Senior Security Analysis Engineer
Gefragte Skills
Stellenbeschreibung
Singapore | SGD6,500–7,500 | Full-time
职位重点: 高级事件分析、安全检测工程、关联逻辑设计及复杂技术问题升级处理。
职位简介
我们正在招聘一名高级安全分析工程师,负责主导安全检测能力的设计及优化,并负责复杂安全事件的调查与分析。该职位主要负责检测机制设计、高级安全分析、检测规则及关联逻辑设计、复杂技术问题升级处理,以及新SIEM、安全监控及安全分析能力的研究、设计与实施。
主要职责
负责设计、开发及优化安全检测机制,提升安全检测效果及覆盖范围。
主导复杂安全事件的调查及分析,包括对日志、系统活动、命令、脚本及其他相关证据进行关联分析。
负责设计及维护检测规则、关联逻辑及行为检测机制。
作为复杂安全事件及安全监控技术问题的技术升级处理点。
负责研究、设计及实施新的SIEM、安全监控及安全分析能力。
推动整体安全检测、监控及分析能力的持续优化。
为SIEM 工程师在复杂安全事件调查及检测相关工作中提供技术指导及支持。
任职资格
信息安全、网络安全、计算机科学或相关专业本科及以上学历。
至少5 年安全监控、SIEM、检测工程、安全分析或相关安全工程工作经验。
具备主流开源SIEM 平台的丰富实际操作经验,包括安全事件调查、日志分析、事件关联分析及安全检测工程。
具备扎实的Linux 和Windows 系统、安全日志、系统活动及安全事件分析知识。
具备复杂安全事件调查、检测规则开发、事件关联分析及行为分析的实际经验。
具备较强的分析、故障排查及问题解决能力,并注重工作细节。
具备良好的沟通及技术文档编写能力,能够为其他工程师提供技术指导。
具备良好的英语及华文沟通能力,能够与区域相关团队进行有效协作。
优先经验
具备Python、Shell 或其他自动化工具经验,并能够应用于安全分析及检测能力开发。
具备研究、评估及实施新的SIEM、安全监控或安全分析技术的经验。
具备作为复杂技术问题升级处理点及为其他安全工程师提供技术指导的经验。
具备整体检测覆盖、事件调查流程或安全监控流程优化经验。
职位影响
该职位影响公司的复杂安全事件检测及调查,并推动技术规范、检测效果及整体安全工程团队能力持续提升。
Role focus: Advanced incident analysis, detection engineering, correlation design and technical escalation.
About the Role
We are looking for an experienced security professional to lead complex investigations and advance our detection capabilities. You will design detection mechanisms, solve challenging security monitoring issues and guide other engineers through complex technical analysis.
What You’ll Do
Design, develop and optimise security detection mechanisms to improve coverage and effectiveness.
Lead complex incident investigations by correlating logs, system activities, commands, scripts andother evidence.
Design and maintain detection rules, correlation logic and behavioural detection mechanisms.
Serve as the technical escalation point for complex incidents and security monitoring issues.
Research, evaluate, design and implement new SIEM, monitoring and security analysis capabilities.
Drive continuous improvement across security detection, monitoring and analysis.
Provide technical guidance toSIEM Engineers during complex investigations and detection-related work.
What We’re Looking For (Must Have)
Bachelor’s degree in Information Security, Cybersecurity, Computer Science or a related field.
At least 5 years of relevant experience in security monitoring, SIEM, detection engineering, security analysis or security engineering.
Strong hands-on experience with open-source SIEM platforms, security event investigation, log analysis, event correlation and detection engineering.
Strong knowledge of Linux and Windows systems, security logs, system activities and security event analysis.
Proven experience leading complex incident investigations and developing detection rules, correlation logic or behavioural analytics.
Strong analytical, troubleshooting and problem-solving skills, including independent investigation of unfamiliar technologies, commands, logs and scripts.
Strong communication and technical documentation skills, with the ability to guide other engineers.
Effective communication in English and Mandarin, as the role works with regional stakeholders who primarily communicate in these languages.
Good to Have
Python, Shell scripting or automation experience applied to security analysis or detection development.
Experience researching, evaluating and implementing new SIEM or security monitoring technologies.
Experience acting as a technical escalation point or mentoring security engineers.
Experience improving detection coverage, investigation workflows or security monitoring processes across an enterprise environment.
Why This Role Matters
This role has direct influence over how the organisation detects and investigates sophisticated threats. You will shape technical standards, strengthen detection quality and raise the capability of the wider security engineering team.
Quelle: mycareersfuture.gov.sg. Für die Inhalte der Inserate übernehmen wir keine Haftung.
Bewerbungstext erstellen
Wir erstellen aus deinem Profil und dieser Stelle einen Entwurf. Du prüfst und passt ihn an.
Nur mit Konto verfügbar.
Jetzt anmelden