Cyber Security Engineer (WAF, IPS)

QUESSCORP SINGAPORE PTE. LTD.

Singapore

On-site

SGD 90,000 - 140,000

Full time

6 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Quesscorp Singapore is seeking a security professional to administer WAF/IPS/DAM, onboard apps for monitoring, and drive investigations across on‑premises, cloud, and hybrid environments. You will leverage AI/ML tools to triage threats, correlate events with SIEM, and provide actionable insights for incident response.

The role requires hands-on experience, strong networking basics, and familiarity with security standards.

Qualifications

  • Hands-on admin and investigation of WAF/IPS/DAM in enterprise.
  • Experience in financial/regulatory environments preferred.
  • Strong knowledge of TCP/IP, TLS, HTTP/S, OWASP Top 10.
  • Experience with SIEM and incident response processes.
  • Automation and scripting skills desirable.

Responsibilities

  • Administer WAF, IPS and DAM security systems.
  • Maintain and verify maintenance contracts with vendors via ITQ/RFP.
  • Onboard internet-facing apps to WAF and DAM for monitoring and triage.
  • Conduct real-time security investigations with AI/ML tools.
  • Analyze large datasets and correlate with SIEM for insights.
  • Assist in triage and investigation of cyber incidents across environments.
  • Prepare weekly, monthly and quarterly security metrics for reporting.
  • Participate in readiness exercises like red team and cyber range.
  • Identify threats through ethical testing and exposure of vulnerabilities.
  • Monitor and close security events and requests from SOC and users.
  • Keep up-to-date with latest cyber threats and attack techniques.

Skills

Cybersecurity
Incident analysis
WAF administration
IPS management
DAM monitoring
Automation & scripting

Education

Diploma or degree in Cybersecurity
CISSP
GCIH
GCIA
CEH
CSA

Tools

WAF
IPS
DAM
SIEM
MITRE ATT&CK

Job description

Key Responsibilities
  • Proven experience administering Web Application Firewall (WAF), Intrusion Prevention System (IPS) and Database Activity Monitoring (DAM) Security Systems.
  • Ensure these systems have valid maintenance support contract with the product vendors through preparing and awarding of these maintenance support contracts via ITQ/RFP to the vendors.
  • Onboard internet facing applications to WAF and critical databases to DAM for monitoring and triage of abnormal alerts and activities.
  • Knowledge of using AI-driven and Machine Learning tools to monitor and analyse real-time security investigations to initiate triage, containment and remediation of security threats.
  • Using analytical and data visualization tools to automate the analysis and provide insights of large dataset and correlate with SIEM and other sources of information and conduct investigative works into all traffic anomalies against established, historical baselines to identify the root cause to an incident.
  • Support in-depth triage and investigations of cyber incidents in cloud, on-premises, and hybrid environments
  • Prepare relevant Systems Operations metrics and statistics for weekly, monthly and quarterly management reporting.
  • Participate in readiness exercises such as red team, table-tops, cyber range, etc.
  • Knowledge in ethical hacking to identify potential threats and expose vulnerabilities to protect the organisation from malicious attackers.
  • Responsible for continuous monitoring, tracking and closure of security events and requests from managed SOC, systems and users.
  • Stay current with the latest Cyber threats, Attacks and vulnerabilities, and updated with the evolving and emerging attack techniques and methods.
  • Work on other project and tasks duties.
Qualifications:
  • Experience: At least three-five years of relevant cybersecurity experience, including three years of hands‑on administration and investigation using WAF, IPS and/or DAM in a medium‑to‑large enterprise. Experience in a financial institution or regulated environment is preferred.
  • WAF: Practical experience with application and DNS-zone onboarding, policy and rule configuration, certificate lifecycle management, bot and DDoS controls, attack analysis, tuning and troubleshooting.
  • IPS: Practical knowledge of inline prevention, signatures, severity and actions, policy tuning, traffic analysis and investigation of exploitation attempts; familiarity with firewall‑integrated IPS is advantageous.
  • DAM: Experience onboarding databases, validating agents or log sources, defining policies, monitoring privileged and anomalous activity, and investigating database access across on‑premises and cloud environments.
  • Investigation: Demonstrated ability to analyse security events, network and application logs, HTTP/S traffic and packet‑level data; correlate multiple data sources; identify indicators of compromise and attack paths; and produce defensible findings.
  • Technical foundation: Strong knowledge of TCP/IP, DNS, TLS, HTTP/S, web application architecture, APIs, databases, firewalls, VPNs and common system, network, application and database attacks, including the OWASP Top 10.
  • Security operations: Experience leveraging SIEM and ticketing or case‑management platforms, detection tuning, incident response processes and MITRE ATT&CK.
  • Automation: Ability to use scripting, analytics, automation or AI‑assisted capabilities to enrich investigations, process large datasets, identify patterns and streamline repeatable operational tasks, with appropriate validation of outputs.
  • Governance: Familiarity with change, access, configuration, incident, evidence and vendor‑management processes. Knowledge of applicable MAS Technology Risk Management and Cyber Hygiene requirements, the NIST Cybersecurity Framework and relevant security standards is advantageous.
  • Qualifications: Diploma or degree in Cybersecurity, Information Technology, Computer Science or a related discipline, or equivalent practical experience.
  • Certifications: Relevant certifications such as CISSP, GCIH, GCIA, CEH, CSA, vendor WAF/IPS/DAM certifications or equivalent are advantageous.

Quesscorp Singapore

UEN 199801439D

Disclaimer: The company is committed to ensuring the privacy and security of your information. By submitting this form, you consent to the collection, processing, and retention of the information you provide. The data collected (which may include your contact details, educational background, work experience and skills) will be used solely for the purpose of evaluating your qualifications for the position you're applying for. Your data will be stored securely and retained for the duration necessary to fulfill our hiring process. If you are not selected for the position, your data will be kept on file for a limited period in case future opportunities arise. You have the right to access, correct, or delete your data at any time by contacting us at Quess Singapore | A Leading Staffing Services Provider in

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer (WAF, IPS)
Cyber Security Engineer (WAF, IPS)

QUESS SINGAPORE • Singapore

On-site
SGD 80,000 - 150,000
Cyber Security Analyst (WAF, IPS)
Cyber Security Analyst (WAF, IPS)

QUESS SELECTION & SERVICES PTE. LTD. • Singapore

On-site
SGD 90,000 - 150,000
Cyber Defense Engineer: WAF, IPS & DAM Expert
Cyber Defense Engineer: WAF, IPS & DAM Expert

QUESS SINGAPORE • Singapore

On-site
SGD 80,000 - 150,000
Cyber Defense Engineer: WAF, IPS & DAM Pro
Cyber Defense Engineer: WAF, IPS & DAM Pro

QUESSCORP SINGAPORE PTE. LTD. • Singapore

On-site
SGD 90,000 - 140,000
Security Analyst
Security Analyst

R SYSTEMS CONSULTING SERVICES LIMITED • Singapore

On-site
SGD 90,000 - 130,000
Senior Cyber Security Analyst — WAF, IPS & DAM Expert
Senior Cyber Security Analyst — WAF, IPS & DAM Expert

QUESS SELECTION & SERVICES PTE. LTD. • Singapore

On-site
SGD 90,000 - 150,000
Security Analyst: WAF/IPS/DAM Investigator & Threat Triage
Security Analyst: WAF/IPS/DAM Investigator & Threat Triage

R SYSTEMS CONSULTING SERVICES LIMITED • Singapore

On-site
SGD 90,000 - 130,000
I44 - Security Analyst (104)
I44 - Security Analyst (104)

FPT Asia Pacific Pte Ltd • Singapore

On-site
SGD 90,000 - 120,000
I44 - Security Analyst (104)
I44 - Security Analyst (104)

FPT Asia Pacific • Singapore

On-site
SGD 70,000 - 110,000
Security Engineer
Security Engineer

NCS • Singapore

On-site
SGD 90,000 - 150,000