Sign up to access all features of our service
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Incident Investigation Specialist

10000 - 15000 SGD
Full-time

BLACKPANDA PTE. LTD.

About Blackpanda

Blackpanda is a Lloyd's of London–accredited insurance coverholder and Asia's leading local cyber incident response firm, delivering end-to-end digital emergency support across the region. We are pioneering the A2I (Assurance-to-Insurance) model in cybersecurity — uniting preparation, response, and insurance into a seamless pathway that minimizes financial and operational impact from cyber attack.

Through expert consulting services, response assurance subscriptions, and innovative cyber insurance, we help organisations get ready, respond, and recover from cyber attacks — all delivered by local specialists working in concert. Our mission is clear: to bring complete cyber peace of mind to every organisation in Asia, from the first moment of breach through full recovery and beyond.

How We Work

Blackpanda is a tech-enabled services team. We invest heavily in AI and are constantly pushing to do better, faster, and at scale. You are given freedom to use the approved tools in the team, but you are to take ownership of outcomes. We prefer smart work over hard work, welcome good ideas regardless of where they come from, and have deliberately kept red tape out of the way of innovation. If you want to join a team building the best response practice in Asia — and shaping the tools and methods that get us there — you'll be in good company.

Your Mission: Cyber Incident Investigation Specialist

As a Cyber Incident Investigation Specialist you will work alongside senior responders on live engagements — helping clients contain, investigate, and recover from real cyber attacks. This is a delivery-focused role: your job is to do the work, learn the craft, and grow into a fully fledged responder under direct mentorship.

We hire for attitude and aptitude. We expect you to be curious, coachable, and serious about building a career in incident response. The right candidate can demonstrate a genuine interest in IR through their experience, side projects, study, or community involvement, and shows up ready to learn fast in a real-world environment.

Core Responsibilities

Delivery Alongside Senior Responders

  • Support senior consultants on active incidents — assist & conduct post-incident forensic analysis on host systems, network traffic, and cloud environments to investigate causes of intrusion, attack, or data breaches
  • Acquire and triage forensic artifacts across Windows, Linux, macOS, and cloud environments under the guidance of more experienced team members.
  • Analyse logs, endpoint telemetry, network data, and malware artifacts, and contribute findings to investigation timelines to identify forensic issues and establish root causes or attack vectors
  • Select, test, and deploy forensic and security products on client networks, and utilize threat intelligence to track Internet-based criminal activities
  • Use scripting (Python, Bash, or PowerShell) to assist with collection, parsing, and automation tasks where useful.
  • Support the design of clients' breach notification processes and incident response frameworks to minimize damage and operational downtime
  • Recommend technical corrective actions and remediation steps to help clients prevent and mitigate future security or internal control failures with Senior Responders’ supervision

Client-Ready Professionalism

  • Document findings clearly and accurately, contributing sections to client deliverables under senior review.
  • Maintain a calm, professional posture in client-facing settings — even when the situation around you is anything but calm.
  • Follow operational procedures, chain-of-custody requirements, and quality standards as taught and reinforced through mentorship.

Learning and Growth

  • Take ownership of your own development — ask questions, study actively, and apply feedback quickly.
  • Participate in instructor-led training, internal exercises, and on-the-job mentoring designed to accelerate your tradecraft.
  • Contribute observations, ideas, and improvements back to the team — innovation is welcomed regardless of seniority.

Minimum Requirements

  • 3+ year of experience in cybersecurity, IT, or an adjacent technical field (e.g. SOC analysis, sysadmin, helpdesk, network engineering, software engineering).
  • Demonstrable, genuine interest in incident response — through study, side projects, CTFs, home labs, community involvement, or prior work.
  • Working comfort with at least one of Windows, Linux, or macOS, and a willingness to become competent across all three.
  • Basic scripting ability in Python, Bash, or PowerShell — enough to read and adapt scripts, with the appetite to grow further.
  • Clear written and verbal English; able to take notes, write up findings, and communicate professionally with teammates and clients.
  • Coachable, curious, and resilient — willing to be wrong, learn fast, and try again.
  • Calm under pressure, with a professional posture in client-facing settings.

Preferred Qualifications

  • Started or completed a relevant certification (e.g. Security+, Network+, GCIH, GCFA, GFACT, CEH, BTL1) — in progress is just as welcome as completed.
  • Hold a bachelor’s degree or background in an adjacent field in Computer Engineering, Computer Science, Information Technology, SOC, sysadmin, network engineering, software engineering, intelligence analysis
  • Hands-on exposure to EDR, SIEM, or forensic tooling, even in a learning context.
  • Participation in CTFs, security communities, open-source projects, or personal labs.
  • Additional languages relevant to the regions Blackpanda serves.

How You'll Grow

You will be paired with senior responders on real engagements from day one. Your development will be supported through direct, hands-on mentorship and a structured instructor-led training program — not a sink-or-swim environment.

You'll join a diverse team of teammates from around the world, where who you are, the quality of your work, and your character are what matter. Trying and failing is ok. Failing to try is not.

Why This Role

If you're hungry to learn, and want to spend the next phase of it doing real incident response under people who will invest in your growth — this is the seat for you. We're not looking for a finished product. We're looking for the right attitude, the right aptitude, and the willingness to put in the work.

Vacancy posted 11 days ago
Similar jobs that could be interesting for youBased on the Cyber Incident Investigation Specialist in Singapore vacancy
  • 6000 - 7500 SGD

     ...We are seeking an experienced and highly technical Cyber Threat Intelligence & Incident Response Specialist to strengthen our organisation’s threat detection,...  ...who is comfortable independently leading complex investigations from initial detection through containment, eradication... 

    PERCEPT SOLUTIONS PTE. LTD.

    Singapore
    10 hours ago
  • 8000 - 13000 SGD

     ...to interpret security logs or instructions into threat models. SecOPS-DevOPS mindset & skills. Experience and knowledge in investigating incidents, remediation, tracking and follow-up for incident closure with concerned teams, stakeholders. Thorough understanding of... 

    ITCAN PTE. LIMITED

    Singapore
    10 hours ago
  • 10000 - 16000 SGD

     ...in providing high-end security consulting and incident response support to organizations worldwide, is looking for a Cyber Incident Responder to join their team in...  ...Participate in forensic and incident response investigations, including large scale sophisticated attacks,... 

    RESOURCE CONSULTING PTE. LTD.

    Singapore
    9 days ago
  • 6500 - 10000 SGD

     ...this role to perform technical analysis, incident response and incident management efforts...  ...the Security Operations Center (SOC) and specialist Threat Intelligence activities, responsible...  ...A minimum of 5-8 years of experience in cyber security, with a clear progression into specialized... 

    COMMERZBANK AKTIENGESELLSCHAFT

    Singapore
    4 days ago
  • 10500 - 11500 SGD

     ...expert/SME in Detection Engineering & Security Investigation areas, part of Production SOC & Security Investigation & Incident Response team.  Your role will be to:  Strengthen...  ...24/7 regional IT Production SOC.  Respond to Cyber / IT security incidents and evaluates the type... 

    WE-PLUS PTE. LTD.

    Singapore
    a month ago
  • 10000 - 14000 SGD

     ...who is seeking to recruit a Lead IT Specialist (Cybersecurity Incident Response). Key Responsibilities...  ...security events, conducting in-depth investigations and advising on containment, eradication...  .... This is a key position in the Cyber Incident Response Team (CIRT).  What... 

    JJ CONSULTING SERVICES

    Singapore
    6 days ago
  • 8000 - 9000 SGD

     ...Cyber Security Specialist (VAPT) Job Description Architect, design, review and implement cyber security resilient in our product and projects...  ...management, hardening, patch management, backup management, incident management, etc. Familiar with IM8 requirements and CIS,... 

    STAR CAREER CONSULTING PTE. LTD.

    Singapore
    10 days ago
  • 10000 - 14000 SGD

     ...who is seeking to recruit a Lead Cybersecurity Specialist (Security Operations). Lead Cybersecurity Specialist (Cyber Defence) You will be the primaryarchitect of...  ...critical Operational Technology(OT) environments. 1. Incident Management &Response Standardisation · Unified... 

    JJ CONSULTING SERVICES

    Singapore
    14 days ago
  • 8000 - 12000 SGD

    ​ Our Client is an established company in Singapore, who is seeking to recruit a Product Manager (Cybersecurity Engineering), to drive user engagement and stakeholder management for cybersecurity solutions. This role is instrumental in shaping product strategy, understanding...

    JJ CONSULTING SERVICES

    Singapore
    5 days ago
  •  ...Singapore, who is seeking to recruit a Lead Cyber Security Specialist (Digital Forensics). The successful...  ...services across all stages of the incident response lifecycle. This encompasses...  ...security events, conducting in-depth investigations and advising on containment,... 

    JJ CONSULTING SERVICES

    Singapore
    2 days ago
  • 6000 - 10000 SGD

     ...IPC Manager (Incident, Problem, Change Manager) Role Summary The IPCS Manager is accountable for managing the end-to-end IT service...  ...major Incident activities, thereby ensuring that root cause is investigate. Reviews the performance of the people and process to ensure... 

    NTT SINGAPORE PTE. LTD.

    Singapore
    6 days ago
  • 7000 - 10000 SGD

    In this role, you will lead DevSecOps capability delivery for Enterprise Cybersecurity Engineering. This role combines project management with Secure Software Development Life Cycle (Secure SDLC) expertise to manage complex security initiatives, align cross-functional teams...

    OPTIMUM SOLUTIONS (SINGAPORE) PTE LTD

    Singapore
    3 days ago
  • 7000 - 7500 SGD

    Cyber Platform Engineer (Contract) Location: Singapore (Onsite at various secured premises) Employment Type: Contract...  ...for all PAM-related enquiries and ad-hoc requests. Support investigation and incident response activities as required. Perform monthly user access... 

    FLARE CONSULTING PTE. LTD.

    Singapore
    10 hours ago
  • 5000 - 5500 SGD

     ..., and audit activities. Monitor cybersecurity platforms and investigate system, security, application, and audit logs for anomalies or...  ...Support vulnerability management, security assessments, audits, incident investigations, and remediation activities. Manage backup and... 

    FPT ASIA PACIFIC PTE. LTD.

    Singapore
    6 hours ago
  • 9500 - 14500 SGD

     ...Cyber Platform Engineer 1. Scope of Work The Cyber Platform Engineer will be responsible for the operational administration...  ...from internal stakeholders and ad-hoc requests. Support investigation and incident response activities, as required Perform monthly user... 

    SEDHA CONSULTING PTE. LTD.

    Singapore
    6 hours ago
  • 6000 - 9000 SGD

     ...Security Operations (Security Response & Incident Management) Job Overview Operate...  ...and overseas group companies Analyze, investigate, and recover from security incidents,...  ..., CISM, Registered Information Security Specialist, CompTIA Security+, etc.) Preferred... 

    TRANSCOSMOS ZERO PTE. LTD.

    Singapore
    a month ago
  • 10000 - 20000 SGD

     ...Security Tools Optimization & Engineering Specialist is responsible for ensuring that all...  ...tool outputs support detection use cases, incident response, audits, and compliance programs...  ...as Technology Risk Management Guidelines, Cyber Hygiene, Outsourcing guidelines etc. Strong... 

    SINGAPORE EXCHANGE LIMITED

    Singapore
    10 days ago
  • 8000 - 10000 SGD

     ...Support and deliver cybersecurity projects, platform upgrades, and security-related change requests. Monitor security events, investigate incidents, and work with global teams to resolve security issues. Perform security hardening, patch management, and compliance... 

    STEFANINI SINGAPORE PTE. LTD.

    Singapore
    10 days ago
  • 5000 - 8000 SGD

     ...the heart of everything we doat OCBC. As a Cyber Engineering - Risk professional, you'll...  ...Responsibility Perform monitoring, analysis/investigation and escalation of real-time security...  ..., and their capabilities Knowledge of incident response and handling methodologies... 

    OVERSEA-CHINESE BANKING CORPORATION LIMITED

    Singapore
    7 days ago
  • 7000 - 9500 SGD

     ...and penetration testing activities. Review code and technical designs from a security perspective. Investigate and help remediate security findings and incidents. Contribute to security automation, tooling, and process improvements. Collaborate with cross-functional... 

    SCIENTEC CONSULTING PTE. LTD.

    Singapore
    12 days ago
  • 11500 - 21000 SGD

     ...events impacting CCIBT, helping to ensure rapid detection, effectivecoordination, clear communications, and disciplined execution during incidents,major events, and high‑risk operational activities. In this role, you will: Actively engage with Major Incidents assisting... 

    WELLS FARGO BANK, NATIONAL ASSOCIATION

    Singapore
    10 hours ago
  •  ...Hey Kroll superstars! Are you ready to dive into the world of Investigations Diligence and Compliance with Kroll's amazing team? We're on the...  ...to join our Investigations Diligence and Compliance - Specialist Team as Intern. At Kroll, we're not just about transactions... 
    Singapore
    more than 2 months ago
  • 7000 - 9000 SGD

     ...Join Maybank Singapore as a Cyber Assurance Analyst and help strengthen the Bank's cyber...  ...cyber threat intelligence, industry incidents and regulatory developments into thematic...  ...stakeholder relationships ~ Strong analytical, investigative and problem-solving capabilities ~... 

    MAYBANK SINGAPORE LIMITED

    Singapore
    17 days ago
  • 2900 - 4300 SGD

     ...evaluate and prepare all soil data record and ensure quality of field works with good interpretation of ground conditions through ground investigation. Monitor the environmental, health and housekeeping on site. Conduct tool box meeting / safety talk for workers every day... 

    RYOBI GEOTECHNIQUE INTERNATIONAL PTE. LTD.

    Singapore
    10 days ago
  • 2800 - 3300 SGD

     ...Job Scopes: The Services required are set out as follows: 1.Investigative & Case Support •Assist in conducting preliminary investigations and fact-finding interviews regarding minor incidents. •Obtain student and witness statements where appropriate and compile... 

    MAXHUNT RESOURCE PTE. LTD.

    Singapore
    7 days ago
  • 7000 - 11000 SGD

     ...The Criminal Fraud Investigator (CFI) is embedded in the Consular Section and works under the direct supervision of the Overseas Criminal Investigator (OCI). The incumbent conducts sensitive, routine, and complex criminal investigations of counterfeit/forged travel documents... 

    Embassy of the United States of America

    Singapore
    5 days ago
  • 4000 - 6000 SGD

     ...solutions. The company is CREST accredited, Cyber Trust Mark Tier 5 and ISO/IEC 27001:2022...  ...and compliance. Firmus brings together specialists in Red Team, GRC, Operational Technology,...  ...and implement security solutions, support incident response activities, and contribute to... 

    FIRMUS PTE. LTD.

    Singapore
    23 days ago
  • 10000 - 12000 SGD

     ...analysts, ensuring consistent and effective cyber programme implementation across all...  ...improvement of end-to-end OT threat detection, incident response, and vulnerability management...  ...endpoint protection across all sites. • Lead investigation and remediation of major OT cyber... 

    FLINTEX CONSULTING PTE. LTD.

    Singapore
    6 days ago
  • 4200 SGD

    - Investigate offences under the Tobacco andVaporisers Control Act (TVCA) by conducting comprehensive interviews and recordformal statements from witnesses and offenders. - Supervise a dedicated team of investigation Officers,overseeing their daily task, tracking case progression... 

    WSH EXPERTS PTE. LTD.

    Singapore
    5 days ago
  • 10000 - 14000 SGD

     ...We are seeking a Senior Cyber Defence Analyst to join the Information Security team at...  ...experience advising clients on hundreds of incidents. Leveraging this experience, they...  ...more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated... 

    ALLEN OVERY SHEARMAN STERLING LLP

    Singapore
    12 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Incident Investigation Specialist. Be the first to apply!