Lead Engineer, Threat Detection and Response
Date: 13 Nov 2023
Location: Singapore, Singapore
Company: Singtel Group
At Singtel, our mission is to Empower Every Generation. We are dedicated to fostering an equitable and forward-thinking work environment where our employees experience a strong sense of Belonging, to make meaningful Impact and Grow both personally and professionally. By joining Singtel, you will be part of a caring, inclusive and diverse workforce that creates positive impact and a sustainable future for all.
Be a Part of Something BIG!
In Group IT, we create great technology that can change the future, and we're looking for people to be part of our digital and 5G journey. If you like to work in a dynamic, leading communications technology group to deliver innovations and excellence across the region, come join our digital, software engineering, data and cyber security teams!
Apply now, and ignite our digital future together.
Make an Impact by
- To responsible and accountable for designing, implementing, and maintaining threat detection and response capabilities to protect the organization. The role shall have experience in writing and implementing threat detection use cases and machine learning based use cases and creating SOAR runbooks to automate various security operations work.
- Develop, implement and maintain effective threat detection use cases based on industry standards and best practices such as the MITRE ATT&CK and MITRE DEFEND.
- Develop, implement and maintain machine learning based use cases to enhance the accuracy and effectiveness of threat detection.
- Develop, implement and maintain SOAR runbooks to automate various security operations work such as alert triage and prioritization, incident response and threat hunting
- Collaborate with cross-functional teams to ensure security operations has the capabilities for timely detection, investigation, and resolution of security incidents
- Stay up to date with emerging security technologies, threat intelligence, and industry trends to ensure our threat detection and response capability is continuously improving
- Develop and maintain documentation of security policies, procedures, and standards
- Participate in incident response and crisis management activities as needed
Skills for Success
- Diploma in Cybersecurity, Computer Science, Computer Engineering or other relevant field of study
- Professional cyber security certifications in areas like SIEM, SOAR, Incident Response, Threat Hunting, specialized SANS certifications, or other similar credentials, is required.
- Minimum 5 years of experience as in cybersecurity roles.
- Minimum 3 years of practical experience in SOCs, managing SIEM and SOARs, developing threat detection use cases and SOAR runbooks.
- Minimum 2 years of practical experience in application development, programming and Infrastructure as Code
- Expert level competence in the following:
- SIEM
- SOAR
- Security Monitoring Tools
- Network Security Technology
- Platform Security Technology
- Endpoint Security Technology
- Advanced understanding in the following areas:
- Machine Learning
- Threat Analysis and Defence
- Threat Intelligence and Detection
- Programming and Scripting
- Working knowledge of and experience in the policy and regulatory environment of information security in telecommunication industry.
- Advance competence in the following: Problem analysis and solving
- Have exposure to developing threat detection and response capabilities based on MITRE ATT&CK and DEFEND framework
- Have exposure to writing and operating infrastructure as code
Rewards that Go Beyond
- Hybrid work arrangements
- Full suite of health and wellness benefits
- Ongoing training and development programs
- Internal mobility opportunities
Your Career Growth Starts Here. Apply Now!
We are committed to a safe and healthy environment for our employees & customers and will require all prospective employees to be fully vaccinated.