Lead, Security Operations

FairPrice Group

Singapore

On-site

SGD 100,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A leading retailer group in Singapore is looking for a Security Operations Lead to enhance its cyber defense capabilities. The candidate will oversee incident response, manage partnerships with security service providers, and drive SOC modernization. Ideal applicants will have 8-10 years of cybersecurity experience and proven skills in incident management. This role offers the chance to develop a next-generation security operations function and engage in continuous process improvement.

Qualifications

  • 8-10+ years in cybersecurity, notably in Security Operations or Incident Response.
  • Proven SOC modernization and transformation project experience.
  • Hands-on with SOAR platforms and automation playbooks.

Responsibilities

  • Oversee SOC transformation, enhancing threat detection and response times.
  • Manage incident response lifecycle and lead complex security investigations.
  • Create reports and dashboards for senior leadership.

Skills

Cybersecurity expertise
Incident response leadership
SOC modernization
Automation playbooks development
Digital forensics knowledge
Technical communication

Education

Bachelor's degree in Computer Science or related field

Tools

SOAR platforms
Firewalls
XDR
DDoS Mitigation services

Job description

We are seeking a forward-thinking and highly skilled Security Operations Lead to guide the evolution of our cyber defense capabilities. This strategic role is responsible for overseeing our Day 2 security operations while actively driving the transformation and modernization of our Security Operations Center (SOC).

You will lead our incident response function, manage our critical partnership with our Managed Security Service Provider (MSSP), and spearhead initiatives in automation, forensics, and continuous improvement. The ideal candidate is a strategic leader with a strong technical foundation, passionate about building a next-generation, intelligence-driven security operations function.

Key Responsibilities
SOC Transformation & Modernization
  • Lead strategic initiatives to mature the SOC's capabilities, focusing on enhancing threat detection, accelerating response times, and improving overall operational efficiency.
  • Drive the adoption and optimization of a Security Orchestration, Automation, and Response (SOAR) platform, developing and refining playbooks to automate routine tasks and standardized response workflows.
  • Evaluate, recommend, and integrate new technologies and processes to keep our security posture ahead of the evolving threat landscape.
Security Operations & Platform Oversight
  • Oversee the health, performance, and policy governance of a diverse portfolio of enterprise-grade security technologies.
  • Ensure the effective day-to-day operation of core security platforms, such as Firewalls, XDR, DDoS Mitigation services, IPS, Email Filtering Gateways, and Privileged Access Management (PAM) solutions.
  • Act as the primary stakeholder for the security technology stack, ensuring tools are configured to best practices and aligned with the organization's risk appetite.
Incident Response Leadership & Forensics
  • Lead the end-to-end incident response lifecycle, from initial triage and escalation by the MSSP to final resolution and reporting.
  • Serve as the incident commander during major security events, providing clear direction and communication to all stakeholders.
  • Oversee and, when necessary, directly participate in complex security investigations and digital forensics activities to determine the root cause, scope, and impact of incidents.
  • Drive the Incident Response Improvement and Planning process by developing, maintaining, and testing the corporate Incident Response Plan (IRP) through regular tabletop exercises and drills.
  • Develop and maintain key performance indicators (KPIs) and metrics to measure the effectiveness of the security operations function.
  • Create and present clear, concise reports and dashboards for technical teams and senior leadership to provide visibility into our security posture and incident trends.
  • Champion a culture of continuous improvement, using post-incident reviews and operational data to identify and implement enhancements to people, processes, and technology.
  • Ensure all processes, procedures, and security configurations are meticulously documented in runbooks and Standard Operating Procedures (SOPs).
  • Manage the strategic and technical relationship with our MSSP, ensuring alignment and driving maximum value from the partnership.
  • Monitor MSSP performance against Service Level Agreements (SLAs), review incident reports, and lead regular service review meetings to ensure quality and address challenges.
Required Qualifications & Skills
  • 8-10+ years of experience in cybersecurity, with a significant portion in a Security Operations or Incident Response capacity.
  • Proven experience leading SOC modernization or transformation projects, with a strong understanding of how to mature a security operations function.
  • Hands-on experience with SOAR platforms and the development of automation playbooks.
  • Demonstrable experience in leading complex security investigations and a solid grasp of incident response methodologies.
  • Broad technical knowledge across multiple security domains, including network security, endpoint protection, and identity and access management.
  • Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
Preferred Qualifications & Skills
  • Professional certifications such as CISSP, GCIH, GCFA, or GDAT.
  • In-depth knowledge of digital forensics and investigation techniques.
  • Familiarity with cybersecurity frameworks like the NIST Cybersecurity Framework and MITRE ATT&CK®.
  • Strong scripting and automation skills (e.g., Python, PowerShell) to support SOAR and custom integrations.
  • Experience presenting complex technical topics to non-technical audiences and senior leadership.

Work Location: FairPrice Hub (Joo Koon)

Address: 1 Joo Koon Circle, #13-01, Singapore 629117

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Consultant, IT Security (SOC Experience)
Lead Consultant, IT Security (SOC Experience)

NCS Group • Singapore

On-site
SGD 80,000 - 120,000
Lead Cybersecurity Specialist (Security Operations)
Lead Cybersecurity Specialist (Security Operations)

JJ Consulting Services • Singapore

On-site
SGD 80,000 - 120,000
Cyber Defense Lead
Cyber Defense Lead

Univers Invest • Singapore

On-site
SGD 200,000 - 300,000
Lead Cybersecurity Specialist (Cyber Defence)
Lead Cybersecurity Specialist (Cyber Defence)

JJ CONSULTING SERVICES • Singapore

On-site
SGD 100,000 - 150,000
Senior Lead SOC Incident Responder & Security Incident Manager
Senior Lead SOC Incident Responder & Security Incident Manager

NETS • Singapore

On-site
SGD 180,000 - 260,000
Senior Manager, Cybersecurity Operations
Senior Manager, Cybersecurity Operations

GOLDTECH RESOURCES PTE LTD • Singapore

On-site
SGD 80,000 - 130,000
Senior Cybersecurity Operations Specialist
Senior Cybersecurity Operations Specialist

Sciente Consulting • Singapore

On-site
SGD 180,000 - 260,000
Security Operations Engineer
Security Operations Engineer

Rapsys Technologies Pte Ltd. • Singapore

On-site
SGD 60,000 - 110,000
Cyber Security Resident Engineer
Cyber Security Resident Engineer

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 100,000
Senior Cybersecurity Operations Specialist (JD#11242)
Senior Cybersecurity Operations Specialist (JD#11242)

SCIENTE INTERNATIONAL PTE. LTD. • Singapore

On-site
SGD 150,000 - 210,000