Cybersecurity Engineer (Detection Engineering)

Assurity Trusted Solutions Pte Ltd

Singapore

On-site

SGD 120,000 - 180,000

Full time

7 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Assurity Trusted Solutions Pte Ltd is seeking a Cybersecurity Engineer with a focus on detection engineering to join our team in Singapore. You will develop, tune, and document detection rules across SIEM/EDR platforms and create playbooks to identify threats targeting government systems.

The role requires hands-on experience with detection languages such as Sigma, KQL, SPL, EQL or YARA, and scripting skills (Python, PowerShell).

Qualifications

  • Bachelor's degree in Cybersecurity or related field.
  • 3+ years in security operations or threat detection.
  • Certifications from OffSec/SANS/GIAC preferred.
  • Knowledge of MITRE ATT&CK.
  • Ability to translate threats into detection rules.
  • Experience with detection rule languages and automation.

Responsibilities

  • Develop, implement, and document effective security detection rules for SIEM/EDR and playbooks.
  • Analyze security logs/alerts to differentiate true threats from benign activity and reduce false positives.
  • Tune rules/signatures for enhanced detection and automate where possible.
  • Collaborate with analysts and incident responders on incident response protocols.
  • Collaborate with security engineers to integrate detection systems and optimize workflows.
  • Maintain awareness of evolving threats and translate TTPs into detections.

Skills

Sigma rules
KQL
SPL
EQL
YARA
Python
PowerShell
SIEM
EDR
SOAR

Education

Cybersecurity degree
Cybersecurity certifications

Tools

SIEM tools
EDR tools
SOAR platforms
Git

Job description

Assurity Trusted Solutions (ATS) is a wholly owned subsidiary of the Government Technology Agency (GovTech). As a Trusted Partner over the last decade, ATS offers a comprehensive suite of products and services ranging from infrastructure and operational services, authentication services, governance and assurance services as well as managed processes. In a dynamic digital and cyber landscape, where trust & collaboration are key, ATS continues to drive mutually beneficial business outcomes through collaboration with GovTech, government agencies and commercial partners to mitigate cyber risks and bolster security postures.

We are looking for a Cybersecurity Engineer with a background in detection engineering to join us!


Responsibilities:

  • Develop, implement, and document effective security detection rules — using languages/frameworks such as Sigma, KQL, SPL, EQL, or YARA as applicable to the deployed SIEM platforms — and playbooks to identify potential threats and malicious activity targeting government systems in on-premises and cloud environments.
  • Conduct comprehensive and in-depth analysis of security logs and alerts from security monitoring (e.g. SIEM) and detection systems (e.g. EDR) deployed within the government environment, to differentiate true treats from benign activity andreduce false positives across network, endpoint, and cloud security domains
  • Continuously improve detection capabilities through in-depth research on threats targeting government networks, endpoints, and cloud environments, to write and tune detection rules (e.g. Sigma rules, KQL/SPL queries, YARA signatures) for enhanced threat detection while reducing benign alerts, leveraging automation for enhanced efficiency.
  • Collaborate with security analysts and incident responders on government specific incident response protocols and investigation activities, with a focus on operationalising detection rules for accurate alert escalation.
  • Collaborate with security engineers to drive integration of detection systems used within the government environment, by providing detection requirements and defining problem areas to streamline workflows and optimise toolusage.
  • Maintain a comprehensive understanding of the evolving threat landscape, including the latest tactics, techniques, and procedures (TTPs) used to target government networks, as well as the latest security trends and best practices in detection developme
  • Degree in Cybersecurity, Information Security, Computer Science or a related field.
  • Relevant cybersecurity certifications from OffSec, SANS, GIAC or related institution in cloud security, detection engineering, incident response, malware analysis, or security penetration testing domain. A minimum of 3 years’ experience in security operations, incident response or related cybersecurity fields, demonstrating a proven track record in threat detection and analysis, preferably within an enterprise or government environment.
  • Understand security concepts and cybersecurity frameworks such as MITRE ATT&ACK, including commonly used attacker TTPs and their detection.
  • Demonstrate strong technical foundation, preferably with hands‑on experience in security technologies (e.g. SIEM, EDR, SOAR), scripting languages (e.g. Python, PowerShell) and automation tools to facilitate the development and tuning of detection rules. Working knowledge of one or more detection rule languages such as Sigma, YARA-L, Splunk SPL, Microsoft KQL, or Elastic EQL, with the ability to translate threat intelligence and attacker TTPs into structured, testable detection logic.
  • Experience with version control process and tools and detections as code workflow (e.g. peer review, testing of detection logic against sample log data)
  • Excellent analytical and problem‑solving skills, ability to prioritise tasks, as well as willing to learn new technology and approaches.
  • Strong communication and collaboration skills to work effectively on intra team and inter-team tasks.

Join us and discover a meaningful and exciting career with Assurity Trusted Solutions!

The remuneration package will commensurate with your qualifications and experience.

By submitting your application, you agree that your personal data may be collected, used and disclosed by Assurity Trusted Solutions Pte. Ltd. (ATS), GovTech and their service providers and agents in accordance with ATS’s privacy statement which can be found at:or such other successor site.

  • A wholly-owned subsidiary of GovTech.
  • We promote a learning culture and encourage you to grow and learn.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer (Detection Engineering)
Cybersecurity Engineer (Detection Engineering)

Assurity Trusted Solutions • Singapore

On-site
SGD 90,000 - 130,000
Cybersecurity Engineer (IT Security Operations)
Cybersecurity Engineer (IT Security Operations)

ASSURITY TRUSTED SOLUTIONS PTE. LTD. • Singapore

On-site
SGD 70,000 - 100,000
Yearly training budget
Performance bonus
Same benefits as permanent staff
Cybersecurity Engineer (Incident Response)
Cybersecurity Engineer (Incident Response)

Assurity Trusted Solutions • Singapore

On-site
SGD 90,000 - 140,000
Cybersecurity Engineer (IT Security Operations) - Multiple Headcounts
Cybersecurity Engineer (IT Security Operations) - Multiple Headcounts

Assurity Trusted Solutions Pte Ltd • Singapore

On-site
SGD 90,000 - 140,000
Yearly training budget
Annual performance bonus
Same benefits as permanent staff
Cybersecurity Engineer (IT Security Operations) - Multiple Headcounts
Cybersecurity Engineer (IT Security Operations) - Multiple Headcounts

Assurity Trusted Solutions • Singapore

On-site
SGD 100,000 - 160,000
Yearly training budget
Performance bonus
Cybersecurity Engineer (Solutioning and Architecture), Network Security
Cybersecurity Engineer (Solutioning and Architecture), Network Security

Assurity Trusted Solutions • Singapore

On-site
SGD 120,000 - 180,000
Cybersecurity Engineer (Solutioning and Architecture), Network Security
Cybersecurity Engineer (Solutioning and Architecture), Network Security

Assurity Trusted Solutions Pte Ltd • Singapore

On-site
SGD 120,000 - 180,000
Contract staff benefits parity with永久
Cybersecurity Engineer (Solutioning and Architecture)
Cybersecurity Engineer (Solutioning and Architecture)

ASSURITY TRUSTED SOLUTIONS PTE. LTD. • Singapore

On-site
SGD 120,000 - 160,000
GovTech backing
Annual training budget
Contract staff benefits equivalent to,
Threat Detection Engineer — Cybersecurity & SIEM
Threat Detection Engineer — Cybersecurity & SIEM

Assurity Trusted Solutions • Singapore

On-site
SGD 90,000 - 130,000
Cybersecurity Engineer (Automation)
Cybersecurity Engineer (Automation)

Assurity Trusted Solutions • Singapore

On-site
SGD 120,000 - 180,000
Annual Leave Benefits
Family Care Leave
Birthday Leave
+1