Lead Security Systems Engineer (Microsoft Sentinel)

EPAM Systems

Singapore

On-site

SGD 120,000 - 180,000

Full time

8 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Great place to work
Global collaboration
Training programs and certs

Job summary

EPAM Systems in Singapore is seeking a Security Operations Lead (Microsoft Sentinel) to strengthen detection and incident response for a lean hedge fund environment. You will own Sentinel tuning, triage escalations and drive vendor-led SOC operations.

You will translate alerts, vulnerabilities and posture data into clear actions and reporting, mentor the Security Operations Analyst, and contribute to audit-ready processes while partnering with global teams.

Qualifications

  • Proven experience leading security operations in a hands-on capacity.
  • Strong background in Microsoft Sentinel including rule tuning, workbooks, hunting and detection engineering.
  • Hands-on experience with Microsoft Defender for Endpoint and Microsoft Defender for Cloud.
  • Demonstrated ability to manage an outsourced SOC/MDR service including escalations and performance governance.
  • Knowledge of incident response practices including severity assessment, coordination and post-incident reviews.
  • Experience with Jira Service Management and end-to-end ticket lifecycle ownership.
  • Strong understanding of Vulnerability Management including scanning, remediation tracking and patch governance.
  • Clear communication with confidence translating operational metrics into management-ready reporting.

Responsibilities

  • Own Microsoft Sentinel detections including analytics rules, workbooks and KQL queries.
  • Lead day-to-day SOC and incident operations with an outsourced SOC/MDR vendor including SLAs, escalations and service reviews.
  • Validate log source coverage across endpoint, identity, network, cloud and critical business systems.
  • Triage and coordinate incident response from assessment through containment, remediation and closure in Jira Service Management.
  • Improve signal quality by reducing false positives and tracking Mean Time to Detect and Mean Time to Respond.
  • Run post-incident reviews and update detections, runbooks and incident response playbooks.
  • Own vulnerability scanning cadence, maintain a remediation register and track patching against agreed SLAs.
  • Mentor and support the Security Operations Analyst while building repeatable, audit-ready processes.

Skills

Security operations
Sentinel tuning
KQL queries
Incident response
Ticket lifecycle
Vulnerability management
Jira Service Management
Metrics reporting

Tools

Microsoft Defender for Endpoint
Microsoft Defender for Cloud

Job description

We are seeking a Security Operations Lead (Microsoft Sentinel) in Singapore. You will strengthen detection and incident response for a lean hedge fund environment, owning Sentinel tuning, triaging escalations and driving vendor-led SOC operations. You will turn alerts, vulnerabilities and posture data into clear actions and reporting that improves security outcomes.

Responsibilities
  • Own Microsoft Sentinel detections including analytics rules, workbooks and Kusto Query Language (KQL) queries
  • Lead day-to-day SOC and incident operations with an outsourced SOC/MDR vendor including SLAs, escalations and service reviews
  • Validate log source coverage across endpoint, identity, network, cloud and critical business systems
  • Triage and coordinate incident response from assessment through containment, remediation and closure in Jira Service Management
  • Improve signal quality by reducing false positives and tracking Mean Time to Detect and Mean Time to Respond
  • Run post-incident reviews and update detections, runbooks and incident response playbooks
  • Own vulnerability scanning cadence, maintain a remediation register and track patching against agreed SLAs
  • Mentor and support the Security Operations Analyst while building repeatable, audit-ready processes
Requirements
  • Proven experience leading security operations in a hands-on capacity
  • Strong background in Microsoft Sentinel including rule tuning, workbooks, hunting and detection engineering
  • Hands-on experience with Microsoft Defender for Endpoint and Microsoft Defender for Cloud
  • Demonstrated ability to manage an outsourced SOC/MDR service including escalations and performance governance
  • Knowledge of incident response practices including severity assessment, coordination and post-incident reviews
  • Experience with Jira Service Management and end-to-end ticket lifecycle ownership
  • Strong understanding of Vulnerability Management including scanning, remediation tracking and patch governance
  • Clear communication with confidence translating operational metrics into management-ready reporting
Nice to have
  • Experience in a regulated environment such as financial services, asset management or a hedge fund
  • Tenable Nessus or comparable vulnerability scanning tooling
  • Darktrace or network anomaly detection tooling
We offer
  • By choosing EPAM, you're getting a job at one of the most loved workplaces according to Newsweek 2021 & 2022&2023.
  • Employee ideas are the main driver of our business. We have a very supportive environment where your voice matters
  • You will be challenged while working side-by-side with the best talent globally. We work with top-notch technologies, constantly seeking new industry trends and best practices
  • We offer a transparent career path and an individual roadmap to engineer your future & accelerate your journey
  • At EPAM, you can find vast opportunities for self-development: online courses and libraries, mentoring programs, partial grants of certification, and experience exchange with colleagues around the world. You will learn, contribute, and grow with us
Life at EPAM

- EPAM is a leading global provider of digital platform engineering and development services. EPAM has been expanding in Singapore since 2013 and delivering the best solutions to our customers. As a recognized leader, EPAM Singapore achieved Great Place to Work Certification in 2023 and is committed to providing our team with inspiring careers.

- You will have the opportunity to work with fellow talented technologists and accelerate your career by participating in our numerous upskilling, training, and certification programs. That is why EPAM Singapore was awarded Gold for Best In-House Certification Programmes in the Employee Experience Awards 2023 and Silver in the SkillsFuture Employers Awards 2022 for our efforts in championing employees' skills development and building a lifelong learning culture at the workplace. You can also look forward to developing holistically with the multiracial festivals and various wellness and cultural activities organized by our passionate colleagues here.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Security Systems Engineer (Microsoft Sentinel)
Lead Security Systems Engineer (Microsoft Sentinel)

EPAM • Singapore

On-site
SGD 120,000 - 180,000
Great Place to Work Certification 2023
Global collaboration with top talent
Transparent career path
+1
Lead Security Systems Engineer (Microsoft Sentinel)
Lead Security Systems Engineer (Microsoft Sentinel)

epam systems pte. ltd. • Singapore

On-site
SGD 120,000 - 180,000
Senior Security Systems Engineer (Azure)
Senior Security Systems Engineer (Azure)

EPAM • Singapore

On-site
SGD 180,000 - 240,000
Transparent career path
Individual roadmap to engineer your未来
Self-development programs with online+
+3
Lead Security Systems Engineer - Sentinel & SOC Lead
Lead Security Systems Engineer - Sentinel & SOC Lead

epam systems pte. ltd. • Singapore

On-site
SGD 120,000 - 180,000
Security Operations Lead — Microsoft Sentinel & IR
Security Operations Lead — Microsoft Sentinel & IR

EPAM Systems • Singapore

On-site
SGD 120,000 - 180,000
Great place to work
Global collaboration
Training programs and certs
Senior Security Systems Engineer (Azure)
Senior Security Systems Engineer (Azure)

EPAM SYSTEMS PTE LTD • Singapore

On-site
SGD 90,000 - 150,000
Sentinel Security Operations Lead: Detection & IR
Sentinel Security Operations Lead: Detection & IR

EPAM • Singapore

On-site
SGD 120,000 - 180,000
Great Place to Work Certification 2023
Global collaboration with top talent
Transparent career path
+1
Senior Software Engineer (.NET)
Senior Software Engineer (.NET)

EPAM • Singapore

On-site
SGD 120,000 - 180,000
Senior Systems Engineer (DevOps)
Senior Systems Engineer (DevOps)

EPAM • Singapore

On-site
SGD 120,000 - 180,000
Senior Software Engineer (Reporting and Analytics Developer)
Senior Software Engineer (Reporting and Analytics Developer)

EPAM • Singapore

On-site
SGD 110,000 - 170,000
Great Place to Work Certification 2023
Upskilling and certification programs
Mentoring programs and global exposure