NCS Group
Singapore / Global
Singapore / Global
Job Description
We are seeking a highly motivated and detail‑oriented Security Engineer to join our growing security team. You’ll validate detections, perform log reviews and threat hunting, advise on patching decisions, and respond to cybersecurity incidents from triage through containment, eradication, recovery, and post‑incident improvement. You’ll gain mentorship and certification opportunities to develop end‑to‑end capability from architecture to day‑to‑day operations.
Key Responsibilities
Assist in operating SIEM/EDR/PAM platforms and patch pipelines.
Verify and validate detections; tune rules/use‑cases to reduce false positives and improve coverage.
Conduct IOC scans based on threat intel.
Support configuration, maintenance, and optimization of various security tools and platforms (e.g., antivirus, firewalls, intrusion detection systems).
Perform log reviews and threat hunting; elevate and track incidents to closure.
Develop and maintain incident response runbooks, escalation procedures, investigation checklists, and response playbooks.
Assist in evidence collection, timeline creation, root‑cause analysis, and incident documentation.
Support containment and remediation actions in coordination with system, network, application, and infrastructure teams.
Partner with stakeholders to monitor security systems, schedule health checks, and report platform KPIs.
Stay current with the latest cybersecurity threats, trends, and technologies, actively seeking opportunities to enhance technical knowledge.
Qualifications
Solid understanding of operating systems (Windows/Linux), networking fundamentals, and application architecture.
Hands‑on exposure to SIEM/EDR/XDR/PAM/Firewalls/IPS and asset/patch management tools.
Ability to perform structured log reviews and summarise findings clearly.
Working knowledge of core cybersecurity principles (threats, vulnerabilities, detection vs response).
Experience supporting phishing investigations, malware triage, endpoint isolation, suspicious login analysis, or account compromise investigations.
Let us know if you have a specific cybersecurity skill that is not listed here and we would be glad to talk.
Preferred Attributes
Ability to manage support teams, engage stakeholders, handle escalations, and meet service commitments.
Strong written/oral communication; stakeholder/vendor management; ability to coach junior engineers.
Analytical thinking with solid problem‑solving and decision‑making skills.
Professional and/or Technical Certifications
CISSP/ GIAC GSEC, GCIH, GMON/ Splunk/ CCNP security or equivalent.
If you have exceptional hands‑on experience but don’t possess these certifications you can still apply.
#J-18808-Ljbffr
Singapore / Global
Singapore / Global
Singapore / Global
Singapore / Global
Singapore, Ubi / Global
Singapore / Global