HK Senior Detection and Response Engineer
Primary stack
Nice to have's
Job description
About the Position
We are seeking a HK Senior Detection and Response Engineer to join our team in Hong Kong, focusing on robust security detection and incident response.
Responsibilities
- Lead technical activities (security usecase definition, design, implementation & enrichment) in the team of IT Production Security Investigation & Incident Response based on real-world attack scenarios and frameworks like MITRE ATT&CK, ensuring a robust security detection posture across various layers.
- Understand ongoing security threats in the wild and propose security usecases to detect and, when possible, protect or mitigate.
- Be autonomous on technical activities (definition, R&D/threat hunting) in the team of IT Production Security Investigation & Incident Response and oversee the detection capabilities of the 24/7 regional IT Production SOC.
- Respond to Cyber / IT security incidents and evaluate the type and severity of security events.
- Identify recurring security issues and risks and develop mitigation plans and recommend process improvements.
- Partner with global, regional, and local stakeholders to ensure organizational and procedural efficiency and readiness for detection of suspicious events and reaction.
- Continuously improve the processes to strengthen the current SOC framework via review of policies and operational playbooks.
Contributing Responsibilities
- Partner with the APAC Business CSIRT for integrated security monitoring and alert/incident handling operations.
- Contribute to local security incident response outside the direct scope of responsibilities (i.e., local IT production in some APAC business entities).
- Contribute to the Bank compliance with regulatory requirements and internal policies.
- Contribute to the reporting of all incidents according to the Incident Management System.
- Contribute to the control frameworks in day-to-day business activities, such as Control Plan.
- Participate in Audit interviews and provide the required evidence.
Requirements
- Requires a minimum of 7 or more years of experience as a security professional.
- Experience in security usecase design/development with understanding of Java language.
- Good working knowledge of Linux (RedHat/Ubuntu).
- Working knowledge to interpret security logs or instructions into threat models. SecOPS-DevOPS mindset & skills.
- Experience and knowledge in investigating incidents, remediation, tracking, and follow-up for incident closure with concerned teams, stakeholders.
- Thorough understanding of technologies and security concepts, with knowledge & hands-on experience in SIEM Product and Security Incident Management.
- Experience on incident response activities (threat hunting, event analysis, incident investigation, reporting).
- Comfortable working with and making the most of large data sets (collection, analysis, response), creating content/use cases/models, and bringing an automation mindset.
Nice to Have
- Experience in common scripting languages such as Python, PowerShell, Bash, SQL.
- Experience in SIEM on ELK (Elastic Logstash Kibana) stack is a plus.
- Professional credentials in one of the relevant IT Security disciplines is a plus (SANS / CISSP / OSCP).
We Offer
- Work-life balance: Hybrid working mode and Work-from-Abroad benefits, 18 days of Annual leave.
- Health & insurance: Comprehensive coverage including General Practitioner, hospitalization.
- Performance incentives: Annual bonus based on individual performance.
- Learning & development: Training programs, certification opportunities, and training incentives to support career growth.
About the Company
Sopra Steria is a listed European technology leader specializing in Consulting, Digital Services, and Software. With over 51,000 employees worldwide across Europe, North America, and Asia, the Group supports organizations in driving their digital transformation and delivering sustainable business value.
Our Hong Kong entity operates alongside Singapore to deliver Infrastructure, Cloud, and Cybersecurity services to clients across the Asia Pacific region.
For this position, we are looking for an Senior Detection and Response Engineer who can assist one of our clients - a leading investment bank.
© Sopra Steria. This job description was sourced from the employer's public career page. TheJob is not the employer — we index the posting and route candidates to the source. All content rights and hiring decisions belong to the employer.
IT Services
About the Company Sopra Steria is a prominent player in the tech industry in Europe, recognized for its consulting, digital services, and software development. The company operates in nearly 30 countries globally and employs around 55,000 individuals. Products, Services & Tech Stack Core Solutions: Consulting, digital services, and software development. Project Scope & Target Clients Client Base: Not specified. Engineering Scale: Not specified.
More at Sopra Steria
All 96 rolesConsultant(e) senior ou confirmé(e) - Stratégie Cybersécurité - Île-de-France
Sopra Steria · France
Senior Customer Experience Solution Engineer (m/w/d)
Sopra Steria · Germany
Projektledare Dynamics 365 Business Central
Sopra Steria · Sweden
Senior løsningsarkitekt
Sopra Steria · Norway