Security Delivery Consultant

ABPGROUP PTE. LTD.

Singapore

On-site

SGD 70,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

ABPGROUP PTE. LTD. operates a Cyber Fusion Center SOC focused on advanced monitoring, investigation, and incident response for client environments. You will act as escalation for L1 analysts and drive improvements in detection and response.

The role combines deep technical work with client-facing duties, ensuring SLAs and KPIs are met and contributing to ongoing service enhancements across managed security services.

Qualifications

  • 3–6 years in SOC, cybersecurity, or managed security services.
  • Hands-on SIEM experience (Google Chronicle/SecOps preferred).
  • Strong knowledge of incident response and threat analysis.
  • Familiarity with EDR/XDR tools and cloud platforms.
  • Experience in client-facing or service delivery roles is preferred.

Responsibilities

  • Monitor and investigate security alerts with depth and rigor.
  • Escalate complex incidents and lead response activities.
  • Tune detection rules and maintain SOC playbooks and procedures.
  • Engage with clients to review performance, findings, and improvements.
  • Produce regular incident reports, metrics, and executive summaries.

Skills

Incident response
Threat analysis
Network security
Cloud security
MITRE ATT&CK

Education

CompTIA Security+
CySA+
CEH
GCIA
GCIH
CISSP
CISM

Tools

Google Chronicle
CrowdStrike
Microsoft Defender
JumpCloud
Threat Intelligence

Job description

About the role

This role is part of the Cyber Fusion Center’s SOC team, responsible for advanced monitoring, investigation, and response to security incidents across client environments. Acting as the escalation point for L1 analysts, the role plays acritical part in enhancing detection capabilities and strengthening incident response processes.

In addition, the position ensures the successful delivery and continuous optimization of managed security services. It combines deep technical expertise with client-facing responsibilities, ensuring alignment with service-level agreements (SLAs), improving clients’ security posture, and driving ongoing service enhancements.

Key Responsibilities:
Security Monitoring & Incident Response
  • Perform advanced analysis and investigation of security alerts from SIEM platforms(e.g. Google SecOps).
  • Act as escalation point for L1 analysts for complex incidents.
  • Lead incident response activities including triage, containment, eradication, and recovery.
  • Conduct threat hunting and proactive detection using threat intelligence and behavioral analytics.
Detection Engineering &Continuous Improvement
  • Tune and enhance SIEM rules, use cases, and detection logic.
  • Support onboarding and validation of log sources and assets.
  • Develop and maintain SOC playbooks and response procedures.
  • Continuously improve detection coverage aligned with frameworks (e.g., MITRE ATT&CK).
Service Delivery & Client Engagement
  • Serve as a key point of contact for client security operations matters.
  • Ensure SOC services are delivered in accordance with SLAs and KPIs.
  • Conduct regular reporting and service review sessions with clients.
  • Provide actionable security recommendations based on findings and threat landscape.
  • Validate onboarding of client infrastructure (log sources, assets, integrations).
  • Ensure visibility across tools (SIEM, SOAR, EDR, Threat Intel).
Reporting & Governance
  • Produce detailed incident reports, executive summaries monthly reporting, and service metrics.
  • Track SLA performance, incident trends, and operational KPIs.
  • Support compliance, audit, and governance requirements
Candidate requirements:
  • 3 – 6 years of experience in SOC operations, cybersecurity, or managed security services.
  • Hands-on experience with SIEM (Google Chronicle/SecOps preferred).
  • Strong knowledge of:
  1. Incident response and threat analysis
  2. Network, endpoint, and cloud security
  3. MITRE ATT&CK framework
  • Experience in client-facing or service delivery roles is highly preferred.
  • Familiarity with tools such as EDR/XDR (e.g. Crowdstrike, MS defender), TI (e.g. Cyble, GTI), JumpCloud, and cloud platforms.
  • Relevant certifications (preferred):
  1. CompTIA Security+, CySA+
  2. CEH, GCIA, GCIH
  3. CISSP or CISM
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Analyst L2
Security Analyst L2

ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. • Singapore

On-site
SGD 70,000 - 95,000
Cyber Security Resident Engineer
Cyber Security Resident Engineer

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 100,000
Senior Cyber Security Consultant
Senior Cyber Security Consultant

Singtel • Singapore

On-site
Confidential
Cyber Incident Responder
Cyber Incident Responder

Amaris Consulting • Singapore

On-site
SGD 90,000 - 130,000
Assistant Director (Security Operations)
Assistant Director (Security Operations)

National Heritage Board • Singapore

On-site
SGD 140,000 - 210,000
Cyber Security Resident Engineer - Incident Response & SIEM
Cyber Security Resident Engineer - Incident Response & SIEM

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 100,000
Security Operations (SOC)
Security Operations (SOC)

RED ALPHA CYBERSECURITY PTE. LTD. • Singapore

On-site
SGD 60,000 - 80,000
Cybersecurity SOC Analyst (0016 Mar 2026)
Cybersecurity SOC Analyst (0016 Mar 2026)

Internetwork Expert • Singapore

On-site
SGD 50,000 - 70,000
L3 SOC analyst & SOC Manager
L3 SOC analyst & SOC Manager

INSYGHTS SECURITY PTE. LTD. • Singapore

On-site
SGD 120,000 - 160,000
Security Operations SOC Analyst
Security Operations SOC Analyst

Red Alpha Cybersecurity • Singapore

On-site
SGD 70,000 - 110,000