Honeywell Logo

Honeywell

Cyber Sec Archt/Engr II

Posted 11 Days Ago
Be an Early Applicant
In-Office
Singapore, SGP
Mid level
In-Office
Singapore, SGP
Mid level
Monitor SIEM and ICS logs, triage and escalate incidents, develop and troubleshoot SOAR playbooks, perform malware analysis and threat hunting, assist forensics, tune detection rules, mentor L1 analysts, and document remediation and controls to improve security posture.
The summary above was generated by AI

THE FUTURE IS WHAT WE MAKE IT

OT SOC Analyst II

Singapore, Singapore

This position will be a part of the Industrial Cyber-Security team and will participate in delivering and developing cyber security services for a wide range of industrial global customers. The position will have a direct reporting relationship to the Global Security Operation Center Manager and Incident Response Lead and work as part of a global managed services team. The position requires very good cyber security knowledge, excellent analytical skills and proficient handling of specific tools such as SIEMs and Security Orchestration, Automation and Response platforms. A successful candidate would be able to evaluate security incidents and determine true positives situations within an environment and provide context enrichment service before escalation to Level 3 Cyber Security Incident Response team as needed.


KEY RESPONSIBILITIES

  • Monitors SIEM, trouble tickets / email notifications and in-person escalations, logs from ICS infrastructure components (SCADA, HMI, PLC, RTU, Control Servers), applications or network devices such as switches, firewalls, IDS/IPS;
  • Design, implement, test Security Orchestration, Automation and Response processes and procedures;
  • SOAR playbook development and troubleshoot automation capabilities;
  • Examine the escalated tickets to determine if they are true positive or false positives.
  • Performs malware analysis, threat hunting and threat modeling activities; 
  • Assist forensic investigation by providing reports and other information;
  • Reviews and suggests improvements to control deployment process and installation procedures 
  • Develops and documents remediation recommendations for business owners to improve the control environment in which a security incident occurs.  Recommendations must be easily understood by non-technical staff;
  • Provide recommendations and direction on the tuning of signatures, rules, alerts, parsers, and custom scripts within the monitoring solutions;
  • Participates in root cause analysis and helps with the orchestration of remediation;
  • Understand defense in depth strategies and apply those to Client’s environment;
  • Creates and disseminates security related notifications for internal staff (for example: trends, developments, changes in capabilities);
  • Acts as L2 Escalation layer in the SOC.
  • Mentors Level 1 SOC Analysts;
  • Creates manuals, guides and knowledge base entries;
  • Keep abreast of latest security and privacy legislation, emerging threats, regulations, advisories, alerts, and vulnerabilities pertaining to HCE OT IR SOC and its customers;
  • Remains knowledgeable of our current solution portfolio and the technical specificities of our offerings.

YOU MUST HAVE

  • Bachelor’s degree in a computer related field such as Computer Science, Computer information systems or electronics;
  • Minimum of 3 years’ experience in cyber security SOC  industry;
  • Minimum of 5 years’ experience in Information Technology;
  • Strong diagnostic and analytical skills including problem solving, trouble shooting, management of priorities and self-direction to resolve complex issues;
  • Effective written and verbal skill to enable strong communication capabilities;
  • Information Technology certifications: ITIL Foundations;
  • Security Certifications: CCNA, CompTIA Security+, GCIH, or other similar certifications;
  • Experience to automate tasks and integrate systems with Python;
  • Experience with SPLUNK or CHRONICLE SIEM platforms and logging solutions.

WE VALUE

  • Ability to write documentation and summaries;
  • Experience working in a client facing Cyber SOC environment;
  • Experience securing industrial or corporate networks and assets against cyber threats;
  • Knowledge of ICS environments;
  • Knowledge of cybersecurity frameworks such as MITRE ATT&CK, MITRE for ICS and NIST.  

About UsHoneywell helps organizations solve the world's most complex challenges in automation, the future of aviation and energy transition. As a trusted partner, we provide actionable solutions and innovation through our Aerospace Technologies, Building Automation, Energy and Sustainability Solutions, and Industrial Automation business segments – powered by our Honeywell Forge software – that help make the world smarter, safer and more sustainable.

Similar Jobs

11 Days Ago
In-Office
Singapore, SGP
Mid level
Mid level
Aerospace
Join the Industrial Cyber-Security team to monitor SIEMs, analyze incidents, develop SOAR playbooks, perform malware analysis and threat hunting, assist forensics, tune detection rules, mentor L1 SOC analysts, and produce remediation and control improvement guidance for industrial/OT and corporate environments.
Top Skills: ChronicleFirewallsHmiIds/IpsLogging SolutionsMalware AnalysisMitre Att&CkNistPlcPythonRtuScadaSIEMSoarSplunkThreat Hunting
4 Hours Ago
In-Office
Singapore, SGP
Senior level
Senior level
Artificial Intelligence • Fintech • Payments • Business Intelligence • Financial Services • Generative AI
Build and maintain Airwallex's 3DS card authentication infrastructure and payment APIs. Design, develop, and operate reliable services, collaborate with global teams and financial partners, troubleshoot production issues, and own critical components of the online payment processing flow.
Top Skills: 3DsAliyun CloudAPIsAWSGCPHTTPIstioJavaJwtKafkaKotlinNginxNoSQLOauth2.0PostgresRabbitMQRedisRestSpringSpring Boot
4 Hours Ago
Hybrid
Singapore, SGP
Senior level
Senior level
Artificial Intelligence • HR Tech • Information Technology • Software • Business Intelligence
Own the Philippines mid-market territory from the Singapore office, driving new logo acquisition and revenue growth using the Qualtrics XM platform. Prospect, qualify, and close deals end-to-end while coordinating solutions consultants, legal, and customer success to execute complex SaaS sales. Build account plans, engage senior stakeholders, and ensure adoption and value realization.
Top Skills: AIQualtricsSaaSXm Platform

What you need to know about the Singapore Tech Scene

The digital revolution has driven a constant demand for tech professionals across industries like software development, data analytics and cybersecurity. In Singapore, one of the largest cities in Southeast Asia, the demand for tech talent is so high that the government continues to invest millions into programs designed to develop a talent pipeline directly from universities while also scaling efforts in pre-employment training and mid-career upskilling to expand and elevate its workforce.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account