FPT Asia Pacific Pte Ltd

SL2703 - Security Engineer

FPT Asia Pacific Pte Ltd Singapore, Singapore

IT Services and IT Consulting · 10,001+ employees

8 h ago
security Mid (2-5 yrs) Full-time Singapore
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The role involves operating, maintaining, and optimizing managed security services and security controls across enterprise infrastructure, cloud, and application environments. You will also support incident handling, threat response, and the implementation of security measures for AI and post-quantum cryptography initiatives.

What they look for

Cybersecurity operations Security engineering Managed security services Infrastructure security Vulnerability management SIEM SOAR Cloud security Endpoint security Incident response Threat detection Access control Python PowerShell Bash Stakeholder management

Requirements

Candidates must have at least 3 years of experience in cybersecurity operations or security engineering with hands-on knowledge of various security technologies. A bachelor's degree in a relevant field and professional certifications such as CISSP or CISM are preferred.

Full description

About the Role

We are looking for a Cybersecurity Engineer to support the operational delivery, continuous improvement, and performance of Managed Security Services within the Cyber Fusion Centre.

The role focuses on the implementation, operation, monitoring, and optimisation of security controls across enterprise infrastructure, cloud services, applications, endpoints, networks, identity environments, and emerging technologies.

You will provide hands-on security engineering support, maintain effective security operations processes, strengthen preventive and detective controls, and contribute to the organisation's cyber resilience, regulatory readiness, and threat response capabilities.

Key Responsibilities

Managed Security Services Operations

  • Operate, maintain, and continuously improve Managed Security Services across the enterprise security technology stack.
  • Monitor service health, availability, capacity, and performance of assigned security platforms.
  • Support security incident handling, troubleshooting, escalation, and remediation activities.
  • Maintain operational documentation, runbooks, escalation procedures, standard operating procedures, and service metrics.
  • Ensure reliable service delivery and timely resolution of operational security issues.

Security Engineering & Controls

  • Implement, configure, tune, troubleshoot, and maintain security controls across infrastructure, endpoint, network, cloud, application, and identity environments.
  • Support the deployment of preventive, detective, and responsive security controls aligned with enterprise security and regulatory requirements.
  • Monitor and validate control effectiveness through testing, reporting, and continuous improvement.
  • Identify control gaps and recommend practical security improvements.

Security Tools & Technology

  • Provide hands-on support for security technologies including email security, IDPS, WAF, anti-malware, attack surface monitoring, certificate management, vulnerability management, SIEM/SOAR, endpoint security, and cloud security controls.
  • Maintain security platform configurations, access controls, integrations, and operational readiness.
  • Work closely with security vendors and managed service providers to troubleshoot issues and improve service performance.
  • Monitor vendor performance and ensure agreed service levels are achieved.

Security Requirements & Documentation

  • Develop and maintain system security requirements, operational procedures, configuration standards, and technical documentation.
  • Support audit evidence collection, control attestation, compliance reporting, and regulatory activities.
  • Ensure security documentation remains accurate, current, and accessible to relevant internal teams and service providers.

AI Security

  • Support the implementation of security controls for AI and machine learning environments.
  • Assist with securing data, model deployments, inference endpoints, logging, access controls, and system configurations.
  • Identify and mitigate AI-related security risks, including data leakage, prompt injection, adversarial attacks, model abuse, and data poisoning.
  • Support AI security monitoring and incident response readiness.

Post-Quantum Cryptography & Crypto-Agility

  • Support post-quantum cryptography readiness initiatives, including cryptographic inventories, certificate visibility, dependency tracking, and migration planning.
  • Monitor developments in quantum-resistant cryptographic standards and assess their potential impact on TLS, digital signatures, encryption services, and certificate management.
  • Contribute to hybrid cryptographic migration and crypto-agility initiatives.

Projects & Continuous Improvement

  • Support cybersecurity projects, remediation initiatives, service improvements, and operational uplift activities.
  • Track risks, dependencies, actions, and milestones to ensure timely delivery.
  • Recommend improvements to strengthen cyber resilience, reduce operational risk, and improve security outcomes.
  • Escalate material risks, control gaps, recurring incidents, vendor performance issues, and unresolved operational concerns.

Requirements

  • Minimum 3 years of relevant experience in cybersecurity operations, security engineering, Managed Security Services, infrastructure security, or related technology risk functions.
  • Hands-on experience with security technologies such as email security, IDPS, WAF, anti-malware, attack surface monitoring, certificate management, vulnerability management, SIEM/SOAR, endpoint security, or cloud security.
  • Strong understanding of cybersecurity principles, secure configuration, incident response, threat detection, vulnerability management, access control, logging, and security monitoring.
  • Ability to investigate complex security issues, identify root causes, assess risks, and recommend practical remediation.
  • Familiarity with scripting or automation using Python, PowerShell, Bash, or equivalent is preferred.
  • Strong stakeholder management, documentation, problem-solving, and collaboration skills.
  • Experience working within a regulated financial services environment is advantageous.

Education & Certifications

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related discipline is preferred.
  • Relevant certifications such as CISSP, CISM, CCSP, Security+, GIAC, cloud security, network security, or vendor-specific security certifications are advantageous.

Key Stakeholders

  • You will work closely with Enterprise Information Security, Cyber Fusion Centre, Technology Operations, Infrastructure, Cloud, Application, Identity & Access Management, Data, Risk, Compliance, Audit, and other technology teams.
  • You will also coordinate with managed security service providers, security technology vendors, implementation partners, consultants, and other approved third-party providers.

Similar roles