Lead Security Engineer: SIEM/EDR SecOps & AI-Driven Ops

Sea

Singapore

On-site

SGD 120,000 - 180,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Sea is seeking a Lead Security Engineer to join its Corporate IT Security Operations team in Singapore. You will engineer, operate, and continuously improve security platforms, including SIEM and EDR/XDR, while driving automation and data pipelines to strengthen threat detection and response.

You will mentor the team, translate security pain points into practical engineering solutions, and partner with infrastructure, cloud, identity, and application teams to enhance security visibility across

Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, Information Security, Engineering, Information Technology, or a related discipline.
  • Minimum 5+ years of hands-on experience in Security Engineering, SecOps Engineering, SIEM Engineering, Detection Engineering, Incident Response, or related cybersecurity roles.
  • Hands-on experience with at least one major SIEM or security analytics platform, such as Elastic Security or Splunk, and EDR/XDR tools.
  • Experience with security automation using scripting, APIs, SOAR tools, Python, PowerShell, Bash, or similar technologies.
  • Experience with AI-assisted SecOps, including alert enrichment, anomaly detection, investigation support, SOC workflow automation.

Responsibilities

  • Support the IT Security Operations Manager in IT security engineering, security platform operations, SIEM modernisation, and SecOps process automation.
  • Engineer, operate, and continuously improve enterprise security platforms, including SIEM, EDR/XDR, security automation/orchestration tools, and security data pipelines.
  • Support the migration and modernisation of the SIEM environment to Elastic on GCP, including log ingestion, pipeline development, dashboards, alerting, rule tuning, and platform optimisation.
  • Build and maintain security data pipelines for logs from corporate IT systems, networks, endpoints, identity platforms, cloud services, applications, and security tools.
  • Improve alert enrichment, investigation workflows, case routing, ticketing integration, operational dashboards, and reporting.
  • Support security monitoring, alert triage, threat investigation, incident response, detection tuning, and mitigation activities where required.
  • Translate investigation experience and SecOps pain points into practical engineering improvements, including better detections, false‑positive reduction, automation playbooks, and runbooks.
  • Explore and support AI-enabled SecOps use cases, including anomaly detection, alert enrichment, investigation assistance, behavioural analytics, and automation of repetitive SOC workflows.
  • Partner with infrastructure, network, cloud, endpoint, identity, application, and cybersecurity teams to improve security visibility and operational effectiveness.
  • Provide coaching, technical guidance, solution review, and knowledge sharing to team members.
  • Maintain technical documentation, operational runbooks, security playbooks, platform standards, and handover materials.

Skills

Security Engineering
SecOps Engineering
SIEM Engineering
Detection Engineering
Incident Response
AI-assisted SecOps
Scripting
Team Leadership

Education

Bachelor’s degree in Computer Science / Cybersecurity / IT

Tools

Elastic Security
Splunk
CrowdStrike

Job description

Sea is seeking a Lead Security Engineer to join its Corporate IT Security Operations team in Singapore. You will engineer, operate, and continuously improve security platforms, including SIEM and EDR/XDR, while driving automation and data pipelines to strengthen threat detection and response.

You will mentor the team, translate security pain points into practical engineering solutions, and partner with infrastructure, cloud, identity, and application teams to enhance security visibility across

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer, SIEM/EDR & AI SecOps
Senior Security Engineer, SIEM/EDR & AI SecOps

SEA Singapore • Singapore

On-site
SGD 120,000 - 180,000
Security Operations Engineer — SIEM, SOAR & Cloud
Security Operations Engineer — SIEM, SOAR & Cloud

CodSec • Singapore

On-site
SGD 90,000 - 150,000
Lead Security Engineer, IT Security Operations Engineering and Technology Singapore Experienced[...]
Lead Security Engineer, IT Security Operations Engineering and Technology Singapore Experienced[...]

SEA Singapore • Singapore

On-site
SGD 120,000 - 180,000
Security Operations Leader (EDR, SIEM, SOAR)
Security Operations Leader (EDR, SIEM, SOAR)

ensign infosecurity (cybersecurity) pte. ltd. • Singapore

On-site
SGD 120,000 - 170,000
Security Engineer: Protect Critical Systems & Respond
Security Engineer: Protect Critical Systems & Respond

NCS • Singapore

On-site
SGD 90,000 - 150,000
Cybersecurity Engineering Intern — IAM & EDR
Cybersecurity Engineering Intern — IAM & EDR

SEA Singapore • Singapore

On-site
SGD 60,000 - 90,000
Senior Security Engineer, Elastic Stack & SIEM
Senior Security Engineer, Elastic Stack & SIEM

Sopra Steria • Singapore

Hybrid
SGD 120,000 - 160,000
Hybrid working mode
18 days annual leave
Health insurance
+3
Chief of Security Operations & SIEM
Chief of Security Operations & SIEM

EAMES CONSULTING GROUP (SINGAPORE) PTE. LTD. • Singapore

On-site
SGD 180,000 - 300,000
Security Engineer
Security Engineer

CodSec • Singapore

On-site
SGD 90,000 - 150,000
Security Engineer, Intelligent Platforms — Mentorship
Security Engineer, Intelligent Platforms — Mentorship

NCS • Singapore

On-site
SGD 90,000 - 120,000