Lead Security Systems Engineer (Microsoft Sentinel)

EPAM

Singapore

On-site

SGD 120,000 - 180,000

Full time

10 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Great Place to Work Certification 2023
Global collaboration with top talent
Transparent career path
Upskilling and certification programs

Job summary

EPAM is seeking a Security Operations Lead in Singapore to strengthen detection and incident response for a lean hedge fund environment. You will own Sentinel tuning, triage escalations with an outsourced SOC/MDR partner, and drive secure operations through defined playbooks and reporting.

You will coordinate across endpoints, identity, network and cloud, improving signal quality and reducing false positives while mentoring a Security Operations Analyst and ensuring audit-ready processes.

Qualifications

  • Experience leading security operations in a hands-on capacity.
  • Strong background in Microsoft Sentinel including rule tuning, workbooks, hunting and detection engineering.
  • Hands-on experience with Defender for Endpoint and Defender for Cloud.
  • Experience managing outsourced SOC/MDR services including escalations and governance.
  • Knowledge of incident response practices including severity assessment and post-incident reviews.
  • Experience with Jira Service Management and end-to-end ticket lifecycle ownership.
  • Understanding of Vulnerability Management including scanning, remediation tracking and patch governance.
  • Ability to translate operational metrics into management-ready reporting.

Responsibilities

  • Own Microsoft Sentinel detections including analytics rules, workbooks and KQL queries.
  • Lead day-to-day SOC and incident operations with an outsourced SOC/MDR vendor including SLAs and escalations.
  • Validate log source coverage across endpoints, identity, network, cloud and critical systems.
  • Triage and coordinate incident response from assessment through containment, remediation and closure in Jira.
  • Improve signal quality by reducing false positives and tracking MTTD/MTTR.
  • Run post-incident reviews and update detections, runbooks and incident response playbooks.
  • Own vulnerability scanning cadence, maintain remediation register and track patching against SLAs.
  • Mentor and support the Security Operations Analyst while building repeatable, audit-ready processes.

Skills

Security operations leadership
Microsoft Sentinel
Sentinel rule tuning
KQL queries
Defender for Endpoint
Defender for Cloud
Outsourced SOC/MDR governance
Incident response awareness
Metrics reporting
Communication of metrics

Tools

Jira Service Management
Microsoft Defender for Endpoint
Microsoft Defender for Cloud

Job description

We are seeking a Security Operations Lead (Microsoft Sentinel) in Singapore. You will strengthen detection and incident response for a lean hedge fund environment, owning Sentinel tuning, triaging escalations and driving vendor-led SOC operations. You will turn alerts, vulnerabilities and posture data into clear actions and reporting that improves security outcomes.

Responsibilities
  • Own Microsoft Sentinel detections including analytics rules, workbooks and Kusto Query Language (KQL) queries
  • Lead day-to-day SOC and incident operations with an outsourced SOC/MDR vendor including SLAs, escalations and service reviews
  • Validate log source coverage across endpoint, identity, network, cloud and critical business systems
  • Triage and coordinate incident response from assessment through containment, remediation and closure in Jira Service Management
  • Improve signal quality by reducing false positives and tracking Mean Time to Detect and Mean Time to Respond
  • Run post-incident reviews and update detections, runbooks and incident response playbooks
  • Own vulnerability scanning cadence, maintain a remediation register and track patching against agreed SLAs
  • Mentor and support the Security Operations Analyst while building repeatable, audit-ready processes
Requirements
  • Proven experience leading security operations in a hands-on capacity
  • Strong background in Microsoft Sentinel including rule tuning, workbooks, hunting and detection engineering
  • Hands-on experience with Microsoft Defender for Endpoint and Microsoft Defender for Cloud
  • Demonstrated ability to manage an outsourced SOC/MDR service including escalations and performance governance
  • Knowledge of incident response practices including severity assessment, coordination and post-incident reviews
  • Experience with Jira Service Management and end-to-end ticket lifecycle ownership
  • Strong understanding of Vulnerability Management including scanning, remediation tracking and patch governance
  • Clear communication with confidence translating operational metrics into management-ready reporting
Nice to have
  • Experience in a regulated environment such as financial services, asset management or a hedge fund
  • Tenable Nessus or comparable vulnerability scanning tooling
  • Darktrace or network anomaly detection tooling
We offer
  • By choosing EPAM, you're getting a job at one of the most loved workplaces according to Newsweek 2021 & 2022 & 2023.
  • Employee ideas are the main driver of our business. We have a very supportive environment where your voice matters
  • You will be challenged while working side-by-side with the best talent globally. We work with top-notch technologies, constantly seeking new industry trends and best practices
  • We offer a transparent career path and an individual roadmap to engineer your future & accelerate your journey
  • At EPAM, you can find vast opportunities for self-development: online courses and libraries, mentoring programs, partial grants of certification, and experience exchange with colleagues around the world. You will learn, contribute, and grow with us
Life at EPAM

EPAM is a leading global provider of digital platform engineering and development services. EPAM has been expanding in Singapore since 2013 and delivering the best solutions to our customers. As a recognized leader, EPAM Singapore achieved Great Place to Work Certification in 2023 and is committed to providing our team with inspiring careers.

You will have the opportunity to work with fellow talented technologists and accelerate your career by participating in our numerous upskilling, training, and certification programs. That is why EPAM Singapore was awarded Gold for Best In-House Certification Programmes in the Employee Experience Awards 2023 and Silver in the SkillsFuture Employers Awards 2022 for our efforts in championing employees skills development and building a lifelong learning culture at the workplace. You can also look forward to developing holistically with the multiracial festivals and various wellness and cultural activities organized by our passionate colleagues here.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Security Systems Engineer (Microsoft Sentinel)
Lead Security Systems Engineer (Microsoft Sentinel)

EPAM Systems • Singapore

On-site
SGD 120,000 - 180,000
Great place to work
Global collaboration
Training programs and certs
Lead Security Systems Engineer (Microsoft Sentinel)
Lead Security Systems Engineer (Microsoft Sentinel)

epam systems pte. ltd. • Singapore

On-site
SGD 120,000 - 180,000
Senior Security Systems Engineer (Azure)
Senior Security Systems Engineer (Azure)

EPAM • Singapore

On-site
SGD 180,000 - 240,000
Transparent career path
Individual roadmap to engineer your未来
Self-development programs with online+
+3
Lead Security Systems Engineer - Sentinel & SOC Lead
Lead Security Systems Engineer - Sentinel & SOC Lead

epam systems pte. ltd. • Singapore

On-site
SGD 120,000 - 180,000
Security Operations Lead — Microsoft Sentinel & IR
Security Operations Lead — Microsoft Sentinel & IR

EPAM Systems • Singapore

On-site
SGD 120,000 - 180,000
Great place to work
Global collaboration
Training programs and certs
Senior Security Systems Engineer (Azure)
Senior Security Systems Engineer (Azure)

EPAM SYSTEMS PTE LTD • Singapore

On-site
SGD 90,000 - 150,000
Sentinel Security Operations Lead: Detection & IR
Sentinel Security Operations Lead: Detection & IR

EPAM • Singapore

On-site
SGD 120,000 - 180,000
Great Place to Work Certification 2023
Global collaboration with top talent
Transparent career path
+1
Senior Systems Engineer (DevOps)
Senior Systems Engineer (DevOps)

EPAM • Singapore

On-site
SGD 120,000 - 180,000
Senior Software Engineer (.NET)
Senior Software Engineer (.NET)

EPAM • Singapore

On-site
SGD 120,000 - 180,000
Senior Software Engineer (Reporting and Analytics Developer)
Senior Software Engineer (Reporting and Analytics Developer)

EPAM • Singapore

On-site
SGD 110,000 - 170,000
Great Place to Work Certification 2023
Upskilling and certification programs
Mentoring programs and global exposure