Digital Forensics and Incident Response Analyst
3 weeks ago
As the global leader in high-speed connectivity, Ciena is committed to a people-first approach. Our teams enjoy a culture focused on prioritizing a flexible work environment that empowers individual growth, well-being, and belonging. We’re a technology company that leads with our humanity—driving our business priorities alongside meaningful social, community, and societal impact. The Security Organization The Security team at Ciena is a tightly knit group of skilled professionals who share the same passion for defending against cyber criminals. With the increase in volume and sophistication of cyber-crime, we are growing and have tons of exciting work planned. Key Responsibilities Incident Response Leadership Lead the detection, containment, eradication, and recovery phases of cybersecurity incidents in collaboration with the SOC and other teams. Coordinate and facilitate the Extended Security Incident Response Team (ESIRT) during high-severity incidents. Develop and maintain incident response playbooks, procedures, and workflows to improve readiness and efficiency. Digital Forensic Analysis Perform host forensic analysis on Windows based systems. Conduct network forensics by leveraging disparate log sources to include firewall logs, NetFlow, full packet capture, and various intrusion detection/prevention logs. Leverage available tooling to contain and eradicate a threat actor's presence from the network when responding to live intrusion events. Understand the capabilities of malicious binaries and scripts through usage of sandbox environments and static analysis. Tabletop Exercises (TTXs) Design, develop, and lead regular Tabletop Exercises (TTXs) to test and enhance the organization’s incident response capabilities. Evaluate the performance of participants during TTXs and provide actionable feedback for improvement. Maintain detailed records and reports of TTX outcomes to guide future training and preparedness. Proactive Threat Hunting Conduct regular proactive threat-hunting activities to identify potential risks, vulnerabilities, and indicators of compromise (IOCs). Utilize advanced tools, techniques, and threat intelligence to uncover malicious activity within the environment. Collaborate with the SOC to refine detection mechanisms and improve response capabilities based on threat-hunting findings. Collaboration and Communication Work closely with the SOC, Security Architecture, IT, and other teams to enhance incident response and threat-hunting processes. Serve as a liaison between technical teams and executive stakeholders during incidents, providing clear and concise updates. Represent the organization in external threat-sharing communities and partnerships to stay ahead of emerging threats. Process Development and Maintenance Continuously improve incident response processes and threat-hunting methodologies. Ensure compliance with relevant regulations, industry standards, and company policies in all incident response activities. Maintain detailed and accurate documentation of incidents, investigations, and lessons learned. Qualifications Education: Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field or equivalent experience. Relevant Certifications pertaining to DFIR are desirable but not required. Experience: 3-5+ years of experience in cybersecurity, with a focus on incident response and threat hunting. Experience in Digital Forensics and Incident Response ("DFIR") consulting or IR within a global organization is highly desirable. Skills Strong knowledge of incident response methodologies, threat-hunting, cyber threat intelligence research, and cybersecurity tools (e.g., SIEM, EDR, forensic tools). Familiarity with digital forensics and Windows based artifacts. Strong understanding of attacker Tactics, Techniques, and Procedures ("TTPs"). Proficiency in scripting and automation (e.g., Python, PowerShell) is a plus. Strong analytical, communication, and organizational skills. Other Requirements: Ability to work effectively in a fast-paced, 24/7/365 environment, including participating in on-call rotations as needed. Strong problem-solving skills with a focus on collaboration and teamwork. Experience designing and leading Tabletop Exercises is a significant advantage. #LI-SM #LI-Remote #LI-Hybrid Not ready to apply? Join our Talent Community to get relevant job alerts straight to your inbox.At Ciena, we are committed to building and fostering an environment in which our employees feel respected, valued, and heard. Ciena values the diversity of its workforce and respects its employees as individuals. We do not tolerate any form of discrimination. Ciena is anEqual Opportunity Employer, including disability and protected veteran status. If contacted in relation to a job opportunity, please advise Ciena of any accommodation measures you may require. #J-18808-Ljbffr
-
Incident Response Analyst
4 weeks ago
, Central Luzon, Philippines Baker Hughes Full timeResponsibilities, authorities and accountabilities In this role, you will: Lead technical aspects of digital security incident detection and response, focusing on very unstructured incidents and high-risk events. Specialize in network-centric analysis (NSM), host-centric analysis (live response, digital forensics), malware analysis, and/or log-centric...
-
, Metro Manila, Philippines GCash Full timeSenior Manager, Digital Forensics and Incident Response Investigator Join to apply for the Senior Manager, Digital Forensics and Incident Response Investigator role at GCash Do you want to take the first step in making Filipinos’ lives better everyday? Here in GCash we want to stay at the forefront of the FinTech industry by creating innovative,...
-
Incident Response Analyst
2 weeks ago
, , Philippines InfoHedge Technologies LLC Full timeAbout Us Thrive is a rapidly growing technology solutions provider focusing upon Cloud, Cyber Security, Networking, Disaster Recovery and Managed Services. Our corporate culture, engineering talent, customer‑centric approach, and focus upon “next generation” services help us stand out amongst our peers. Thrive is on the look‑out for individuals who...
-
Senior Security Incident Response Analyst
2 weeks ago
, Metro Manila, Philippines Five9 Full timeSenior Security Incident Response Analyst Join us in bringing joy to customer experience. Five9 is a leading provider of cloud contact center software, bringing the power of cloud innovation to customers worldwide. Living our values everyday results in our team-first culture and enables us to innovate, grow, and thrive while enjoying the journey together. We...
-
Senior SOC Analyst
3 weeks ago
, Metro Manila, Philippines Hammerjack Pty Ltd Full timeDe ion The Senior SOC Analyst takes the lead in monitoring, detecting, investigating, and responding to cybersecurity incidents within an organization. This role is vital in enhancing the organization's security posture, guiding junior analysts, and refining threat detection strategies. Responsibilities Lead and oversee security event monitoring and threat...
-
SAP Logistics L2 Support Analyst
3 weeks ago
, , Philippines Inchcape Digital Full timeJoin to apply for the SAP L2 Support Analyst Logistics role at Inchcape Digital Inchcape is the leading global automotive distributor operating in more than 40 markets. We partner with some of the biggest brands in the business to power better mobility today and in the future. Our diverse global team of over 18,000 talented colleagues foster an inclusive and...
-
Cybersecurity Analyst
2 weeks ago
, , Philippines Sealed Air Full timeSealed Air designs and delivers packaging solutions that protect essential goods transported worldwide, preserve food, enable e-commerce and digital connectivity, and help create a global supply chain that is touchless, safer, less wasteful, and more resilient. Westrive to foster a caring, high-performance growth culture that will deliver consistent,...
-
Analyst, Incident and Problem Management-1
4 weeks ago
, , Philippines Travel + Leisure Co. Full timeAnalyst, Incident and Problem Management-1 page is loaded## Analyst, Incident and Problem Management-1locations: Philippinestime type: Full timeposted on: Posted Todayjob requisition id: R- **We Put the World on Vacation**Travel + Leisure Co. is the world’s leading vacation ownership and travel membership company, with a dynamic and growing portfolio of...
-
SOC Analyst, Cyber Risk
2 weeks ago
, , Philippines Kroll Full timeIn a world of disruption and increasingly complex business challenges, our professionals bring truth into focus with the Kroll Lens. Our sharp analytical skills, paired with the latest technology, allow us to give our clients clarity—not just answers—in all areas of business. We embrace diverse backgrounds and global perspectives, and we cultivate...
-
IT Security Analyst
2 weeks ago
, , Philippines Lexmark Full timetime left to apply End Date: December 31, 2025 (30+ days left to apply) job requisition id R3741 Responsibilities : Job Summary: A Security Analyst will be part of a team that provides timely detection, identification, and alerting of possible attacks/intrusions, anomalous activities, misuse activities, and monitor the health of security sensors and...