Senior Detection Engineer

1 week ago


Singapore Marriott International, Inc Full time

**Additional Information**
**Job Number**24190859
**Job Category**Information Technology
**Location**Singapore Regional Office, 2 Harbourfront Place #06-08, Singapore, Singapore, Singapore, 098499
**Schedule**Full Time
**Located Remotely?**N
**Position Type** Management

**JOB SUMMARY**

**CANDIDATE PROFILE**

**Education and Experience**

**Required**:

- Bachelor’s degree in Computer Sciences or related field or equivalent experience/certification
- 3+ years of collective experience in one or all of the following:

- Splunk SIEM (Splunk Enterprise Security) threat detection use case development
- UEBA use case development for insider threat use case development
- 5+ years of experience in some or all of the following:

- Experience working in (or with) security functions such as SOC, CIRT, security engineering, risk management, vulnerability management.
- Technical infrastructure operations, administration, or systems engineering
- Scripting or programming language, including Python

**Preferred Skills/Experience**:

- Current information security certification such as Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP)
- Offensive and defensive security certifications such as CEH, IGAC Cyber Defense, OSCP or other related certifications
- Splunk Certification, including Splunk Enterprise Security Certified Admin
- Use case development experience on the Exabeam platform
- Working knowledge of the NIST Cyber Security Framework and ISO/IEC 27001:2022
- Working knowledge of the MITRE ATT&CK Framework
- **Familiarity** with cloud service provider platforms (AWS, Azure, GCP), identity and access management systems, firewalls, next-gen anti-malware, intrusion detection and prevention systems
- Experience with Linux, Unix and Microsoft operating systems
- Knowledge of IP networking
- Experience with a scripting language (*nix shell scripting, Python, PowerShell, etc.) and regular expressions
- Solid written and verbal communication skills
- Agile methodology

**Core Responsibilities**

**Most Often**:

- Lead collaboration sessions within the cyber security tower and other business units to devise security monitoring use cases. This work entails the collection and collaborative analysis of security accreditation reports, threat models, documented security controls, architecture, and business usage patterns for security monitoring consideration.
- Document prospective security monitoring use cases with MITRE ATT&ACK mappings using standard templates and methodologies. Identified use cases will be reviewed with stakeholders for acceptance sign-off and to move forward with development.
- Inform and consult other cyber ops teams of required data onboarding and integrations for use case development.
- Develop analytics, correlation searches, dashboards, reports and alerts within the SIEM and UEBA platforms.
- Solicit feedback for pre-production security monitoring content through peer review process and user acceptance testing for tuning.
- Document developed security monitoring content in a documentation registry using department standard templates and methodologies.
- Manage field mapping and transmission of security monitoring alerts to the security incident response platform for SOC analyst consumption as outlined in process documentation.
- Provide governance support for the content development function entailing content development standards compliance, change management approvals for SIEM or UEBA content, and lifecycle management of developed security monitoring content.
- Service operational requests in queue such as analytics content performance tuning, filtering, search refinement, parsing issues, etc.
- Attend SCRUM and prioritization meetings to review and update deliverables.

**Less Often**:

- Contribute to ongoing development and maintenance of documented standards, workflows, and best practices within the cyber threat detection engineering discipline.
- Research emerging threats and adversary tactics, techniques, and procedures to understand the threat landscape and to ensure that security monitoring content remains relevant and effective.
- Occasional participation in evaluations of new platforms, technologies and methodologies pertaining to cyber threat detection engineering.

**MANAGEMENT COMPETENCIES**

**Leadership**
- **Communication** - Conveys information and ideas to others in a convincing and engaging manner through a variety of methods.
- **Leading Through Vision and Values** -** **Keeps the organization's vision and values at the forefront of employee decision making and action.
- **Managing Change** -** **Initiates and/or manages the change process and energizes it on an ongoing basis, taking steps to remove barriers or accelerate its pace; serves as role model for how to handle change by maintaining composure and performance level under pressure or when experiencing challenges.
- **Problem Solving and Decision Making** - Identifie



  • Singapore Hays Finance Technology Singapore Full time

    A Global Technology/Electronics company is looking for a Senior Threat Detection Engineer to join the team. **Your new company** My client is a Global Technology/Electronics company with presence across the world. With their growing stature and expanding business, they are looking for a a Senior Threat Detection Engineer to join their growing team. **Your...


  • Singapore Millennium Management Full time $120,000 - $180,000 per year

    Threat Detection EngineerThreat Detection EngineerDo you have a passion for hunting malicious activities in the background of business as usual and figuring out how to detect and respond to new threats?Millennium SOC is going through a transformation, we are looking for an experienced Threat Detection Engineer to drive our best-in-class posture. This is...


  • Singapore Acronis Full time

    Senior Cybersecurity Researcher (Threat Analysis and Detection Engineering)Join to apply for the Senior Cybersecurity Researcher (Threat Analysis and Detection Engineering)role at Acronis Acronis is revolutionizing cyber protection—providing natively integrated, all-in-one solutions that monitor, control, and protect the data that businesses and lives...


  • Singapore SHIELD Full time

    A leading fraud intelligence platform in Singapore is seeking a Senior Machine Learning Engineer (Risk) to develop innovative machine learning solutions. The ideal candidate will leverage their extensive experience to identify patterns in data, optimize performance, and contribute to fraud detection efforts. Strong analytical skills and a Bachelor's degree...


  • Singapore SAGL CONSULTING PTE. LTD. Full time

    **Overview: **Key Responsibilities**: - Design, test, and refine new detection use cases within the SIEM platform. - Enhance and optimize existing detection use cases using Machine Learning and User & Entity Behavior Analytics (UEBA). - Map detection use cases to the MITRE ATT&CK framework to evaluate and ensure comprehensive monitoring coverage. - Maintain...


  • Singapore Smiths Detection Full time

    **Company Description** Every minute of every day, Smiths Detection’s threat detection and security screening technology helps to protect people and infrastructure, making the world a safer place. Smiths Detection, part of Smiths Group is a global leader in the development, manufacture and management of security and detection solutions designed to make...


  • Singapore Logicalis Asia Pacific Full time

    A leading technology firm in Singapore is seeking an experienced Senior Security Analyst to enhance their security operations. The ideal candidate will have extensive experience in SOC environments, strong skills in detection engineering, and a background in incident response. This role offers the opportunity to mentor junior analysts and actively contribute...


  • Singapore Sony Electronics Full time

    We look for the risk-takers, the collaborators, the inspired and the inspirational. We want the people who are brave enough to work at the cutting edge and create solutions that will enrich and improve the lives of people across the globe. So, if you want to make the world say wow, let's talk. This position will be responsible for threat detection content...


  • Singapore THREE FINS PTE. LTD. Full time

    **Overview** We are looking for a Detection and Response Engineer to join us in the Security Response Team here at BitMEX. If you have a keen eye for detail and believe that successful Security Response activities begin with proactive hunting and competent engineering, we want to talk to you. This is a remote position for the South East Asia regions....


  • Singapore Grab Full time

    Job Description: **Life at Grab** At Grab, every Grabber is guided by The Grab Way, which spells out our mission, how we believe we can achieve it, and our operating principles - the 4Hs: Heart, Hunger, Honour and Humility. These principles guide and help us make decisions as we work to create economic empowerment for the people of Southeast Asia. **Get to...