Detection Engineer, Senior
SGP, Singapore (PAS Sembawang Wharves)
Booz Allen Hamilton
Using tomorrow’s technologies, Booz Allen advances the nation’s most critical civil, defense, and national security missions.Key Role:
Design, develop, and implement advanced security detection mechanisms across various tools and platforms in a converged information technology (IT) and operational technology (OT) environment. Build and optimize integrations between security tools, ensuring seamless and efficient workflows tailored to the unique challenges of hybrid systems. Develop and maintain SOAR playbooks to automate and enhance detection and response processes while normalizing and enriching data from various sources to improve detection accuracy and efficiency. Leverage expertise with multiple SIEM platforms to evaluate and enhance security monitoring strategies. Collaborate closely with incident response teams to refine detection use cases and response actions, aligning detection strategies with frameworks such as MITRE ATT&CK to address known adversary behaviors. Stay current with emerging threats, detection techniques, and security technologies to improve detection capabilities continuously. Provide technical leadership in designing and orchestrating security programs, focusing on detection and automation across complex IT and OT environments.
Basic Qualifications:
5+ years of experience with cybersecurity engineering, including detection and automation
Experience with Python scripting for automating security workflows and building integrations
Experience with SOAR tools, playbook development, and SIEM platforms
Knowledge of data normalization and enrichment in security contexts
Knowledge of security frameworks, including MITRE ATT&CK, and their practical application
Ability to build and orchestrate comprehensive security detection programs
HS diploma or GED
Additional Qualifications:
Knowledge of regulatory standards and compliance requirements for IT and OT environments
Bachelor’s degree in Cybersecurity, Computer Science, or a related Technical field
Splunk Certified Cybersecurity Defense Engineer, MITRE ATT&CK Defender (MAD20), CISSP, or GIAC Certification
EEO Commitment
We’re an equal employment opportunity/affirmative action employer that empowers our people to fearlessly drive change – no matter their race, color, ethnicity, religion, sex (including pregnancy, childbirth, lactation, or related medical conditions), national origin, ancestry, age, marital status, sexual orientation, gender identity and expression, disability, veteran status, military or uniformed service member status, genetic information, or any other status protected by applicable federal, state, local, or international law.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Automation CISSP Compliance Computer Science GIAC Incident response MITRE ATT&CK Monitoring Python Scripting SIEM SOAR Splunk
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.