Vice President, Threat Detection Engineer

Singapore Exchange Limited

Singapore

On-site

SGD 230,000 - 350,000

Full time

29 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Singapore Exchange Limited in Singapore seeks Senior Vice President/ Vice President (Information Security) to lead and enhance detection capabilities across the technology landscape. The Threat Detection Engineer will design, tune, and maintain detection rules across SIEM, EDR, NDR and cloud platforms to identify threats and reduce false positives, enabling rapid incident response.

The role collaborates closely with SOC, Incident Response, Threat Intelligence, Security Engineering, and IT teams,

Qualifications

  • 10–15 years of relevant experience, preferably in financial services or asset management, with ≥5 years in cybersecurity platforms.
  • In-depth knowledge of information security policy and principles.
  • Familiar with MAS guidelines such as Technology Risk Management Guidelines and Cyber Hygiene.

Responsibilities

  • Design, develop, and maintain security detection rules across SIEM, EDR, NDR, and cloud platforms.
  • Create detection logic based on threat actor TTPs and MITRE ATT&CK mappings.
  • Develop behavioral analytics and anomaly detection models.
  • Tune detections to improve coverage and reduce false positives.
  • Collaborate with SOC, Incident Response, Threat Intelligence, and IT teams.
  • Automate detection workflows using SOAR platforms and enable rapid response.

Skills

Threat detection
SIEM
EDR
NDR
Threat hunting
MITRE ATT&CK
SOAR
Cloud security

Tools

SIEM
EDR
NDR
SOAR
XDR

Job description

Select how often (in days) to receive an alert:

Vice President, Threat Detection Engineer

Location:
Singapore, SG

Unit: Technology

Requisition ID: 3436

Job Summary

SGX is seeking Senior Vice President/Vice President (Information Security) lead and enhanced our detection capabilities. The Threat Detection Engineer is responsible for designing, developing, tuning, and maintaining cybersecurity detection capabilities across the organization's technology landscape.

This role focuses on identifying malicious activity, improving detection coverage, reducing false positives, and enabling rapid incident response through the deployment of advanced detection rules, analytics, and threat-hunting techniques. Working closely with Security Operations (SOC), Incident Response, Threat Intelligence, Security Engineering, and IT teams, the Threat Detection Engineer continuously enhances the organization's ability to detect and respond to cyber threats.

The candidate will possess strong technical expertise in security detection, relevant platforms, hands‑on operational experience, and an engineering mindset focused on improving our speed to react. He/she must demonstrate ability to think strategically about SGX business and operations challenges and possess a keen eye for control improvement through innovative use of technology. The candidate also needs to manage both internal and external customers well, drive discussions with senior management, and have a sound process and technical background to engage the Technology teams.

Job Responsibilities

Detection Engineering

Design, develop, and maintain security detection rules and use cases across and not limited to SIEM, EDR, NDR, and cloud security platforms.

Create detection logic based on known threat actor tactics, techniques, and procedures (TTPs).

Develop behavioral analytics and anomaly detection models.

Map detections to MITRE ATT&CK | MITRE ATLAS framework techniques.

Continuously tune detection rules to improve effectiveness and reduce false positives.

Analyze emerging threats, vulnerabilities, and attack trends.

Translate threat intelligence into actionable detection content.

Assess detection coverage against evolving cyber threats.

Identify gaps in monitoring and recommend improvements.

Work with respective team to develop hypotheses and supporting detection content.

Collaborate with threat hunters to identify previously unknown threats.

Convert successful threat-hunting findings into permanent detections.

Improve event correlation and alerting strategies.

Security Automation

Develop automated detection workflows using SOAR platforms.

Automate enrichment, triage, and response activities.

Detection validation

Perform adversary emulation and detection testing.

Conduct purple-team exercises with offensive security teams.

Validate detection effectiveness through attack simulation.

Measure detection coverage and effectiveness metrics.

Integrate security tools with other systems (e.g., SIEM, ticketing platforms, CMDB, SOAR) to enable automation and improve operational synergy.

Direct, drive process and documentation improvement in platform operations, escalation procedures, and workflows.

Work closely with Engineering, Infrastructure, Cloud, and SOC teams to ensure deployment of detection logics.

Work with internal stakeholders to ensure tools outputs support detection use cases, incident response, audits, and compliance programs.

Sense of urgency for all urgent and important matters and accountable to decision made

Clear vision in mind to innovate and streamline the operations processes and detection ability defined by the organisation.

Passion to deliver sustainable solutions and continued improvement in control and risk mitigation.

Good discipline in timely submission and reporting key metrics and status.

Job Requirements

At least 10 to 15 years of relevant experience, preferably in financial services or asset management industries, with a minimum of 5 years in cybersecurity platforms.

In‑depth knowledge and experience in information security policy and principles.

Experience in MAS technology related guidelines such as Technology Risk Management Guidelines, Cyber Hygiene, Outsourcing guidelines etc.

Strong technical knowledge of common security tools (e.g., EDR, SIEM, SOAR, XDR, email security, vulnerability management, cloud security).

Experience tuning detection rules, configuring integrations, and conducting process enhancement.

Demonstrate ability to operate in diverse environments and cultures and enjoys working in challenging and fast-paced environment.

Self‑initiated, meticulous, versatile, analytical and inquisitive.

Strong communication and presentation skills to wide and diverse audiences.

Preferred Skills:

Certifications such as CISSP, CISM, GIAC GCIA/GSEC, Microsoft Security certifications, or equivalent.

Experience with security platforms, Endpoint security, Cloud security, detection technologies, analytics & query languages, operating systems and security frameworks (e.g. MITRE ATT&ACK, NIST).

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vice President, Threat Detection Engineer
Vice President, Threat Detection Engineer

SGX Group • Singapore

On-site
SGD 180,000 - 280,000
Vice President, Senior Cyber Threat Analyst (Threat Hunting & Incident Response)
Vice President, Senior Cyber Threat Analyst (Threat Hunting & Incident Response)

SGX Group • Singapore

On-site
SGD 150,000 - 190,000
Vice President, Cyber Threat Analyst
Vice President, Cyber Threat Analyst

Singapore Exchange Limited • Singapore

On-site
SGD 120,000 - 170,000
Cyber Security Resident Engineer - Incident Response & SIEM
Cyber Security Resident Engineer - Incident Response & SIEM

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 100,000
ICT SECURITY ENGINEER
ICT SECURITY ENGINEER

HELIUS TECHNOLOGIES PTE. LTD. • Singapore

On-site
SGD 180,000 - 240,000
SL2471 - Information Security (Managed Detection and Response)
SL2471 - Information Security (Managed Detection and Response)

FPT Asia Pacific Pte Ltd • Singapore

On-site
SGD 180,000 - 260,000
Cyber Security Resident Engineer
Cyber Security Resident Engineer

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 100,000
Lead Security Engineer, IT Security Operations Engineering and Technology Singapore Experienced[...]
Lead Security Engineer, IT Security Operations Engineering and Technology Singapore Experienced[...]

SEA Singapore • Singapore

On-site
SGD 120,000 - 180,000
Senior Threat Hunter - Defensive
Senior Threat Hunter - Defensive

Planet Nine • Singapore

On-site
SGD 90,000 - 120,000
Cyber Threat Management Senior/Security Engineer
Cyber Threat Management Senior/Security Engineer

INTELLIPRO SINGAPORE PTE. LTD. • Singapore

On-site
SGD 90,000 - 130,000