About us
Keyrus is an international consulting firm, specializing in the integration of data intelligence and Digital solutions. With over 4000 employees spread across 27 countries, Keyrus continues to deliver on such projects to a wide range of clients from various industries including but not limited to Banking/Finance, Healthcare/pharmaceuticals, FMCG, Oil & Gas, and more.
As part of Keyrus solution delivery, we are also in a position to recruit and place technical consultants to complement on existing client projects with their expertise. As such, we seek innovative and agile people to support ambitious and forthcoming technological challenges.
About the role
We are hiring on behalf of a leading international financial institution operating across Asia Pacific. This is a key role within the regional Production Security team, embedded in a 24/7 SOC environment. You will strengthen detection capabilities across APAC and contribute to global security use case development and incident response operations.
What you'll do
- Lead the design, implementation, and enrichment of security use cases based on real-world attack scenarios and the MITRE ATT&CK framework
- Monitor ongoing threat intelligence and translate findings into actionable detection logic
- Respond to and investigate cyber/IT security incidents; assess type and severity of events
- Oversee detection capabilities for the 24/7 regional IT Production SOC
- Drive continuous improvement of SIEM, SOAR, and operational playbooks
- Collaborate with regional and global stakeholders on security monitoring and alert handling
- Identify recurring security risks and develop mitigation and process improvement plans
- Conduct threat hunting and R&D activities to strengthen the security posture
Must-have requirements
- 7+ years of experience in cybersecurity incident response
- 4+ years specifically in security use case design, development, and coding
- Hands-on experience with SIEM platforms and security incident management
- Strong knowledge of MITRE ATT&CK framework
- Good working knowledge of Linux (RedHat/Ubuntu)
- Experience interpreting security logs and building threat models
- Strong English communication skills
Nice to have
- Experience with ELK/Elastic SIEM stack
- Scripting skills: Python, PowerShell, Bash, SQL
- Java programming knowledge
- Security certifications: CISSP, OSCP, SANS/GIAC
- Experience with SOAR platforms
- French language skills
- Prior experience in financial services or regulated industries