Remote Detection Engineer - SIEM & Threat Detection

Reap

Hong Kong

On-site

HKD 900,000 - 1,200,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Remote-first
APAC-friendly hours
Home office budget
Competitive compensation

Job summary

Reap is seeking a security-focused engineer to own and evolve our SIEM strategy in a remote-first environment. You will design and implement production-grade detection rules, ingest logs from CrowdStrike, AWS CloudTrail, Okta, and M365, and translate MITRE ATT&CK into testable detections.

Collaboration with a global security team will be essential to reduce risk and improve incident response. You will build dashboards, automate reporting, and support AI-related detection efforts to protect our

Qualifications

  • Experience building detection rules from scratch for SIEM platforms.
  • Ability to translate MITRE ATT&CK into testable detections.
  • Hands-on log source integration across multiple services (AWS, Okta, M365, CrowdStrike).

Responsibilities

  • Own the SIEM platform from evaluation to production detection capability, including platform choice and rule library development.
  • Write detection rules for Lazarus Group, credential harvesting, lateral movement, social engineering, and cloud misconfigurations.
  • Own alert triage, define SLAs, reduce false positives, and coordinate with IR security engineers on incidents.
  • Operationalise threat intelligence by ingesting feeds and translating IOCs and TTPs into rules.
  • Build security metrics dashboards and automated reports for leadership.
  • Support CrowdStrike Falcon Complete configuration and tailor detection logic for our environment.
  • Create AI-related detection rules for AI platform data flows and anomalous SaaS activity.

Skills

SIEM engineering
Threat detection rules
CrowdStrike
Microsoft Sentinel
Splunk
Elastic
Python for security automation
MITRE ATT&CK mapping
AWS CloudTrail
Okta logs
M365 logs

Tools

CrowdStrike
AWS CloudTrail
Okta
M365
KQL
SPL
Threat intelligence feeds

Job description

Reap is seeking a security-focused engineer to own and evolve our SIEM strategy in a remote-first environment. You will design and implement production-grade detection rules, ingest logs from CrowdStrike, AWS CloudTrail, Okta, and M365, and translate MITRE ATT&CK into testable detections.

Collaboration with a global security team will be essential to reduce risk and improve incident response. You will build dashboards, automate reporting, and support AI-related detection efforts to protect our

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote-First AI Security Engineer (CASB/DLP)
Remote-First AI Security Engineer (CASB/DLP)

Reap • Hong Kong

On-site
HKD 600,000 - 900,000
Health insurance budget
Remote‑first, global team
Home office equipment budget
+1
Senior Security Engineer, Analytics and Engineering
Senior Security Engineer, Analytics and Engineering

Jobtailor • Hong Kong

On-site
HKD 700,000 - 1,000,000
Senior Detection & Response Engineer - Hybrid
Senior Detection & Response Engineer - Hybrid

Sopra Steria • Hong Kong

Hybrid
HKD 900,000 - 1,200,000
Hybrid working mode
Work-from-Abroad benefits
Annual bonus
+1
Remote Lead App Security Engineer - Fintech
Remote Lead App Security Engineer - Fintech

Reap • Hong Kong

On-site
HKD 600,000 - 900,000
Flexible remote work options
Home office equipment budget
(Senior) Security Engineer, Analytics and Engineering
(Senior) Security Engineer, Analytics and Engineering

Crypto • Hong Kong

On-site
AI-Driven Security Engineer, Analytics & Automation
AI-Driven Security Engineer, Analytics & Automation

crypto • Hong Kong

On-site
Security Engineer - Data & Endpoint Protection
Security Engineer - Data & Endpoint Protection

OKX • Hong Kong

On-site
HKD 400,000 - 600,000
Competitive total compensation package
L&D programs and education subsidy
Team building programs
+2
Contract Security Systems Analyst - SIEM & Threat Hunting
Contract Security Systems Analyst - SIEM & Threat Hunting

InfoTech Services (Hong Kong) Limited • Tseung Kwan O

On-site
HKD 360,000 - 600,000
HK Senior Detection and Response Engineer
HK Senior Detection and Response Engineer

Sopra Steria • Hong Kong

Hybrid
HKD 900,000 - 1,200,000
Hybrid working mode
Work-from-Abroad benefits
Annual bonus
+1
Senior Transaction Monitoring Lead - FinTech & Crypto
Senior Transaction Monitoring Lead - FinTech & Crypto

Reap • Hong Kong

Hybrid
HKD 900,000 - 1,500,000
A vibrant, inclusive work culture
Annual leave + public holidays
Health insurance budget
+4