Cyber Incident Responder (Python / ELK / Java / SIEM)

MALTEM ASIA PTE. LTD.

Singapore

On-site

SGD 120,000 - 190,000

Full time

7 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Maltem Asia-Pacific is seeking a seasoned Cyber Incident Responder to join our i-Banking client engagement in Singapore. You will lead security usecase design, development and threat hunting, align detection across the IT Production SOC, and drive incident response activities across the team.

You will work with ELK/SIEM environments, Linux systems, and scripting (Python/PowerShell/Bash/SQL), translating attack scenarios into robust detection content while communicating effectively with

Qualifications

  • 7+ years of experience in Cyber Security Incident Response with 4+ years in security use case design, development and coding.
  • Experience with SIEM, incident handling and remediation processes.

Responsibilities

  • Lead technical activities in security usecase definition, design, implementation & enrichment for incident response.
  • Oversee the detection capabilities of the 24/7 regional IT Production SOC.
  • Respond to cyber/IT security incidents and evaluate type and severity of security events.
  • Collaborate with teams to analyze threats and improve detection content.

Skills

Security incident response
Threat hunting
SIEM (ELK)
Python
PowerShell
Bash
SQL
Linux
Java
English communication

Education

Professional credentials in IT Security (e.g., CISSP/OSCP)

Tools

ELK Stack

Job description

Maltem Asia-Pacific is currently seeking aCyber Incident Responderfor our i-Banking Client.

Summary:
  • Lead technical activities (security usecase definition, design, implementation & enrichment) in the team of IT Production Security Investigation & Incident Response based on real-world attack scenarios and framework like MITRE ATT&CK, ensuring robust security detection posture across various layers.
  • Understand ongoing security threats in the wild and propose security usecase to detect and when possible, protect or mitigate.
  • Be autonomous on technical activities (definition, R&D/threat hunting) in the team of IT Production Security Investigation & Incident Response and oversee the detection capabilities of the 24/7 regional IT Production SOC
  • Respond to Cyber / IT security incidents and evaluates the type and severity of security events.
Technical Skills:
  • Requires a minimum of 7 or more years of experience as security professional
  • Experience in security usecase design/development with understanding of Java language.
  • Good working knowledge of Linux (RedHat/Ubuntu).
  • Working knowledge to interpret security logs or instructions into threat models. SecOPS-DevOPS mindset & skills.
  • Experience and knowledge in investigating incidents, remediation, tracking and follow-up for incident closure with concerned teams, stakeholders.
  • Thorough understanding of technologies and security concepts, with knowledge & hands on experience in SIEM Product and Security Incident Management
  • Experience on incident response activities (threat hunting, event analysis, incident investigation, reporting)
  • Comfortable working with and making the most of large data sets (collection, analysis, response), creating content/use cases/models and bringing an automation mindset. Personal Attributes
  • Strong problem-solving skills Good communication skills (English is MUST, French is added advantage)
  • Positive attitude, willing to upskill and carry out in-depth troubleshooting
  • Has the ability to work autonomously and think on feet, be-proactive.
  • Good interpersonal skills and team player
  • High energy level coupled with a desire to take on responsibility
  • Able to multi-task & deliver within agreed deadlines.
Must have:
  • Candidate MUST have 7 or more years of experience on overall Cyber Security Incident Response with 4+ years specifically on security used case design, development, coding.
  • Experience in SIEM on ELK(Elastic Logstash Kibana) stack is a plus
  • Professional credentials in one of the relevant IT Security disciplines is a plus (SANS / CISSP / OSCP)
  • Experience in common scripting languages such as Python, PowerShell, Bash, SQL is a plus
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Incident Responder (Python / ELK / Java / SIEM)
Cyber Incident Responder (Python / ELK / Java / SIEM)

Maltem Asia-Pacific • Singapore

On-site
SGD 120,000 - 180,000
Cyber Incident Responder
Cyber Incident Responder

MIGSO-PCUBED • Singapore

Hybrid
SGD 120,000 - 180,000
Senior Cyber Incident Responder (Python, ELK, SIEM)
Senior Cyber Incident Responder (Python, ELK, SIEM)

Maltem Asia-Pacific • Singapore

On-site
SGD 120,000 - 180,000
Senior Cyber Incident Responder
Senior Cyber Incident Responder

Keyrus • Singapore

On-site
SGD 120,000 - 180,000
ICT Security Engineer
ICT Security Engineer

WE-PLUS PTE. LTD. • Singapore

On-site
SGD 120,000 - 180,000
Lead Cyber Incident Responder & Threat Hunter
Lead Cyber Incident Responder & Threat Hunter

MALTEM ASIA PTE. LTD. • Singapore

On-site
SGD 120,000 - 190,000
Cybersecurity Incident Response Specialist
Cybersecurity Incident Response Specialist

IKAS INTERNATIONAL (ASIA) PTE. LTD. • Singapore

On-site
SGD 120,000 - 160,000
Cyber Security Resident Engineer - Incident Response & SIEM
Cyber Security Resident Engineer - Incident Response & SIEM

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 100,000
Senior Cyber Security Consultant
Senior Cyber Security Consultant

Singtel • Singapore

On-site
Confidential
Senior Threat Hunter - Defensive
Senior Threat Hunter - Defensive

Planet Nine • Singapore

On-site
SGD 90,000 - 120,000