x
Get our mobile app
Fast & easy access to Jobstore
Use App
Congratulations!
You just received a job recommendation!
check it out now
Browse Jobs
Companies
Campus Hiring
Download App
Jobs in Singapore   »   Jobs in Singapore   »   Engineering Job   »   Cyber Defence Engineer JR29081
 banner picture 1  banner picture 2  banner picture 3

Cyber Defence Engineer JR29081

Infogain Solutions Pte. Limited

Infogain Solutions Pte. Limited company logo

Find Your Dream Job With Us

WE ARE HIRING !! Apply now and make a difference.

Job Title: Cyber Defence Engineer

Job Requisition Number: JR29081

Job Level: Minimum 6-10 years of relevant experience (L3/L4)

Location: Singapore

Job Description

The Security engineer will support the day-to-day Security application administration, operations and development activities of the bank security suite of products with key objective to maintain, develop and enhance the detection, prevention, response and monitoring capabilities of GSOC using SIEM Security Analytics platform and solutions.

Key Responsibilities:

· Provide administration and operations end to end support to SIEM Security Analytics Platform and other security solutions related infrastructure deployed within the bank.

· Onboarding new log sources, enabling new use cases and supporting all existing use cases.

· Develop and support case management workflow, reports and dashboards.

· Manage and support the log management environment.

· Monitor SIEM internal logs to identify and resolve potential performance issues.

· Drive upgrades and migration to ensure solutions and or related platform are maintained in tip-top working conditions with proper documentation and RCA.

· Test and manage application functionalities, system and infrastructure changes, upgrades, enhancements, patches and troubleshooting.

· Work within established practices and handling guidelines to triage device outages.

· Available to respond to any requests and assist with troubleshooting activities along with proper documentation.

· Ability to understand of data generated by infrastructure and application across bank.

· Integrate data feeds into SIEM Solutions from on premise and cloud deployed devices and applications

· Automation development on existing data feed and contextual data so we get different data from various log feeds to one location.

· Manage and coordinate change & Incident process engagement with regards to current security solutions.

· Communicate effectively with a variety of internal teams and external contacts including technical and executive contacts.

Others:

· Normalization/Parsing the data/logs

· Experience with any insider threat tools

· Follow MIRTE ATT&CK framework and NIST methodology

Conduct regression testing on existing use cases and future enhancement by adding more new use cases to protect the bank from sophisticated Cyber-attacks

Requirements:

· Overall experience 8+ years of experience.

· 5+ years of relevant experience in the area for managing SIEM preferably Splunk/ArcSight

· Hands on experience in Advanced SIEM, Security Analytics solution, Linux and database (MySQL, Oracle/SQL)

· Very strong troubleshooting skills.

· Strong in providing operational support to any SIEM and other security platforms

· Strong knowledge in Syslog log management platform

· Experience in understanding end to end data flow

· Strong knowledge in understanding OS, Proxy, Network and other main-stream Infrastructure, Application, Access and Cloud logs.

· Strong Knowledge in developing custom parsers (regex) required for data ingestion for any infrastructure or application-based data feeds.

· Strong knowledge of optimizing performance and outages related to SIEM Solutions.

· Experience in normalize and data preparation to clean the data

· Experience in Data/Device Integration and provide the data back to another platform.

· Knowledge of the SOAR platform is an added advantage.

· Experience in Automation using any scripting languages like Python and Shell.

· Knowledge and hands-on experience on implementing Use Cases would be add-on.

Soft Skills

· Good written and verbal communication skills

· Process and procedure adherence.

· Strong analytical and problem-solving skills

· Effective time management and organizational skills.

Other Requirements

Willingness to perform on-call duties.

Please forward your resume in MS word format to [email protected] and [email protected]

Please refer your friends for any IT openings as we have various positions.

Please do not send PDF Format Resume . Send the following details

1. Notice period

2. Current Salary

3. Expected Salary

4. Visa Status in Singapore

5. Current Location

✱   This job post has expired   ✱

Sharing is Caring

Know others who would be interested in this job?