Vice President, Threat Detection Engineer

SGX Group

Singapore

On-site

SGD 180,000 - 260,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

SGX is seeking a Senior Vice President/Vice President (Information Security) to lead and enhance detection capabilities across the organization. The Threat Detection Engineer will design, develop, tune, and maintain cybersecurity detection across the technology landscape.

The role focuses on identifying malicious activity, improving detection coverage, reducing false positives, and enabling rapid incident response via advanced detection rules, analytics, and threat-hunting techniques.

Qualifications

  • 10–15 years of relevant experience, preferably in financial services or asset management, with at least 5 years in cybersecurity platforms.
  • In-depth knowledge of information security policy and principles.
  • Experience with MAS technology guidelines and security controls such as EDR, SIEM, SOAR, XDR.

Responsibilities

  • Design, develop, and maintain security detection rules and use cases across SIEM, EDR, NDR, and cloud platforms.
  • Create detection logic based on known threat actor TTPs.
  • Develop behavioral analytics and anomaly detection models.

Skills

Security detection
Threat hunting
Incident response
SOAR
Threat intelligence
Engineering mindset
Communication

Tools

SIEM
EDR
NDR
XDR
SOAR
Cloud security

Job description

SGX is seeking Senior Vice President/Vice President (Information Security) lead and enhanced our detection capabilities. The Threat Detection Engineer is responsible for designing, developing, tuning, and maintaining cybersecurity detection capabilities across the organization's technology landscape.

This role focuses on identifying malicious activity, improving detection coverage, reducing false positives, and enabling rapid incident response through the deployment of advanced detection rules, analytics, and threat-hunting techniques. Working closely with Security Operations (SOC), Incident Response, Threat Intelligence, Security Engineering, and IT teams, the Threat Detection Engineer continuously enhances the organization's ability to detect and respond to cyber threats.

The candidate will possess strong technical expertise in security detection, relevant platforms, hands‑on operational experience, and an engineering mindset focused on improving our speed to react. He/she must demonstrate ability to think strategically about SGX business and operations challenges and possess a keen eye for control improvement through innovative use of technology. The candidate also needs to manage both internal and external customers well, drive discussions with senior management, and have a sound process and technical background to engage the Technology teams.

Job description:
Job Summary

SGX is seeking Senior Vice President/Vice President (Information Security) lead and enhanced our detection capabilities. The Threat Detection Engineer is responsible for designing, developing, tuning, and maintaining cybersecurity detection capabilities across the organization's technology landscape.

This role focuses on identifying malicious activity, improving detection coverage, reducing false positives, and enabling rapid incident response through the deployment of advanced detection rules, analytics, and threat-hunting techniques. Working closely with Security Operations (SOC), Incident Response, Threat Intelligence, Security Engineering, and IT teams, the Threat Detection Engineer continuously enhances the organization's ability to detect and respond to cyber threats.

The candidate will possess strong technical expertise in security detection, relevant platforms, hands‑on operational experience, and an engineering mindset focused on improving our speed to react. He/she must demonstrate ability to think strategically about SGX business and operations challenges and possess a keen eye for control improvement through innovative use of technology. The candidate also needs to manage both internal and external customers well, drive discussions with senior management, and have a sound process and technical background to engage the Technology teams.

Job Responsibilities
Detection Engineering

Design, develop, and maintain security detection rules and use cases across and not limited to SIEM, EDR, NDR, and cloud security platforms.

Create detection logic based on known threat actor tactics, techniques, and procedures (TTPs).

Develop behavioral analytics and anomaly detection models.

Map detections to MITRE ATT&CK | MITRE ATLAS framework techniques.

Continuously tune detection rules to improve effectiveness and reduce false positives.

Analyze emerging threats, vulnerabilities, and attack trends.

Translate threat intelligence into actionable detection content.

Assess detection coverage against evolving cyber threats.

Identify gaps in monitoring and recommend improvements.

Work with respective team to develop hypotheses and supporting detection content.

Collaborate with threat hunters to identify previously unknown threats.

Convert successful threat-hunting findings into permanent detections.

Improve event correlation and alerting strategies.

Security Automation

Develop automated detection workflows using SOAR platforms.

Integrate detection content across multiple security controls.

Automate enrichment, triage, and response activities.

Detection validation

Perform adversary emulation and detection testing.

Conduct purple‑team exercises with offensive security teams.

Validate detection effectiveness through attack simulation.

Measure detection coverage and effectiveness metrics.

Integration & Engineering

Integrate security tools with other systems (e.g., SIEM, ticketing platforms, CMDB, SOAR) to enable automation and improve operational synergy.

Direct, drive process and documentation improvement in platform operations, escalation procedures, and workflows.

Work closely with Engineering, Infrastructure, Cloud, and SOC teams to ensure deployment of detection logics.

Vendor & Stakeholder Collaboration

Work with internal stakeholders to ensure tools outputs support detection use cases, incident response, audits, and compliance programs.

Expectations:

Sense of urgency for all urgent and important matters and accountable to decision made

Clear vision in mind to innovate and streamline the operations processes and detection ability defined by the organisation.

Passion to deliver sustainable solutions and continued improvement in control and risk mitigation.

Good discipline in timely submission and reporting key metrics and status.

Job Requirements

At least 10 to 15 years of relevant experience, preferably in financial services or asset management industries, with a minimum of 5 years in cybersecurity platforms.

In‑depth knowledge and experience in information security policy and principles.

Experience in MAS technology related guidelines such as Technology Risk Management Guidelines, Cyber Hygiene, Outsourcing guidelines etc.

Strong technical knowledge of common security tools (e.g., EDR, SIEM, SOAR, XDR, email security, vulnerability management, cloud security).

Experience tuning detection rules, configuring integrations, and conducting process enhancement.

Demonstrate ability to operate in diverse environments and cultures and enjoys working in challenging and fast‑paced environment.

Self‑initiated, meticulous, versatile, analytical and inquisitive.

Strong communication and presentation skills to wide and diverse audiences.

Preferred Skills:

Certifications such as CISSP, CISM, GIAC GCIA/GSEC, Microsoft Security certifications, or equivalent.

Experience with security platforms, Endpoint security, Cloud security, detection technologies, analytics & query languages, operating systems and security frameworks (e.g. MITRE ATT&ACK, NIST).

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vice President, Threat Detection & Security Engineering
Vice President, Threat Detection & Security Engineering

SGX Group • Singapore

On-site
SGD 180,000 - 260,000
Vice President, Cyber Threat Analyst
Vice President, Cyber Threat Analyst

Singapore Exchange Limited • Singapore

On-site
SGD 120,000 - 170,000
Cyber Threat Management Senior/Security Engineer
Cyber Threat Management Senior/Security Engineer

INTELLIPRO SINGAPORE PTE. LTD. • Singapore

On-site
SGD 90,000 - 130,000
Lead Security Engineer, IT Security Operations Engineering and Technology Singapore Experienced[...]
Lead Security Engineer, IT Security Operations Engineering and Technology Singapore Experienced[...]

SEA Singapore • Singapore

On-site
SGD 120,000 - 180,000
Cyber Security Resident Engineer
Cyber Security Resident Engineer

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 100,000
Cyber Security Resident Engineer - Incident Response & SIEM
Cyber Security Resident Engineer - Incident Response & SIEM

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 100,000
SL2471 - Information Security (Managed Detection and Response)
SL2471 - Information Security (Managed Detection and Response)

FPT Asia Pacific Pte Ltd • Singapore

On-site
SGD 180,000 - 260,000
Senior Analyst, Threat Detection and Response
Senior Analyst, Threat Detection and Response

SATS Ltd. • Singapore

On-site
SGD 110,000 - 140,000
Senior Analyst, Threat Detection and Response
Senior Analyst, Threat Detection and Response

SATS Ltd • Singapore

On-site
SGD 70,000 - 120,000
Cybersecurity Consultant
Cybersecurity Consultant

PERCEPT SOLUTIONS PTE. LTD. • Singapore

On-site
SGD 120,000 - 180,000