Enter a job title or keyword

Vice President, Threat Detection Engineer

SGX


Job Location:

Singapore - Singapore

Monthly Salary: Not provided by the employer
Posted: 21 August 2026 (13 days ago)
Application Deadline: 18 November 2026
Vacancies: 1 Vacancy

Job Summary

Job Summary

SGX is seeking Senior Vice President/Vice President(Information Security) leadand enhanced our detection Threat Detection Engineeris responsible fordesigning developing tuning andmaintainingcybersecurity detection capabilities across the organizations technology landscape.

This role focuses onidentifyingmalicious activity improving detection coverage reducing false positives and enabling rapid incident response through the deployment of advanced detection rules analytics and threat-hunting closely with Security Operations (SOC) Incident Response Threat Intelligence Security Engineering and IT teams the Threat Detection Engineer continuously enhances the organizations ability to detect and respond to cyber threats.

The candidatewillpossessstrong technicalexpertisein securitydetection relevantplatforms hands-on operational experience and an engineering mindsetfocused onimproving our speed to mustdemonstrateabilityto think strategically about SGX business and operations challenges andpossessa keen eye for control improvement through innovative use of technology. The candidate also needs to manage both internal and external customers well drive discussions with senior management and have a sound process and technical background to engage the Technology teams.

Job Responsibilities

Detection Engineering

Design develop andmaintainsecurity detection rules and use cases acrossand not limited toSIEM EDR NDR and cloud security platforms.

Create detection logic based on known threat actor tactics techniques and procedures (TTPs).

Develop behavioral analytics and anomaly detection models.

Map detectionstoMITRE ATT&CK MITRE ATLASframework techniques.

Continuously tune detection rules to improve effectiveness and reduce false positives.

Analyze emerging threats vulnerabilities and attack trends.

Translate threat intelligence into actionable detection content.

Assess detection coverage against evolving cyber threats.

Identifygaps in monitoring and recommend improvements.

Work with respectiveteamto develophypotheses andsupportingdetection content.

Collaborate with threat hunters toidentifypreviously unknown threats.

Convert successful threat-hunting findings into permanent detections.

Improve event correlation and alerting strategies.

Security Automation

Develop automated detection workflows using SOAR platforms.

Integrate detection content across multiple security controls.

Automate enrichment triage and response activities.

Detection validation

Perform adversary emulation and detection testing.

Conductpurple-teamexercises with offensive security teams.

Validate detection effectiveness through attack simulation.

Measure detection coverage andeffectivenessmetrics.

Integration & Engineering

Integrate security tools with other systems (e.g. SIEM ticketing platforms CMDB SOAR) to enable automation and improve operationalsynergy.

Direct drive process and documentation improvement in platform operations escalation procedures and workflows.

Work closely with Engineering Infrastructure Cloud and SOC teams to ensure deploymentof detection logics.

Vendor & Stakeholder Collaboration

Work with internal stakeholders to ensure toolsoutputs supportdetectionuse cases incident response audits and compliance programs.

Expectations:

Sense of urgency for all urgent and important matters and accountable to decision made

Clear visionin mind to innovate and streamline the operationsprocesses and detection ability defined by theorganisation.

Passion to deliver sustainable solutions and continued improvement in control and risk mitigation.

Good discipline intimelysubmission and reporting key metrics and status.

Job Requirements

At least 10 to 15 years of relevant experience preferably in financial services or asset management industries with a minimum of 5 years in cybersecurity platforms.

In-depth knowledge and experience in information security policy and principles.

Experience in MAS technology related guidelines such as Technology Risk Management Guidelines Cyber Hygiene Outsourcing guidelines etc.

Strong technical knowledge of common security tools (e.g. EDR SIEM SOAR XDR email security vulnerability management cloud security).

Experience tuning detection rules configuring integrations and conducting process enhancement.

Demonstrate ability to operate in diverse environments and cultures and enjoys working in challenging and fast-paced environment.

Self-initiated meticulous versatile analytical and inquisitive.

Strong communication and presentation skills to wide and diverse audiences.

Preferred Skills:

Certifications such as CISSP CISM GIAC GCIA/GSEC Microsoft Security certifications or equivalent.

Experience with security platforms Endpoint security Cloud security detection technologies analytics & query languages operating systems and security frameworks (e.g. MITRE ATT&ACK NIST).


Required Experience:

Exec


About Company

Company Logo

Asia’s most international, multi-asset exchange, operating securities, fixed income and derivatives markets to the highest regulatory standards.

View Profile View Profile