368,634open jobs
9,437companies
50,578added this week
Browse all
Location
In office (Jakarta)
Seniority
Middle · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Grab Holdings is a leading Southeast Asian "super-app" technology company headquartered in Singapore. Originally founded as a ride-hailing service, Grab has expanded into a comprehensive digital ecosystem offering transportation (GrabCar, GrabBike), food and grocery delivery (GrabFood, GrabMart), and fintech services (GrabPay, digital banking, lending, and insurance). Operating across eight countries in the region, Grab connects millions of consumers with driver and merchant partners daily.

Life at Grab

At Grab, every Grabber is guided by The Grab Way, which spells out our mission, how we believe we can achieve it, and our operating principles - the 4Hs: Heart, Hunger, Honour, and Humility. These principles guide and help us make decisions as we work to create economic empowerment for the people of Southeast Asia.

Get to Know the Team

You’ll be part of an exciting team responsible for the Grab Cyber Defence with the core mission of defending Grab and Grabbers from external and internal threat actors. We do this by detecting, hunting, and responding to those threat actors. Cyber Defence continuously prepares by emulating threat actors to test and practice our defenses. Based on our work and data we collect, we provide insights to our key stakeholders on current and future threats to Grab.

Get to Know the Role

You should have 3-5 or more years in a Security Operations Centre where you have strong security operations analytical skills and understand alerts generated by Cyber Security tools and mentored and assisted junior team members. Alternatively, you may have very strong Cyber Security domain knowledge in Pen-testing, Red-team, Digital Forensics, Cyber Threat Intelligence, or similar experience and looking for a slight shift.

As a Grab Senior Threat Detection Engineer, your core responsibilities are triaging and finding ways to reduce the mean time to detection and containment of a threat before it becomes a larger threat to Grab. You would be helping the junior and team leads understand and triage alerts as well. You are confident in reaching out to Grabbers directly at all seniority levels and cultures, to determine if an action was a threat to Grab.

You would have improved Security Operations in your previous roles by reducing false positives, and creating new alert criteria. You may have done some automation already (SOAR, scripting or engineering) or have good ideas on how to operate in a large-scale and complex environment. You have helped out or maybe lead incidents and can work independently given a task. Malware and analysis of obfuscated scripts may have been something you are highly proficient at.

You want to participate in threat hunting and purple team engagements to improve Cyber Defence core mission.

You’ll be surrounded by equally driven and passionate individuals and supported via training and given time to learn.

The Day-to-Day Activities:

  • Review Cyber Security alerts evaluate their severity and escalate as required.

  • Review alert criteria for host and network intrusions and push them to production. Also produce decision criteria and playbooks for alerts, automating as much as possible.

  • Mature existing detection rules, and create automated tests and automation workflows to improve the overall detection capability.

  • Contribute to identifying gaps in the current logging and detection capability and suggest mechanisms to remediate these gaps.

  • Contribute to threat hunting, purple team efforts searching for unknown malicious activity in our network using the latest threat intel and knowledge of Cyber security.

  • Respond with the team when an incident occurs, you will be on the front lines of response for the entire company.

  • Contribute to engaging the overall Grab team, working collaboratively to address Grab’s security challenges while understanding business needs.

Our Commitment

We recognize that with these individual attributes come different workplace challenges, and we will work with Grabbers to address them in our journey towards creating inclusion at Grab for all Grabbers.

The Must-Haves:

  • 3-5 years of experience in a Security Operations Centre or worked as a Pentester, Red-teamer, Cyber Threat Intelligence, Digital Forensics or Incident Response who wants to make a slight shift.

  • Ability to work on an on-call basis in a rotating roster.

  • Some experience working with SIEM.

  • Some experience conducting triaging and escalation in a Cyber Security Operations environment.

  • Knowledge of frameworks such as ATT&CK and kill-chain and good communication skills.

  • Willingness to work in a regional role covering multiple cultures and countries

  • Working collaboratively with other team members.

  • Strong, proven track record of delivering results in fast-paced, resource-scarce environments. Assume your favorite tool is not available but that you have the chance to learn a new one.

  • Ability to handle stress effectively and maintain strong output during triage or incidents.

  • Curiosity and a relentless drive to understand how complex IT environments work and how detections can be built.

  • Participated in Incident Response in complex corporate environments.

  • Experience with multiple security tools/systems/logs (network, EDR, WAF, OS etc.)

  • Some scripting ability to automate tasks or process large amounts of unstructured data.

  • Developing security rules in a SIEM platform

The Nice-to-Haves

  • Some Cloud knowledge, CI/CD pipelines, Containerisation, and bringing a Cyber Security mindset to the mix.

  • Relevant industry certifications

    • Cyber Security: SANS GCIH, GMON, GCIA, GCFA, SIEM, etc.;

    • Cloud infrastructure: (AWS, Azure, GCP).

  • Developing security rules in a SIEM platform, workflows in a SOAR platform, and working knowledge of cloud platforms.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,634 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Jakarta
$70k – $126k per year • In office • Full-Time • 4+ years exp • Bachelor's Degree • Shiloh
DevOps
AWS
Azure
GCP
Cybersecurity
Cyber Kill Chain
Defense in Depth
MITRE ATT&CK
Apply
$24k – $58k per year (Estimated) • Remote/Hybrid • Contractor • Moscow
Bash
PowerShell
Python
DevOps
Kali Linux
SLI/SLO/SLA
Cybersecurity
BloodHound
GoPhish
MITRE ATT&CK
Nessus
OpenVAS
OWASP ZAP
Wazuh
Apply
$49k – $111k per year (Estimated) • Remote • Part-Time • 3+ years exp • Mexico City
Python
Cybersecurity
MITRE ATT&CK
Management
Miro
Apply
$99k – $225k per year • In office • Full-Time • McLean
AI/ML
AI Agents
DevOps
IAM
Cybersecurity
CyberArk
Microsoft Entra ID
MITRE ATT&CK
Okta
Apply
$87k – $157k per year • In office • Full-Time • 4+ years exp • Bachelor's Degree • Ashburn
Bash
PowerShell
Python
Visual Basic
Cybersecurity
Cyber Kill Chain
MITRE ATT&CK
Apply
$31k – $61k per year (Estimated) • In office • Full-Time • 5+ years exp • Bengaluru
Python
SQL
Databases
Presto
AI/ML
AI Agents
Fine-tuning
Kubeflow
LangChain
LangGraph
LangSmith
LLM
LoRA
MLFlow
PEFT
Prompt Engineering
Spark
Transformers
Amazon SageMaker
LLM Guardrails
DevOps
Git
GitHub
Apply
In office • Full-Time • 5+ years exp • Bachelor's Degree • Ho Chi Minh City
C#
C++
Erlang
Go
Haskell
Java
Node JS
OCaml
PHP
Python
Ruby
Rust
Scala
JavaScript
Apply
In office • Full-Time • 7+ years exp • Jakarta
Go
Python
DevOps
AWS
CI/CD
Datadog
GitLab CI
Grafana
Kibana
GitLab
Apply
In office • Full-Time • 5+ years exp • Bachelor's Degree • Ho Chi Minh City
C#
C++
Erlang
Go
Haskell
Java
Node JS
OCaml
PHP
Python
Ruby
Rust
Scala
JavaScript
Apply
In office • Full-Time • 4+ years exp • Bachelor's Degree • Jakarta
Python
SQL
JavaScript
Frontend
D3.js
Analytics
Power BI
A/B Testing
Apply
In office • Full-Time • Jakarta
Apply
SAP BASIS 1 day ago
In office • Full-Time • Bachelor's Degree • Jakarta • Semarang
Databases
SAP HANA
DevOps
AWS
Azure
GCP
Incident Management
Apply
In office • Full-Time • 7+ years exp • Jakarta
Go
Python
DevOps
AWS
CI/CD
Datadog
GitLab CI
Grafana
Kibana
GitLab
Apply
In office • Full-Time • 2+ years exp • Bachelor's Degree • Jakarta
Python
SQL
Analytics
Power BI
Tableau
Apply
In office • Full-Time • 4+ years exp • Bachelor's Degree • Jakarta
Python
SQL
JavaScript
Frontend
D3.js
Analytics
Power BI
A/B Testing
Apply
See all jobs
This is one of many
368,634 more open roles from verified company boards, updated every day.