5 дней назад
Senior Detection & Response Engineer (APAC)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Detection & Response Engineer (APAC) (Cybersecurity/SOC): Leading the design, development, and enrichment of security detection use cases for a regional 24/7 SOC with an accent on incident response, threat hunting, SIEM operations, and MITRE ATT&CK. Focus on investigating cyber incidents, modeling threats from security data, automating detection capabilities, and improving operational playbooks across APAC.
Location: Singapore; hybrid working mode
Company
is a listed European technology company providing consulting, digital services, software, and infrastructure, cloud, and cybersecurity services across Europe, North America, and Asia.
What you will do
- Lead the definition, design, implementation, and enrichment of security detection use cases based on real-world attack scenarios and the MITRE ATT&CK framework.
- Monitor evolving threats and develop detection, protection, and mitigation use cases for multiple technology layers.
- Oversee detection capabilities for the 24/7 regional IT Production SOC and conduct threat hunting and security research.
- Respond to cyber and IT security incidents, assess severity, investigate events, and coordinate remediation through closure.
- Partner with APAC, regional, and global stakeholders on incident handling, compliance, audits, and reporting.
- Improve SOC policies, processes, control frameworks, and operational playbooks.
Requirements
- 7+ years of overall cybersecurity incident response experience, including 4+ years in security use case design, development, and coding.
- Experience designing and developing security use cases, with an understanding of Java.
- Good working knowledge of Linux, including Red Hat and Ubuntu.
- Experience with SIEM products, security incident management, threat hunting, event analysis, incident investigation, and reporting.
- Ability to interpret security logs and instructions into threat models and work with large datasets for analysis, response, and automation.
- English is required. Strong communication, problem-solving, autonomous working, and teamwork skills are expected.
Nice to have
- Experience with the ELK stack: Elasticsearch, Logstash, and Kibana.
- Professional security credentials such as SANS, CISSP, or OSCP.
- Experience with Python, PowerShell, Bash, or SQL.
- French language skills.
Culture & Benefits
- Hybrid working mode with work-from-abroad benefits.
- 18 days of annual leave.
- Health insurance covering general practitioner, hospitalization, dental, and optical care.
- Annual performance-based bonus.
- Training programs, certification opportunities, and training incentives.
- Regular team-building activities and social events.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →