Senior Cyber Incident Response Lead | SIEM & Forensics

StarHub

Singapore

On-site

SGD 120,000 - 180,000

Full time

24 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

StarHub is seeking a Senior Incident Response Specialist to monitor, detect and analyse cybersecurity incidents through the SOC platform. You will support end-to-end incident lifecycle from triage to closure, acting as Level 2 incident responder and coordinating with internal teams for resolution.

The role emphasizes refining detection rules, performing log correlation across network, endpoint and cloud, and contributing to post-incident reviews and playbook execution.

Qualifications

  • 2-3 years of experience in a SOC or Incident Response (L2) environment.
  • Intermediate hands-on experience with SIEM platforms (Elastic Stack preferred).
  • Exposure to incident triage, malware analysis, phishing response, and log correlation.
  • Strong understanding of use case creation and MITRE ATT&CK framework mapping.

Responsibilities

  • Monitor alerts generated from the SOC/SIEM and perform initial to intermediate-level investigations.
  • Review and validate security events from multiple log sources and identify legitimate threats.
  • Perform deep-dive investigations for incidents involving malware, phishing, insider threats, and cloud breaches.
  • Assist in detection rule creation and tuning under the guidance of senior incident responders.
  • Use frameworks like MITRE ATT&CK for mapping and improving detection quality.
  • Conduct threat hunting using Elastic Stack and related tools.
  • Collaborate with MSSP, CSIRT, and IT infrastructure teams to ensure timely incident handling.
  • Support incident response reporting, evidence collection, and documentation for compliance and audit.
  • Contribute to automation opportunities in detection and response workflows.
  • Participate in training sessions, simulations, and tabletop exercises to enhance readiness.
  • Responsible for the log source onboarding and managing the continuous logs availability on the SIEM platform.

Skills

SOC experience
Elastic SIEM
Incident triage
Malware analysis
Phishing response
Log correlation
MITRE ATTCK
Communication skills
Documentation
Threat intel

Education

CEH
CompTIA Security+
GCIA
Elastic Certified Analyst

Tools

EDR
NDR
SOAR
Threat intel feeds
Elastic Stack

Job description

StarHub is seeking a Senior Incident Response Specialist to monitor, detect and analyse cybersecurity incidents through the SOC platform. You will support end-to-end incident lifecycle from triage to closure, acting as Level 2 incident responder and coordinating with internal teams for resolution.

The role emphasizes refining detection rules, performing log correlation across network, endpoint and cloud, and contributing to post-incident reviews and playbook execution.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Incident Response Specialist
Senior Incident Response Specialist

StarHub • Singapore

On-site
SGD 120,000 - 180,000
Senior Cybersecurity Operations & Incident Response Lead
Senior Cybersecurity Operations & Incident Response Lead

StarHub • Singapore

On-site
SGD 90,000 - 130,000
Senior Cybersecurity Operations & Incident Response Lead
Senior Cybersecurity Operations & Incident Response Lead

Starhub Ltd • Singapore

On-site
SGD 90,000 - 150,000
Enterprise Cybersecurity Incident Response Lead
Enterprise Cybersecurity Incident Response Lead

Singtel • Singapore

On-site
Confidential
Cyber Security Resident Engineer - Incident Response & SIEM
Cyber Security Resident Engineer - Incident Response & SIEM

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 100,000
Senior Cyber Incident Responder: SIEM & Threat Hunting Lead
Senior Cyber Incident Responder: SIEM & Threat Hunting Lead

Infrasoft Technologies Limited • Singapore

On-site
SGD 120,000 - 180,000
Senior Cyber Security Incident Response Lead
Senior Cyber Security Incident Response Lead

Singtel Group • Singapore

On-site
SGD 120,000 - 180,000
Senior Cyber Incident Response & Detection Engineer
Senior Cyber Incident Response & Detection Engineer

AMARIS GROUP SA • Singapore

On-site
SGD 80,000 - 120,000
Robust training system with 250+ modules
Vibrant workplace events
Focus on sustainability and community impact
Senior Incident Response & Threat Hunting Lead
Senior Incident Response & Threat Hunting Lead

Forensic Focus Limited • Singapore

On-site
SGD 138,000 - 158,000
Senior Incident Response & SOC Compliance Lead
Senior Incident Response & SOC Compliance Lead

PwC Singapore • Singapore

On-site
SGD 60,000 - 80,000
Work visa sponsorship
Training programs
Dynamic team environment