Cybersecurity Engineer
Summary
Designs and improves security detection rules, hunts for threats, and leads incident response using SIEM/SOAR tools and scripting languages in a Singapore-based cybersecurity team.
About the Role
We are seeking an experienced Cybersecurity Engineer to join a cybersecurity team responsible for strengthening security monitoring, detection engineering, incident response, and threat hunting capabilities.
The successful candidate will play a key role in enhancing detection use cases, improving security operations, responding to cyber threats, and collaborating with stakeholders to strengthen the organization's overall security posture.
Key Responsibilities
Security Detection & Engineering
- Design, develop, implement, and continuously enhance security detection use cases based on current threat intelligence and industry frameworks such as MITRE ATT&CK.
- Improve detection capabilities across security monitoring platforms, including SIEM and SOAR solutions.
- Research emerging cyber threats and develop appropriate detection and mitigation strategies.
- Conduct threat hunting and security investigations to proactively identify potential risks.
- Support continuous enhancement of security monitoring tools, automation, and operational processes.
Incident Response
- Investigate cybersecurity incidents and assess their impact and severity.
- Coordinate incident response activities with relevant technical and business stakeholders.
- Identify recurring security issues and recommend preventive measures and process improvements.
- Support post-incident reviews and contribute to continuous improvement initiatives.
Collaboration
- Work closely with regional and global security teams to improve monitoring, investigation, and incident response capabilities.
- Collaborate with cross-functional teams to ensure effective detection, escalation, and response to security events.
- Contribute to maintaining security governance, compliance, and audit readiness.
- Support security reporting and documentation in accordance with organizational standards.
Required Skills & Experience
- Approximately 7 or more years of experience in Cybersecurity, Security Operations, or Incident Response.
- Hands-on experience with:Security Incident ResponseThreat HuntingIncident InvestigationSecurity Detection EngineeringSIEM technologies
- Experience designing and developing security detection use cases.
- Working knowledge of Java.
- Good understanding of Linux environments (e.g., Red Hat, Ubuntu).
- Knowledge of threat modelling and interpreting security logs.
- Experience working with large security datasets for analysis, detection, and automation.
- Familiarity with security operations concepts and incident management processes.
- Ability to investigate, remediate, track, and manage security incidents through closure.
- ELK (Elasticsearch, Logstash, Kibana)
- SIEM and SOAR platforms
- Python/PowerShell/Bash
- SQL
- Security automation
- Professional cybersecurity certifications such as CISSP, OSCP, SANS, or equivalent
Dimple Jain
EA LicenseNo:91C2918
PersonnelRegistration Number: R22107270