jobs in ASTEK SINGAPORE INNOVATION TECHNOLOGY PTE. LTD.

ASTEK SINGAPORE INNOVATION TECHNOLOGY PTE. LTD. Hiring! Full Time Detection Engineer – EASM - ASM - Cyber Threat Intelligence (CTI) in Central Region (Singapore), Earn up to SGD 10,600 - Ricebowl

Detection Engineer – EASM - ASM - Cyber Threat Intelligence (CTI)

ASTEK SINGAPORE INNOVATION TECHNOLOGY PTE. LTD.

Outram, Central Region (Singapore)

Share
Save

Working Location

  • Outram Central Region (Singapore) Singapore

Job Description

Responsibilities

Detection Engineer – Security Exposure & Third-Party Cyber Assurance

Role Overview

We are looking for a

Detection Engineer

to support the build-out and operations of the

Security Exposure and Third-Party Cyber Assurance Centre of Excellence

, under

Cybersecurity Assurance and Defense (CASD) – External Threat Operations

.

The role will provide hands-on technical and operational support across two key areas:

Security Exposure Management (SEM):
Continuous, outside-in monitoring of the organisation and its portfolio companies’ internet-facing attack surface.

Third-Party Cyber Assurance (TPCA):
Cybersecurity due diligence and continuous assurance across third parties and the broader supply chain.

The successful candidate will operate continuous monitoring platforms, conduct third-party cyber assessments, validate active and emerging threats, and coordinate remediation to reduce the time between

exposure identification and potential exploitation

.

Key Responsibilities

Operate and maintain

always-on security exposure and external threat monitoring platforms

.

Monitor the organisation, portfolio companies, and third parties for

internet-facing vulnerabilities, exposures, and emerging cyber threats

.

Perform

Attack Surface Management (ASM/EASM)

activities to identify, assess, validate, and prioritise external security exposures.

Conduct

third-party/vendor cybersecurity assessments

, including security questionnaires and due diligence activities such as

VDD, ODD, and SIG

.

Assess third-party security controls against established frameworks including

NIST, ISO 27001, and CIS Controls

.

Leverage

Cyber Threat Intelligence (CTI), digital risk, and dark-web monitoring

to identify and validate relevant threats.

Investigate and validate high-risk or imminent security threats and coordinate appropriate remediation with relevant stakeholders.

Analyse

third- and fourth-party cyber risks

and their potential impact across the organisation and supply chain.

Develop scripts and automation using

Python, PowerShell, or Bash

to streamline monitoring, analysis, reporting, and operational activities.

Build and maintain

operational dashboards, reporting capabilities, and cyber posture metrics

using data lake platforms.

Document findings, processes, assessments, and remediation actions clearly for both technical and business stakeholders.

Support continuous improvement of

detection logic, control baselines, monitoring processes, and exposure management capabilities

.

Requirements

Degree in

Computer Science, Information Technology

, or a related discipline.

3–5 years of hands-on cybersecurity experience

, preferably within cybersecurity operations, attack surface/exposure management, third-party cyber risk assessment, or data lake environments.

Practical experience conducting

third-party/vendor security assessments and questionnaires

, including

VDD, ODD, and SIG

.

Good knowledge of cybersecurity frameworks such as

NIST, ISO 27001, and CIS Controls

.

Hands-on experience with

ASM/EASM, cyber exposure management, digital risk monitoring, dark-web monitoring, and/or Cyber Threat Intelligence (CTI)

platforms.

Strong scripting capabilities using

Python, PowerShell, or Bash

, particularly for automation and reporting.

Strong understanding of

TCP/IP, DNS, HTTP/S

, and common security exposures across

AWS, Azure, and GCP

.

Understanding of

third- and fourth-party cyber risk

and how security exposure can propagate through the supply chain.

Strong analytical and documentation skills, with the ability to handle sensitive security findings appropriately.

Good communication and stakeholder management skills across technical and business teams.

Collaborative, adaptable, and comfortable working in a fast-evolving cybersecurity environment.

Good to Have

Certifications such as

Security+, CEH, GIAC (GSEC/GCIH), CompTIA CySA+

, or equivalent.

CISSP Associate or CISM candidature

.

Experience developing

cyber posture scorecards and operational security dashboards

.

Familiarity with

detection engineering

, including tuning detection logic and refining security control baselines as capabilities mature.

SEM | TPCA | ASM/EASM | CTI | Third-Party Cyber Risk | VDD/ODD | SIG | NIST | ISO 27001 | CIS Controls | Digital Risk & Dark-Web Monitoring | Python | PowerShell | Bash | TCP/IP | DNS | HTTP/S | AWS | Azure | GCP | Data Lakes | Detection Engineering

Astek has been providing IT and engineering solutions for some of the world’s largest industrial and services groups for over 25 years.

We support our clients with the creation and development of their new products in four main areas of expertise:

  • Information technology and systems (IT & IS);
  • Industrial engineering and product development;
  • Internet of Things (IoT);
  • Digital, web and mobile solutions.
Our Group is operating for 30 years and Astek is a community of 2,500 passionate experts who empower our clients in over 14 countries throughout Europe, APAC, the Middle East and the Americas.

Some of our clients include BNP Paribas, CA-CIB, Societe Generale, Amadeus, Air France, Alstom, Airbus, Thales, Safran, Faurecia, Valeo, Renault, Jaguar, PSA, BMW, Daimler, Schneider Electric, Areva, ENGIE, Veolia, Total…

Our team is dedicated to offering our global clients project support while guaranteeing a consistent level of service alongside a commitment to excellence and strong core values.

We’re always looking for smart, talented, driven, down-to-earth, fun-to-work-with people who want to make a positive and meaningful impact.

To join our community!

*************

Important Information

Never provide your bank or credit card details when applying for jobs. Do not transfer any money or complete unrelated online surveys. If you see something suspicious, Report this Job ad.

Learn More