Senior SOC Cyber Threat Analyst (VP / Hybrid)
Citi
Senior SOC Cyber Threat Analyst (VP / Hybrid) at Citi is a full time role based in Singapore Singapore, Singapore. It was published on 5 August 2025 and was open at last check.
| Role | Senior SOC Cyber Threat Analyst (VP / Hybrid) |
|---|---|
| Company | Citi |
| Location | Singapore Singapore, Singapore |
| Employment type | Full Time |
| Published | 5 August 2025 |
| Status | Open at last check |
We are seeking a highly skilled and experienced Senior SOC Analyst to join our Cyber Threat team in the Security Operations Center (SOC). The Global SOC operates in a 24x7, follow the sun model and is the firm's first line of defense against evolving cyber threats, ensuring the safety and integrity of our digital assets. This role requires an individual with deep understanding of SOC processes, incident response, reviewing content/use case and security automation. As a senior analyst, the role would require coaching junior analysts in SOC and provide critical support to the management in handling cyber security incidents.
Responsibilities:
- Analyze security events to identify potential threats and intrusions. Events include but not limited to Intrusion Detection/Prevention tools, anomaly detection systems, Firewalls, Antivirus and EDR systems, proxy devices, cloud security solution and data leakage prevention system.
- Act as a Level 2 escalation point for incident triage, investigation, and response.
- Perform a holistic use cases review and tuning to enhance monitoring value and efficiency.
- Develop and maintain advanced security monitoring content such as detection rules, correlation use cases, and security alerts.
- Implement and optimize security automation to improve process efficiency and response times.
- Lead incident response activities including root cause analysis, containment and remediation efforts.
- Collaborate with security infrastructure teams to ensure effective integration of security technologies with operational processes.
- Create and maintain comprehensive documentation for SOC procedures.
- Participate in/support cyber drill, regulatory, audit requests.
- Provide mentorship for junior analysts within the SOC team.
- Stay updated with the latest cybersecurity trends, emerging threats and technologies.
The above serves as a basis for understanding the type of work performed. Ad-hoc duties may be assigned as required.
Qualifications and desired qualities:
- Bachelor’s degree or higher, major in Cybersecurity is a plus.
- Certifications: GCIA, GCIH, CISSP, CISM, GSEC or similar certification preferable.
- Strong investigative and analytical mindset with attention to details.
- A good team player, self driven and able to act as individual contributor.
- Consistently demonstrates clear and concise written and verbal communication.
- Manage work relationship with peers and partners.
Work Experience:
- 8+ years of relevant experience in Cybersecurity operations.
- Security Operations Center experience required.
- Understand the life cycle of network threats, web attacks, attack vectors, methods of exploitation and aware of the evolving of cyber threat landscape.
- Ability to conduct analysis utilizing various logs to identify unusual behavior that may indicate malicious activity.
- Good understanding of computer networks, email flow, and operating system logs.
- Experience with automation and scripting. Preferably in Powershell/Python.
- Experience in XSOAR platforms.
Job Family Group:
Job Family:
Time Type:
Most Relevant Skills
Other Relevant Skills
Citi is an equal opportunity employer, and qualified candidates will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other characteristic protected by law.
If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review Accessibility at Citi .
View Citi’s EEO Policy Statement and the Know Your Rights poster.
Create your free OnJob profile to apply — we'll take you to Citi's application after sign-up. · Posted 5 Aug 2025.
Senior SOC Cyber Threat Analyst (VP / Hybrid) at Citi — questions answered
What does the Senior SOC Cyber Threat Analyst (VP / Hybrid) role at Citi pay?
Citi does not publish a salary on this Senior SOC Cyber Threat Analyst (VP / Hybrid) listing, so OnJob shows no figure for it rather than an estimate. For what this role pays across the market, the OnJob salary guides aggregate the live listings that do disclose pay.
Where is the Senior SOC Cyber Threat Analyst (VP / Hybrid) role at Citi based?
Citi lists this Senior SOC Cyber Threat Analyst (VP / Hybrid) role in Singapore Singapore, Singapore, advertised as full time work at that location. Larger employers sometimes cover several sites under one city name, so confirm the exact office with Citi before you apply.
Is the Senior SOC Cyber Threat Analyst (VP / Hybrid) role at Citi still open?
The Senior SOC Cyber Threat Analyst (VP / Hybrid) posting at Citi was open at OnJob's last check of the employer's careers page, having been published on 5 August 2025. OnJob re-checks source listings on each build and marks a role closed once it disappears, but listings can close without notice, so the employer's own page is the final word.
How do you apply for the Senior SOC Cyber Threat Analyst (VP / Hybrid) role at Citi?
Apply to the Senior SOC Cyber Threat Analyst (VP / Hybrid) at Citi role through OnJob with a free profile: OnJob scores your fit against the listing, shows the skills lowering that score, and submits an ATS-ready profile to Citi's own application page. Creating a profile is free and needs no card.
Related HR & Recruiting jobs
Hand-picked roles that match this listing on skills, category and location — each scored to your profile inside OnJob.
Explore more on OnJob
Hiring for a role like this?
Post a job on OnJob and reach AI-matched candidates.