Anzeige
Zurück
A

Security & Observability Platform Engineer

ACTIVATE INTERACTIVE PTE LTD
Singapore · 10294 km · vor 1 Tagen
FreelanceVor OrtS$8’000–11’000/Mt.
Matching nur mit Login und CV verfügbar
Lade deinen CV hoch und sieh sofort, wie gut jeder Job zu dir passt.
Anmelden

Gefragte Skills

Security OperationsRemediationKubernetesDirect experienceInformation SystemsComputer ScienceOffensive SecurityPenetration Testing
Anzeige

Stellenbeschreibung

Activate Interactive Pte Ltd (“Activate”) is a leading technology consultancy headquartered in Singapore with a presence in Malaysia and Indonesia. Our clients are empowered with quality, cost-effective, and impactful end-to-end application development, like mobile and web applications, and cloud technology that remove technology roadblocks and increase their business efficiency.

We believe in positively impacting the lives of people around us and the environment we live in through the use of technology. Hence, we are committed to providing a conducive environment for all employees to realize their full potential, who in turn have the opportunity to continuously drive innovation.

We are searching for our next team members to join our growing team.

If you love the idea of being part of a growing company with exciting prospects in mobile and web technologies that create positive impact on people’s lives, then we would love to hear from you.

Please note that this is a 12 months fixed-term contract role.

What will you do?

We are looking for an engineer who will own the end-to-end evaluation, design, and implementation of security and observability solutions for a container-based private cloud platform. This role spans the full lifecycle — from architectural research and tool selection through production deployment and ongoing operations — across unified telemetry, security detection, vulnerability management, supply chain security, and automated incident response.

You will be the technical owner of the platform's observability and security monitoring stack, working across platform engineering, security operations, and SRE teams to deliver a unified telemetryfirst architecture.

Evaluation & Research

Conduct structured evaluation of candidate tools against criteria including license compliance, community governance, vendor independence, and technical fitness

Perform proof-of-concept exercises to validate architectural decisions (e.g. ingestion throughput, storage efficiency, query

latency, operational complexity)

Assess and track governance posture of selected tools; maintain contingency paths for vendor-led dependencies

Engage with upstream open-source communities and foundations to stay current on project maturity and roadmap changes

Design & Architecture

Design unified telemetry pipelines using open standards to serve both SRE observability and security operations from a single data layer

Architect security detection workflows using vendor-neutral detection languages to ensure portability of detection content across backends

Design vulnerability aggregation and management workflows spanning container scanning, software composition analysis, static analysis, infrastructure vulnerability scanning, and software bill of materials generation

Design supply chain security controls including image signing, provenance attestation, and registry policy enforcement

Design exposure path analysis using graph-based tooling to map relationships across compute orchestration, identity, source control, and vulnerability data

Design automated remediation and orchestration workflows integrated with alerting, ChatOps, and ticketing

Produce and maintain architecture decision records documenting design rationale, trade-offs, and change history

Implementation & Operations

Deploy and operate the observability stack: telemetry collection, columnar storage, dashboarding, metrics scraping, alerting, and log routing

Deploy and operate the security monitoring stack: endpoint/hostbased detection, detection rule evaluation, vulnerability aggregation, and infrastructure scanning

Deploy and operate CI pipeline security scanning: container image scanning, dependency scanning, SBOM generation, static analysis, infrastructure-as-code scanning, and secrets detection

Implement image registry security with integrated vulnerability scanning and admission policy enforcement

Implement identity, directory, secrets management, and certificate lifecycle infrastructure

Implement collaboration and incident management tooling (ChatOps, ticketing)

Build and maintain detection rules, alerting rules, and automation playbooks

Operate all components on a container orchestration platform with fleet-wide deployment tooling

Process & Governance

Define and document operational runbooks for each capability area

Establish and maintain vendor-independence contingency entries for all vendor-led tools

Conduct periodic licence and governance re-assessment of selected tools

Collaborate with legal/compliance on copyleft licence reviews before deployment

Define SLOs for telemetry pipeline availability, ingestion latency, and detection coverage

Participate in security incident response using the tooling you build and operate

Requirements

Required Skills & Experience

5+ years in platform engineering, SRE, or security engineering roles

Strong hands-on experience with at least 3 of the following:

Telemetry collection frameworks and instrumentation standards

Columnar or analytical databases for log/trace/event storage

Metrics scraping and alerting ecosystems

SIEM operations and detection engineering (vendor-neutral detection rule formats preferred)

Search-based log analytics platforms (to understand migration context)

Production experience deploying and operating on Kubernetes or equivalent container orchestration platforms

Experience with container security scanning and software composition analysis tooling

Familiarity with supply chain security concepts: SBOM, image signing, provenance attestation, admission control

Experience with at least one SOAR or automation/orchestration platform

Solid understanding of log collection and routing architectures

Experience writing detection rules or correlation logic for security monitoring

Ability to evaluate open-source projects for governance health, license risk, and production readiness

Strong Linux systems fundamentals

Preferred Skills

Experience with host-based intrusion detection or endpoint detection and response t

Quelle: mycareersfuture.gov.sg. Für die Inhalte der Inserate übernehmen wir keine Haftung.

Bewerbungstext erstellen

Wir erstellen aus deinem Profil und dieser Stelle einen Entwurf. Du prüfst und passt ihn an.

Nur mit Konto verfügbar.

Jetzt anmelden
Anzeige