- Experience
- 10+ yrs
- Salary
- —
- Openings
- 1
- Posted
- 5 days ago
- Work mode
- In office
- Resume
- Required to apply
Where you'll work
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
About OCBC
Established in 1932, OCBC is Singapore's longest-standing bank, dedicated to helping individuals and businesses realize their goals through personalized services and solutions. The bank is on a transformative journey to become a future-ready learning organization by leveraging technology and creativity, aiming to be Asia's leading financial services partner for a sustainable future.
Role Overview
As a Security Platform Engineer within the Cyber Engineering - Risk team, you will play a pivotal role in safeguarding OCBC's systems by engineering and evolving endpoint and server security platforms such as enterprise EDR/XDR solutions. This hands-on position involves owning technical capabilities, driving the engineering roadmap, enhancing platform effectiveness, and implementing robust security controls that align with identified risks and requirements.
Key Responsibilities
- Lead engineering and ownership of enterprise endpoint and server security platforms including EDR/XDR and associated protection technologies.
- Develop and maintain the engineering roadmap, technical standards, lifecycle priorities, service objectives, and improvement backlogs.
- Engineer, configure, test, integrate, and optimize server and endpoint security controls across platforms.
- Extend core EDR/XDR functionality by incorporating additional platform features to enhance prevention, detection, response, automation, and control assurance.
- Translate inputs from threat intelligence, vulnerability assessments, risk analyses, audits, and operational needs into practical security configurations.
- Enhance detection coverage, telemetry accuracy, agent/sensor health, policy consistency, and overall platform performance across the enterprise.
- Implement monitoring and observability measures for platform availability, sensor coverage, data quality, policy deployment, and control effectiveness.
- Define service indicators, engineering metrics, dashboards, alerts, and reports that support proactive management and measurable security outcomes.
- Lead investigations and root-cause analyses of complex platform issues such as failures, coverage gaps, performance problems, and policy conflicts.
- Assess new product features and emerging technologies, conduct technical evaluations or proof of value projects, and formulate adoption and implementation strategies.
- Create architecture inputs, detailed engineering designs, test plans, standards, runbooks, and operational support documentation.
- Collaborate with diverse stakeholders to implement sustainable security controls and resolve complex security challenges.
- Develop reusable engineering best practices, enhance internal knowledge, and reduce dependency on individuals or external vendors through comprehensive documentation and training.
Candidate Profile
- At least 10 years of experience in cybersecurity engineering, security platforms, endpoint security, SRE, production or infrastructure engineering.
- Proven expertise in engineering and managing enterprise endpoint, server, EDR/XDR, or other cybersecurity platforms.
- Strong practical knowledge of telemetry, detection and response mechanisms, agent/sensor health monitoring, security policy management, and service reliability.
- Hands-on experience with enterprise endpoint security ecosystems such as Trend Micro Vision One, CrowdStrike, Palo Alto Cortex, Microsoft Defender, Tanium, or Symantec.
- Comprehensive understanding of modern endpoint/server protection methods, security baselines, prevention/detection controls, and risk-based security implementations.
- Skills in designing and implementing monitoring, observability, and service health indicators for critical platforms.
- Proficiency in Python, Ansible, APIs, CI/CD pipelines, scripting, automation, or software engineering practices to enhance security platform delivery.
- Ability to analyze control gaps, incidents, platform limitations, and operational risks to recommend engineering improvements.
- Experience managing product lifecycle, production readiness, architecture governance, and operational handover processes.
- Strong analytical thinking, troubleshooting, documentation abilities, stakeholder collaboration, and clear communication skills.
- Adept at working with global, cross-functional teams balancing security effectiveness, platform resilience, and operational sustainability.
Preferred Experience
- Deep hands-on familiarity with Trend Micro Vision One or similar EDR/XDR platforms focusing on policy design, integrations, telemetry, APIs, troubleshooting, and capability building.
- Exposure to SIEM, vulnerability management, cloud security, digital forensics, threat intelligence, or security operations integrations.
- Experience developing or modernizing cybersecurity monitoring and observability across various platforms or data feeds.
- Background in financial services, regulated sectors, or large enterprise environments with high availability demands.
- Relevant certifications in cybersecurity, cloud, endpoint security, DevSecOps, SRE or vendor-specific credentials.
- Knowledge or experience in AI-assisted security engineering, analytics, automation, or emerging endpoint/server protection technologies.
What We Offer
Competitive remuneration paired with a comprehensive benefits package tailored to diverse lifestyles. Opportunities for continuous professional and personal growth, community engagement, and a supportive work environment prioritizing your wellbeing and aspirations.