As Singapore’s longest established bank, we have been dedicated to enabling individuals and businesses to achieve their aspirations since 1932. How? By taking the time to truly understand people. From there, we provide support, services, solutions, and career paths that meet their individual needs and desires.
Today, we’re on a journey of transformation. Leveraging technology and creativity to become a future-ready learning organisation. But for all that change, our strategic ambition is consistently clear and bold, which is to be Asia’s leading financial services partner for a sustainable future.
We invite you to build the bank of the future. Innovate the way we deliver financial services. Work in friendly, supportive teams. Build lasting value in your community. Help people grow their assets, business, and investments. Take your learning as far as you can. Or simply enjoy a vibrant, future-ready career.
Your Opportunity Starts Here.
Why Join
Protecting our customers' assets and data is at the heart of everything we do at OCBC. As a Cyber Engineering - Risk professional, you'll play a critical role in safeguarding our systems and networks from cyber threats. You'll be part of a team that's shaping the future of cybersecurity in the financial industry.
How you succeed
We are looking for an experienced Security Platform Engineer to lead the engineering and continued development of endpoint and server security capabilities across the organisation. The role will focus on enterprise EDR/XDR platforms and the continued evolution of integrated protection, prevention, detection, response, automation, and control-assurance capabilities.
This is a hands-on engineering role for someone who can combine security-platform experience with strong service reliability, observability, automation, and lifecycle-management disciplines. The successful candidate will take capability ownership, develop the engineering roadmap, improve platform effectiveness and resilience, and translate security requirements and identified risks into practical technical controls.
What you do
- Provide engineering and capability ownership for enterprise endpoint and server security platforms, including EDR/XDR and related protection technologies.
- Define and maintain the engineering roadmap, technical standards, service objectives, lifecycle priorities, and improvement backlog for the capability.
- Engineer, configure, test, integrate, and continuously improve endpoint and server security controls across supported platforms.
- Expand the capability beyond core EDR/XDR by adopting relevant platform features and integrated security controls that strengthen prevention, protection, detection, response, and risk-based security outcomes.
- Translate threat, vulnerability, architecture, risk, audit, and operational requirements into practical security configurations and engineering solutions.
- Improve detection coverage, telemetry quality, sensor health, policy consistency, configuration assurance, and platform effectiveness across enterprise environments.
- Develop monitoring and observability for platform availability, agent or sensor coverage, feed health, latency, data quality, policy deployment, exceptions, and control effectiveness.
- Define useful service indicators, engineering metrics, dashboards, alerts, and reporting to support proactive platform management and measurable security outcomes.
- Lead technical investigation and root-cause analysis for complex platform failures, coverage gaps, performance issues, policy conflicts, and security-control weaknesses.
- Evaluate new product features and emerging technologies, lead technical assessments or proofs of value, and develop adoption recommendations and implementation plans.
- Produce clear architecture inputs, engineering designs, test plans, implementation guidance, operating standards, runbooks, and support-readiness documentation.
- Partner with a wide range of stakeholders to implement sustainable controls and resolve complex security issues.
- Build reusable engineering practices, strengthen internal knowledge, and reduce dependency on individuals or vendors through documentation, training, and structured knowledge transfer.
Who you are
- 10 or more years of relevant experience across cybersecurity engineering, security platforms, endpoint security, production engineering, SRE, infrastructure engineering, or related disciplines.
- Strong experience engineering, supporting, or providing technical ownership for enterprise endpoint, server, EDR/XDR, threat-protection, or cybersecurity platforms.
- Practical understanding of endpoint and server telemetry, detection and response, agent or sensor health, security policies, platform integrations, and service reliability.
- Experience with one or more enterprise endpoint-security ecosystems such as Trend Micro Vision One, CrowdStrike, Palo Alto Cortex, Microsoft Defender, Tanium, Symantec, or comparable technologies.
- Understanding of modern endpoint and server protection approaches, security baselines, prevention and detection controls, vulnerability-informed security, and risk-based control implementation.
- Experience establishing monitoring, observability, service-health measures, dashboards and alerts for critical technology platforms.
- Experience using Python, Ansible, APIs, CI/CD, scripting, configuration automation, or software-engineering practices to improve security-platform delivery.
- Ability to analyse control gaps, security incidents, platform limitations, and operational risks and convert findings into structured engineering improvements.
- Experience with product lifecycle management, production readiness, architecture governance, testing, change, incident and problem management, and operational handover.
- Strong analytical, troubleshooting, documentation, stakeholder-management, and communication skills.
- Ability to work across global and cross-functional teams and balance security effectiveness, platform resilience, operational sustainability, and technology change.
Preferred Experience
- Deep hands-on knowledge of Trend Micro Vision One or another major EDR/XDR platform, including policy design, integrations, telemetry, APIs, troubleshooting, and capability development.
- Experience with SIEM, vulnerability management, cloud-security, digital-forensics, threat-intelligence, or security-operations integrations.
- Experience building or modernising cybersecurity monitoring and observability across multiple platforms or data feeds.
- Experience in financial services, regulated industries, or large-scale and high-availability enterprise environments.
- Relevant cybersecurity, cloud, endpoint-security, DevSecOps, SRE, or vendor certifications.
- Exposure to AI-assisted security engineering, analytics, automation, or emerging endpoint and server protection capabilities.
Who we are
As Singapore's longest established bank, we have been dedicated to enabling individuals and businesses to achieve their aspirations since 1932. How? By taking the time to truly understand people. From there, we provide support, services, solutions, and career paths that meet their individual needs and desires.
Today, we're on a journey of transformation. Leveraging technology and creativity to become a future-ready learning organisation.
But for all that change, our strategic ambition is consistently clear and bold, which is to be Asia's leading financial services partner for a sustainable future.
We invite you to build the bank of the future. Innovate the way we deliver financial services. Work in friendly, supportive teams. Build lasting value in your community. Help people grow their assets, business, and investments. Take your learning as far as you can. Or simply enjoy a vibrant, future-ready career. Your Opportunity Starts Here.
Competitive base salary. A suite of holistic, flexible benefits to suit every lifestyle. Community initiatives. Industry-leading learning and professional development opportunities. Your wellbeing, growth and aspirations are every bit as cared for as the needs of our customers.
Skills Required
- 10 or more years of relevant experience in cybersecurity engineering, security platforms, endpoint security, production engineering, SRE, infrastructure engineering, or related disciplines
- Experience engineering, supporting, or providing technical ownership for enterprise endpoint, server, EDR/XDR, threat-protection, or cybersecurity platforms
- Understanding of endpoint and server telemetry, detection and response, agent or sensor health, security policies, platform integrations, and service reliability
- Experience with enterprise endpoint-security ecosystems such as Trend Micro Vision One, CrowdStrike, Palo Alto Cortex, Microsoft Defender, Tanium, Symantec, or comparable technologies
- Understanding of endpoint and server protection, security baselines, prevention and detection controls, vulnerability-informed security, and risk-based control implementation
- Experience establishing monitoring, observability, service-health measures, dashboards, and alerts for critical technology platforms
- Experience using Python, Ansible, APIs, CI/CD, scripting, configuration automation, or software-engineering practices to improve security-platform delivery
- Ability to analyze control gaps, security incidents, platform limitations, and operational risks and convert findings into engineering improvements
- Experience with product lifecycle management, production readiness, architecture governance, testing, change, incident and problem management, and operational handover
- Strong analytical, troubleshooting, documentation, stakeholder-management, and communication skills
- Ability to work across global and cross-functional teams while balancing security effectiveness, platform resilience, operational sustainability, and technology change
- Deep hands-on knowledge of Trend Micro Vision One or another major EDR/XDR platform
- Experience with SIEM, vulnerability management, cloud security, digital forensics, threat intelligence, or security-operations integrations
- Experience building or modernizing cybersecurity monitoring and observability across multiple platforms or data feeds
- Experience in financial services, regulated industries, or large-scale high-availability enterprise environments
- Relevant cybersecurity, cloud, endpoint-security, DevSecOps, SRE, or vendor certifications
- Exposure to AI-assisted security engineering, analytics, automation, or emerging endpoint and server protection capabilities
What We Do
OCBC is the longest established Singapore bank, formed in 1932 from the merger of three local banks, the oldest of which was founded in 1912. It is now the second largest financial services group in Southeast Asia by assets and one of the world’s most highly-rated banks, with an Aa1 rating from Moody’s. Recognised for its financial strength and stability, OCBC is consistently ranked among the World’s Top 50 Safest Banks by Global Finance and has been named Best Managed Bank in Singapore by The Asian Banker. OCBC and its subsidiaries offer a broad array of commercial banking, specialist financial and wealth management services, ranging from consumer, corporate, investment, private and transaction banking to treasury, insurance, asset management and stockbroking services. OCBC’s key markets are Singapore, Malaysia, Indonesia and Greater China. It has more than 570 branches and representative offices in 19 countries and regions. These include about 300 branches and offices in Indonesia under subsidiary Bank OCBC NISP, and over 90 branches and offices in Mainland China, Hong Kong SAR and Macau SAR under OCBC Wing Hang. OCBC’s private banking services are provided by its wholly-owned subsidiary Bank of Singapore, which operates on a unique open-architecture product platform to source for the best-in-class products to meet its clients’ goals. OCBC's insurance subsidiary, Great Eastern Holdings, is the oldest and most established life insurance group in Singapore and Malaysia. Its asset management subsidiary, Lion Global Investors, is one of the largest private sector asset management companies in Southeast Asia.









