Salary
≈ $85k – $191k per year (Estimated)
Location
In office (Singapore)
Seniority
Senior · 6+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Ensign InfoSecurity is one of Asia's largest pure play cybersecurity firms and is Singaporean owned. It provides consulting, managed security operations, threat intelligence and incident response. The company was formed by combining the security businesses of Singtel and Certis.
Ensign is hiring !
Responsibilities
- Monitor client environments using SIEM platforms to detect, triage, and respond to cybersecurity threats in accordance with agreed SOPs and industry best practices
- Analyse and investigate security alerts; perform deep-dive log analysis across system and OS layers to establish baselines and identify anomalous behaviour
- Map threat tactics, techniques, and procedures (TTPs) to the MITRE ATT&CK framework and construct plausible attack-path hypotheses to inform containment actions
- Produce escalation reports and notes; manage triage workflow and identify improvements to automation playbooks
- Conduct IOC-based reactive threat hunts against limited TTPs
- Operate SIEM, SOAR, EDR, and wider security tooling within the scope of the service engagement
- Perform indicator of compromise (IOC) searches and triage incoming threat intelligence to assess relevance to client assets
- Coordinate with vendors, external CERTs, and internal business stakeholders during incident response activities
- Manage detection use cases, dashboards, and SOAR playbooks: author and tune detection rules, validate existing content, and implement automation to streamline triage and response
- Manage the full incident ticket lifecycle, including creation, updates, closure, hygiene, and MITRE ATT&CK mapping
- Respond to incidents and critical alerts outside of office hours when required
- Any other tasks as assigned
Requirements
- Degree in Computer Science, Information Security, or a related discipline
- Minimum 6 years of experience in cybersecurity operations or a Security Operations Centre (SOC) environment
- Hands-on experience with SIEM platforms and solid understanding of network, Windows, and Linux infrastructure
- Hands-on experience with EDR platforms for endpoint detection, investigation, and response
- Demonstrated ability to triage, investigate, and respond to security incidents independently, with accurate escalation judgement
- Experience mapping threats to MITRE ATT&CK and conducting IOC-based threat hunts
- Clear written and verbal communication; able to produce structured escalation reports and brief senior stakeholders
- GIAC Certified Incident Handler (GCIH), EC-Council ECIH, or equivalent incident handling certification required
Preferred Skills / Qualities
- Experience with SOAR platforms, playbook development, or automation scripting
- Knowledge of cloud infrastructure security (AWS, Azure, or GCP)
- Familiarity with Threat Intelligence Platforms and IOC management workflows
- Experience with next-generation SIEM, NDR, or ITSM/incident management platforms
- Exposure to OT security monitoring or regulatory frameworks such as NIST CSF, ISO 27001, or GDPR
- CrowdStrike certifications (e.g., CCFA, CCFR) or other vendor product certifications are a plus
Other Special Working Conditions
- Able to perform 12-hour shift duties (2 days’ work with 2 off-days). Working hours: AM - 7:30am to 7:30pm; PM - 7:30pm to 7:30am. Shift patterns and duration may vary from time to time
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
654,521 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Free forever. No card. Under a minute.
Your match
How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.
Recommended for you based on this role
Similar stack
Same company
Singapore
Associate Software Engineer (AI Engineering)
11 hours ago
≈ $57k – $161k per year (Estimated) • In office • Full-Time • 2+ years exp • Singapore
Python
Go
JavaScript
TypeScript
Databases
MySQL
PostgreSQL
AI/ML
Copilot
Cursor
Claude
Model Context Protocol
Prompt Engineering
AI Agents
LLM
OpenAI
Anthropic
OpenAI Agents SDK
Agno
Frontend
Tailwind CSS
Next.js
React.js
DevOps
GCP
Azure
CI/CD
AWS
Docker
Kubernetes
Cybersecurity
MITRE ATT&CK
Apply
≈ $30k – $66k per year (Estimated) • Remote • Full-Time • 5+ years exp • Bengaluru
Cybersecurity
CyberArk
MITRE ATT&CK
Zero Trust
Apply
Enterprise Customer Success Manager
1 day ago
≈ $76k – $140k per year (Estimated) • Remote/Hybrid • Full-Time • 5+ years exp • Dublin
DevOps
GCP
Azure
AWS
IAM
Cybersecurity
ISO 27001
MITRE ATT&CK
NIST CSF
PCI DSS
SOC 2
GDPR
HIPAA
Zero Trust
Microsoft Entra ID
Apply
Principal Cybersecurity Domain Architect
1 day ago
≈ $135k – $292k per year (Estimated) • In office • Full-Time • 10+ years exp • Boise • Richardson
AI/ML
AI Agents
LLM
Cybersecurity
ISO 27001
MITRE ATT&CK
NIST CSF
OWASP Top 10
Zero Trust
Defense in Depth
Apply
$225k – $338k per year • In office • Full-Time • 15+ years exp • Boston • New York
Cybersecurity
MITRE ATT&CK
NIST CSF
Apply
Associate Software Engineer (AI Engineering)
11 hours ago
≈ $57k – $161k per year (Estimated) • In office • Full-Time • 2+ years exp • Singapore
Python
Go
JavaScript
TypeScript
Databases
MySQL
PostgreSQL
AI/ML
Copilot
Cursor
Claude
Model Context Protocol
Prompt Engineering
AI Agents
LLM
OpenAI
Anthropic
OpenAI Agents SDK
Agno
Frontend
Tailwind CSS
Next.js
React.js
DevOps
GCP
Azure
CI/CD
AWS
Docker
Kubernetes
Cybersecurity
MITRE ATT&CK
Apply
Senior Cybersecurity Consultant (IAM)
11 hours ago
≈ $88k – $198k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Singapore
Python
Java
DevOps
GCP
Azure
AWS
IAM
Cybersecurity
Okta
CyberArk
Ping Identity
BeyondTrust
Apply
Consultant, Security Testing and Red Teaming
5 days ago
≈ $48k – $122k per year (Estimated) • In office • Full-Time • 3+ years exp • Singapore
Python
PowerShell
Bash
AI/ML
Red Teaming
DevOps
GCP
Azure
AWS
Cybersecurity
Burp Suite
Metasploit
Nmap
BloodHound
Apply
Security Project Manager
7 days ago
≈ $14k – $36k per year (Estimated) • In office • Full-Time • Malaysia
Management
Agile
Scrum
Apply
Customer Success Manager
9 days ago
≈ $45k – $116k per year (Estimated) • In office • Full-Time • 4+ years exp • Singapore
DevOps
SLI/SLO/SLA
Apply
≈ $39k – $93k per year (Estimated) • In office • Full-Time • 2+ years exp • Bachelor's Degree • Singapore
Analytics
Microsoft Excel
Apply
≈ $75k – $161k per year (Estimated) • In office • Full-Time • 4+ years exp • Singapore
Apply
≈ $89k – $195k per year (Estimated) • In office • Full-Time • 2+ years exp • Bachelor's Degree • Singapore
Apply
≈ $75k – $161k per year (Estimated) • In office • Full-Time • Singapore
Apply
≈ $75k – $161k per year (Estimated) • In office • Full-Time • 4+ years exp • Singapore
Apply
This is one of many
654,521 more open roles from verified company boards, updated every day.

