Cybersecurity Engineer (Detection Engineering)

Assurity Trusted Solutions

Singapore

On-site

SGD 90,000 - 130,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Assurity Trusted Solutions (ATS) is seeking a Cybersecurity Engineer with a background in detection engineering to strengthen government security postures across on-premises and cloud environments. You will develop and tune detection rules using Sigma, KQL, SPL, EQL or YARA, analyze logs from SIEM/EDR, and collaborate with analysts to operationalise detections and incident response.

The role requires strong scripting skills (Python/PowerShell) and a solid understanding of MITRE ATT&CK within a

Qualifications

  • Degree in Cybersecurity, Information Security, Computer Science or related field.
  • 3+ years in security operations, incident response or related cybersecurity fields.
  • Certifications from OffSec, SANS, GIAC or related institution.
  • Understanding MITRE ATT&CK and attacker TTPs.
  • Hands-on with SIEM, EDR, SOAR; scripting and automation tools.

Responsibilities

  • Develop, implement and document detection rules for SIEM/EDR across government environments.
  • Analyze security logs and alerts to differentiate true threats from benign activity and reduce false positives.
  • Improve detection capabilities through research on threats targeting government networks and cloud environments.
  • Collaborate with security analysts and incident responders on government incident response protocols.
  • Coordinate with security engineers to integrate detection systems and optimize tool usage.

Skills

SIEM
EDR
SOAR
Python
PowerShell
Threat detection
Automation

Education

Degree in Cybersecurity / Information Security / Computer Science
Certifications: OffSec / SANS / GIAC or equivalent

Tools

Sigma
KQL
SPL
EQL
YARA

Job description

Assurity Trusted Solutions (ATS) is a wholly owned subsidiary of the Government Technology Agency (GovTech). As a Trusted Partner over the last decade, ATS offers a comprehensive suite of products and services ranging from infrastructure and operational services, authentication services, governance and assurance services as well as managed processes. In a dynamic digital and cyber landscape, where trust & collaboration are key, ATS continues to drive mutually beneficial business outcomes through collaboration with GovTech, government agencies and commercial partners to mitigate cyber risks and bolster security postures.

We are looking for a Cybersecurity Engineer with a background in detection engineering to join us!

Responsibilities:
  • Develop, implement, and document effective security detection rules — using languages/frameworks such as Sigma, KQL, SPL, EQL, or YARA as applicable to the deployed SIEM platforms — and playbooks to identify potential threats and malicious activity targeting government systems in on-premises and cloud environments.
  • Conduct comprehensive and in-depth analysis of security logs and alerts from security monitoring (e.g. SIEM) and detection systems (e.g. EDR) deployed within the government environment, to differentiate true treats from benign activity andreduce false positives across network, endpoint, and cloud security domains
  • Continuously improve detection capabilities through in-depth research on threats targeting government networks, endpoints, and cloud environments, to write and tune detection rules (e.g. Sigma rules, KQL/SPL queries, YARA signatures) for enhanced threat detection while reducing benign alerts, leveraging automation for enhanced efficiency.
  • Collaborate with security analysts and incident responders on government specific incident response protocols and investigation activities, with a focus on operationalising detection rules for accurate alert escalation.
  • Collaborate with security engineers to drive integration of detection systems used within the government environment, by providing detection requirements and defining problem areas to streamline workflows and optimise toolusage.
  • Maintain a comprehensive understanding of the evolving threat landscape, including the latest tactics, techniques, and procedures (TTPs) used to target government networks, as well as the latest security trends and best practices in detection developme
  • Degree in Cybersecurity, Information Security, Computer Science or a related field.
  • Relevant cybersecurity certifications from OffSec, SANS, GIAC or related institution in cloud security, detection engineering, incident response, malware analysis, or security penetration testing domain. A minimum of 3 years’ experience in security operations, incident response or related cybersecurity fields, demonstrating a proven track record in threat detection and analysis, preferably within an enterprise or government environment.
  • Understand security concepts and cybersecurity frameworks such as MITRE ATT&CK, including commonly used attacker TTPs and their detection.
  • Demonstrate strong technical foundation, preferably with hands‑on experience in security technologies (e.g. SIEM, EDR, SOAR), scripting languages (e.g. Python, PowerShell) and automation tools to facilitate the development and tuning of detection rules. Working knowledge of one or more detection rule languages such as Sigma, YARA-L, Splunk SPL, Microsoft KQL, or Elastic EQL, with the ability to translate threat intelligence and attacker TTPs into structured, testable detection logic.
  • Experience with version control process and tools and detections as code workflow (e.g. peer review, testing of detection logic against sample log data)
  • Excellent analytical and problem‑solving skills, ability to prioritise tasks, as well as willing to learn new technology and approaches.
  • Strong communication and collaboration skills to work effectively on intra team and inter-team tasks.

Join us and discover a meaningful and exciting career with Assurity Trusted Solutions!

The remuneration package will commensurate with your qualifications and experience.

We thank you for your interest and please note that only shortlisted candidates will be notified.

By submitting your application, you agree that your personal data may be collected, used and disclosed by Assurity Trusted Solutions Pte. Ltd. (ATS), GovTech and their service providers and agents in accordance with ATS’s privacy statement which can be found at:or such other successor site.

  • A wholly-owned subsidiary of GovTech.
  • We promote a learning culture and encourage you to grow and learn.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer (IT Security Operations)
Cybersecurity Engineer (IT Security Operations)

ASSURITY TRUSTED SOLUTIONS PTE. LTD. • Singapore

On-site
SGD 70,000 - 100,000
Yearly training budget
Performance bonus
Same benefits as permanent staff
Cybersecurity Engineer (Incident Response)
Cybersecurity Engineer (Incident Response)

Assurity Trusted Solutions • Singapore

On-site
SGD 90,000 - 140,000
Cybersecurity Engineer (IT Security Operations) - Multiple Headcounts
Cybersecurity Engineer (IT Security Operations) - Multiple Headcounts

Assurity Trusted Solutions Pte Ltd • Singapore

On-site
SGD 90,000 - 140,000
Yearly training budget
Annual performance bonus
Same benefits as permanent staff
Cybersecurity Engineer (Solutioning and Architecture), Network Security
Cybersecurity Engineer (Solutioning and Architecture), Network Security

Assurity Trusted Solutions • Singapore

On-site
SGD 120,000 - 180,000
Cybersecurity Engineer (Solutioning and Architecture)
Cybersecurity Engineer (Solutioning and Architecture)

ASSURITY TRUSTED SOLUTIONS PTE. LTD. • Singapore

On-site
SGD 120,000 - 160,000
GovTech backing
Annual training budget
Contract staff benefits equivalent to,
Senior / Lead Offensive Cybersecurity Engineer (VAPT)
Senior / Lead Offensive Cybersecurity Engineer (VAPT)

Assurity Trusted Solutions • Singapore

On-site
SGD 120,000 - 190,000
Cybersecurity Engineer (Automation)
Cybersecurity Engineer (Automation)

Assurity Trusted Solutions • Singapore

On-site
SGD 120,000 - 180,000
Annual Leave Benefits
Family Care Leave
Birthday Leave
+1
Threat Detection Engineer — Cybersecurity & SIEM
Threat Detection Engineer — Cybersecurity & SIEM

Assurity Trusted Solutions • Singapore

On-site
SGD 90,000 - 130,000
Cybersecurity Engineer (GRC)
Cybersecurity Engineer (GRC)

Assurity Trusted Solutions Pte Ltd • Singapore

On-site
SGD 70,000 - 110,000
GovTech backing
Learning culture
Contract staff benefits
Cybersecurity Engineer (Automation)
Cybersecurity Engineer (Automation)

Assurity Trusted Solutions Pte Ltd • Singapore

On-site
SGD 90,000 - 140,000
Learning culture
Generous annual leave & family perks
Collaborative environment