#EG Security Observability Engineer

NCS Group

Singapore

On-site

SGD 120,000 - 170,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

NCS Group is seeking an experienced Platform/SRE engineer to own end-to-end evaluation, design, and implementation of security and observability solutions for a container-based private cloud platform in Singapore. The role spans architecture research, production deployment, and ongoing operations across telemetry, detection, vulnerability management, and supply chain security.

You’ll work with platform engineering, security operations, and SRE teams to deliver a unified telemetry-first

Qualifications

  • Bachelor’s degree or equivalent practical experience in a relevant field.
  • 5+ years in platform engineering, SRE, or security engineering roles.
  • Experience evaluating open-source projects for governance health and production readiness.
  • Strong Linux fundamentals and container orchestration experience.
  • Familiarity with SBOM, image signing, provenance attestation and admission control.

Responsibilities

  • Evaluate and research candidate tools for licence compliance, governance, vendor independence and fitness.
  • Design unified telemetry pipelines serving SRE observability and security operations from a single data layer.
  • Architect security detection workflows and vulnerability management across containers and artifacts.
  • Implement image registry security with vulnerability scanning and policy enforcement.
  • Deploy and operate the observability and security stacks in a container orchestration platform.
  • Develop automation playbooks, detection rules, and incident response workflows.
  • Define and document operational runbooks and governance processes.
  • Collaborate with legal/compliance on license reviews and vendor independence.

Skills

Telemetry frameworks
Columnar databases
Metrics scraping
SIEM operations
Kubernetes
Graph databases
SBOM
Vulnerability management
Identity & secrets management
Open-source governance

Education

Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or equivalent practical experience

Job description

NCS is a leading technology services firm that operates across the Asia Pacific region in over 20 cities, providing consulting, digital services, technology solutions, and more. We believe in harnessing the power of technology to achieve extraordinary things, creating lasting value and impact for our communities, partners, and people. Our diverse workforce of 15,000 has delivered large-scale, mission-critical, and multi-platform projects for governments and enterprises in Singapore and the APAC region.

Job Description

We are looking for an engineer who will own the end-to-end evaluation, design, and implementation of security and observability solutions for a container-based private cloud platform. This role spans the full lifecycle — from architectural research and tool selection through production deployment and ongoing operations — across unified telemetry, security detection, vulnerability management, supply chain security, and automated incident response.

You will be the technical owner of the platform's observability and security monitoring stack, working across platform engineering, security operations, and SRE teams to deliver a unified telemetry-first architecture.

What will you do?
Evaluation & Research
  • Conduct structured evaluation of candidate tools against criteria including licence compliance, community governance, vendor independence, and technical fitness
  • Perform proof-of-concept exercises to validate architectural decisions (e.g. ingestion throughput, storage efficiency, query latency, operational complexity)
  • Assess and track governance posture of selected tools; maintain contingency paths for vendor-led dependencies
  • Engage with upstream open-source communities and foundations to stay current on project maturity and roadmap changes
Design & Architecture
  • Design unified telemetry pipelines using open standards to serve both SRE observability and security operations from a single data layer
  • Architect security detection workflows using vendor-neutral detection languages to ensure portability of detection content across backends
  • Design vulnerability aggregation and management workflows spanning container scanning, software composition analysis, static analysis, infrastructure vulnerability scanning, and software bill of materials generation
  • Design supply chain security controls including image signing, provenance attestation, and registry policy enforcement
  • Design exposure path analysis using graph-based tooling to map relationships across compute orchestration, identity, source control, and vulnerability data
  • Design automated remediation and orchestration workflows integrated with alerting, ChatOps, and ticketing
  • Produce and maintain architecture decision records documenting design rationale, trade-offs, and change history
Implementation & Operations
  • Deploy and operate the observability stack: telemetry collection, columnar storage, dashboarding, metrics scraping, alerting, and log routing
  • Deploy and operate the security monitoring stack: endpoint/host-based detection, detection rule evaluation, vulnerability aggregation, and infrastructure scanning
  • Deploy and operate CI pipeline security scanning: container image scanning, dependency scanning, SBOM generation, static analysis, infrastructure-as-code scanning, and secrets detection
  • Implement image registry security with integrated vulnerability scanning and admission policy enforcement
  • Implement identity, directory, secrets management, and certificate lifecycle infrastructure
  • Implement collaboration and incident management tooling (ChatOps, ticketing)
  • Build and maintain detection rules, alerting rules, and automation playbooks
  • Operate all components on a container orchestration platform with fleet-wide deployment tooling
Process & Governance
  • Define and document operational runbooks for each capability area
  • Establish and maintain vendor-independence contingency entries for all vendor-led tools
  • Conduct periodic licence and governance re-assessment of selected tools
  • Collaborate with legal/compliance on copyleft licence reviews before deployment
  • Define SLOs for telemetry pipeline availability, ingestion latency, and detection coverage

Participate in security incident response using the tooling you build and operate.

Qualifications
  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or equivalent practical experience
  • Relevant certifications are a plus but not required (e.g. Kubernetes security, Linux administration, offensive security, or cloud security specialisations)
  • 5+ years in platform engineering, SRE, or security engineering roles
  • Strong hands-on experience with at least 3 of the following:
  • Telemetry collection frameworks and instrumentation standards
  • Columnar or analytical databases for log/trace/event storage
  • Metrics scraping and alerting ecosystems
  • SIEM operations and detection engineering (vendor-neutral detection rule formats preferred)
  • Search-based log analytics platforms (to understand migration context)
  • Production experience deploying and operating on Kubernetes or equivalent container orchestration platforms
  • Experience with container security scanning and software composition analysis tooling
  • Familiarity with supply chain security concepts: SBOM, image signing, provenance attestation, admission control
  • Experience with at least one SOAR or automation/orchestration platform
  • Solid understanding of log collection and routing architectures
  • Experience writing detection rules or correlation logic for security monitoring
  • Ability to evaluate open-source projects for governance health, licence risk, and production readiness
  • Strong Linux systems fundamentals
  • Experience with host-based intrusion detection or endpoint detection and response tooling
  • Experience with graph databases and asset/infrastructure relationship mapping
  • Familiarity with vulnerability management and aggregation platforms
  • Experience with identity providers, directory services, and secrets management
  • Contributions to open-source security or observability projects
  • Experience operating in government or regulated environments with strict vendor-independence or sovereignty requirements
  • Familiarity with enterprise Linux and container platform ecosystems
  • Experience with GitOps workflows for deploying infrastructure services
  • Static/dynamic application security testing tooling experience
Additional Information

We are driven by our AEIOU beliefs—Adventure, Excellence, Integrity, Ownership, and Unity—and we seek individuals who embody these values in both their professional and personal lives. We are committed to our Impact: Valuing our clients, Growing our people, and Creating our future.

Together, we make the extraordinary happen.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

#EG Security Observability Engineer
#EG Security Observability Engineer

NCS Pte Ltd • Singapore

On-site
SGD 150,000 - 210,000
Senior Engineer, Security & Observability Platform - A26270
Senior Engineer, Security & Observability Platform - A26270

Activate Interactive Pte Ltd • Singapore

On-site
SGD 90,000 - 120,000
Fun working environment
Structured development framework
Security Observability Engineer: Unified Telemetry Stack
Security Observability Engineer: Unified Telemetry Stack

NCS Pte Ltd • Singapore

On-site
SGD 150,000 - 210,000
Senior Engineer, Security & Observability Platform - A26270
Senior Engineer, Security & Observability Platform - A26270

Activate Interactive Pte Ltd. • Singapore

On-site
SGD 120,000 - 180,000
Fun working environment
Employee Wellness Program
Singapore Government Projects
+1
Security & Observability Platform Engineer
Security & Observability Platform Engineer

NCS Group • Singapore

On-site
SGD 120,000 - 170,000
Platform Security & Observability Engineer
Platform Security & Observability Engineer

Activate Interactive Pte Ltd. • Singapore

On-site
SGD 120,000 - 180,000
Fun working environment
Employee Wellness Program
Singapore Government Projects
+1
Lead Security Engineer, IT Security Operations Engineering and Technology Singapore Experienced[...]
Lead Security Engineer, IT Security Operations Engineering and Technology Singapore Experienced[...]

SEA Singapore • Singapore

On-site
SGD 120,000 - 180,000
Senior Platform Security & Observability Engineer
Senior Platform Security & Observability Engineer

Activate Interactive Pte Ltd • Singapore

On-site
SGD 90,000 - 120,000
Fun working environment
Structured development framework
Cyber Security Development Engineer (Tenable and Rapid7)
Cyber Security Development Engineer (Tenable and Rapid7)

NCS Group • Singapore

On-site
SGD 42,000 - 70,000
DevsecOps Engineer, Video Intelligence
DevsecOps Engineer, Video Intelligence

NCS Pte Ltd • Singapore

On-site
SGD 120,000 - 160,000