Correlation & Automation Lead

Reposted 25 Days Ago
Be an Early Applicant
Singapore
In-Office
Mid level
Information Technology • Security • Cybersecurity
The Role
The role involves maintaining security monitoring systems, fine-tuning SIEM configurations, developing detection methods for threats, and supporting overall security operations within a SOC environment.
Summary Generated by Built In

Ensign is hiring !

Key Responsibilities 

  • Perform implementation, maintenance, support and operation of the project's security monitoring use cases 
  • Maintain understanding of the architecture and work with security team to understand the use cases to be created. 
  • Identity, evaluate and recommend new areas of improvements for the implementation. 
  • Adhere to established change management process and other service management process in day-to-day tasks 
  • Create, finetune and maintain SIEM data sources, use cases, correlation rules and security alerts classifications 
  • Review, propose and generate dashboards and reports to automate monitoring of systems and log and threat intelligence feed ingestion, and reduce low value event escalations
  • Build rules and intelligence to detect threats in all monitored assets
  • Implement and devise detection method of such threats in our security operations through SIEM use cases etc
  • Perform periodic analysis of security events, network traffic, and logs to engineer new detection methods, or create efficiencies when available
  • Review and update data enrichment, including use of threat intelligence to enhance fidelity of detection
  • Review and maintain UEBA data sources and use cases 

 

Requirements 

  • At least 3 years of experience in security operations in a SOC environment 
  • At least 2 years of experience in creating, finetuning and maintaining correlation rules and SIEM dashboards 
  • Working experience in Regex and/or scripting 
  • Strong critical thinking / contextual analysis abilities
  • Strong investigative and analytical problem solving skills
  • Stakeholder management
  • Meticulous with an eye for details 
  • Product certification such as Splunk Enterprise Certified Administrator or equivalent 
  • Professional certification such as SANS (such as SANS GCDA, GCIA, GDSA, GMON) would be an advantage 
  • Good understanding of whole of government environment would be an advantage 

Top Skills

Regex
Scripting
SIEM
Splunk
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
800 Employees
Year Founded: 2018

What We Do

Ensign InfoSecurity is the largest pure-play end-to-end cybersecurity service provider in Asia. Headquartered in Singapore, Ensign offers bespoke solutions and services to address their clients’ cybersecurity needs. Their core competencies are in the provision of cybersecurity advisory and assurance services, architecture design and systems integration services, and managed security services for advanced threat detection, threat hunting, and incident response. Underpinning these competencies is in-house research and development in cybersecurity. Ensign has two decades of proven track record as a trusted and relevant service provider, serving clients from the public and private sectors in the Asia Pacific region

Similar Jobs

Adyen Logo Adyen

Team Lead

Fintech • Payments • Financial Services
Easy Apply
Hybrid
Singapore, SGP
4568 Employees

Adyen Logo Adyen

People Operations & Transformation Partner, APAC

Fintech • Payments • Financial Services
Easy Apply
Hybrid
Singapore, SGP
4568 Employees

ServiceNow Logo ServiceNow

Consultant

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Remote or Hybrid
Singapore, SGP
28000 Employees

ServiceNow Logo ServiceNow

Consultant

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Remote or Hybrid
Singapore, SGP
28000 Employees

Similar Companies Hiring

Scrunch AI Thumbnail
Software • SEO • Marketing Tech • Information Technology • Artificial Intelligence
Salt Lake City, Utah
Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY
Standard Template Labs Thumbnail
Software • Information Technology • Artificial Intelligence
New York, NY
10 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account