Senior Engineer, Security Operations

kwe-apll technology services pte ltd

Singapore

On-site

SGD 120,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

kwe-apll technology services pte ltd in Singapore seeks a Senior Security Engineer to defend the organization against cyber threats through proactive threat detection, intelligence gathering, vulnerability and risk management. You will lead incident scoping, coordinate remediation, and drive improvements across security operations.

The role requires deep technical expertise, leadership, and a strong understanding of cloud and identity security, with hands-on experience in MITRE ATT&CK, SIEM,

Qualifications

  • Bachelor's degree in Cybersecurity/IT/CS and 10+ years in IT with 7+ in security operations, threat hunting or cyber threat management.
  • Must possess CCSP certification; preferred: SC-200, AZ-500, CISSP, GIAC, OSCP.
  • Expert-level knowledge of cloud, identity, email and SaaS attack vectors.
  • Advanced scripting (PowerShell, KQL, Python) and automation experience.
  • Strong familiarity with MITRE ATT&CK, threat modeling and incident response.
  • Extensive experience with security tooling including SIEM, EDR, MDR, SOAR; familiarity with Mimecast, Defender XDR, and SIEM ecosystems.

Responsibilities

  • Oversee advanced investigation and proactive threat operations in Security Operations.
  • Own incident scoping, telemetry correlation, threat hunting and intelligence-driven prioritization.
  • Coordinate remediation with IT/app teams and drive secure operational changes.
  • Lead external attack surface management and automate network security controls.
  • Develop SOPs for threat hunting, vulnerability remediation and incident response.
  • Drive automation and integration of security tools and workflows, including AI-enabled processes.
  • Create and tune detection rules using hunt findings and threat intelligence to improve defenses.

Skills

Threat hunting
Security operations
Automation scripting
Incident response
Threat intelligence
Cloud security
MITRE ATT&CK
SOP development

Education

Bachelor’s degree in Cybersecurity/Information Technology/Computer Science

Tools

Microsoft Sentinel
Defender XDR
M365 security stack
SentinelOne
Tenable
SIEM
EASM tools
Mimecast

Job description

Currently seeking a highly qualified, skilled and motivated Senior Security Engineer to join our Information Security Operations, Cyber Threat Management Team. This role is critical in defending the organization against Cyber threats through proactive threat detection, intelligence gathering, vulnerability and risk management. The ideal candidate will bring deep technical expertise, strategic thinking, and leadership to drive continuous improvement in our security posture, with a strong understanding of the supply chain and logistics industry.

Key Responsibilities

As a seasoned professional your key responsibilities will entail overseeing advanced investigation and proactive threat operations. You will own deep incident scoping, correlation across telemetry sources, threat hunting and intelligence-driven prioritization, operational remediation coordination with IT/app teams, and controlled execution of operational security changes to reduce risk, dwell time, and business impact.

Security Intelligence & Threat Management
  • Lead and/or oversee the development and execution of security intelligence programs to identify emerging threats and attack vectors.
  • Oversee threat management activities including threat hunting and analysis of advanced persistent threats (APTs).
  • Collaborate with internal and external stakeholders to enrich threat intelligence feeds and apply contextual analysis.
Vulnerability Management
  • Manage the end-to-end vulnerability and risk management lifecycle, including identification, assessment, prioritization, remediation, and reporting.
  • Utilize and manage core security tools (SIEM, EDR, MDR, SOAR platforms), identify opportunities for automation of routine tasks, and implement security controls to safeguard infrastructure.
External Attack Surface Management
  • Monitor and assess the organization’s external digital footprint to identify exposed assets and potential attack vectors.
  • Assess security implications of common ports (e.g., 443 (HTTPS), 22 (SSH), 3389 (RDP), 53 (DNS), 445 (SMB)) and automate network security controls.
  • Work on firewall rule reviews, segmentation strategies, and security policy enforcement.
  • Implement tools and processes to continuously discover, classify, and secure internet-facing assets.
  • Coordinate incident response and containment efforts to minimize impact and ensure timely recovery.
Operational Leadership
  • Develop and maintain standard operating procedures (SOPs) for threat hunting, vulnerability remediation, IOC investigation and incident response.
  • Drive automation and integration of security tools, Incident & Change Mgmt Workflows, adoption of Artificial Intelligence technologies to improve operational efficiency as needed.
Reporting & Metrics
  • Ability to create, refine, and implement new detection rules and signatures based on hunt findings and new threat intelligence to improve automated defenses.
  • Analyze large datasets and correlate information from disparate sources (endpoints, cloud environments, network traffic) to identify suspicious patterns and anomalies indicative of attacker tactics, techniques, and procedures (TTPs).
Qualifications
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or equivalent experience
  • 10+ years of experience in Information Technology, with at least 7+ years in Security Operations, Threat Hunting, or Cyber Threat Management
  • Must possess CCSP certification; preferred certifications (level-appropriate): SC-200, AZ-500, CISSP, GIAC (GCIH, GCIA, GCED), OSCP
  • Expert-level Microsoft Sentinel (KQL), Defender XDR, and M365 security stack knowledge
  • Strong understanding of cloud, identity, email, and SaaS attack vectors
  • Advanced scripting and automation (PowerShell, KQL, Python)
  • Strong knowledge of threat intelligence platforms including Mimecast, SentinelOne, Tenable, SIEM, EASM tools, and vulnerability management solutions.
  • Experience with MITRE ATT&CK framework, threat modeling, and incident response.
  • Thorough understanding of Industry Standards & Best practices in Networking, IAM, Endpoint, IOT, Infra & App Security, Email & Brand Protection, Asset & Data Protection
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

kwe-apll technology services pte. ltd. • Singapore

On-site
SGD 120,000 - 180,000
Security Engineer - Cyber Threat Management
Security Engineer - Cyber Threat Management

KWE-APLL Technology Services Pte Ltd • Singapore

On-site
SGD 120,000 - 180,000
Senior Engineer, Security Operations
Senior Engineer, Security Operations

Michael Page International Pte Ltd • Singapore

On-site
SGD 150,000 - 230,000
Senior Engineer, Security Operations
Senior Engineer, Security Operations

Michael Page • Singapore

On-site
SGD 120,000 - 180,000
Professional development
Certifications support
Exposure to AI-powered security tools
+3
Senior Information Security Officer
Senior Information Security Officer

phillip securities pte ltd • Singapore

On-site
SGD 120,000 - 180,000
Cyber Incident Responder
Cyber Incident Responder

Amaris Consulting • Singapore

On-site
SGD 90,000 - 130,000
Senior Cyber Security Consultant
Senior Cyber Security Consultant

Singtel • Singapore

On-site
Confidential
Security Engineer
Security Engineer

China Telecom Asia Pacific • Singapore

On-site
SGD 90,000 - 120,000
Senior / Cybersecurity & Governance Executive
Senior / Cybersecurity & Governance Executive

Singapore LNG Corporation Pte Ltd • Singapore

On-site
SGD 90,000 - 180,000
Senior Security Engineer
Senior Security Engineer

Bond Financial Group • Singapore

On-site
SGD 120,000 - 180,000