Cyber Threat Hunting Analyst

2 weeks ago


Taguig, National Capital Region, Philippines JTI Full time

Press Tab to Move to Skip to Content Link

Search by keyword and location and click "create alert" to receive your job alerts by email:

Search by keyword and location and click "create alert" to receive your job alerts by email:

Select how often (in days) to receive an alert:

Select how often (in days) to receive an alert:

Professional area: Information Technology

Contract type: Permanent

Professional level: Experienced

Location:

Taguig, 00, PH, 1630

We're JTI, Japan Tobacco International, and we believe in freedom.

We think that the possibilities are limitless when you're free to choose. We've spent the last 20 years innovating and creating new and better products for our consumers to choose from. It's how we've grown to be present in 130 countries, and how we've grown from 40 to 4,000+ employees in the Philippines since 2009.

But our business isn't just business, our business is our people. Their talent. Their potential. We believe that when they're free to be themselves, to grow, travel and develop, amazing things can happen for our business. That's why our employees, from around the world, choose to be a part of JTI. It's why 9 out of 10 would recommend us to a friend, and why we've been recognized as INVESTORS IN PEOPLE in the Philippines

It's the perfect moment for you to #JoinTheIdea. We're opening our Global Business Service center in the heart of BGC Manila and looking for more than 300 bright minds to join a global multinational with an exciting start-up vibe.

This advertisement will remain available until the role is filled.

Cyber Threat Hunting Analyst

This position exists to support the Cyber Threat Hunting Manager to implement proccesses and technologies for the early detection of potential security threats. The Cyber Threat Hunting Analyst will contribute to the definition, implementation and maintainance of the Threat Detection and Hunting service according to relevance, potential impact and risks.

Additionally, the Analyst will:
1. Contribute to correlate threat actor profiles and TTPs to attack vectors to develop new use cases or hypothesis for hunting campaigns.
2. Provide support to ensure the service is adequately delivered together with our MSSP provider and consistently integrated with the other security platforms and services.
3. Collaborate to enhance and maintain partnership with other Information Security functions to deliver shared outcomes that measurably improve JTI SOC efficiency to detect and respond to threats.
4. Create reports and propose corrective actions to enhance the IT security posture.

Desirable: Certifications (any security certification like but not exclusive to the following): CEH, CISSP, OSCP, GIAC

What you will do?

1. Threat Detection
Support to the log onboarding process and contribute to the implementation of new monitoring use cases along with their lifecycle.
Support to the creation of visibility/detection coverage mappings and the identification of gaps to detect relevant threats, actors and tools.
Provide security monitoring backup to ensure no security detections are missed.

2. Threat Hunting
Support Threat Hunting program creation, maintenance and continuous improvement.
Contribute to the creation of threat hunting hypothesis.
Participate in Threat Hunting activies based on TTPs and IOCs triggered by CTI, threat hunting hypothesis, security monitoring, incident response or others.
Contribute to the development of new monitoring use cases based on threat hunting results.

3. Cross-functional collaboration
Participation in Threat Modelling in conjunction with Cyber Threat Intelligence functions.
Support Incident Response during significant or major Security Incidents, collaborate in the creation of triage playbooks and collaborate in the reduction of number of false positives.
Collaboration with TSC for security product enhacement or problems/misconfigurations resolution.

4. Thrid-Party collaboration
Collaborate and align with security vendor/MSSP provider to ensure that service delivery and support meet performance and business objectives.

5. Reporting
Participate in the creation of reporting based on metrics to measure effectiveness of Threat Detection and Hunting service.

Who are we looking for?

  • University Degree in the area of Computer sciences or related field
  • 1+ years of relevant experience as a member of a Threat Detection, Hunting, Incident Response, Malware Analysis, or similar role. Previous Red/Purple Teamer experience is a plus.
  • Good understanding of Cybersecurity fundamentals, Threat Landscape, Attack Vectors, Threat Actors and their Tactics Techniques and Procedures.
  • Familiarity or background in Intelligence Driven Defense, Cyber Kill Chain methodology, and/or MITRE ATT&CK framework.
  • Knowledge on security platforms (XDR, IDS/IPS, WAF, etc.).
  • Experience with Microsoft products is a plus. E.g. Microsoft Defender for Enpoint.
  • Relevant experience of SIEM and Data Lake searching languages (Splunk and Microsoft suite are a plus).
  • Knowledge of Windows system internals, Web Applications and APIs.
  • Familiarity with nation state, criminal, and financially motivated actor groups.
  • A proven track record in protecting large global and distributed organisations.
  • Scripting skills is a plus

What are the next steps?

Thank you for applying We will make sure to provide you with feedback within the next two weeks.

Job Segment: Cyber Security, Military Intelligence, Information Security, Security Clearance, Security, Government, Technology

Provider

Description

Enabled

SAP as service provider

  • "route" is used for session stickiness
  • "careerSiteCompanyId" is used to send the request to the correct data centre
  • "JSESSIONID" is placed on the visitor's device during the session so the server can identify the visitor#J-18808-Ljbffr


  • Taguig, National Capital Region, Philippines Metrobank Full time

    Metrobank Metrobank gives meaning to your financial journey with these broad range of products and services. Start your journey to meaningful banking now. View company page Entry level position in the SOC team. Triage specialist whose responsibility is to review real-time event data, monitor alert queue on a rotating 24 x 7 x 365 basis, and to determine...

  • Cyber Defence

    2 weeks ago


    Taguig, National Capital Region, Philippines Willis Towers Watson Full time

    The Role Technical:Oversee the monitoring, investigation, containment, and eradication to cyber security threats against our business. Lead the GSOC team in seeking out potential security issues through log analysis, and use of tools such as SIEM, UEBA, EDR, etc. Responsible in determination of response that should be put into action to mitigate damage and...


  • Taguig, National Capital Region, Philippines Safeway Philtech Inc Full time

    What you will be doing: In this role, you will use your knowledge of industry best practices, good judgment, and problem-solving skills to execute security operations and incident response. You will be on the front lines of cyber defense for one of the largest retail organizations in the US. You should be adept at making good decisions under pressure and be...


  • Taguig, National Capital Region, Philippines Citigroup Inc. Full time

    The Technology and Cyber Compliance and Operational Risk Office (TCCORO) at Citi is the firm's reliable second set of eyes. Our mission is to drive comprehensive and consistent practices designed to identify, measure, monitor, report and manage operational and compliance risks while promoting the implementation of actions to address root causes which may...


  • Taguig, National Capital Region, Philippines Tenet Global Business Center, Inc. Full time

    Cybersecurity Senior Analyst - Vulnerability Management Security (Information & Communication Technology) This analyst will be a member of the Threat Management team, reporting to the Cybersecurity Manager. This position will be responsible for various technical cybersecurity analyst functions, including vulnerability management, as well as providing network...


  • Taguig, National Capital Region, Philippines Citigroup Inc. Full time

    Info Sec Analyst - Cyber SecurityAs a bank with a brain and a soul, Citi creates economic value that is systemically responsible and in our clients' best interests. As a financial institution that touches every region of the world and every sector that shapes your daily life, our Enterprise Operations & Technology teams are charged with a mission that rivals...


  • Taguig, National Capital Region, Philippines JT International S.A. Full time

    We are JTI, Japan Tobacco International, and we are present in 130 countries. We have spent years innovating, creating new and better products for the consumers to choose from. This is our business. But not only. Our business is our people. Their talent. Their potential. We believe that when they are free to be themselves, and they are given the opportunity...


  • Taguig, National Capital Region, Philippines Cardinal Health Full time

    Security (Information & Communication Technology) What Information Security and Risk contributes to Cardinal HealthInformation Technology oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and...


  • Taguig, National Capital Region, Philippines Sysgen Full time

    Cyber Defense Assurance Senior (Hybrid / Mid Shift) Security (Information & Communication Technology) We are looking for a candidate for the Cyber Defence Assurance Senior who has the following:Have a people focused approach that displays trustworthy, professional attributes to deliver innovative approaches to your work.Experience and knowledge of cyber...


  • Taguig, National Capital Region, Philippines Eteam Workforce Full time

    Job Qualification:Bachelor's/College degree graduate.Background on quality Assurance or Administrative experience Technical Skills RequiredBasic proficiency with office software like Microsoft Office, Google Docs, and any relevant industry specific programs.Process excellence trainingCoaching experienceLaptop ProvidedHYBRID (1 Day office and 4 days WFH)Job...

  • IT Security Engineer

    2 weeks ago


    Taguig, National Capital Region, Philippines Cockram Scenario Full time

    Security (Information & Communication Technology) SOC analysts continuously monitor network traffic, system logs, and security alerts to identify potential security incidents. Experienced with the use of Intrusion Detection Systems (IDS),Security Information and Event Management (SIEM) tools, and other security solutions to detect anomalies or signs of...

  • IT Security Engineer

    2 weeks ago


    Taguig, National Capital Region, Philippines Cockram Scenario Full time

    Security (Information & Communication Technology) SOC analysts continuously monitor network traffic, system logs, and security alerts to identify potential security incidents. Experienced with the use of Intrusion Detection Systems (IDS),Security Information and Event Management (SIEM) tools, and other security solutions to detect anomalies or signs of...


  • Taguig, National Capital Region, Philippines Coins Full time

    Join the Pioneer Crypto Brand in the PhilippinesCoins is the most established crypto brand in The Philippines and has gained the trust of more than 18 million users. Through the easy-to-use mobile app, users can buy and sell a variety of different cryptocurrencies and access a wide range of financial services.Coins is fully regulated by the Bangko Sentral ng...


  • Taguig, National Capital Region, Philippines Goodyear Dunlop Tires Germany GmbH Full time

    Press Tab to Move to Skip to Content Link Select how often (in days) to receive an alert: IAM / IT Risk and Security Analyst Location: Taguig, 00, PH Company: Goodyear Location: PH - Philippines - A510 Goodyear Talent Acquisition Representative: Dan Dave Alberto Sponsorship Available: No Relocation Assistance Available: No The IT Risk and Security...

  • Team Lead, SecOps

    2 weeks ago


    Taguig, National Capital Region, Philippines IBM Full time

    IntroductionInformation and Data are some of the most important organizational assets in today's businesses. As a Security Consultant, you will be a key advisor for IBM's clients, analyzing business requirements to design and implement the best security solutions for their needs. You will apply your technical skills to find the balance between enabling and...


  • Taguig, National Capital Region, Philippines Metrobank Full time

    Metrobank Metrobank gives meaning to your financial journey with these broad range of products and services. Start your journey to meaningful banking now. View company page Plan, document test methodologies and perform penetration testing or ethical hacking of network infrastructure, application systems including mobile applications all in a stealthy...


  • Taguig, National Capital Region, Philippines Goodyear Dunlop Tires Germany GmbH Full time

    Press Tab to Move to Skip to Content Link Select how often (in days) to receive an alert: IAM / IT Risk and Security Senior Analyst Location: Taguig, 00, PH Company: Goodyear Location: PH - Philippines - A510 Goodyear Talent Acquisition Representative: Dan Dave Alberto Sponsorship Available: No Relocation Assistance Available: No Position...

  • Compliance Expert

    2 weeks ago


    Taguig, National Capital Region, Philippines WTW Full time

    This role will support and report to Technology Compliance SOC Team Lead and work closely with Lines of Business responsible for client needs relating to compliance reporting requirements.Accountable for supporting delivery of all SOC, ISAE and AAF audits leveraging technology scoped controls.Support key technology compliance impacting projects to ensure...


  • Taguig, National Capital Region, Philippines Metrobank Full time

    Security Assurance and Assessment Officer Metrobank Metrobank gives meaning to your financial journey with these broad range of products and services. Start your journey to meaningful banking now. View company page Develop tactical plans and programs for the establishment and maintenance of the Bank's third party information security risk management...


  • Taguig, National Capital Region, Philippines KKG Full time

    A Cybersecurity Product Manager able to share his/her business acumen and experience, specifically in providing cybersecurity product development, enhancement, and management to help grow the company's business.ResponsibilitiesRepresent KKG's core values of integrity, vigilance, and excellenceEstablish and maintain positive relationships with othersPerform...