Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.
SHAW SERVICES PTE. LTD. seeks a Security Engineer to safeguard hybrid assets, bridging on‑premise and cloud security in a unified environment. You will lead firewall policy design, IAM governance, vulnerability management, and PCI‑DSS compliance across digital and physical domains.
Required: 3–5 years in IT security, deep firewall expertise (SonicWall, Palo Alto, Cisco ASA), and hands‑on with Cisco ISE, Wazuh, Graylog, plus Azure security tooling. Bonus AZ-500 or CISSP/CISM.
We are seeking a versatile Security Engineerto safeguard our organization’s digital and physical assets. This role is unique—you will bridge the gap between on-premise infrastructure(Firewalls, Biometrics CCTV) and Cloud Security(Azure, DevSec Ops). You will be the technical lead in ensuring our hybrid environment is resilient against threats and compliant with international standards like PCI-DSS.
Next-Gen Firewall Management:Design, deploy, and maintain robust firewall policies across SonicWall, Palo Alto, Cisco ASA, and Fortinetenvironments.
Network Governance:Manage SonicWall NMS/GMS and administer Cisco ISEto ensure strict Identity and Access Management (IAM).
Vulnerability Management:Execute regular scans via OpenVAS, prioritizing and remediating risks across the internal network.
Security Monitoring:Lead threat detection efforts by analyzing logs through Wazuhand Graylogto identify and respond to incidents in real-time.
Cloud Governance:Manage and optimize Microsoft Defender for Cloudto maintain a strong security posture (CSPM).
Azure Security Engineering:Configure Azure Firewalls, NSGs, and Key Vaults to protect cloud-native workloads.
Infrastructure as Code (IaC) Security:Design and implement security guardrails within the Azure DevOpspipeline (DevSecOps), ensuring code is scanned before deployment.
Integrated Physical Security:Oversee the technical maintenance of Biostar biometric systems, CCTV networks, and TZ server rackaccess controls.
Audit Leadership:Serve as the primary technical point of contact for security audits, specifically driving PCI-DSScompliance and internal risk assessments.
Experience:Minimum 3–5 years of hands‑on experience in IT Security, covering both hardware and cloud environments
Technical Proficiency:
Firewalls:Deep expertise in at least two of the following: SonicWall, Palo Alto, or Cisco ASA.
On‑Prem Tools:Proven knowledge with Cisco ISE, Wazuh, or Graylog.
Cloud:Strong working knowledge of Microsoft Azure(Identity, Networking, and Security tools).
DevSecOps: Good to have knowledge on Security Scans such as Dependency Scanning, Secrets Scanning, Code Security scanning.
Compliance:Practical experience in preparing documentation and technical controls for PCI-DSS.
Physical Security:Familiarity with biometric integration (Biostar) and CCTV infrastructure.
Certification(Bonus):AZ-500 (AzureSecurity Engineer), PCNSE, or CISSP/CISM.