Senior Detection Engineer

2 days ago


Singapore STARWOOD ASIA PACIFIC HOTELS & RESORTS PTE. LTD. Full time

**JOB SUMMARY**

**CANDIDATE PROFILE**

**Education and Experience**

**Required**:

- Bachelor’s degree in Computer Sciences or related field or equivalent experience/certification
- 3+ years of collective experience in one or all of the following:Splunk SIEM (Splunk Enterprise Security) threat detection use case development
UEBA (Exabeam) use case development for insider threat use case development
- 5+ years of experience in some or all of the following:Experience working in (or with) security functions such as SOC, CIRT, security engineering, risk management, vulnerability management.
Technical infrastructure operations, administration, or systems engineering
Scripting or programming language, including Python

**Preferred Skills/Experience**:

- Current information security certification such as Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP)
- Offensive and defensive security certifications such as CEH, IGAC Cyber Defense, OSCP or other related certifications
- Splunk Certification, including Splunk Enterprise Security Certified Admin
- Use case development experience on the Exabeam platform
- Working knowledge of the NIST Cyber Security Framework and ISO/IEC 27001:2022
- Working knowledge of the MITRE ATT&CK Framework
- **Familiarity**with cloud service provider platforms (AWS, Azure, GCP), identity and access management systems, firewalls, next-gen anti-malware, intrusion detection and prevention systems
- Experience with Linux, Unix and Microsoft operating systems
- Knowledge of IP networking
- Experience with a scripting language (*nix shell scripting, Python, PowerShell, etc.) and regular expressions
- Solid written and verbal communication skills
- Agile methodology

**Core Responsibilities**

**Most Often**:

- Lead collaboration sessions within the cyber security tower and other business units to devise security monitoring use cases. This work entails the collection and collaborative analysis of security accreditation reports, threat models, documented security controls, architecture, and business usage patterns for security monitoring consideration.
- Document prospective security monitoring use cases with MITRE ATT&ACK mappings using standard templates and methodologies. Identified use cases will be reviewed with stakeholders for acceptance sign-off and to move forward with development.
- Inform and consult other cyber ops teams of required data onboarding and integrations for use case development.
- Develop analytics, correlation searches, dashboards, reports and alerts within the SIEM and UEBA platforms.
- Solicit feedback for pre-production security monitoring content through peer review process and user acceptance testing for tuning.
- Document developed security monitoring content in a documentation registry using department standard templates and methodologies.
- Manage field mapping and transmission of security monitoring alerts to the security incident response platform for SOC analyst consumption as outlined in process documentation.
- Provide governance support for the content development function entailing content development standards compliance, change management approvals for SIEM or UEBA content, and lifecycle management of developed security monitoring content.
- Service operational requests in queue such as analytics content performance tuning, filtering, search refinement, parsing issues, etc.
- Attend SCRUM and prioritization meetings to review and update deliverables.

**Less Often**:

- Contribute to ongoing development and maintenance of documented standards, workflows, and best practices within the cyber threat detection engineering discipline.
- Research emerging threats and adversary tactics, techniques, and procedures to understand the threat landscape and to ensure that security monitoring content remains relevant and effective.
- Occasional participation in evaluations of new platforms, technologies and methodologies pertaining to cyber threat detection engineering.



  • Central Singapore Booz Allen Full time

    Detection Engineer, Senior **Key Role**: Design, develop, and implement advanced security detection mechanisms across various tools and platforms in a converged information technology (IT) and operational technology (OT) environment. Build and optimize integrations between security tools, ensuring seamless and efficient workflows tailored to the unique...


  • Singapore JL CABLE DETECTION PTE. LTD. Full time

    **(No Experience is required, all training will be provided)** We are looking for a self-motivated trainee Site engineer/ Utility Detection Specialist (LCDW/TCDW) at our company. Our trainee engineers will form part of an integrated team and should be comfortable working well with the rest of our admin and drafter teams. To be successful as a Utility...


  • Singapore beBeeCyberIntelligence Full time $120,000 - $180,000

    Cyber Threat Detection EngineerAs a Cyber Threat Detection Engineer, you will play a crucial role in designing, developing, and maintaining threat detection use cases across various security platforms. Your expertise will be utilized to identify detection gaps, research adversary tactics, and translate threat intelligence into actionable detections.Key...


  • Singapore BitMEX Full time

    BitMEX is the world's leading cryptocurrency derivatives trading platform, which has pioneered cryptocurrency trading through relentless commitment to change, and continues to set benchmarks for innovation, liquidity, and security today. As the world's most advanced peer-to-peer crypto-products trading platform and API, BitMEX gives knowledge, confidence,...


  • Singapore Experis Full time

    Looking Senior Threat Detection Engineer to join the Global Security Incident Response Team (GSIRT) Security Operations Center (SOC), responsible for threat detection content development, threat hunting, and innovation in the areas of intrusion analysis, detection, and related activities. **What you will be doing** - Investigate and review computer...


  • Singapore beBeeDetection Full time

    Job DescriptionWe are seeking an experienced Detection Engineering Specialist to join our team. The successful candidate will be responsible for designing, developing, and deploying high-fidelity detection rules in various SIEM systems. They will work closely with our security teams to create custom use cases that detect MITRE TTPs aligned with real-world...


  • Singapore beBeeGasDetection Full time $90,000 - $120,000

    Job Title: Gas Detection System EngineerWe are seeking an experienced Gas Detection System Engineer to join our team. As a key member of our project execution and coordination team, you will be responsible for overseeing the installation, testing, and commissioning of LSS (Life Safety System) gas detectors in semiconductor facilities.Responsibilities:Oversee...


  • Singapore beBeeEngineer Full time $90,000 - $120,000

    Project Engineer Role Summary:A Project Engineer is responsible for overseeing the execution and coordination of various projects, ensuring timely delivery and meeting safety, quality, and regulatory standards.">Key Responsibilities:The successful candidate will be involved in project execution, installation, testing, and commissioning of LSS gas detectors...

  • Principle Detection

    5 days ago


    Singapore BitMEX Full time

    BitMEX is the world's leading cryptocurrency derivatives trading platform, which has pioneered cryptocurrency trading through relentless commitment to change, and continues to set benchmarks for innovation, liquidity, and security today. As the world's most advanced peer-to-peer crypto-products trading platform and API, BitMEX gives knowledge, confidence,...


  • Singapore beBeeDataScience Full time $150,000 - $200,000

    Cyber Security Threat Detection EngineerWe are seeking a highly skilled Cyber Security Threat Detection Engineer to focus on detecting and preventing unauthorized privileged access.You will leverage advanced analytical techniques and machine learning models to identify security threats, mitigate risks, and protect critical assets.Key Responsibilities:Engage...