SMRT

Manager, SMRT Rail Cybersecurity Centre (SRCC)

SMRT
Public Transport & Rail OperationsSingapore, SGOnsitePosted 1 week ago

About the role

Manager, SMRT Rail Cybersecurity Centre (SRCC) role based on the published job description. Key responsibilities and requirements were extracted directly from the posting for quick review.

TransportOnsite

Key Responsibilities

  • Job Purpose In an increasingly complex cyber threat landscape, the Manager, SMRT Rail Cybersecurity Centre (SRCC) is responsible for establishing and leading SMRT's Security Operations Centre (SOC) function.
  • Responsibilities As Manager, SMRT Rail Cybersecurity Centre (SRCC), you will lead the design, implementation and operationalisation of SMRT's Security Operations Centre (SOC) function.
  • Your responsibilities include: • Develop and lead SMRT's SOC strategy, ensuring alignment with organisational security objectives.
  • Establish and maintain SOC capabilities across internal telemetry, external intelligence sources and industry-sharing platforms.
  • Lead continuous maturity improvement of the SOC function through capability development, staff training and process optimisation.
  • Analyse threat actors, campaigns, tactics, techniques and procedures (TTPs), producing high-quality incident reports for operational, tactical and strategic use.

Requirements

  • Qualifications & Work Experience • A bachelor's degree in Cybersecurity, Information Systems, Computer Science, or a related discipline.
  • 5-10 years of relevant experience in SOC operations, or equivalent intelligence driven security roles.
  • Hands‑on experience working with SOC / SOAR platforms, threat feeds, OSINT tools, TIPs, malware analysis tools, and enrichment technologies will be advantageous.
  • Familiarity with security operations, incident response, and vulnerability management workflows, enabling effective intelligence operationalisation.
  • Skills Technical Skills include: • Proficiency with SOC tools and platforms and automated analysis technologies.
  • Ability to interpret and correlate internal telemetry, logs, and security events to derive meaningful intelligence insights.