OCBC Bank Logo

OCBC Bank

Senior SOC Engineer (GTS - Command Centre)

Posted 11 Days Ago
Be an Early Applicant
In-Office
Singapore, SGP
Senior level
In-Office
Singapore, SGP
Senior level
Engineer and enhance SOC capabilities by developing SOAR playbooks, automation and AI-assisted workflows, tuning detection use cases (MITRE ATT&CK), integrating SOC tools, troubleshooting platform issues, and coaching analysts to improve detection, investigation efficiency and response readiness.
The summary above was generated by AI
WHO WE ARE:

As Singapore’s longest established bank, we have been dedicated to enabling individuals and businesses to achieve their aspirations since 1932. How? By taking the time to truly understand people. From there, we provide support, services, solutions, and career paths that meet their individual needs and desires.

 Today, we’re on a journey of transformation. Leveraging technology and creativity to become a future-ready learning organisation. But for all that change, our strategic ambition is consistently clear and bold, which is to be Asia’s leading financial services partner for a sustainable future.

 We invite you to build the bank of the future. Innovate the way we deliver financial services. Work in friendly, supportive teams. Build lasting value in your community. Help people grow their assets, business, and investments. Take your learning as far as you can. Or simply enjoy a vibrant, future-ready career.

Your Opportunity Starts Here.

Why Join
Protecting our customers' assets and data is at the heart of everything we do at OCBC. As a Cyber Engineering - Risk professional, you'll play a critical role in safeguarding our systems and networks from cyber threats. You'll be part of a team that's shaping the future of cybersecurity in the financial industry.
How you succeed
The candidate will be part of the Cyber Security Operations team and will be responsible for engineering and enhancing SOC capabilities across threat detection, automation, SOAR playbooks, AI-assisted workflows and SOC tooling. The candidate will support the development of scalable, repeatable and measurable capabilities to improve threat monitoring, investigation efficiency and response readiness.
What you do

  • Develop and maintain SOAR playbooks, automation workflows and AI-assisted SOC processes to support alert triage, enrichment, correlation, investigation and response.

  • Design automated enrichment and correlation workflows to improve investigation context and reduce manual analysis.

  • Review detection effectiveness, false positives, coverage gaps and recurring alert patterns, and recommend improvements to prevention, detection and response capabilities.

  • Lead development, validation and finetuning of detection use cases, SOAR playbooks and AI-assisted SOC workflows.

  • Manage integration of SOC tools and data sources to improve alert enrichment, event correlation, investigation context, automation reliability and reporting.

  • Drive troubleshooting of detection issues, broken playbooks, failed automations, data quality issues and platform-related constraints affecting SOC operations.

  • Optimise usage of SOC tools and evaluate new technologies where required.

  • Build repeatable and efficient engineering processes to support monitoring, detection, analysis, escalation and remediation of potential cyber security incidents.

  • Track and report effectiveness of SOC engineering enhancements such as playbook adoption, automation rate and analyst effort reduction.

  • Provide technical guidance to SOC analysts on effective use of SOC tools, detection logic, SOAR playbooks and AI-assisted investigation workflows.

  • Identify opportunities where automation, AI-assisted triage or agentic workflows can safely reduce manual effort, improve investigation consistency and accelerate response.

  • Identify opportunities for SOC improvements, including metrics definition, playbook enhancements, detection optimisation, workflow automation and analyst capability uplift.

  • Prioritise tasks appropriately and formulate clear responses or recommendations to stakeholders in a fast-paced environment.

Who you are

  • 5 or more years of experience in a SOC environment, security engineering, detection engineering, incident response or related cybersecurity field.

  • Strong hands-on experience with SOC tools such as SIEM, SOAR, EDR, XDR or UEBA.

  • Experience developing and maintaining SOAR playbooks or automation workflows.

  • Experience designing, developing, deploying and finetuning security monitoring use cases based on frameworks such as MITRE ATT&CK.

  • Experience developing threat detection content, SIEM correlation rules, EDR queries, dashboards and alert tuning recommendations.

  • Strong proficiency in SIEM, network traffic, host event and security event log analysis.

  • Good understanding of Windows, Linux, Active Directory, identity compromise, network protocols, cloud/SaaS logs, endpoint artefacts and common attacker techniques.

  • Experience working with threat intelligence, IOCs and TTPs to support detection and response capability development.

  • Experience with REST APIs, JSON, webhooks and other tool integration.

  • Proficiency in Python, PowerShell, Bash or similar scripting is preferred.

  • Ability to write clear technical documentation, workflow diagrams, implementation guides and analyst-facing procedures.

  • Ability to prioritise effectively, manage competing operational demands and make sound technical recommendations.

  • Familiarity with AI-assisted security operations, SOC copilots, automated enrichment, agentic workflows or machine-assisted triage is a plus.

  • Experience in banking, financial services, critical infrastructure or highly regulated environments is a plus.

  • Relevant certifications such as GCIH, GCIA, GCFA, GNFA, GREM, OSCP, CISSP, Splunk, Microsoft Sentinel, SOAR-related certifications or equivalent are preferred.

Who we are
As Singapore's longest established bank, we have been dedicated to enabling individuals and businesses to achieve their aspirations since 1932. How? By taking the time to truly understand people. From there, we provide support, services, solutions, and career paths that meet their individual needs and desires.
Today, we're on a journey of transformation. Leveraging technology and creativity to become a future-ready learning organisation.
But for all that change, our strategic ambition is consistently clear and bold, which is to be Asia's leading financial services partner for a sustainable future.
We invite you to build the bank of the future. Innovate the way we deliver financial services. Work in friendly, supportive teams. Build lasting value in your community. Help people grow their assets, business, and investments. Take your learning as far as you can. Or simply enjoy a vibrant, future-ready career. Your Opportunity Starts Here.

What we offer:


Competitive base salary. A suite of holistic, flexible benefits to suit every lifestyle. Community initiatives. Industry-leading learning and professional development opportunities. Your wellbeing, growth and aspirations are every bit as cared for as the needs of our customers.

HQ

OCBC Bank Singapore, Singapore, SGP Office

65 Chulia St, Singapore, Singapore, 049513

Similar Jobs

6 Minutes Ago
In-Office or Remote
Singapore, SGP
Expert/Leader
Expert/Leader
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Own named enterprise accounts and territories in SEA, develop strategic sales and account plans, build C-level relationships, close complex SaaS deals, work with channel partners, provide forecasting, and travel regionally to meet customers.
Top Skills: Atlassian SuiteCloudCRMOn-Premise SoftwareSaaS
7 Minutes Ago
In-Office or Remote
Singapore, SGP
Expert/Leader
Expert/Leader
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Lead Service Collection sales across Singapore, Indonesia, and Malaysia. Develop territory strategy, close enterprise deals, drive co-sell and GTM campaigns with partners, forecast revenue, and coordinate cross-functional teams to ensure customer satisfaction and retention.
Top Skills: AtlassianItilItsm
An Hour Ago
In-Office
Singapore, SGP
Senior level
Senior level
Artificial Intelligence • Fintech • Payments • Business Intelligence • Financial Services • Generative AI
Lead strategy, roadmap, and execution for Airwallex's Liquidity Platform with emphasis on safeguarding, bank account lifecycle, counterparty risk, and AI-driven liquidity insights. Deliver compliant, scalable automation to support market launches, improve buffer/FX/interest handling, reduce manual overhead, and build cash reporting and forecasting capabilities in partnership with Engineering, Finance, Compliance, and banking partners.

What you need to know about the Singapore Tech Scene

The digital revolution has driven a constant demand for tech professionals across industries like software development, data analytics and cybersecurity. In Singapore, one of the largest cities in Southeast Asia, the demand for tech talent is so high that the government continues to invest millions into programs designed to develop a talent pipeline directly from universities while also scaling efforts in pre-employment training and mid-career upskilling to expand and elevate its workforce.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account