Ensign InfoSecurity Logo

Ensign InfoSecurity

Correlation & Automation Lead

Reposted 2 Days Ago
Be an Early Applicant
In-Office
Singapore
Mid level
In-Office
Singapore
Mid level
The role involves maintaining and improving security monitoring use cases, correlating data, and automating threat detection in a SOC environment. Candidates will build dashboards and perform analyses to enhance detection methods.
The summary above was generated by AI

Ensign is hiring !

Key Responsibilities 

  • Perform implementation, maintenance, support and operation of the project's security monitoring use cases 
  • Maintain understanding of the architecture and work with security team to understand the use cases to be created. 
  • Identity, evaluate and recommend new areas of improvements for the implementation. 
  • Adhere to established change management process and other service management process in day-to-day tasks 
  • Create, finetune and maintain SIEM data sources, use cases, correlation rules and security alerts classifications 
  • Review, propose and generate dashboards and reports to automate monitoring of systems and log and threat intelligence feed ingestion, and reduce low value event escalations
  • Build rules and intelligence to detect threats in all monitored assets
  • Implement and devise detection method of such threats in our security operations through SIEM use cases etc
  • Perform periodic analysis of security events, network traffic, and logs to engineer new detection methods, or create efficiencies when available
  • Review and update data enrichment, including use of threat intelligence to enhance fidelity of detection
  • Review and maintain UEBA data sources and use cases 

 

Requirements 

  • At least 3 years of experience in security operations in a SOC environment 
  • At least 2 years of experience in creating, finetuning and maintaining correlation rules and SIEM dashboards 
  • Working experience in Regex and/or scripting 
  • Strong critical thinking / contextual analysis abilities
  • Strong investigative and analytical problem solving skills
  • Stakeholder management
  • Meticulous with an eye for details 
  • Product certification such as Splunk Enterprise Certified Administrator or equivalent 
  • Professional certification such as SANS (such as SANS GCDA, GCIA, GDSA, GMON) would be an advantage 
  • Good understanding of whole of government environment would be an advantage 

Top Skills

Regex
Security Operations
SIEM
Splunk
Threat Intelligence

Ensign InfoSecurity Singapore Office

30A Kallang Place, #08-01, Singapore, Singapore , Singapore, 339213

Similar Jobs

4 Hours Ago
Remote or Hybrid
Singapore, SGP
Senior level
Senior level
Productivity • Sales • Software
The Mid Market Account Executive manages the full sales cycle, builds customer relationships, develops presentations, and exceeds sales targets.
Top Skills: SaaS
Internship
Financial Services
As a Summer Analyst in the Human Resources Analyst Development Program, you will engage in a 9-week internship focused on HR practices, contributing to projects in compensation, recruiting, and employee relations while networking and developing essential skills.
Top Skills: Data AnalysisMS Office
4 Hours Ago
Hybrid
Singapore, SGP
Internship
Internship
Financial Services
Join the 2025 Code for Good Hackathon to develop technology solutions for social good organizations, gaining experience and networking opportunities.
Top Skills: C#C++JavaJavaScriptPython

What you need to know about the Singapore Tech Scene

The digital revolution has driven a constant demand for tech professionals across industries like software development, data analytics and cybersecurity. In Singapore, one of the largest cities in Southeast Asia, the demand for tech talent is so high that the government continues to invest millions into programs designed to develop a talent pipeline directly from universities while also scaling efforts in pre-employment training and mid-career upskilling to expand and elevate its workforce.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account