Cyber Incident Responder

MIGSO-PCUBED

Singapore

Hybrid

SGD 120,000 - 180,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

MIGSO-PCUBED is seeking a Cybersecurity expert to strengthen detection engineering and incident response in APAC as part of a global use-case team.

You will lead security use-case design, enhance SIEM/SOAR capabilities, and oversee the 24/7 regional IT Production SOC with an emphasis on MITRE ATT&CK mappings and real-world attack scenarios.

Qualifications

  • 7+ years as a security professional, with hands-on incident response experience.
  • Experience in security use-case design and development, including code-level work in Java.
  • Strong Linux operating system knowledge and log analysis skills.

Responsibilities

  • Lead the design and implementation of security use cases across IT Production SOC.
  • Oversee detection capabilities and 24/7 incident response in APAC.
  • Collaborate with global and regional stakeholders to strengthen monitoring.
  • Improve SIEM/SOAR workflows and response playbooks.
  • Respond to cyber incidents, assess severity, and coordinate remediation.
  • Drive continuous improvement of detection framework and tooling.

Skills

Security use-case design
Java
Linux (RedHat/Ubuntu)
SIEM
Security Incident Management
Threat hunting
Incident response
Big data analysis

Education

CISSP / OSCP / SANS credentials

Tools

ELK Stack (Elastic, Logstash, Kibana)

Job description

Team is looking for Cybersecurity expert/SME in Detection Engineering & Security Investigation areas, part of Production SOC & Security Investigation & Incident Response team.


Your role will be to:



  • Strengthen the detection capabilities in APAC and be member of the Global Use Case development team for a worldwide alignment of the security use cases.

  • Contribute to the enhancement of SIEM and SOAR capabilities,

  • Act as reference point in team of experts on Security Incident Response activities, Anti-Malware/Defense activities and Security Detection activities,

  • Oversee the detection capabilities for the 24/7 regional IT Production SOC which handles the IT Production security alerts for the APAC region,

  • Participate to the global continuous improvement of the framework of tools and processes for Security Incident Management, Anti-Malware/Defense and Security Detection,

  • Collaborate with the APAC Business CSIRT, accountable for the Security Incident practice in APAC, to strengthen the extended security monitoring setup between Business Information Security and IT Production Security.


Direct Responsibilities


  • Lead technical activities (security usecase definition, design, implementation & enrichment) in the team of IT Production Security Investigation & Incident Response based on real-world attack scenarios and framework like MITRE ATT&CK, ensuring robust security detection posture across various layers.

  • Understand ongoing security threats in the wild and propose security usecase to detect and when possible, protect or mitigate.

  • Be autonomous on technical activities (definition, R&D/threat hunting) in the team of IT Production Security Investigation & Incident Response and oversee the detection capabilities of the 24/7 regional IT Production SOC

  • Respond to Cyber / IT security incidents and evaluates the type and severity of security events.

  • Identify recurring security issues and risks and develops mitigation plans and recommends process improvements.

  • Partner with global, regional and local stakeholders to ensure organizational and procedural efficiency and readiness for detection of suspicious events and reaction

  • Continuously improve the processes to strengthen the current SOC framework via review of policies and operational playbooks


Contributing Responsibilities


  • Partner with the APAC Business CSIRT for integrated security monitoring and alert/incident handling operations.

  • Contribute to local security incident response outside the direct scope of responsibilities (i.e., local IT production in some APAC business entities)

  • Contribute to the Bank compliance with regulatory requirements and internal policies

  • Contribute to the reporting of all incidents according to the Incident Management System

  • Contribute to the control frameworks in day‑to‑day business activities, such as Control Plan; Participate to Audit interview and provide the require evidence


Role Specific Technical Skills


  • Requires a minimum of 7 or more years of experience as security professional

  • Experience in security use-case design/development with understanding of Java language.

  • Good working knowledge of Linux (RedHat/Ubuntu).

  • Working knowledge to interpret security logs or instructions into threat models. SecOPS-DevOPS mindset & skills.

  • Experience and knowledge in investigating incidents, remediation, tracking and follow-up for incident closure with concerned teams, stakeholders.

  • Thorough understanding of technologies and security concepts, with knowledge & hands on experience in SIEM Product and Security Incident Management

  • Experience on incident response activities (threat hunting, event analysis, incident investigation, reporting)

  • Comfortable working with and making the most of large data sets (collection, analysis, response), creating content/use cases/models and bringing an automation mindset.


Personal Attributes


  • Strong problem-solving skills

  • Good communication skills (English is MUST, French is added advantage)

  • Positive attitude, willing to upskill and carry out in-depth troubleshooting

  • Has the ability to work autonomously and think on feet, be-proactive.

  • Good interpersonal skills and team player

  • High energy level coupled with a desire to take on responsibility

  • Able to multi-task & deliver within agreed deadlines.


Specific Qualifications


  • Candidate MUST have 7 or more years of experience on overall cybersecurity incident response with 4+ years specifically on security use-case design, development, coding.

  • Experience in SIEM on ELK(Elastic Logstash Kibana) stack is a plus

  • Professional credentials in one of the relevant IT Security disciplines is a plus (SANS / CISSP / OSCP)

  • Experience in common scripting languages such as Python, PowerShell, Bash, SQL is a plus

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Incident Responder (Python / ELK / Java / SIEM)
Cyber Incident Responder (Python / ELK / Java / SIEM)

Maltem Asia-Pacific • Singapore

On-site
SGD 120,000 - 180,000
Senior Cyber Incident Responder
Senior Cyber Incident Responder

Keyrus • Singapore

On-site
SGD 120,000 - 180,000
Cyber Security Resident Engineer - Incident Response & SIEM
Cyber Security Resident Engineer - Incident Response & SIEM

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 100,000
Senior Cyber Security Consultant
Senior Cyber Security Consultant

Singtel • Singapore

On-site
Confidential
Lead Security Engineer, IT Security Operations Engineering and Technology Singapore Experienced[...]
Lead Security Engineer, IT Security Operations Engineering and Technology Singapore Experienced[...]

SEA Singapore • Singapore

On-site
SGD 120,000 - 180,000
Cybersecurity Incident Response Specialist
Cybersecurity Incident Response Specialist

IKAS INTERNATIONAL (ASIA) PTE. LTD. • Singapore

On-site
SGD 120,000 - 160,000
Senior Analyst, Threat Detection and Response
Senior Analyst, Threat Detection and Response

SATS Ltd • Singapore

On-site
SGD 70,000 - 120,000
Senior Analyst, Threat Detection and Response
Senior Analyst, Threat Detection and Response

SATS Ltd. • Singapore

On-site
SGD 110,000 - 140,000
Cyber Security Resident Engineer
Cyber Security Resident Engineer

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 100,000
Cyber Threat Intelligence & Incident Response Specialist
Cyber Threat Intelligence & Incident Response Specialist

PERCEPT SOLUTIONS PTE. LTD. • Singapore

On-site
SGD 180,000 - 260,000