429,202open jobs
14,519companies
63,931added this week
Browse all
Salary
$101k – $236k per year (Estimated)
Location
In office (Singapore)
Seniority
Staff · 10+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Mitsubishi UFJ Financial Group is the largest banking group in Japan, formed in 2005 by the merger of Mitsubishi Tokyo Financial Group and UFJ Holdings, with roots in institutions founded in the nineteenth century. It runs domestic retail and corporate banking through MUFG Bank, trust and asset management through Mitsubishi UFJ Trust, securities operations with Morgan Stanley in Japan, and an international network built on stakes in banks across Southeast Asia and a large corporate lending book in the Americas and Europe. The group is headquartered in Tokyo and holds a substantial long-term shareholding in Morgan Stanley.

Do you want your voice heard and your actions to count?

Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world’s leading financial groups. Across the globe, we’re 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.

With a vision to be the world’s most trusted financial group, it’s part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.

Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.

Job Summary

As an Incident Response Team Lead, you will play a critical role in leading and developing the Incident Response function across the region. You will guide team members in investigating, containing, and responding to cybersecurity incidents, while also driving proactive improvements to incident response processes, readiness, playbooks, and operating procedures. The role requires strong hands-on technical capability, sound judgment during high-pressure incidents, and the ability to coordinate stakeholders, mentor incident response team members, and continuously strengthen the organization’s cyber resilience.

Job Responsibilities

  • Lead and coordinate the Incident Response team during cybersecurity incidents, ensuring timely triage, investigation, containment, eradication, recovery, and post-incident follow-up.
  • Provide technical direction, coaching, and quality review for team members performing incident investigations, forensic analysis, breach assessments, and remediation activities.
  • Drive continuous improvement of the cybersecurity incident response process, including playbooks, escalation procedures, reporting templates, evidence-handling practices, and lessons-learned activities.
  • Enhance incident response readiness through tabletop exercises, attack simulation exercises, process walkthroughs, and coordination with internal and external stakeholders.
  • Conduct and oversee analysis of artifacts, alerts, logs, network traffic, endpoints, and compromised systems to determine intrusion methods, scope of impact, root cause, and required remediation actions.
  • Coordinate cross-functional incident response activities with Security Operations, IT, business stakeholders, legal, risk management, compliance, and external partners as required.
  • Produce and review clear incident reports, executive updates, technical findings, and post-incident recommendations that support decision-making and long-term security improvements.
  • Research evolving threats, techniques, tools, and vulnerabilities, and translate relevant insights into improved detections, response procedures, and mitigation strategies.
  • Support compliance inquiries, audits, and risk management requests by maintaining complete documentation and ensuring incident response processes align with internal policies and industry good practices.
  • Contribute to the development of security operations detections, automation, monitoring improvements, and forensic capabilities to reduce response time and strengthen overall threat mitigation.

Job Requirements

  • Minimum 10 years of experience working in the Cybersecurity Operations or Information Security
  • Proven experience leading or supervising cybersecurity operations, incident response, security investigations, or a related technical team.
  • Demonstrated ability to coordinate incident response activities across technical teams, management stakeholders, and external parties during high-pressure situations.
  • Bachelor’s degree in Information Technology, Cyber Security, Computer Science, or related discipline
  • Relevant technical and industry certifications, such as GCFA, GCFE, GCIH, GCIA, CISSP, ISSMP, CISM, CEH, or GSEC are preferred
  • Experience in Security Operation Center, Incident Response and Computer Forensics preferred
  • Ability to lead by influence, build team capability, set investigation standards, and promote a culture of continuous improvement, accountability, and operational readiness.
  • Strong knowledge and experience in Incident Response including security event triage, investigation, containment, recovery and the overall incident response process.
  • Proficient in operating systems (Linux, Windows), network security, application security and mobile device security.
  • Experience with security data collection, analysis, correlation, and risk analysis using logs and various data sources.
  • Well-developed analytical, qualitative, and quantitative reasoning skills, with demonstrated creative problem-solving abilities.
  • Understanding of offensive security, common attack methods, and the ability to pivot across multiple datasets to correlate artifacts for a single security event.
  • Diverse skill base in product and information security, including system development, maintenance procedures, and security controls.
  • Detailed knowledge of security and regulatory frameworks (ISO 27001, NIST 800 series, etc.) and enterprise detection and response technologies (advanced threat detection tools, intrusion detection/prevention systems, etc.).
  • Experience with tools like CrowdStrike, Microsoft Defender, Tanium, Proofpoint, and open-source incident response and forensic tools.
  • Ability to document and explain technical details concisely and understandably.
  • Strong leadership, prioritization, and stakeholder management skills, with the ability to guide team members, manage multiple concurrent incidents, and maintain clear communication under pressure.
  • Fundamental understanding of enterprise cybersecurity frameworks such as MITRE ATT&CK and Cyber Kill Chain.

Mitsubishi UFJ Financial Group (MUFG) is an equal opportunity employer. We view our employees as our key assets as they are fundamental to our long-term growth and success. MUFG is committed to hiring based on merit and organsational fit, regardless of race, religion or gender.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
429,202 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Singapore
$19k – $45k per year (Estimated) • In office • Bachelor's Degree • Almaty
DevOps
VMWare
Hyper-V
Cybersecurity
ISO 27001
MITRE ATT&CK
PCI DSS
Apply
$74k – $158k per year (Estimated) • In office • Full-Time • New York
AI/ML
ISO 42001
Cybersecurity
ISO 27001
SOC 2
HIPAA
Least Privilege
Management
Slack
Notion
Google Workspace
Apply
IT Manager 1 day ago
$88k – $256k per year (Estimated) • Remote/Hybrid • Full-Time • Tel Aviv
AI/ML
Model Context Protocol
LLM
Human-in-the-Loop
DevOps
Rest API
GitHub
Cybersecurity
Okta
ISO 27001
SOC 2
Zero Trust
Management
Linear
Slack
Notion
Google Workspace
Apply
$38k – $94k per year (Estimated) • In office • 5+ years exp • Bachelor's Degree • Madrid
Python
PowerShell
Bash
DevOps
Splunk
Terraform
Ansible
GCP
OpenShift
Helm
GitHub Actions
Traefik
VMWare
cert-manager
CloudFormation
containerd
Datadog
K3s
Kustomize
Prometheus
GitLab CI
Azure
CI/CD
GitOps
Windows Server
ArgoCD
Jenkins
Git
AWS
Docker
Kubernetes
Cloudflare
Ubuntu
Nginx
Grafana
Platform Engineering
MicroK8s
Amazon EKS
AWS Lambda
Amazon EC2
KVM
Hyper-V
GitHub
GitLab
Amazon S3
IAM
Amazon ECS
Amazon CloudWatch
AWS Step Functions
API Gateway
Cybersecurity
ISO 27001
pfSense
SOC 2
GDPR
AWS WAF
Apply
$80k – $203k per year (Estimated) • In office • Full-Time • Sydney
DevOps
Splunk
Azure
Cybersecurity
Microsoft Sentinel
ISO 27001
Apply
$18k – $41k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Bengaluru
Cybersecurity
GDPR
Apply
$18k – $40k per year (Estimated) • In office • Full-Time • Bengaluru
Apply
$76k – $169k per year (Estimated) • Remote • Full-Time • Amsterdam
Python
SQL
AI/ML
AI Agents
DevOps
Azure
GitHub
Analytics
Power BI
Apply
$57k – $166k per year (Estimated) • In office • Full-Time • Istanbul
Apply
In office • Full-Time • Bengaluru
Apply
$126k – $311k per year (Estimated) • In office • 10+ years exp • Singapore
Management
Stripe
Marketing
LinkedIn
Apply
In office • Singapore
Management
Outlook
Apply
$33k – $67k per year (Estimated) • In office • Full-Time • Singapore
Apply
In office • Full-Time • Singapore • Hong Kong
JavaScript
Frontend
Parcel
Apply
$84k – $197k per year (Estimated) • In office • Full-Time • 2+ years exp • Singapore
DevOps
SLI/SLO/SLA
Apply
See all jobs
This is one of many
429,202 more open roles from verified company boards, updated every day.