Cyber Defense Engineer

2 weeks ago


Singapore Tangspac APAC Full time

Client Description:
Job Description:
**Position: Cyber Defense Engineer**
**Employment Type: 1-year Agency Contract (Highly Renewable)**
**Location: Alexandra Road**
**Mode of Work: Hybrid**

**Scope of Work**:
**Responsibilities**:

- Provide administration and operations end to end support to SIEM Security Analytics Platform and other security solutions related infrastructure deployed within the bank.
- Onboarding new log sources, enabling new use cases and supporting all existing use cases.
- Develop and support case management workflow, reports and dashboards.
- Manage and support the log management environment.
- Monitor SIEM internal logs to identify and resolve potential performance issues.
- Drive upgrades and migration to ensure solutions and or related platform are maintained in tip-top working conditions with proper documentation and RCA.
- Work within established practices and handling guidelines to triage device outages.
- Available to respond to any requests and assist with troubleshooting activities along with proper documentation.
- Automation development on existing data feed and contextual data so we get different data from various log feeds to one location.
- Manage and coordinate change & Incident process engagement with regards to current security solutions.
- Communicate effectively with a variety of internal teams and external contacts including technical and executive contacts.

Others:

- Normalization/Parsing the data/logs
- Experience with any insider threat tools
- Follow MIRTE ATT&CK framework and NIST methodology
- Conduct regression testing on existing use cases and future enhancement by adding more new use cases to protect the bank from sophisticated Cyber-attacks.

Job Requirements:
**Education**
- ITC/Diploma/Degree in engineering/Computer Science / IT/Cyber Security from a recognized education institution
- Certified in leading SIEM administrator would be plus
- Professional security related qualification (e.g. SANS GCIA, GCIH etc.) will be favorable although not mandatory

**Technical Skills**
- Overall experience 8+ years of experience.
- 5+ years of relevant experience in the area for managing SIEM preferably Splunk/ArcSight
- Hands on experience in Advanced SIEM, Security Analytics solution, Linux and database (MySQL, Oracle/SQL)
- Very strong troubleshooting skills.
- Strong in providing operational support to any SIEM and other security platforms
- Strong knowledge in Syslog log management platform
- Experience in understanding end to end data flow
- Strong knowledge in understanding OS, Proxy, Network and other main-stream Infrastructure, Application, Access and Cloud logs.
- Strong knowledge to optimize performance and outages related to SIEM Solutions.
- Experience in normalize and data preparation to clean the data
- Experience in Data/Device Integration and provide the data back to other platform.
- Knowledge with SOAR platform is an added advantage.
- Experience in Automation using any scripting languages like Python and Shell.
- Knowledge and hands-on experience on implementing Use Cases would be add-on.

**Soft Skills**
- Good written and verbal communication skills
- Process and procedure adherence
- Strong analytical and problem-solving skills
- Effective time management and organizational skills.

**Other Requirements**
- Willingness to perform on-call duties.

If you are interested in the role above please get in touch directly with Stefan Olsem for further discussion or Click APPLY NOW Below.

Job Reference number 4734
Data provided is for recruitment purposes only.

Tangspac Consulting Pte Ltd
03-02 The Octagon, 105 Cecil Street, Singapore 069534
EA Personnel Name: Olsem Stefanus Emmanuel
EA License: 07C3635 | EA Registration: R2094432



  • Singapore Google Full time

    Cyber Defense Specialist, Mandiant Consulting Google will be prioritizing applicants who have a current right to work in Singapore, and do not require Google's sponsorship of a visa. Note: Google's hybrid workplace includes remote roles. Remote location: Singapore. Minimum Qualifications Bachelor's degree in Computer Science, Information Systems,...


  • Singapore SAGL CONSULTING PTE. LTD. Full time

    We are looking for a Cyber Security Defensive Analyst with strong expertise in Threat Hunting and Threat Intelligence . You will be responsible for detecting, analyzing, and responding to advanced threats using SIEM and EDR tools, while supporting incident response and proactive defense operations. This role is part of a 24/7 global cyber defense function...


  • Singapore SAGL Consulting Full time

    We are looking for a Cyber Security Defensive Analyst with strong expertise in Threat Hunting and Threat Intelligence . You will be responsible for detecting, analyzing, and responding to advanced threats using SIEM and EDR tools, while supporting incident response and proactive defense operations. This role is part of a 24/7 global cyber defense function...


  • Singapore Google Full time $120,000 - $200,000 per year

    info_outlineXGoogle will be prioritizing applicants who have a current right to work in Singapore, and do not require Google's sponsorship of a visa.Note: Google's hybrid workplace includes remote roles.Remote location: Singapore.Minimum qualifications:Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related technical field, or...


  • Singapore GOOGLE ASIA PACIFIC PTE. LTD. Full time

    Product area Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most...


  • Singapore Avanade Full time

    Come join us In a client-facing consultancy role, you will work on and lead exciting projects that transform our client’s Cyber Defense strategy and operations through the design and implementation of predominantly Microsoft Threat Protection technologies. As a member of our security practice, you will work for both Avanade and Accenture clients, ranging...

  • T&T Cyber

    1 week ago


    Singapore DELOITTE SINGAPORE T&T CYBER PTE. LTD. Full time

    Are you ready to unleash your potential?At Deloitte, our purpose is to make an impact that matters for our clients, our people, and the communities we serve. We believe we have a responsibility to be a force for good, and WorldImpact is our portfolio of initiatives focused on making a tangible impact on society's biggest challenges and creating a better...

  • Assistant Manager

    3 days ago


    Singapore TechBridge Market Full time

    If you are passionate about playing a key role in the success of a German Multinational Automotive Corporation, we want to hear from you! Our client is a well-established brand in the Automotive industry and they are looking for a passionate and driven **Assistant Manager - Cyber Security Defensive Operation Analyst **to join their team. This is an...


  • Singapore SAGL CONSULTING PTE. LTD. Full time

    Roles & Responsibilities We are looking for a Cyber Security Defensive Analyst with strong expertise in Threat Hunting and Threat Intelligence . You will be responsible for detecting, analyzing, and responding to advanced threats using SIEM and EDR tools, while supporting incident response and proactive defense operations. This role is part of a 24/7 global...

  • Assistant Manager

    1 week ago


    Singapore Percept Solutions Full time

    Assistant Manager – Cyber Security Defensive Operations Be among the first 25 applicants Job Description Conduct technical analysis and triage of alerts to determine severity, impact, scope, and appropriate response actions for the APAC and Greater China Regions. Perform in-depth analysis of Open Source Threat Intelligence (OSINT) and other sources to...