Cybersecurity Engineer (Automation)

Assurity Trusted Solutions Pte Ltd

Singapore

On-site

SGD 90,000 - 140,000

Full time

33 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Learning culture
Generous annual leave & family perks
Collaborative environment

Job summary

Assurity Trusted Solutions Pte Ltd is seeking an experienced SOAR Engineer to lead security automation initiatives in a fast-paced environment. You will design and implement automation playbooks, integrate with third-party systems, and ensure robust testing and deployment of automated workflows across security operations.

You will collaborate with cross-functional teams, stay abreast of new cyber threats, and mentor colleagues on best practices in security automation and incident response.

Qualifications

  • At least 3 years of experience with SOAR platforms, preferably Cortex XSOAR.
  • Strong programming skills in Python, PowerShell, or Bash.
  • Proficiency in XSOAR components: playbooks, sub-playbooks, integrations, incident types, classifiers, layouts.
  • Experience with REST APIs, JSON, and data parsing.
  • Familiarity with incident response processes, MITRE ATT&CK framework, and SOC operations.
  • Comfortable with Git-based version control and CI/CD workflows for XSOAR.
  • Familiarity with cybersecurity frameworks and RBAC/case management in XSOAR.
  • Ability to analyse API documentation and build custom integrations.
  • Security Certifications such as GISA, GSEC, CISSP, or CEH are an advantage.
  • Strong communication, independence, teamwork, and analytical thinking.

Responsibilities

  • Lead the SOAR of cybersecurity operations to improve efficiency and reduce response times.
  • Develop workflow processes to automate manual cybersecurity tasks.
  • Develop and maintain automation scripts/playbooks to support reporting, monitoring and incident response.
  • Define and enforce playbook development standards and naming conventions.
  • Optimize sub-playbooks for performance, logic clarity, and error handling.
  • Refactor legacy playbooks for reusability and consistency.
  • Support integration of SOAR with third-party applications and APIs.
  • Conduct playbook testing, validation, and regression testing for robustness.
  • Implement and manage automation platforms across existing security frameworks.
  • Collaborate with cross-functional teams for seamless security automation.
  • Coordinate with third-party admins/vendors to resolve integration/data flow issues.
  • Define interface testing scenarios and ensure successful testing.
  • Monitor performance and reliability of automations and identify bottlenecks.
  • Document workflows, logic decisions, dependencies and version changes.
  • Stay current with emerging threats and automation opportunities.
  • Provide training and support to the team on automated security processes.

Skills

SOAR platforms
Python
PowerShell
Bash
XSOAR components
REST APIs
JSON parsing
MITRE ATT&CK
SOC operations
Git version control
CI/CD
Security frameworks
RBAC
API integration
Security certifications
Communication
Independent work
Team player
Analytical thinking
Problem solving
Initiative

Tools

Git
CI/CD tooling
API gateway

Job description

Assurity Trusted Solutions (ATS) is a wholly owned subsidiary of the Government Technology Agency (GovTech). As a Trusted Partner over the last decade, ATS offers a comprehensive suite of products and services ranging from infrastructure and operational services, authentication services, governance and assurance services as well as managed processes. In a dynamic digital and cyber landscape, where trust & collaboration are key, ATS continues to drive mutually beneficial business outcomes through collaboration with GovTech, government agencies and commercial partners to mitigate cyber risks and bolster security postures.

Key Responsibilities
  • Lead the Security Orchestration, Automation and Response (SOAR) of cyber security operations processes to improve efficiency and reduce response times for security incidents
  • Develop workflow processes to automate manual cybersecurity tasks
  • Develop and maintain automation scripts/playbooks to support the operational workflow, including reporting, monitoring and incident response
  • Define and enforce playbook development standards (naming structure, parameterisation, logging)
  • Optimize sub-playbooks for performance, logic clarity, error handling and parameter flexibility
  • Refactor legacy/existing playbooks for reusability, naming consistency and reduced duplication
  • Support integration of SOAR platform with third party applications and systems (e.g. message bus and API gateway) based on the required workflow
  • Conduct playbook testing, validation, regression and integration testing on the automated workflow and integration code for robustness and performance
  • Implement and manage automation platforms and technologies across existing security frameworks
  • Collaborate with cross-functional teams to ensure seamless integration of security automation initiatives
  • Take the lead to work with third party system administrators or vendors to resolve integration issues and data flow issues.
  • Defining the interface testing scenarios and testing to ensure that the integration and interfacing testing is successful.
  • Monitor performance and reliability of automations, identify bottlenecks or failure points
  • Document all workflows, decisions logic, sub-playbook dependencies and version changes
  • Stay current with emerging security threats, technologies, and practices to propose automated solutions
  • Provide training and support to team members on automated security processes and tools
Requirements
  • At least 3 years of experience with security orchestration, automation, and response (SOAR) platforms, preferably with Cortex XSOAR
  • Strong programming skills in languages such as Python, PowerShell, or Bash
  • Proficiency in XSOAR components: playbooks, sub-playbooks, integrations, incident types, classifiers, layouts
  • Experience with REST APIs, JSON, and data parsing
  • Familiarity with incident response processes, MITRE ATT&CK framework, and SOC operations
  • Comfortable with Git-based version control and code review workflows should XSOAR CI/CD be implemented
  • Familiarity with various cybersecurity frameworks and compliance requirements
  • Understanding of RBAC and case management customisation in XSOAR
  • Ability to analyse API documentation and build custom integrations where needed
  • Security Certifications such as GISA, GSEC, CISSP, or CEH is an advantage
  • Possess the following soft skills and attributes:
    • Ability to justify new initiatives and recommend new initiatives to stakeholder(s)
    • Effective communication skills to explain complex technical issues to non-technical audience
    • Adept at working independently and as part of a team
    • Strong problem-solving and analytical thinking skills

Join us and discover a meaningful and exciting career with Assurity Trusted Solutions!

The remuneration package will commensurate with your qualifications and experience.

By submitting your application, you agree that your personal data may be collected, used and disclosed by Assurity Trusted Solutions Pte. Ltd. (ATS), GovTech and their service providers and agents in accordance with ATS's privacy statement which can be found at: https://www.assurity.sg/privacy.html or such other successor site.

Benefits
  • We promote a learning culture and encourage you to grow and learn
  • Annual Leave Benefits with additional perks such as Family Care and Birthday Leave
  • Working in a collaborative environment with helpful team members
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer (Automation)
Cybersecurity Engineer (Automation)

Assurity Trusted Solutions • Singapore

On-site
SGD 120,000 - 180,000
Annual Leave Benefits
Family Care Leave
Birthday Leave
+1
Cybersecurity Engineer (IT Security Operations)
Cybersecurity Engineer (IT Security Operations)

ASSURITY TRUSTED SOLUTIONS PTE. LTD. • Singapore

On-site
SGD 70,000 - 100,000
Yearly training budget
Performance bonus
Same benefits as permanent staff
Cybersecurity Engineer (IT Security Operations) - Multiple Headcounts
Cybersecurity Engineer (IT Security Operations) - Multiple Headcounts

Assurity Trusted Solutions Pte Ltd • Singapore

On-site
SGD 90,000 - 140,000
Yearly training budget
Annual performance bonus
Same benefits as permanent staff
Cybersecurity Engineer (GRC)
Cybersecurity Engineer (GRC)

Assurity Trusted Solutions Pte Ltd • Singapore

On-site
SGD 70,000 - 110,000
GovTech backing
Learning culture
Contract staff benefits
Cybersecurity Engineer (Solutioning and Architecture)
Cybersecurity Engineer (Solutioning and Architecture)

ASSURITY TRUSTED SOLUTIONS PTE. LTD. • Singapore

On-site
SGD 120,000 - 160,000
GovTech backing
Annual training budget
Contract staff benefits equivalent to,
Offensive Cybersecurity Engineer (VAPT)
Offensive Cybersecurity Engineer (VAPT)

Assurity Trusted Solutions Pte Ltd • Singapore

On-site
SGD 90,000 - 120,000
Affiliation with GovTech
Learning culture
Senior / Lead Offensive Cybersecurity Engineer (VAPT)
Senior / Lead Offensive Cybersecurity Engineer (VAPT)

Assurity Trusted Solutions • Singapore

On-site
SGD 120,000 - 190,000
Cybersecurity Engineer (Incident Response)
Cybersecurity Engineer (Incident Response)

Assurity Trusted Solutions • Singapore

On-site
SGD 90,000 - 140,000
Threat Risk Cybersecurity Trainer
Threat Risk Cybersecurity Trainer

Assurity Trusted Solutions • Singapore

On-site
SGD 80,000 - 120,000
Encouragement for growth and learning
Engagement with government agencies
Cybersecurity Operations Engineer - Singpass
Cybersecurity Operations Engineer - Singpass

Assurity Trusted Solutions • Singapore

On-site
SGD 70,000 - 100,000
Attractive yearly training budget
Annual performance bonus