Senior Cyber Security Engineer
6 days ago
We are looking for a Senior Cyber Security Engineer to support the overall cybersecurity efforts at Flo. You will help protect our systems, applications, infrastructure, and data as we continue to grow across Singapore and Australia. Working closely with Developers and the Platform Teams (DevOps), you will embed security across every stage of the software development lifecycle and ensure our cloud environment remains secure and resilient. If you are passionate about secure software delivery, threat detection, risk mitigation, and contributing to a strong security culture in a fast-moving, tech-driven environment.
What you'll do
As a Cyber Security Officer, your primary focus will be on Application and Cloud Security, while also supporting the broader cybersecurity posture of the organization. You will work closely with Developers and the Platform Teams (DevOps) to embed security into all stages of software delivery and infrastructure operations. Ensuring Flo maintains a secure, compliant, and resilient environment as it grows.
- Collaborate with developers to embed secure coding practices and conduct code reviews for high-risk features.
- Conduct threat modeling and security architecture reviews for cloud-native apps and microservices.
- Integrate security scanning tools (SAST, DAST, SCA) into CI/CD pipelines.
- Collaborate with the Platform Team (DevOps) to secure containerized workloads (e.g., Docker, Kubernetes), infrastructure-as-code, and serverless applications.
- Work with the Platform Team to secure configuration across AWS accounts, including IAM, encryption, and network controls.
- Implement and manage Web Application Firewalls (WAFs) to protect applications from OWASP Top 10 vulnerabilities and other common attacks.
Security Standards, Compliance & Governance
- Support the IT Security Manager in maintaining and aligning with ISO 27001, SOC 2, and PDPA requirements.
- Assist with external audits and maintain documentation of security controls, asset inventory, and risk assessments.
- Work with the IT Security Manager to implement Zero Trust principles, including strong identity access management and least-privilege enforcement.
- Help define and maintain internal security policies, procedures, and training programs.
- Monitor and investigate alerts using SIEM platforms, IDS/IPS, and cloud-native security tools (e.g., AWS GuardDuty, Security Hub).
- Support response to security incidents, including containment, recovery, and post-incident analysis.
- Maintain incident response plans, develop playbooks, and contribute to tabletop exercises.
- Coordinate or assist with penetration testing and vulnerability assessments, both internally and with third-party vendors.
Device, Identity & Endpoint Security
- Support Mobile Device Management (MDM) tools and endpoint protection to ensure device compliance.
- Enforce secure configurations on employee laptops and mobile devices through policy-based controls.
- Manage access controls across cloud services and SaaS tools using SSO, MFA, and RBAC.
- Support security awareness efforts and employee training to reduce human risk.
Security Innovation & Continuous Improvement
- Stay current with emerging threats, vulnerabilities, and cybersecurity technologies.
- Proactively identify areas for risk reduction and security automation.
- Collaborate across teams to build a culture of security-first thinking in everything we build and deploy.
Qualifications
- Bachelor’s degree in Cybersecurity, Computer Science, Information Security, or a related field.
- Strong experience in cybersecurity roles focused on application and cloud environments, preferably in senior or lead-level positions.
- Strong understanding of secure coding, web security standards (e.g., OWASP Top 10), and CI/CD security practices.
- Hands‑on experience with CI/CD security.
- Programming or scripting experience in Python or a general-purpose language such as Java, Kotlin, Go, or Ruby is preferred.
- Familiarity with AWS security services, IAM policies, and network security configurations.
- Strong understanding of IAM, SSO/SAML, and API security.
- Exper
-
Senior Cyber Security Engineer
3 weeks ago
Singapur, Singapore Flo Energy Full timeAbout Flo Energy Hi, we are Flo! We are on a mission to switch as many people and businesses as possible to affordable, renewable solutions. We began in a small shophouse in Singapore and have grown rapidly, expanding into Australia with even bigger plans ahead. We have built our own best-in-class energy platform entirely in-house, designed for the sector to...
-
Cyber Security Engineer
2 weeks ago
Singapur, Singapore Sygnia Consulting Ltd. Full timeSygnia is the foremost global cyber readiness and response team, applying creative approaches and battle-tested solutions to help organizations beat attackers and stay secure. With a team of deep digital combat, leading-edge, purpose-built technology, and enterprise security specialists, it enables companies to proactively build cyber resilience and defeat...
-
Cyber Security Engineer
1 week ago
Singapur, Singapore U3 PROJECTS PTE. LTD. Full timeSummary Require Privileged Access Management (PAM) engineer with experience in designing and implementing PAM solution (CyberArk). Responsibilities Integrate various platforms with CyberArk, such as different LDAP providers, Windows servers, Unix servers, databases, networking devices, middleware, and custom applications (including SaaS). Develop password...
-
Cyber Security Engineer
2 weeks ago
Singapur, Singapore CHAGEE Full timeResponsibilities Develop automation scripts and workflows for security operations (Python / API / SOAR / SIEM integration). Automate log ingestion, parsing, enrichment, and alert generation. Build internal tools to reduce manual investigation effort. Integrate security tools across WAF, SIEM, EDR, NDR, application logs, and fraud systems. Support development...
-
Cyber Security Engineer
2 weeks ago
Singapur, Singapore YM Global Technologies Pte Ltd Full timeJob Description Experience: 4+ YearsLocation: SingaporeEmployment Type: Full-Time Key Responsibilities Design & Planning Contribute to Low-Level Design (LLD) activities related to Zscaler integration with Azure, Cisco SD-WAN, and distribution centres. Validate Zscaler prerequisites and dependencies across Azure tenancy, SD-WAN vHeadends, and on-prem DC...
-
Cyber Security Engineer
3 weeks ago
Singapur, Singapore Staffhub Group Full timeIdentification, quantifying and tracking of cyber security incidents across the organisation. monitor and analyze activity on networks, servers, endpoints, databases, applications, websites, and other systems looking for abnormal events Managing the information security events Security incident management. Security administration and auditing of privileged...
-
Cyber Security Engineer
3 weeks ago
Singapur, Singapore watchTowr Full timeOverview watchTowr is the Preemptive Exposure Management capability trusted by Fortune 500 companies and critical infrastructure providers. By combining proactive threat intelligence, real attacker telemetry, and automated red teaming, watchTowr continuously identifies and validates real exposure - so security teams can outrun real-world threats. When...
-
Cyber Security Engineer
3 weeks ago
Singapur, Singapore ATTILA CYBERTECH PTE. LTD. Full timeBeing a specialist in the areas of Operational Technology Cyber Security, this is a 1-year contract position with potential for permanent position conversion. Perform technical reviews of cybersecurity solutions, servers, network devices (SCADA, DCS and PLC system and applications) Conduct risk assessment, vulnerability assessment, penetration testing Design...
-
Cyber Security
2 weeks ago
Singapur, Singapore NTT Ltd Full timeOverview Make an impact with NTT DATA Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can grow, belong and thrive. Your day at NTT DATA As...
-
Senior Cyber Security Consultant
3 weeks ago
Singapur, Singapore CrimsonLogic Full timeAt CrimsonLogic, we put your Career and Well-being first. We are committed to advancing your career through a full spectrum of professional Development programs with the support of a strong Total Rewards philosophy that focus on your well-being. We believe that by investing in each and every one of our employees’ professional and personal growth, we can...