Skip to content

Open nowPosted 15 days ago

Security & Observability Platform Engineer

MyCareersFuture94,028 open roles

Pay
SGD 8,000 – SGD 11,000 a month
Where
Central, Singapore
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSecurity & Observability Platform EngineerMyCareersFuture · Central, Singapore
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on MyCareersFuture's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.7% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.6%1 day
  2. 3.3%3 days
  3. 7.7%7 days
  4. 14.0%14 days
  5. 33.7%30 days
This job: posted 15 days ago

The posting

Activate Interactive Pte Ltd (“Activate”) is a leading technology consultancy headquartered in Singapore with a presence in Malaysia and Indonesia. Our clients are empowered with quality, cost-effective, and impactful end-to-end application development, like mobile and web applications, and cloud technology that remove technology roadblocks and increase their business efficiency.

We believe in positively impacting the lives of people around us and the environment we live in through the use of technology. Hence, we are committed to providing a conducive environment for all employees to realize their full potential, who in turn have the opportunity to continuously drive innovation.

We are searching for our next team members to join our growing team.

If you love the idea of being part of a growing company with exciting prospects in mobile and web technologies that create positive impact on people’s lives, then we would love to hear from you.

Please note that this is a 12 months fixed-term contract role.

What will you do?

We are looking for an engineer who will own the end-to-end evaluation, design, and implementation of security and observability solutions for a container-based private cloud platform. This role spans the full lifecycle — from architectural research and tool selection through production deployment and ongoing operations — across unified telemetry, security detection, vulnerability management, supply chain security, and automated incident response.

You will be the technical owner of the platform's observability and security monitoring stack, working across platform engineering, security operations, and SRE teams to deliver a unified telemetryfirst architecture.

Evaluation & Research

  • Conduct structured evaluation of candidate tools against criteria including license compliance, community governance, vendor independence, and technical fitness
  • Perform proof-of-concept exercises to validate architectural decisions (e.g. ingestion throughput, storage efficiency, query
  • latency, operational complexity)
  • Assess and track governance posture of selected tools; maintain contingency paths for vendor-led dependencies
  • Engage with upstream open-source communities and foundations to stay current on project maturity and roadmap changes

Design & Architecture

  • Design unified telemetry pipelines using open standards to serve both SRE observability and security operations from a single data layer
  • Architect security detection workflows using vendor-neutral detection languages to ensure portability of detection content across backends
  • Design vulnerability aggregation and management workflows spanning container scanning, software composition analysis, static analysis, infrastructure vulnerability scanning, and software bill of materials generation
  • Design supply chain security controls including image signing, provenance attestation, and registry policy enforcement
  • Design exposure path analysis using graph-based tooling to map relationships across compute orchestration, identity, source control, and vulnerability data
  • Design automated remediation and orchestration workflows integrated with alerting, ChatOps, and ticketing
  • Produce and maintain architecture decision records documenting design rationale, trade-offs, and change history

Implementation & Operations

  • Deploy and operate the observability stack: telemetry collection, columnar storage, dashboarding, metrics scraping, alerting, and log routing
  • Deploy and operate the security monitoring stack: endpoint/hostbased detection, detection rule evaluation, vulnerability aggregation, and infrastructure scanning
  • Deploy and operate CI pipeline security scanning: container image scanning, dependency scanning, SBOM generation, static analysis, infrastructure-as-code scanning, and secrets detection
  • Implement image registry security with integrated vulnerability scanning and admission policy enforcement
  • Implement identity, directory, secrets management, and certificate lifecycle infrastructure
  • Implement collaboration and incident management tooling (ChatOps, ticketing)
  • Build and maintain detection rules, alerting rules, and automation playbooks
  • Operate all components on a container orchestration platform with fleet-wide deployment tooling

Process & Governance

  • Define and document operational runbooks for each capability area
  • Establish and maintain vendor-independence contingency entries for all vendor-led tools
  • Conduct periodic licence and governance re-assessment of selected tools
  • Collaborate with legal/compliance on copyleft licence reviews before deployment
  • Define SLOs for telemetry pipeline availability, ingestion latency, and detection coverage
  • Participate in security incident response using the tooling you build and operate

Requirements

Required Skills & Experience

  • 5+ years in platform engineering, SRE, or security engineering roles
  • Strong hands-on experience with at least 3 of the following:
  • Telemetry collection frameworks and instrumentation standards
  • Columnar or analytical databases for log/trace/event storage
  • Metrics scraping and alerting ecosystems
  • SIEM operations and detection engineering (vendor-neutral detection rule formats preferred)
  • Search-based log analytics platforms (to understand migration context)
  • Production experience deploying and operating on Kubernetes or equivalent container orchestration platforms
  • Experience with container security scanning and software composition analysis tooling
  • Familiarity with supply chain security concepts: SBOM, image signing, provenance attestation, admission control
  • Experience with at least one SOAR or automation/orchestration platform
  • Solid understanding of log collection and routing architectures
  • Experience writing detection rules or correlation logic for security monitoring
  • Ability to evaluate open-source projects for governance health, license risk, and production readiness
  • Strong Linux systems fundamentals

Preferred Skills

  • Experience with host-based intrusion detection or endpoint detection and response tooling
  • Experience with graph databases and asset/infrastructure relationship mapping
  • Familiarity with vulnerability management and aggregation platforms
  • Experience with identity providers, directory services, and secrets management
  • Contributions to open-source security or observability projects
  • Experience operating in government or regulated environments with strict vendor-independence or sovereignty requirements
  • Familiarity with enterprise Linux and container platform ecosystems
  • Experience with GitOps workflows for deploying infrastructure services
  • Static/dynamic application security testing tooling experience

Qualifications

  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or equivalent practical experience
  • Relevant certifications are a plus but not required (e.g. Kubernetes security, Linux administration, offensive security, or cloud security specializations)

Benefits

What do we offer in return?

  • Fun working environment
  • Employee Wellness Program
  • To work in Singapore Government Agencies projects
  • We provide structured development framework and growth opportunities. (We are a “SHRI 2025 Gold winner” in “Learning & Development; Coaching & Mentoring”)

Why you'll love working with us?

If you are looking for opportunities to collaborate with leading industry experts and be surrounded by highly motivated and talented peers, we welcome you to join us. We provide all employees with equal opportunities to grow and develop with us. We believe your success is our success.

Does it sound like something you are interested in exploring further? Please be in touch with our team for an initial chat at [email protected]

Activate Interactive Singapore is an equal opportunity employer. Employment decisions will be based on merit, qualifications and abilities. Activate Interactive Pte Ltd does not discriminate in employment opportunities or practices on the basis of race, colour, religion, gender, sexuality, national origin, age, disability, marital status or any other characteristics protected by law.

Protecting your privacy and the security of your data are longstanding top priorities for Activate Interactive Pte Ltd.

Your personal data will be processed for the purposes of managing Activate Interactive Pte Ltd’s recruitment related activities, which include setting up and conducting interviews and tests for applicants, evaluating and assessing the results, and as is otherwise needed in the recruitment and hiring processes.

Please consult our Privacy Notice (https://www.activate.sg/privacy-policy) to know more about how we collect, use, and transfer the personal data of our candidates. Here you can find how you can request for access, correction and/or withdrawal of your Personal Data.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against MyCareersFuture's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on MyCareersFuture's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    MyCareersFuture's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.