Senior Detection & Response Engineer (APAC)

Sopra Steria

Singapore

Hybrid

SGD 120,000 - 180,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Health & insurance
Annual bonus
Training programs & certification
Hybrid working model
Team-building & social events

Job summary

Sopra Steria APAC is seeking an experienced Security Incident Response professional to lead usecase design, threat hunting and incident investigations within a 24/7 SOC. You will leverage MITRE ATT&CK, ELK stack and SIEM practices to strengthen detection and response across regional IT Production Security operations.

You will coordinate with APAC stakeholders to improve processes, playbooks and incident reporting while maintaining high security posture and regulatory compliance.

Qualifications

  • Minimum 7+ years of experience as a security professional.
  • Experience in security usecase design and development with Java.
  • Strong Linux (RedHat/Ubuntu) knowledge and log interpretation for threat modeling.

Responsibilities

  • Lead security usecase definition, design, implementation and enrichment for the 24/7 SOC.
  • Respond to cyber/IT security incidents; assess type and severity of events.
  • Identify recurring security issues and mitigate risks with stable processes.
  • Collaborate with global/regional/local stakeholders for efficient detection and response.
  • Improve SOC framework through policy and playbook reviews and audits.

Skills

Security incident response
Security usecase design
Java
Linux
SIEM
Threat hunting
Data analysis
Automation mindset
English communication

Education

Bachelor's degree in IT/CS
Security credentials (CISSP/OSCP/SANS)

Tools

ELK stack
Scripting languages (Python/PowerShell/Bash/SQL)

Job description

Company Description

Sopra Steria is a listed European technology leader specializing in Consulting, Digital Services, and Software. With over 51,000 employees worldwide across Europe, North America and Asia, the Group supports organizations in driving their digital transformation and delivering sustainable business value.

Company Description

Sopra Steria is a listed European technology leader specializing in Consulting, Digital Services, and Software. With over 51,000 employees worldwide across Europe, North America and Asia, the Group supports organizations in driving their digital transformation and delivering sustainable business value. In Asia Pacific, Singapore serves as the regional headquarter for Sopra Steria’s Infrastructure, Cloud and Cybersecurity services.

Job Description
  • Lead technical activities (security usecase definition, design, implementation & enrichment) in the team of IT Production Security Investigation & Incident Response based on real-world attack scenarios and framework like MITRE ATT&CK, ensuring robust security detection posture across various layers.
  • Understand ongoing security threats in the wild and propose security usecase to detect and when possible, protect or mitigate.
  • Be autonomous on technical activities (definition, R&D/threat hunting) in the team of IT Production Security Investigation & Incident Response and oversee the detection capabilities of the 24/7 regional IT Production SOC
  • Respond to Cyber / IT security incidents and evaluates the type and severity of security events.
  • Identify recurring security issues and risks and develops mitigation plans and recommends process improvements.
  • Partner with global, regional and local stakeholders to ensure organizational and procedural efficiency and readiness for detection of suspicious events and reaction
  • Continuously improve the processes to strengthen the current SOC framework via review of policies and operational playbooks
Contributing Responsibilities
  • Partner with the APAC Business CSIRT for integrated security monitoring and alert/incident handling operations.
  • Contribute to local security incident response outside the direct scope of responsibilities (i.e.,local IT production in some APAC business entities)
  • Contribute to the Bank compliance with regulatory requirements and internal policies
  • Contribute to the reporting of all incidents according to the Incident Management System
  • Contribute to the control frameworks in day‑to‑day business activities, such as Control Plan;
  • Participate to Audit interview and provide the require evidence
Qualifications

Technical Requirements:

  • Requires a minimum of 7 or more years of experience as security professional
  • Experience in security usecase design/development with understanding of Java language.
  • Good working knowledge of Linux (RedHat/Ubuntu).
  • Working knowledge to interpret security logs or instructions into threat models. SecOPS-DevOPS mindset & skills.
  • Experience and knowledge in investigating incidents, remediation, tracking and follow-up for incident closure with concerned teams, stakeholders.
  • Thorough understanding of technologies and security concepts, with knowledge & hands on experience in SIEM Product and Security Incident Management
  • Experience on incident response activities (threat hunting, event analysis, incident investigation, reporting)
  • Comfortable working with and making the most of large data sets (collection, analysis, response), creating content/use cases/models and bringing an automation mindset.
Personal Attributes
  • Strong problem-solving skills
  • Good communication skills (English is MUST, French is added advantage)
  • Positive attitude, willing to upskill and carry out in-depth troubleshooting
  • Has the ability to work autonomously and think on feet, be-proactive.
  • Good interpersonal skills and team player
  • High energy level coupled with a desire to take on responsibility
  • Able to multi-task & deliver within agreed deadlines.
Qualifications
  • Candidate MUST have 7 or more years of experience on overall cybersecurity incident response with 4+ years specifically on security usecase design, development, coding.
  • Experience in SIEM on ELK(Elastic Logstash Kibana) stack is a plus
  • Professional credentials in one of the relevant IT Security disciplines is a plus (SANS / CISSP / OSCP)
  • Experience in common scripting languages such as Python, PowerShell, Bash, SQL is a plus
Additional Information
  • Work-life balance: Hybrid working mode and Work-from-Abroad benefits, 18 days of Annual leave
  • Health & insurance: Comprehensive coverage including General Practitioner, hospitalization, dental, and optical
  • Performance incentives: Annual bonus based on individual performance
  • Learning & development: Training programs, certification opportunities, and training incentives to support career growth
  • Team culture: Regular team-building activities and social events
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Incident Responder
Cyber Incident Responder

MIGSO-PCUBED • Singapore

Hybrid
SGD 120,000 - 180,000
Cybersecurity Consultant
Cybersecurity Consultant

Sopra Steria USA • Singapore

Hybrid
SGD 90,000 - 150,000
Hybrid working mode
18 days annual leave
Health & insurance coverage
+3
APAC Detection & Response Lead (SOC Engineer)
APAC Detection & Response Lead (SOC Engineer)

Sopra Steria • Singapore

Hybrid
SGD 120,000 - 180,000
Health & insurance
Annual bonus
Training programs & certification
+2
Detection Engineer/Cyber Incident Responder (SOC)
Detection Engineer/Cyber Incident Responder (SOC)

Amaris Consulting • Singapore

On-site
SGD 140,000 - 190,000
Senior Security Engineer (Elastic Stack)
Senior Security Engineer (Elastic Stack)

Sopra Steria • Singapore

On-site
SGD 120,000 - 160,000
Hybrid working mode
18 days annual leave
Health insurance
+3
Cybersecurity Team Lead Consultant
Cybersecurity Team Lead Consultant

Sopra Steria • Singapore

Hybrid
SGD 140,000 - 190,000
Health insurance
Annual bonus based on performance
Training & certifications exposure
+1
Senior Security Analyst
Senior Security Analyst

Ll Oefentherapie • Singapore

On-site
SGD 90,000 - 150,000
Senior Security Operations Program Manager
Senior Security Operations Program Manager

Securitas Group • Singapore

Hybrid
SGD 180,000 - 240,000
Global exposure
Travel opportunities
Competitive benefits
Senior Analyst, Threat Detection and Response
Senior Analyst, Threat Detection and Response

SATS Ltd. • Singapore

On-site
SGD 90,000 - 150,000
Cyber Security Resident Engineer - Incident Response & SIEM
Cyber Security Resident Engineer - Incident Response & SIEM

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 100,000