Senior Security Engineer

Bond Financial Group

Singapore

On-site

SGD 120,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Bond Financial Group is seeking a Senior Security Engineer to implement and operate the organisation's security controls and tooling, reporting to the Information Security Lead. The role supports IAM administration and contributes to the ISO 27001:2022 certification programme.

You will perform security operations, coordinate with the SoC and MSSP, and help produce and track control evidence for audits and certifications. On‑call coverage for 24x7 incident response is required.

Qualifications

  • 8+ years of information security experience in a production environment.
  • Incident response, containment, and post‑incident reviews.
  • Experience administering IAM platforms (SSO, MFA, PAM) and security tooling.
  • Experience with MSSPs and penetration testing; ISO 27001:2022 exposure preferred.
  • MAS TRM Guidelines familiarity is a bonus.

Responsibilities

  • Operate and tune security monitoring, detection, and alerting; triage and investigate events per runbooks.
  • Lead containment and remediation during incidents; draft post‑mortem findings and track remediation.
  • Coordinate with SoC and MSSP; validate findings from tests and drive remediation.
  • Implement ISO 27001:2022 controls and collect audit evidence; maintain control documentation.
  • On‑call availability to support 24x7 incident response coverage.

Skills

IAM platforms
Cloud security
SIEM operations
Email security
Vulnerability management
ISO 27001

Education

Bachelor's degree in Information Security or Computer Science

Tools

Okta
Azure AD
CyberArk
BeyondTrust
AWS
SIEM
Email security gateways

Job description

The Senior Security Engineer is a hands‑on security engineer responsible for implementing and operating the organisation's security controls and tooling. Reporting to the Information Security Lead, this roleexecutes security operations, supports IAM administration, and produces control evidence for the ISO 27001:2022 certification programme.

Key Responsibilities
Security Operations
  • Operate and tune security monitoring, detection, and alerting; triage and investigate security events, escalating per defined runbooks.
  • Lead technical containment and remediation during security incidents; draft post‑mortem findings and track remediation to closure.
  • Coordinate day-to-day with the SoC team and MSSP; validate findings from penetration tests and vulnerability scans and drive remediation.
Identity, Access and Platform Security
  • Administer IAM controls including SSO, MFA, and PAM; execute user provisioning, deprovisioning, and periodic access reviews.
  • Operate and maintain email security gateways and endpoint protection platforms.
  • Support secure development reviews against OWASP standards and assist with security architecture reviews and threat modelling.
Compliance and Support
  • Implement ISO 27001:2022 controls and collect audit evidence; maintain control documentation and support surveillance audits.
  • Contribute to policy reviews with findings from operations and the evolving threat landscape.
  • On‑call availability is required to support 24x7 incident response coverage.
Requirements
Experience
  • 8+ years of progressive information security experience with hands‑on security operations in a production environment.
  • Proven experience in incident response, containment, and post‑incident reviews.
  • Experience administering IAM platforms (SSO, MFA, PAM) and security tooling.
  • Experience working with MSSPs and penetration testing firms; ISO 27001:2022 and regulated industry exposure preferred.
  • Familiarity with MAS Technology Risk Management (TRM) Guidelines is a bonus.
Technical Skills
  • IAM platforms: SSO (e.g. Okta, Azure AD or equivalent), MFA, PAM (e.g. CyberArk, BeyondTrust, or equivalent)
  • Cloud security: security hardening, configuration review, and monitoring of cloud environments (AWS preferred)
  • Security monitoring, SIEM, and detection/alerting operations
  • Email security gateways and endpoint protection platforms
  • Vulnerability management and remediation tracking
  • ISO 27001:2022 control implementation and evidence collection
Qualifications
  • Bachelor's degree or higher in Information Security, Computer Science, or a related discipline.
  • CISSP, CISM, or GIAC certifications preferred.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

kwe-apll technology services pte. ltd. • Singapore

On-site
SGD 120,000 - 180,000
Senior Engineer, Security Operations
Senior Engineer, Security Operations

kwe-apll technology services pte ltd • Singapore

On-site
SGD 120,000 - 180,000
Senior Information Security Officer
Senior Information Security Officer

phillip securities pte ltd • Singapore

On-site
SGD 120,000 - 180,000
Security Engineer, Intelligent Platforms
Security Engineer, Intelligent Platforms

NCS Group • Singapore

On-site
SGD 90,000 - 130,000
Senior / Security Engineer / IAM Engineer / Enterprise Tools & Observability Engineer (Ref 26505)
Senior / Security Engineer / IAM Engineer / Enterprise Tools & Observability Engineer (Ref 26505)

JOBLINE RESOURCES PTE. LTD. • Singapore

On-site
SGD 90,000 - 150,000
Security Engineer
Security Engineer

China Telecom Asia Pacific • Singapore

On-site
SGD 90,000 - 120,000
Cyber Defense Lead
Cyber Defense Lead

Univers Invest • Singapore

On-site
SGD 200,000 - 300,000
Engineer/Senior Engineer, Networks and Security
Engineer/Senior Engineer, Networks and Security

Y3 TECHNOLOGIES PTE LTD • Singapore

On-site
SGD 60,000 - 90,000
Principal Cybersecurity Engineer
Principal Cybersecurity Engineer

NETS • Singapore

On-site
SGD 180,000 - 240,000
Security Engineer (Ref 26008)
Security Engineer (Ref 26008)

JOBLINE RESOURCES PTE. LTD. • Singapore

On-site
SGD 90,000 - 130,000