
SIEM Platform Lead
3 days ago
Press Tab to Move to Skip to Content Link
Select how often (in days) to receive an alert: Create Alert
At Tetra Pak we commit to making food safe and available, everywhere; and we protect what's good – protecting food, protecting people, and protecting the planet. By doing so we touch millions of people's lives every day.
And we need people like you to make it happen.
We empower you to reach your potential with opportunities to make an impact to be proud of – for food, people and the planet.
The security information and event management (SIEM) platform lead will be responsible for implementing, maintaining, monitoring and managing SIEM solutions deployed throughout the security operations center (SOC). Working alongside SOC and Threat and Exposure Management team members, the SIEM platform lead facilitates architectural designs, best practices, and event and incident response duties. The SIEM platform lead is expected to contribute to the corporate security strategy and collaborate with security leadership and other security technologists. The SIEM platform lead provides support to the incident response, forensic, application and networking teams, and works with IT infrastructure, application development, security operations, security audit and end user sources of information to ensure collection, correlation and reporting, as well as facilitation of corporate-wide security events.
This is a permanent position that can be based in any Tetra Pak location.
What you will do
Role and responsibilities:
The SIEM Platform Lead provides proactive and preventive analysis of systems through product-specific SIEM tools and ancillary solutions used in security. The role also ensures SIEM solutions aid in the output of metrics to senior management to help maintain a safe and secure enterprise technical operation. Daily, the platform lead ensures SIEM and automation solutions are healthy, maintaining integrity and performing optimally, and that capacity keeps up with demand. To be successful, a solid understanding of and practical hands-on experience with security principles, host configurations and networking is required.
Key Responsibilities:
Leading SIEM solution design, related components, and the confidentiality, integrity and availability (CIA) of logs.
Implement, manage and maintain event and log collection, reporting and compliance requirements.
Design and build SIEM dashboards and reporting tools required by technical teams.
Act as a key member and contact for the security operations center (SOC) and incident response team.
Help correlate events to support SOC response requirements.
Be readily available for incident response, forensic, troubleshooting and security issues requiring event details.
Maintain up-to-date level of knowledge related to security threats, vulnerabilities and mitigations set forth to reduce attack surface.
Tune the SIEM with threat intelligence sources (e.g., premium, industry-shared, open-source and dark web), and correlate event indicators and threats.
Support SOC automation initiatives leveraging playbooks, while also using human analysis as needed.
Connect events to contextual security reports that security management and technical teams can easily comprehend.
Actively participate in threat hunting tabletop exercises to hone and strengthen skills across the team.
Work closely with Information Security leadership to instill cybersecurity policies and practices throughout business units that address security operations, incident response, application security and infrastructure.
Actively engage in security projects across the business to implement event and logging requirements.
Perform other duties as assigned.
We believe you have
At least 5 years cybersecurity experience (or IT coupled with cybersecurity) with at least 2 years in an engineering-based role supporting SOC and IR teams.
Proficient in one or more SIEM (e.g., QRadar, Splunk, LogRhythm,).
Knowledgeable of or hands-on experience with supporting intrusion detection/prevention systems (IDS/IPS), firewalls, endpoint solutions, data loss prevention (DLP), Active Directory (AD) and application security.
Advanced knowledge of operating system configuration (Windows, Unix, Linux) and networking (DNS, DHCP, routing protocols).
Ability to interface with threat intelligence platforms and SOAR solutions to centralize and manage incidents and remediation workflow.
Ability to analyze event and incident logs and work with SOC and IR teams to assess security events related to malware, vulnerabilities, exploits and kill chain methodology.
Strong understanding of key performance indicators (KPIs) and service-level agreements (SLAs) attributed to security and business objectives for key stakeholders.
Ability to liaison to conduct tabletop exercises for security incident and events.
Some experience in a cloud-based SIEM environment and migration from on-prem to cloud preferred.
Experienced with one or more scripting languages (e.g., Python, PowerShell, Bash, etc.).
Basic knowledge of adversary tactics, techniques and procedures (TTPs) and MITRE ATT&ACK principles.
Education Requirements:
Bachelor's degree preferred in cybersecurity, computer science, engineering or related field.
3-5+ years of cybersecurity or information technology practitioner experience.
2+ years of related security systems administration with endpoint, network, application and host-based security solutions.
2+ years working in or with SOC and IR teams.
CISSP, GSEC, GCIH, GCIA, GCFE preferable, but not required.
We Offer You
A variety of exciting challenges with ample opportunities for development and training in a truly global landscape
A culture that pioneers a spirit of innovation where our industry experts drive visible results
An equal opportunity employment experience that values diversity and inclusion
Market competitive compensation and benefits with flexible working arrangements
Apply Now
If you are inspired to be part of our promise to protect what's good; for food, people, and the planet, apply through our careers page at .
If you have any questions about your application, please contact
Ephraim Kwa .
Diversity, equity, and inclusion is an everyday part of how we work. We give people a place to belong and support to thrive, an environment where everyone can be comfortable being themselves and has equal opportunities to grow and succeed. We embrace difference, celebrate people for who they are, and for the diversity they bring that helps us better understand and connect with our customers and communities worldwide.
#J-18808-Ljbffr
-
Siem Platforms Lead
2 weeks ago
Singapore TATA CONSULTANCY SERVICES ASIA PACIFIC PTE. LTD. Full time**Must Have** - 15+ years of experience in cybersecurity, with at least 10 years in a leadership role in security operations. - Proven experience managing or supporting cybersecurity operations in India or with Indian teams/vendors. - Strong knowledge of SIEM platforms (e.g., Splunk, IBM QRadar, Azure Sentinel), and security tools (Firewalls, EDR, SOAR). -...
-
SIEM Platform Lead
1 hour ago
Singapore Tetra Pak Full time $100,000 - $150,000 per yearAt Tetra Pak we commit to making food safe and available, everywhere; and we protect what's good – protecting food, protecting people, and protecting the planet. By doing so we touch millions of people's lives every day.And we need people like you to make it happen.We empower you to reach your potential with opportunities to make an impact to be proud of...
-
SIEM Platform Lead
42 minutes ago
Singapore TETRA PAK JURONG PTE LTD Full time $100,000 - $150,000 per yearDate: 20 Aug 2025Location:Singapore, SGCompany: Tetra PakAt Tetra Pak we commit to making food safe and available, everywhere; and we protect what's good – protecting food, protecting people, and protecting the planet. By doing so we touch millions of people's lives every day.And we need people like you to make it happen.We empower you to reach your...
-
Siem Engineer
2 weeks ago
Singapore INFINITY CYBERSEC PTE. LTD. Full time**SIEM Engineer** Job roles: - Implementation of SIEM solutions including design, testing, deployment and documentation - Administration and troubleshooting of SIEM solutions across variety of platforms both on-premises and on cloud - Onboarding of data sources along with necessary use cases, dashboards, reports and alerts - Incident response coordination...
-
SIEM Engineer
1 week ago
Singapore Ensign InfoSecurity Full timeDirect message the job poster from Ensign InfoSecurity Join Us - Ensign InfoSecurity | Conquer the Unknown | IHRP-CP Key Responsibilities Carry out maintenance, support and operation of the project's security solution platforms. Maintain understanding of the architecture and work with security team to understand the use case and playbooks to be created....
-
Siem Analyst
24 hours ago
Singapore Thatz International Pte Ltd Full timeAre you seeking the new norm career opportunities? We are helping **Thatz International Pte Ltd **to identify suitable talents to help them to grow their business in the new norm. Selected talents will be placed with them to carry out their Next-Generation ICT Engagement and Consultancy (Thatz 2.0) or Outsourcing business. **Who we are** Our...
-
Elk Specialist
2 weeks ago
Singapore NEW TONE CONSULTING PTE. LTD. Full timeSummary: The Elastic Stack Specialist - SIEM Operations will join the APAC Production Security team in Singapore, responsible for enhancing the detection and reaction capabilities to cyber threats. This includes deploying, maintaining, and improving the SIEM infrastructure, working closely with the Production Infrastructure and Observability...
-
Siem Splunk Engineer
7 days ago
Singapore JANUARY CONSULTANCY SERVICES PTE. LTD. Full timePerform SIEM health check - Monitor SIEM Server Storage, CPU and Memory Usage and perform necessary action. - Perform SIEM version upgrade - Update splunk configurations based on security advisory - SIEM Infra Tuning and Performance Optimization **1. Splunk Platform Management**: - Deploy, configure, and maintain **Splunk Enterprise / Splunk Cloud**. -...
-
Data Analyst
1 week ago
Singapore SAGL CONSULTING PTE. LTD. Full time**Job Summary**: **Key Responsibilities**: - Analyze and interpret security event data from SIEM platforms (e.g., Splunk, QRadar, ArcSight, etc.) - Develop and maintain parsers, regex rules, and data normalization scripts - Understand and work with SIEM data models to improve log ingestion and correlation logic - Write Python or shell scripts to automate...
-
Cyber Defense Engineer
24 hours ago
Singapore Tangspac APAC Full timeClient Description: Job Description: **Position: Cyber Defense Engineer** **Employment Type: 1-year Agency Contract (Highly Renewable)** **Location: Alexandra Road** **Mode of Work: Hybrid** **Scope of Work**: **Responsibilities**: - Provide administration and operations end to end support to SIEM Security Analytics Platform and other security solutions...