Jobs Companies Ensign InfoSecurity Security Analyst L2

About this Security Analyst L2 role at Ensign InfoSecurity

Ensign InfoSecurity · Onsite · Singapore

Ensign is hiring !

Responsibilities

  • Monitor client environments using SIEM platforms to detect, triage, and respond to cybersecurity threats in accordance with agreed SOPs and industry best practices
  • Analyse and investigate security alerts; perform deep-dive log analysis across system and OS layers to establish baselines and identify anomalous behaviour
  • Map threat tactics, techniques, and procedures (TTPs) to the MITRE ATT&CK framework and construct plausible attack-path hypotheses to inform containment actions
  • Produce escalation reports and notes; manage triage workflow and identify improvements to automation playbooks
  • Conduct IOC-based reactive threat hunts against limited TTPs
  • Operate SIEM, SOAR, EDR, and wider security tooling within the scope of the service engagement
  • Perform indicator of compromise (IOC) searches and triage incoming threat intelligence to assess relevance to client assets
  • Coordinate with vendors, external CERTs, and internal business stakeholders during incident response activities
  • Manage detection use cases, dashboards, and SOAR playbooks: author and tune detection rules, validate existing content, and implement automation to streamline triage and response
  • Manage the full incident ticket lifecycle, including creation, updates, closure, hygiene, and MITRE ATT&CK mapping
  • Respond to incidents and critical alerts outside of office hours when required
  • Any other tasks as assigned

Requirements

  • Degree in Computer Science, Information Security, or a related discipline
  • Minimum 6 years of experience in cybersecurity operations or a Security Operations Centre (SOC) environment
  • Hands-on experience with SIEM platforms and solid understanding of network, Windows, and Linux infrastructure
  • Hands-on experience with EDR platforms for endpoint detection, investigation, and response
  • Demonstrated ability to triage, investigate, and respond to security incidents independently, with accurate escalation judgement
  • Experience mapping threats to MITRE ATT&CK and conducting IOC-based threat hunts
  • Clear written and verbal communication; able to produce structured escalation reports and brief senior stakeholders
  • GIAC Certified Incident Handler (GCIH), EC-Council ECIH, or equivalent incident handling certification required

Preferred Skills / Qualities

  • Experience with SOAR platforms, playbook development, or automation scripting
  • Knowledge of cloud infrastructure security (AWS, Azure, or GCP)
  • Familiarity with Threat Intelligence Platforms and IOC management workflows
  • Experience with next-generation SIEM, NDR, or ITSM/incident management platforms
  • Exposure to OT security monitoring or regulatory frameworks such as NIST CSF, ISO 27001, or GDPR
  • CrowdStrike certifications (e.g., CCFA, CCFR) or other vendor product certifications are a plus

Other Special Working Conditions

  • Able to perform 12-hour shift duties (2 days’ work with 2 off-days). Working hours: AM - 7:30am to 7:30pm; PM - 7:30pm to 7:30am. Shift patterns and duration may vary from time to time
Ready to apply to Ensign InfoSecurity?
Apply to Ensign InfoSecurity

About Ensign InfoSecurity

About Ensign InfoSecurity Ensign InfoSecurity is the largest pure-play cybersecurity service provider in Asia. The company is headquartered in Singapore. We specialise in the provision of these services; cybersecurity advisory and assurance, implementation and management of advanced cybersecurity controls, cybersecurity monitoring, threat hunting, and incident response. Underpinning these competencies is in-house research and development in cybersecurity. What Makes Ensign Special? We are a technology company with warmth and soul. We are ambitious, propelled by our vision to be the cyber defender of choice, and fueled by the dedication and camaraderie of individuals who are eager to make a d

See all jobs at Ensign InfoSecurity →

Similar jobs

PA
Senior Cybersecurity Threat Analyst
PayPal
⚡ Apply early Central Singapore, Singapore Hybrid
● New 👁 Seen ✓ Applied 1d ago
Motional
Senior Cybersecurity Engineer, Defense Operations
Motional
⚡ Apply early Singapore, Central, Singapore Onsite
● New 👁 Seen ✓ Applied 3d ago
Assurity Trusted Solutions
Infrastructure Cybersecurity Engineer
Assurity Trusted Solutions
⚡ Apply early Singapore, Singapore, Singapor... Onsite
● New 👁 Seen ✓ Applied 5d ago
Circles
Engineer II, Cybersecurity Governance, Assurance & Data Protection
Circles
⚡ Apply early Singapore Onsite
● New 👁 Seen ✓ Applied 1w ago
OA
Senior Security Analyst
OANDA
⚡ Apply early Singapore Onsite
● New 👁 Seen ✓ Applied 1w ago
Assurity Trusted Solutions
Cybersecurity Engineer (Incident Response)
Assurity Trusted Solutions
⚡ Apply early Singapore, Singapore, Singapor... Onsite
● New 👁 Seen ✓ Applied 1w ago
Assurity Trusted Solutions
Cybersecurity Engineer (Detection Engineering)
Assurity Trusted Solutions
⚡ Apply early Singapore, Singapore, Singapor... Onsite
● New 👁 Seen ✓ Applied 1w ago
TB
Information Security Analyst (CSOC)
TD Bank
⚡ Apply early Singapore, Singapore Onsite
● New 👁 Seen ✓ Applied 2w ago
Control Risks
Security Intelligence Analyst (7-month Contract)
Control Risks
⚡ Apply early Singapore, Singapore, Singapor... Onsite
● New 👁 Seen ✓ Applied 2w ago

Sign up for suggestions tailored to the jobs you open and the searches you save.

More jobs at Ensign InfoSecurity

See all jobs at Ensign InfoSecurity →

Apply now
🤖

Whoa — hold up

JobsRadar was built for real people having a rough time in their job search — not for automated requests. You're clicking way too fast and you're now temporarily blocked.

Come back later. If you're genuinely job hunting, we've got your back — just act like a human.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Get an edge on your job hunt.

Join our Telegram channel for the stuff that helps you land the role — salary benchmarks, the weekly market pulse, and new-feature drops. No spam, just signal.

Join the channel — it's free