Sentinel Security Operations Lead: Detection & IR

EPAM

Singapore

On-site

SGD 120,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Great Place to Work Certification 2023
Global collaboration with top talent
Transparent career path
Upskilling and certification programs

Job summary

EPAM is seeking a Security Operations Lead in Singapore to strengthen detection and incident response for a lean hedge fund environment. You will own Sentinel tuning, triage escalations with an outsourced SOC/MDR partner, and drive secure operations through defined playbooks and reporting.

You will coordinate across endpoints, identity, network and cloud, improving signal quality and reducing false positives while mentoring a Security Operations Analyst and ensuring audit-ready processes.

Qualifications

  • Experience leading security operations in a hands-on capacity.
  • Strong background in Microsoft Sentinel including rule tuning, workbooks, hunting and detection engineering.
  • Hands-on experience with Defender for Endpoint and Defender for Cloud.
  • Experience managing outsourced SOC/MDR services including escalations and governance.
  • Knowledge of incident response practices including severity assessment and post-incident reviews.
  • Experience with Jira Service Management and end-to-end ticket lifecycle ownership.
  • Understanding of Vulnerability Management including scanning, remediation tracking and patch governance.
  • Ability to translate operational metrics into management-ready reporting.

Responsibilities

  • Own Microsoft Sentinel detections including analytics rules, workbooks and KQL queries.
  • Lead day-to-day SOC and incident operations with an outsourced SOC/MDR vendor including SLAs and escalations.
  • Validate log source coverage across endpoints, identity, network, cloud and critical systems.
  • Triage and coordinate incident response from assessment through containment, remediation and closure in Jira.
  • Improve signal quality by reducing false positives and tracking MTTD/MTTR.
  • Run post-incident reviews and update detections, runbooks and incident response playbooks.
  • Own vulnerability scanning cadence, maintain remediation register and track patching against SLAs.
  • Mentor and support the Security Operations Analyst while building repeatable, audit-ready processes.

Skills

Security operations leadership
Microsoft Sentinel
Sentinel rule tuning
KQL queries
Defender for Endpoint
Defender for Cloud
Outsourced SOC/MDR governance
Incident response awareness
Metrics reporting
Communication of metrics

Tools

Jira Service Management
Microsoft Defender for Endpoint
Microsoft Defender for Cloud

Job description

EPAM is seeking a Security Operations Lead in Singapore to strengthen detection and incident response for a lean hedge fund environment. You will own Sentinel tuning, triage escalations with an outsourced SOC/MDR partner, and drive secure operations through defined playbooks and reporting.

You will coordinate across endpoints, identity, network and cloud, improving signal quality and reducing false positives while mentoring a Security Operations Analyst and ensuring audit-ready processes.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Security Systems Engineer (Microsoft Sentinel)
Lead Security Systems Engineer (Microsoft Sentinel)

EPAM • Singapore

On-site
SGD 120,000 - 180,000
Great Place to Work Certification 2023
Global collaboration with top talent
Transparent career path
+1
Senior SOC Analyst — MITRE ATT&CK Driven Detection
Senior SOC Analyst — MITRE ATT&CK Driven Detection

ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. • Singapore

On-site
SGD 70,000 - 95,000
Cyber Security Resident Engineer - Incident Response & SIEM
Cyber Security Resident Engineer - Incident Response & SIEM

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 100,000
Chief of Security Operations & SIEM
Chief of Security Operations & SIEM

EAMES CONSULTING GROUP (SINGAPORE) PTE. LTD. • Singapore

On-site
SGD 180,000 - 300,000
Security Engineer: Incident Response & Threat Hunting
Security Engineer: Incident Response & Threat Hunting

NCS Group • Singapore

On-site
SGD 90,000 - 130,000
Senior SOC Analyst - MITRE Threat Hunting & IR
Senior SOC Analyst - MITRE Threat Hunting & IR

Ensign InfoSecurity • Singapore

On-site
SGD 90,000 - 150,000
Senior Cyber Incident Response & Detection Engineer
Senior Cyber Incident Response & Detection Engineer

AMARIS GROUP SA • Singapore

On-site
SGD 80,000 - 120,000
Senior Security Engineer, SIEM/EDR & AI SecOps
Senior Security Engineer, SIEM/EDR & AI SecOps

SEA Singapore • Singapore

On-site
SGD 120,000 - 180,000
Senior SOC & Incident Response Leader
Senior SOC & Incident Response Leader

NETWORK FOR ELECTRONIC TRANSFERS (SINGAPORE) PTE LTD • Singapore

On-site
SGD 120,000 - 180,000
Cyber Security Resident Engineer
Cyber Security Resident Engineer

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 100,000