102 similar offers.
How do I apply for this job?
Open the original source page and contact the employer there. Finder never charges job seekers.
Are these jobs up to date?
Yes. Finder regularly refreshes vacancies from public sources and removes closed offers.
Where can I see employment type and work format?
Key conditions are shown above the description. You can also open related listings for KWE-APLL TECHNOLOGY SERVICES PTE. LTD. and Singapore.
