At a Glance
- Tasks: Join our team to enhance security operations and protect critical infrastructure.
- Company: YTL PowerSeraya, a leading player in Singapore's energy sector.
- Benefits: Competitive salary, flexible hours, and continuous learning opportunities.
- Other info: Collaborative environment with growth potential in cybersecurity and cloud technologies.
- Why this job: Make a real impact in cybersecurity while working with cutting-edge technologies.
- Qualifications: Degree in IT or Cybersecurity and experience in security operations.
The predicted salary is between 63000 - 77000 £ per year.
COMPANY DESCRIPTION
YTL Power Seraya Pte.
Limited, a wholly owned subsidiary of YTL Power International Berhad, is in the business of producing, wholesaling, trading and retailing of energy; with a primary focus on electricity.
As an established player in Singapore's energy sector, it supplies the country's energy needs through its multi-utilities platform.
With a licensed generation capacity of 3,100 MW*, it is one of Singapore's largest electricity generators.
The YTL Power Seraya Group has three subsidiaries: the retail arm under the Geneco brand provides electricity price plans and energy solutions to homes and businesses, Petro Seraya is the fuel management arm of the Group, and Taser Power which operates Taser Power Plant.
Besides being a Plaque of Commendation (GOLD) awardee at the National Trade Union Congress's May Day Awards 2023, YTL Power Seraya has adopted four Tripartite Standards under the Tripartite Alliance for Fair and Progressive Employment Practices, and has committed to be a fair and progressive employer.
To find out more about the organisation, please visit ytlpowerseraya. com.
*As at 4 February 2026, our registered generating capacity with EMA is 2,487 MW.
RESPONSIBILITIES
We are seeking a motivated and detail-oriented Security Operations Engineer to join our Infrastructure Operations & Cyber Security team.
This role is responsible for supporting day-to-day security operations across Azure and on-premises environments, with a focus on security event investigation, endpoint protection, vulnerability management, security monitoring, and cyber awareness initiatives.
The successful candidate will work closely with internal technology teams, managed security service providers, vendors, and business stakeholders to investigate security events, improve cyber resilience, maintain operational security controls, and contribute to the continuous enhancement of the organisation's security posture.
KEY RESPONSIBILITIES
- Security Engineering & Hardening
- Support the implementation, maintenance, and continuous improvement of security controls across infrastructure and cloud environments.
- Assist with onboarding and validating security log sources into approved SIEM platforms.
- Support detection tuning, security configuration reviews, and monitoring improvements.
- Evaluate and implement security technologies that strengthen the organisation's cyber defence capabilities.
- Support the deployment and maintenance of security hardening standards across Windows, Linux, Microsoft 365, and Azure environments.
- Ensure controls align with CIS Benchmarks and industry-recognised security best practices.
- Vulnerability Management & Threat Advisory
- Coordinate vulnerability assessment activities for critical infrastructure and servers.
- Validate assessment findings and engage system owners to ensure timely remediation.
- Monitor cybersecurity advisories, threat intelligence notifications, and indicators of compromise (IOCs).
- Perform IOC validation activities and coordinate blacklisting, containment, investigation, and remediation actions where necessary.
- Track, monitor, and report remediation progress until closure.
- Security Operations & Incident Response
- Investigate and follow up on security alerts, incidents, and suspicious activities escalated by the external SOC team across endpoints, servers, email, and cloud environments.
- Assess security events, determine potential impact, gather relevant technical and business context, and coordinate containment, recovery, remediation, and closure activities.
- Act as the internal coordination point between infrastructure teams, vendors, system owners, and external security providers during incident investigations.
- Support security monitoring activities through SIEM dashboards, workbooks, queries, scheduled reporting, evidence collection, and case tracking.
- Utilize approved AI-assisted tools to improve alert triage, investigation efficiency, log analysis, and case documentation in accordance with security and data-handling requirements.
- Identify and promote practical AI-assisted use cases that improve operational consistency and security investigation effectiveness.
- Endpoint Security & Platform Protection
- Administer and support endpoint protection and Endpoint Detection & Response (EDR) platforms.
- Monitor agent health, policy compliance, signature updates, asset coverage, and endpoint security status.
- Perform endpoint troubleshooting, agent deployment, reinstallation, and remediation activities.
- Support housekeeping activities to maintain security tool effectiveness and infrastructure visibility.
- Security Awareness & User Engagement
- Coordinate organisation-wide security awareness initiatives and phishing simulation campaigns.
- Deliver targeted follow-up activities, awareness communications, and user education programs.
- Monitor phishing resilience results and prepare reporting on participation rates, trends, and improvement opportunities.
- Support broader cyber awareness initiatives including newsletters, learning modules, roadshows, and periodic security communications.
- Governance, Documentation & Reporting
- Maintain and update security policies, procedures, standards, technical documents, operational playbooks, and tracking records.
- Support review and maintenance of incident response procedures, investigation workflows, hardening standards, endpoint security procedures, and operational documentation.
- Prepare monthly and ad-hoc cyber security reports, dashboards, inventories, metrics, and compliance-related documentation.
- Maintain accurate operational records to support management reporting, regulatory compliance, audits, and continuous improvement activities.
- Support multiple operational and project-based initiatives while meeting established timelines and service expectations.
QUALIFICATIONS
- Diploma or Degree in Information Technology, Cybersecurity, Computer Science, or a related discipline.
- 4-6 years of experience in cybersecurity operations, infrastructure security, or a related technical security role.
- Working knowledge of endpoint protection, EDR technologies, SIEM platforms, and security incident investigation processes.
- Proficient in vulnerability management, remediation tracking, IOC validation, and security monitoring concepts.
- Proficient knowledge for Windows, Linux, Microsoft 365, Azure, and general cloud security principles.
- Understanding of security awareness programs, phishing simulations, malware investigation, and security documentation practices.
- Exposure to open-source security monitoring or cyber defence tools will be advantageous.
- Professional certifications such as ISC2 CC, Comp TIA Security+, Microsoft SC-200, CEH, CHFI, or similar certifications will be advantageous.
- AI & DIGITAL SKILLS WE VALUE
We do not expect candidates to be AI specialists.
We are looking for security professionals who are curious about responsible AI usage and able to leverage modern technologies to improve cyber defence operations.
- Familiarity with AI-assisted security operations, threat detection, log analysis, and incident investigation use cases.
- Ability to evaluate and validate AI-assisted outputs while maintaining human oversight and professional judgement.
- Understanding of responsible AI principles including privacy, security, transparency, and appropriate handling of sensitive information.
- Interest in emerging cybersecurity technologies, attack techniques, threat intelligence, and cyber defence innovation.
- Continuous learning mindset with a willingness to explore new tools, methodologies, and automation opportunities.
- OTHER INFORMATION
WHAT WE OFFER
- Opportunity to work in a critical cyber security function supporting enterprise infrastructure and operational resilience.
- Hands-on exposure to cloud security, security operations, threat investigation, vulnerability management, and cyber defence technologies.
- Access to continuous learning and professional development opportunities in cybersecurity, cloud technologies, AI, and emerging security domains.
- Opportunity to work alongside experienced cybersecurity and infrastructure professionals in a collaborative environment.
- Competitive remuneration package commensurate with experience.
- Staggered working hours and a culture that values innovation, security, teamwork, and continuous improvement.
Please note that your application will be sent to and reviewed by the direct employer - YTL Power Seraya Pte. Limited
#J-18808-Ljbffr
Security Operations Engineer employer: Hyperscal Solutions
YTL PowerSeraya Pte. Limited is an exceptional employer, offering a dynamic work environment in Singapore's energy sector where innovation and teamwork are at the forefront. Employees benefit from competitive remuneration, flexible working hours, and extensive opportunities for professional development in cybersecurity and cloud technologies, all while contributing to the organisation's commitment to fair and progressive employment practices.
StudySmarter Expert Advice🤫
We think this is how you could land Security Operations Engineer
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Hyperscal Solutions, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through Hyperscal Solutions
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Hyperscal Solutions. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Security Operations Engineer
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Hyperscal Solutions insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Hyperscal Solutions that you’re committed to staying ahead in the game.
How to prepare for a job interview at Hyperscal Solutions
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at Hyperscal Solutions to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Hyperscal Solutions.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.