Senior Security Specialist
Summary
Senior cybersecurity engineer at a large energy company in Singapore, designing and operating security tools (SIEM, SOAR, M365, cloud defenses) and leading incident response and risk-reduction projects.
Responsibilities :
- Execute core cybersecurity operations, including security monitoring, use case/content management, threat hunting, incident response, and remediation.
- Contribute to incident response planning and coordinate effective containment, eradication, and recovery actions.
- Review and assess existing and proposed system architectures, configurations, and designs to ensure compliance with security standards, controls, and baselines.
- Collaborate with HQ to conduct quarterly breach and attack simulations and continuously refine security controls to improve effectiveness.
- Support and coordinate with vendors on penetration testing activities, including scoping, execution, and remediation tracking.
- Assess proposed technology or process changes and implement action plans to enhance security posture, resilience, and risk mitigation.
- Design, implement, operate, and maintain security solutions across on-premises and cloud environments (e.g., M365 Conditional Access, Intune, endpoint protection, web and network security, perimeter defenses, and advanced detection tools) with minimal supervision.
- Drive continuous improvement of cybersecurity operations through process optimization, automation, and stakeholder engagement.
- Lead cybersecurity enhancement initiatives, including vendor evaluation, scope definition, business justification, contract review, negotiation, and procurement coordination.
- Develop and manage business plans, budgets, and resource forecasting for cybersecurity initiatives.
- Responsible for onboarding logs to SIEM solution.
- Perform patching and upgrade for syslog servers and SOAR servers.
- Mentor and guide junior cybersecurity team members to build capability and expertise.
- Define, execute, and communicate cybersecurity enhancement strategies using measurable objectives, performance tracking, and regular reporting.
Requirements :
- Bachelor’s degree in computer science/cybersecurity.
- Minimal 8 years of work experience in security engineering or monitoring in information security division.
- Proven ability in managing SIEM, Log Management and SOAR solutions.
- Possess strong technical knowledge, technology integration and troubleshooting skills.
- Able to work independently and drive new initiatives proactively.
- Knowledge of modern cloud technology components and deployment patterns (Azure, AWS).
- Understand and familiar with securing On-Prem and cloud infrastructure.
- Possess relevant professional certifications such as CISSP, CCSP or GIAC certifications - GCIH, GNFA, GPEN, GCAD, GDSA.
- Ability to implement automation using script or via automation platforms such as SOAR, Power Automate is preferred.
- Proficient in written and oral English.