Senior Cyber Incident Responder

Keyrus

Singapore

On-site

SGD 120,000 - 180,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Keyrus Singapore is hiring for a senior security incident response specialist embedded in a 24/7 SOC. You will strengthen detection capabilities across APAC and contribute to global use case development and incident response.

The role demands hands-on experience with MITRE ATT&CK, SIEM/SOAR, and threat hunting, with a track record of leading detection projects and collaborating with regional teams.

Qualifications

  • 7+ years in cybersecurity incident response.
  • 4+ years in security use case design, development, and coding.
  • Hands-on with SIEM platforms and security incident management.
  • Strong knowledge of MITRE ATT&CK.
  • Good working knowledge of Linux (RedHat/Ubuntu).
  • Experience interpreting security logs and building threat models.

Responsibilities

  • Lead the design, implementation, and enrichment of security use cases based on real-world attack scenarios and the MITRE ATTACK framework.
  • Monitor ongoing threat intelligence and translate findings into actionable detection logic.
  • Respond to and investigate cyber/IT security incidents; assess type and severity of events.
  • Oversee detection capabilities for the 24/7 regional IT Production SOC.
  • Drive continuous improvement of SIEM, SOAR, and operational playbooks.
  • Collaborate with regional and global stakeholders on security monitoring and alert handling.
  • Identify recurring security risks and develop mitigation and process improvement plans.
  • Conduct threat hunting and R&D activities to strengthen the security posture.

Skills

Incident response
Security monitoring
Threat hunting
MITRE ATT&CK
SIEM/SOAR
Linux
Threat modeling

Tools

ELK/Elastic Stack
SOAR platforms

Job description

Keyrus is an international consulting firm, specializing in the integration of data intelligence and Digital solutions. With over 4000 employees spread across 27 countries, Keyrus continues to deliver on such projects to a wide range of clients from various industries including but not limited to Banking/Finance, Healthcare/pharmaceuticals, FMCG, Oil & Gas, and more.

As part of Keyrus’ solution delivery, we are also in a position to recruit and place technical consultants to complement on existing client projects with their expertise. As such, we seek innovative and agile people to support ambitious and forthcoming technological challenges.

About the role

We are hiring on behalf of a leading international financial institution operating across Asia Pacific. This is a key role within the regional Production Security team, embedded in a 24/7 SOC environment. You will strengthen detection capabilities across APAC and contribute to global security use case development and incident response operations.

What you'll do
  • Lead the design, implementation, and enrichment of security use cases based on real-world attack scenarios and the MITRE ATT&CK framework
  • Monitor ongoing threat intelligence and translate findings into actionable detection logic
  • Respond to and investigate cyber/IT security incidents; assess type and severity of events
  • Oversee detection capabilities for the 24/7 regional IT Production SOC
  • Drive continuous improvement of SIEM, SOAR, and operational playbooks
  • Collaborate with regional and global stakeholders on security monitoring and alert handling
  • Identify recurring security risks and develop mitigation and process improvement plans
  • Conduct threat hunting and R&D activities to strengthen the security posture
Must-have requirements
  • 7+ years of experience in cybersecurity incident response
  • 4+ years specifically in security use case design, development, and coding
  • Hands-on experience with SIEM platforms and security incident management
  • Strong knowledge of MITRE ATT&CK framework
  • Good working knowledge of Linux (RedHat/Ubuntu)
  • Experience interpreting security logs and building threat models
Nice to have
  • Experience with ELK/Elastic SIEM stack
  • Java programming knowledge
  • Security certifications: CISSP, OSCP, SANS/GIAC
  • Experience with SOAR platforms
  • Prior experience in financial services or regulated industries
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Incident Responder
Cyber Incident Responder

MIGSO-PCUBED • Singapore

Hybrid
SGD 120,000 - 180,000
Cyber Incident Responder (Python / ELK / Java / SIEM)
Cyber Incident Responder (Python / ELK / Java / SIEM)

Maltem Asia-Pacific • Singapore

On-site
SGD 120,000 - 180,000
Senior Cyber Incident Responder – SOC & Threat Hunting
Senior Cyber Incident Responder – SOC & Threat Hunting

Keyrus • Singapore

On-site
SGD 120,000 - 180,000
Senior Cyber Security Consultant
Senior Cyber Security Consultant

Singtel • Singapore

On-site
Confidential
Cyber Security Resident Engineer - Incident Response & SIEM
Cyber Security Resident Engineer - Incident Response & SIEM

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 100,000
Senior Cyber Incident Responder (Python, ELK, SIEM)
Senior Cyber Incident Responder (Python, ELK, SIEM)

Maltem Asia-Pacific • Singapore

On-site
SGD 120,000 - 180,000
Senior Analyst, Threat Detection and Response
Senior Analyst, Threat Detection and Response

SATS Ltd • Singapore

On-site
SGD 70,000 - 120,000
Senior Analyst, Threat Detection and Response
Senior Analyst, Threat Detection and Response

SATS Ltd. • Singapore

On-site
SGD 110,000 - 140,000
Cybersecurity Consultant
Cybersecurity Consultant

PERCEPT SOLUTIONS PTE. LTD. • Singapore

On-site
SGD 120,000 - 180,000
Cyber Security Resident Engineer
Cyber Security Resident Engineer

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 100,000