Cyber Security Operations Engineer
Summary
Acts as a core incident commander leading DFIR investigations of cloud (AWS/Azure/GCP), on-premise, and hybrid breaches — performing threat hunting and root-cause analysis with SIEM, EDR, and NDR tools, hosting emergency incident calls, and sharing rotational after-hours emergency duty.
About the role
You will serve as a core investigator and incident commander, taking charge of complex cloud and hybrid breaches, threat hunting, and digital forensics.
Key responsibilities
Lead Incident Response and deep-dive forensics across Cloud (AWS/Azure/GCP), On-Premise, and Hybrid environments
Analyze logs, telemetry, and system evidence using SIEM, EDR, and NDR platforms to identify root causes
Host emergency incident calls, aligning technical teams and stakeholders during active breaches
Conduct post-incident reviews, refine automation playbooks, and strengthen security controls
Serve as a rotational duty officer for emergency response outside regular working hours as needed
About you
3+ years in DFIR, Cloud Security, and active incident handling
Hands-on experience with SIEM, EDR/NDR tools, network protocols, and forensic evidence collection
Ability to write clear investigation reports and present technical findings clearly
Diploma or Degree in Computer Science, Cybersecurity, or related field
Certifications (Preferred): CCSP, GCIH, GCFE, GCFA, GCFR, or equivalent
Important Note:
> Please share your resume in word format with richa@helius-tech.com
> Important Note: If this requirement is not a match for you please refer to your friends.
> Interested professionals can reach out to me for Confidential Discussion @ +65- 6950 5535.
