Senior Detection & Response Engineer (APAC)

Posted 6 Days Ago
Be an Early Applicant
Singapore, SGP
In-Office
Senior level
Information Technology • Consulting
The Role
Leads cybersecurity detection and response activities across APAC, including security use-case design, threat hunting, incident investigation, mitigation, and SOC capability improvement. Develops detection content using attack frameworks, interprets security logs, oversees regional SOC operations, supports incident reporting and compliance, and partners with global stakeholders. Requires strong SIEM, incident response, automation, scripting, Linux, and security engineering experience.
Summary Generated by Built In
Company Description

Sopra Steria is a listed European technology leader specializing in Consulting, Digital Services, and Software. With over 51,000 employees worldwide across Europe, North America and Asia, the Group supports organizations in driving their digital transformation and delivering sustainable business value.

In Asia Pacific, Singapore serves as the regional headquarter for Sopra Steria’s Infrastructure, Cloud and Cybersecurity services.

Job Description

  • Lead technical activities (security usecase definition, design, implementation & enrichment) in the team of IT Production Security Investigation & Incident Response based on real-world attack scenarios and framework like MITRE ATT&CK, ensuring robust security detection posture across various layers.
  • Understand ongoing security threats in the wild and propose security usecase to detect and when possible, protect or mitigate.
  • Be autonomous on technical activities (definition, R&D/threat hunting) in the team of IT Production Security Investigation & Incident Response and oversee the detection capabilities of the 24/7 regional IT Production SOC
  • Respond to Cyber / IT security incidents and evaluates the type and severity of security events.
  • Identify recurring security issues and risks and develops mitigation plans and recommends process improvements.
  • Partner with global, regional and local stakeholders to ensure organizational and procedural efficiency and readiness for detection of suspicious events and reaction
  • Continuously improve the processes to strengthen the current SOC framework via review of policies and operational playbooks

Contributing Responsibilities:

  • Partner with the APAC Business CSIRT for integrated security monitoring and alert/incident handling operations.
  • Contribute to local security incident response outside the direct scope of responsibilities (i.e.,local IT production in some APAC business entities)
  • Contribute to the Bank compliance with regulatory requirements and internal policies
  • Contribute to the reporting of all incidents according to the Incident Management System
  • Contribute to the control frameworks in day‐to‐day business activities, such as Control Plan;
  • Participate to Audit interview and provide the require evidence

Qualifications

Technical Requirements:

  • Requires a minimum of 7 or more years of experience as security professional
  • Experience in security usecase design/development with understanding of Java language.
  • Good working knowledge of Linux (RedHat/Ubuntu).
  • Working knowledge to interpret security logs or instructions into threat models. SecOPS-DevOPS mindset & skills.
  • Experience and knowledge in investigating incidents, remediation, tracking and follow-up for incident closure with concerned teams, stakeholders.
  • Thorough understanding of technologies and security concepts, with knowledge & hands on experience in SIEM Product and Security Incident Management
  • Experience on incident response activities (threat hunting, event analysis, incident investigation, reporting)
  • Comfortable working with and making the most of large data sets (collection, analysis, response), creating content/use cases/models and bringing an automation mindset.

Personal Attributes

  • Strong problem-solving skills
  • Good communication skills (English is MUST, French is added advantage)
  • Positive attitude, willing to upskill and carry out in-depth troubleshooting
  • Has the ability to work autonomously and think on feet, be-proactive.
  • Good interpersonal skills and team player
  • High energy level coupled with a desire to take on responsibility
  • Able to multi-task & deliver within agreed deadlines.

Qualifications:

  • Candidate MUST have 7 or more years of experience on overall cybersecurity incident response with 4+ years specifically on security usecase design, development, coding.
  • Experience in SIEM on ELK(Elastic Logstash Kibana) stack is a plus
  • Professional credentials in one of the relevant IT Security disciplines is a plus (SANS / CISSP / OSCP)
  • Experience in common scripting languages such as Python, PowerShell, Bash, SQL is a plus

Additional Information

•Work-life balance: Hybrid working mode and Work-from-Abroad benefits, 18 days of Annual leave
•Health & insurance: Comprehensive coverage including General Practitioner, hospitalization, dental, and optical
•Performance incentives: Annual bonus based on individual performance
•Learning & development: Training programs, certification opportunities, and training incentives to support career growth
•Team culture: Regular team-building activities and social events

Skills Required

  • At least 7 years of overall cybersecurity incident response or security professional experience
  • At least 4 years of experience in security use-case design, development, coding, or implementation
  • Experience designing or developing security use cases with understanding of Java
  • Good working knowledge of Linux, including Red Hat or Ubuntu
  • Ability to interpret security logs and instructions into threat models
  • Experience investigating, remediating, tracking, and closing security incidents
  • Thorough understanding of SIEM products and security incident management
  • Experience with threat hunting, event analysis, incident investigation, and reporting
  • Ability to work with large datasets and create detection content, use cases, models, and automation
  • Strong problem-solving, communication, autonomy, collaboration, multitasking, and troubleshooting skills
  • English language proficiency
  • Experience with SIEM on the ELK stack
  • Relevant security credentials such as SANS, CISSP, or OSCP
  • Experience with Python, PowerShell, Bash, or SQL
  • French language proficiency
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Annecy
49,329 Employees

What We Do

Sopra Steria, a major Tech player in Europe with 56,000 employees in nearly 30 countries, is recognised for its consulting, digital services and software development. It helps its clients drive their digital transformation and obtain tangible and sustainable benefits. The Group provides end-to-end solutions to make large companies and organisations more competitive by combining in-depth knowledge of a wide range of business sectors and innovative technologies with a fully collaborative approach. Sopra Steria places people at the heart of everything it does and is committed to putting digital to work for its clients in order to build a positive future for all. In 2023, the Group generated revenues of €5.8 billion. The world is how we shape it

Similar Jobs

Citadel Logo Citadel

Commodities Analyst

Information Technology • Software • Financial Services • Big Data Analytics
In-Office
5 Locations
4000 Employees

Citadel Logo Citadel

Quantitative Research Analyst Intern - BS/MS (Asia)

Information Technology • Software • Financial Services • Big Data Analytics
In-Office or Remote
2 Locations
4000 Employees

Citadel Logo Citadel

Global Quantitative Strategies | Machine Learning Researcher

Information Technology • Software • Financial Services • Big Data Analytics
In-Office
2 Locations
4000 Employees
300K-350K Annually

Citadel Logo Citadel

Machine Learning Researcher - PhD Intern (Asia)

Information Technology • Software • Financial Services • Big Data Analytics
In-Office or Remote
2 Locations
4000 Employees

Similar Companies Hiring

Axle Health Thumbnail
Artificial Intelligence • Healthtech • Information Technology • Logistics
Santa Monica, CA
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account