- Singapore
工作地点
职位描述
岗位职责
Cyber Platform Engineer
Experience- 7+ Years
Location- Singapore
We are looking for an experienced Cyber Platform Engineer to manage the operations, maintenance, troubleshooting, security, and lifecycle management of critical cybersecurity platforms across secure enterprise environments. The role will primarily focus on Palo Alto Firewalls, Carbon Black EDR, Cloudflare DDoS/WAF, and CyberArk PAM.
The engineer will be responsible for preventive maintenance, platform administration, security reviews, patching, incident support, access management, backup and restoration, change management, and compliance with cybersecurity policies and regulatory requirements.
Key Responsibilities
Palo Alto Firewall Operations
Perform quarterly preventive maintenance, health checks, patching, firmware upgrades, and diagnostics.
Manage firewall policies, rules, NAT, routing, security profiles, and configurations.
Perform log and account reviews and investigate anomalies.
Execute vulnerability patching and CVE remediation according to defined timelines.
Perform firewall configuration, rule whitelisting, log extraction, configuration backup, and restoration.
Support firewall-related security assessments and audits.
Raise and manage change requests for maintenance and configuration changes.
Carbon Black EDR
Administer Carbon Black EDR servers hosted on RHEL 8.
Perform OS, database, application, backup, health-check, and patching activities.
Troubleshoot PostgreSQL/Solr, log forwarding, indexing, and queue-related issues.
Monitor endpoint sensor health, connectivity, and deployment status.
Support endpoint onboarding, sensor recovery, redeployment, and diagnostics.
Coordinate with OEM/vendor teams for advanced troubleshooting and support.
Cloudflare DMS / WAF
Act as the primary technical contact for Cloudflare DMS-related requests.
Perform access, log, and report reviews.
Manage website onboarding/offboarding.
Maintain WAF/DDoS security rules and configurations.
Handle IP whitelisting/blacklisting, log extraction, alerts, and security policy changes.
Manage SSL certificate renewals and website maintenance activities.
Review and optimise DMS rules and notifications with relevant stakeholders and vendors.
CyberArk PAM
Administer CyberArk Privileged Access Management infrastructure.
Manage privileged account onboarding and offboarding.
Perform periodic privileged access reviews.
Handle password expiry/rotation and privileged access management activities.
Process PAM-related service and change requests.
Support investigations and incident response activities.
Security, Compliance & Incident Response
Ensure cybersecurity platforms comply with organisational security policies and applicable cybersecurity requirements.
Support cybersecurity assessments, audits, vulnerability management, and security hardening.
Immediately report security incidents, vulnerabilities, unauthorised access, and security compromises.
Retrieve and analyse logs, configurations, and platform data during investigations.
Prepare incident investigation reports and implement preventive measures.
Backup & Restoration
Maintain backup and restoration plans for all supported cybersecurity platforms.
Ensure configuration backups are completed before and after changes.
Verify scheduled backups and maintain appropriate backup evidence.
Coordinate annual restoration testing and track remediation activities.
Maintain backup records for audits and cybersecurity assessments.
Documentation & Reporting
Prepare maintenance reports after each maintenance cycle.
Maintain health-check records, log review findings, patch status, backup evidence, license expiry tracking, and outstanding action items.
Maintain SOPs, asset inventories, configuration documentation, and troubleshooting guides.
Maintain security dashboards and trackers for vulnerabilities, access reviews, deviations, and audit items.
Mandatory Technical Skills
Strong enterprise networking knowledge: TCP/IP, VLAN, Routing, NAT, DNS, Network Segmentation and Firewall Traffic Flow.
Hands-on experience with Palo Alto NGFW or equivalent firewall platforms.
Strong knowledge of firewall policy/rule management, NAT, routing, security profiles, log analysis, patching, firmware upgrades, and backup/restoration.
Hands-on experience with Carbon Black EDR or equivalent EDR platforms.
Experience with Cloudflare DMS/WAF or equivalent DDoS mitigation and WAF solutions.
Experience with CyberArk PAM or equivalent Privileged Access Management platforms.
Understanding of air-gapped networks, restricted connectivity, offline patch/file transfer, data diodes, and unidirectional gateways.
重要安全守则
申请工作时,切勿提供您的银行或信用卡详细资料。不要转账或完成无关的在线调查问卷。如果您发现可疑内容,请举报此招聘广告。