Honeywell Logo

Honeywell

Cyber Security Architect/Engineer (OT SOC Analyst II)

Posted One Month Ago
Be an Early Applicant
In-Office
Singapore, SGP
Mid level
In-Office
Singapore, SGP
Mid level
Monitor SIEM and ICS logs, triage and escalate incidents, develop and troubleshoot SOAR playbooks, perform malware analysis and threat hunting, assist forensics, tune detection rules, mentor L1 analysts, and document remediation and controls to improve security posture.
The summary above was generated by AI

THE FUTURE IS WHAT WE MAKE IT

Cyber Security Architect/Engineer (OT SOC Analyst II)

Singapore, Singapore

This position will be a part of the Industrial Cyber-Security team and will participate in delivering and developing cyber security services for a wide range of industrial global customers. The position will have a direct reporting relationship to the Global Security Operation Center Manager and Incident Response Lead and work as part of a global managed services team. The position requires very good cyber security knowledge, excellent analytical skills and proficient handling of specific tools such as SIEMs and Security Orchestration, Automation and Response platforms. A successful candidate would be able to evaluate security incidents and determine true positives situations within an environment and provide context enrichment service before escalation to Level 3 Cyber Security Incident Response team as needed.


KEY RESPONSIBILITIES

  • Monitors SIEM, trouble tickets / email notifications and in-person escalations, logs from ICS infrastructure components (SCADA, HMI, PLC, RTU, Control Servers), applications or network devices such as switches, firewalls, IDS/IPS;
  • Design, implement, test Security Orchestration, Automation and Response processes and procedures;
  • SOAR playbook development and troubleshoot automation capabilities;
  • Examine the escalated tickets to determine if they are true positive or false positives.
  • Performs malware analysis, threat hunting and threat modeling activities; 
  • Assist forensic investigation by providing reports and other information;
  • Reviews and suggests improvements to control deployment process and installation procedures 
  • Develops and documents remediation recommendations for business owners to improve the control environment in which a security incident occurs.  Recommendations must be easily understood by non-technical staff;
  • Provide recommendations and direction on the tuning of signatures, rules, alerts, parsers, and custom scripts within the monitoring solutions;
  • Participates in root cause analysis and helps with the orchestration of remediation;
  • Understand defense in depth strategies and apply those to Client’s environment;
  • Creates and disseminates security related notifications for internal staff (for example: trends, developments, changes in capabilities);
  • Acts as L2 Escalation layer in the SOC.
  • Mentors Level 1 SOC Analysts;
  • Creates manuals, guides and knowledge base entries;
  • Keep abreast of latest security and privacy legislation, emerging threats, regulations, advisories, alerts, and vulnerabilities pertaining to HCE OT IR SOC and its customers;
  • Remains knowledgeable of our current solution portfolio and the technical specificities of our offerings.

YOU MUST HAVE

  • Bachelor’s degree in a computer related field such as Computer Science, Computer information systems or electronics;
  • Minimum of 3 years’ experience in cyber security SOC  industry;
  • Minimum of 5 years’ experience in Information Technology;
  • Strong diagnostic and analytical skills including problem solving, trouble shooting, management of priorities and self-direction to resolve complex issues;
  • Effective written and verbal skill to enable strong communication capabilities;
  • Information Technology certifications: ITIL Foundations;
  • Security Certifications: CCNA, CompTIA Security+, GCIH, or other similar certifications;
  • Experience to automate tasks and integrate systems with Python;
  • Experience with SPLUNK or CHRONICLE SIEM platforms and logging solutions.

WE VALUE

  • Ability to write documentation and summaries;
  • Experience working in a client facing Cyber SOC environment;
  • Experience securing industrial or corporate networks and assets against cyber threats;
  • Knowledge of ICS environments;
  • Knowledge of cybersecurity frameworks such as MITRE ATT&CK, MITRE for ICS and NIST.  

About UsHoneywell Technologies is a global, pure-play automation company with a legacy of innovating to help solve the world’s most mission-critical challenges, enhancing the quality of life for people and communities around the world. We serve the building, industrial and process sectors with a broad portfolio of services, solutions and products, underpinned by our Honeywell Technologies Accelerator operating system and Honeywell Technologies Forge intelligence layer. By combining the deep domain expertise of our more than 50,000 employees with decades of data from our global installed base, we are uniquely positioned to lead the industrial sector’s transition from automation to autonomy.

Similar Jobs

One Month Ago
In-Office
Singapore, SGP
Mid level
Mid level
Aerospace
Join the Industrial Cyber-Security team to monitor SIEMs, analyze incidents, develop SOAR playbooks, perform malware analysis and threat hunting, assist forensics, tune detection rules, mentor L1 SOC analysts, and produce remediation and control improvement guidance for industrial/OT and corporate environments.
Top Skills: ChronicleFirewallsHmiIds/IpsLogging SolutionsMalware AnalysisMitre Att&CkNistPlcPythonRtuScadaSIEMSoarSplunkThreat Hunting
3 Hours Ago
Hybrid
Singapore, SGP
Junior
Junior
Fintech • Mobile • Payments • Software • Financial Services
Manages treasury operations, cash movements, liquidity planning, FX trades, and relationships with banks and counterparties across APAC. Improves and automates global money movement processes, supports treasury solutions for product launches, manages operational risks, and partners with finance, engineering, analytics, and product teams. The role requires accurate execution, independent decision-making, process ownership, and flexibility to support regional shifts and occasional holidays.
Top Skills: LookerSuperset
4 Hours Ago
Easy Apply
In-Office or Remote
Singapore, SGP
Easy Apply
Senior level
Senior level
Cloud • Security • Software • Cybersecurity • Automation
Own and grow GitLab’s partner-sourced and influenced revenue across ASEAN. Build strategic relationships with AWS, GCP, major system integrators, cloud-native partners, and AI-native partners. Manage joint business plans, QBRs, Marketplace motions, partner enablement, pipeline generation, and quota attainment. Collaborate with sales, marketing, and regional ecosystem teams while helping shape GitLab’s ASEAN partner coverage model.
Top Skills: AWSCloud InfrastructureDevsecopsGCPGitlabHyperscaler Marketplace

What you need to know about the Singapore Tech Scene

The digital revolution has driven a constant demand for tech professionals across industries like software development, data analytics and cybersecurity. In Singapore, one of the largest cities in Southeast Asia, the demand for tech talent is so high that the government continues to invest millions into programs designed to develop a talent pipeline directly from universities while also scaling efforts in pre-employment training and mid-career upskilling to expand and elevate its workforce.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account