Senior Security Engineer

Webot

Singapore

On-site

SGD 120,000 - 180,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Webot is seeking a Workplace Security Engineer to design, implement, and continuously improve security controls across identity, endpoint, and data protection. You will own key security platforms and collaborate with IT, Cloud, and Compliance teams to meet financial industry security requirements.

Responsibilities span identity engineering, zero trust, endpoint security, DLP, vulnerability governance, and security automation.

Qualifications

  • 5+ years in security engineering / IT security with hands-on implementation experience.
  • Proficient in at least one programming/scripting language (Python, Go, or PowerShell/Bash) with a track record of building tools or automation.
  • Solid understanding of RESTful APIs, JSON/YAML processing, and Git.
  • Experience with Infrastructure as Code (Terraform) applied to security architecture is a strong plus.
  • Deep experience in at least two of the following: IAM/SSO, Endpoint security, Zero Trust / VPN / SASE, Windows/macOS troubleshooting, networking, audits.

Responsibilities

  • Identity & Access Engineering: design secure identity architecture across Google Workspace and AWS IAM Identity Center.
  • Zero Trust / Remote Access Engineering: optimize remote access and ZTNA/SASE.
  • Endpoint Security Engineering: enforce endpoint baselines and device posture.
  • Data Security & DLP Engineering: tune data protection controls and DLP rules.
  • Vulnerability & Patch Governance: triage vulnerabilities and define SLAs.
  • Security Monitoring, Incident Response & Improvement: enhance alerting and runbooks.
  • Security Automation & Tooling: build tools and automate tasks with Python/Go.
  • Documentation & Audit Readiness: create runbooks and evidence pipelines.

Skills

Python
Go
PowerShell/Bash

Tools

Git
Terraform
Jamf
Apple Business Manager
Cortex XDR

Job description

We are looking for a Workplace Security Engineer to design, implement, and continuously improve corporate security controls across identity, endpoint, network access (VPN/ZTNA), and data protection. You will be the technical owner for key security platforms and work with IT, Cloud, and Compliance teams to meet financial industry security requirements.

Key Responsibilities
1) Identity & Access Engineering
  • Own secure identity architecture across Google Workspace and AWS IAM Identity Center:
  • Design group/role models, least privilege, and access governance processes.
  • Improve SSO posture (SAML/OAuth), session policies, MFA enforcement, conditional access patterns where applicable.
  • Lead onboarding of new SaaS apps into SSO and define standard patterns (SAML attributes, role mapping, break-glass access).
2) Zero Trust / Remote Access Engineering
  • Own and optimize enterprise remote access and ZTNA/SASE through: Prisma Access / GlobalProtect; Prisma ZTNA / Prisma SASE; Google BeyondCorp (where applicable)
  • Work with network teams on policy design, segmentation, and logging requirements.
3) Endpoint Security Engineering
  • Define and enforce endpoint security baselines and compliance through: Jamf Pro + Apple Business Manager; Google Endpoint Management; Palo Alto Cortex XDR
  • Drive improvements in device posture: encryption, OS baseline, EDR coverage, hardening, local admin controls.
4) Data Security & DLP Engineering
  • Design and tune data protection controls through: Google Workspace DLP, Prisma Cloud DLP
  • Define data classification patterns, DLP rules/exception workflows, and measurable reduction in risky exfiltration events.
5) Vulnerability & Patch Governance
  • Own vulnerability scanning results triage, risk rating, remediation tracking, and verification.
  • Define patch SLAs, exception workflows, and reporting; coordinate with IT/Ops/R&D teams (execution may be performed by owning teams).
6) Security Monitoring, Incident Response & Continuous Improvement
  • Improve alerting quality and detection coverage across IAM/endpoint/network/DLP telemetry.
  • Lead investigations for escalated incidents, produce incident reports and post-incident improvements (runbooks, control changes).
7) Security Automation & Tooling
  • Design, develop, and maintain custom security tools, scripts, and API integrations to bridge gaps between disparate security platforms.
  • Automate routine engineering tasks, compliance checks, and incident response workflows using SOAR tools or custom code (Python/Go).
8) Documentation & Audit Readiness
  • Build security standards, runbooks, and audit evidence pipelines for access control, remote access, endpoint protection, and DLP.
Qualifications
  • 5+ years in security engineering / IT security with strong hands-on implementation experience.
  • - Proficient in at least one programming/scripting language (Python, Go, or PowerShell/Bash) with a track record of building tools or automation.
  • Solid understanding of RESTful APIs, JSON/YAML processing, and version control systems (Git).
  • Experience with Infrastructure as Code (Terraform) applied to security architecture is a strong plus.
  • Deep experience in at least two of the following:
  • IAM/SSO (Google Workspace / AWS IAM Identity Center, SAML/OAuth)
  • Endpoint security (Jamf/ABM, EDR—Cortex XDR)
  • Zero Trust / VPN / SASE (Prisma Access/GlobalProtect, Prisma ZTNA/SASE, BeyondCorp)
  • Strong troubleshooting skills across Windows/macOS, and solid networking fundamentals.
  • Experience supporting audits and producing evidence in regulated environments is a strong plus.
Nice to Have
  • Scripting/automation (Python, Bash), IaC mindset, good operational excellence.
  • Relevant certs: Palo Alto (PCNSA/PCNSE), Jamf certs, Google Workspace admin, AWS security.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal Cybersecurity Engineer
Principal Cybersecurity Engineer

NETS • Singapore

On-site
SGD 180,000 - 240,000
Security Engineer (Contract)
Security Engineer (Contract)

Charterhouse Pte Ltd • Singapore

On-site
SGD 90,000 - 150,000
Staff Product Security Engineer
Staff Product Security Engineer

Airwallex • Singapore

On-site
SGD 120,000 - 180,000
Principal/Lead Cybersecurity Specialist
Principal/Lead Cybersecurity Specialist

CAPGEMINI SINGAPORE PTE. LTD. • Singapore

Hybrid
SGD 180,000 - 260,000
Head of Security Engineering & Architecture- FS (SG/India)- 10k
Head of Security Engineering & Architecture- FS (SG/India)- 10k

Argyll Scott Singapore • Singapore

On-site
SGD 180,000 - 280,000
Security Engineer
Security Engineer

SGB • Singapore

On-site
SGD 90,000 - 140,000
Cybersecurity Consultant, Network Security (Contract)
Cybersecurity Consultant, Network Security (Contract)

Singtel Group • Singapore

On-site
SGD 75,000 - 95,000
Security Engineer
Security Engineer

SISTIC.com Pte Ltd • Singapore

On-site
SGD 90,000 - 150,000
Senior Security Engineer, Enterprise SaaS Security
Senior Security Engineer, Enterprise SaaS Security

Google • Singapore

On-site
SGD 180,000 - 300,000
Senior Security Engineer, Enterprise SaaS Security
Senior Security Engineer, Enterprise SaaS Security

Google India • Singapore

On-site
SGD 80,000 - 120,000