
Incident Response Analyst
2 days ago
As the global leader in high-speed connectivity, Ciena is committed to a people-first approach. Our teams enjoy a culture focused on prioritizing a flexible work environment that empowers individual growth, well-being, and belonging. We’re a technology company that leads with our humanity—driving our business priorities alongside meaningful social, community, and societal impact.
The Security Organization
The Security team at Ciena is a tightly knit group of skilled professionals who share the same passion for defending against cyber criminals. With the increase in volume and sophistication of cyber-crime, we are growing and have tons of exciting work planned.
Key Responsibilities
- Incident Response Leadership
- Lead the detection, containment, eradication, and recovery phases of cybersecurity incidents in collaboration with the SOC and other teams.
- Coordinate and facilitate the Extended Security Incident Response Team (ESIRT) during high-severity incidents.
- Develop and maintain incident response playbooks, procedures, and workflows to improve readiness and efficiency.
- Digital Forensic Analysis
- Perform host forensic analysis on Windows based systems.
- Conduct network forensics by leveraging disparate log sources to include firewall logs, NetFlow, full packet capture, and various intrusion detection/prevention logs.
- Leverage available tooling to contain and eradicate a threat actor's presence from the network when responding to live intrusion events.
- Understand the capabilities of malicious binaries and scripts through usage of sandbox environments and static analysis.
- Tabletop Exercises (TTXs)
- Design, develop, and lead regular Tabletop Exercises (TTXs) to test and enhance the organization’s incident response capabilities.
- Evaluate the performance of participants during TTXs and provide actionable feedback for improvement.
- Maintain detailed records and reports of TTX outcomes to guide future training and preparedness.
- Proactive Threat Hunting
- Conduct regular proactive threat-hunting activities to identify potential risks, vulnerabilities, and indicators of compromise (IOCs).
- Utilize advanced tools, techniques, and threat intelligence to uncover malicious activity within the environment.
- Collaborate with the SOC to refine detection mechanisms and improve response capabilities based on threat-hunting findings.
- Collaboration and Communication
- Work closely with the SOC, Security Architecture, IT, and other teams to enhance incident response and threat-hunting processes.
- Serve as a liaison between technical teams and executive stakeholders during incidents, providing clear and concise updates.
- Represent the organization in external threat-sharing communities and partnerships to stay ahead of emerging threats.
- Process Development and Maintenance
- Continuously improve incident response processes and threat-hunting methodologies.
- Ensure compliance with relevant regulations, industry standards, and company policies in all incident response activities.
- Maintain detailed and accurate documentation of incidents, investigations, and lessons learned.
Qualifications
- Education:
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field or equivalent experience.
- Relevant Certifications pertaining to DFIR are desirable but not required.
- Experience:
- 3-5+ years of experience in cybersecurity, with a focus on incident response and threat hunting.
- Experience in Digital Forensics and Incident Response ("DFIR") consulting or IR within a global organization is highly desirable.
- Skills
- Strong knowledge of incident response methodologies, threat-hunting, cyber threat intelligence research, and cybersecurity tools (e.g., SIEM, EDR, forensic tools).
- Familiarity with digital forensics and Windows based artifacts.
- Strong understanding of attacker Tactics, Techniques, and Procedures ("TTPs").
- Proficiency in scripting and automation (e.g., Python, PowerShell) is a plus.
- Strong analytical, communication, and organizational skills.
- Other Requirements:
- Ability to work effectively in a fast-paced, 24/7/365 environment, including participating in on-call rotations as needed.
- Strong problem-solving skills with a focus on collaboration and teamwork.
- Experience designing and leading Tabletop Exercises is a significant advantage.
#LI-SM #LI-Remote #LI-Hybrid
Not ready to apply? Join our Talent Community to get relevant job alerts straight to your inbox.
At Ciena, we are committed to building and fostering an environment in which our employees feel respected, valued, and heard. Ciena values the diversity of its workforce and respects its employees as individuals. We do not tolerate any form of discrimination.
Ciena is anEqual Opportunity Employer, including disability and protected veteran status.
If contacted in relation to a job opportunity, please advise Ciena of any accommodation measures you may require.
#J-18808-Ljbffr-
Incident Response Analyst
2 days ago
, Metro Manila, Philippines Ciena Full timeDigital Forensics and Incident Response Analyst Ciena National Capital Region, Philippines As the global leader in high-speed connectivity, Ciena is committed to a people-first approach. Our teams enjoy a culture focused on prioritizing a flexible work environment that empowers individual growth, well-being, and belonging. We’re a technology company that...
-
Incident Response Specialist
3 weeks ago
, Metro Manila, Philippines QBE Insurance Full timeJoin to apply for the Incident Response Specialist role at QBE Insurance 1 month ago Be among the first 25 applicants Join to apply for the Incident Response Specialist role at QBE Insurance Get AI-powered advice on this job and more exclusive features. Primary DetailsTime Type: Full timeWorker Type: EmployeeIncident Response Specialist, Group...
-
Senior Incident Response Analyst
3 weeks ago
, , Philippines Mondelēz International Full timeOverview Join to apply for the Senior Incident Response Analyst role at Mondelēz International . You work with the information security team as a competent and experienced information security and compliance leader. Responsibilities You will assess information security risks in line with internal policies and external best practices and determine...
-
Incident Response Specialist
3 weeks ago
, Metro Manila, Philippines Globant Full timeJoin to apply for the Incident Response Specialist role at Globant 1 day ago Be among the first 25 applicants Join to apply for the Incident Response Specialist role at Globant At Globant, we are working to make the world a better place, one step at a time. We enhance business development and enterprise solutions to prepare them for a digital future....
-
Senior Security Incident Response Analyst
4 days ago
, Metro Manila, Philippines Buscojobs Full timeJob Postings Senior Security Incident Response Analyst Location: Manila Work Schedule: Day-Shift Manila Time (8am to 5pm) Job Description: Five9 is a leading provider of cloud contact center software. The Sr Security Incident Response Analyst will ensure a swift and effective response to security incidents, with hands-on involvement in incident response,...
-
, Metro Manila, Philippines Buscojobs Full timeOverview This is Direct Hire Permanent to our client Position Incident Response Analyst Work Schedule Shifting and any shift assigned: Shift (APAC: 6am to 3pm, EMEA: 2pm to 11pm, WHEM: 10pm to 7am (next day) Sunday to Thursday, or Monday to Friday). Shift changes every 2 months Work Setup Hybrid: 8 times RTO per month, flexible days Location BGC, Taguig...
-
, Metro Manila, Philippines Buscojobs Full timeIncident Response Engineer With Forensic Expertise To provide detection, containment, and analysis of security events to protect the confidentiality, integrity, and availability of information systems per the firm's business objectives, regulatory requirements, and strategic goals. Must Haves: At least 4–5 years of relevant experience with a strong...
-
Incident Management Analyst
4 days ago
, Metro Manila, Philippines Buscojobs Full timeOverview Incident Management Analyst ATM Operations roles in Makati involve resolving technical issues, coordinating with various teams, and maintaining ATM network stability. These positions require strong analytical and problem‑solving skills and a solid understanding of ATM systems and operational procedures. Job opportunities are available for those...
-
, Metro Manila, Philippines Buscojobs Full timeData Center Operations (Open for Assoc Grad) Posted today Job Description Provide Support and Maintenance for Data Center Manage and monitor all installed systems and infrastructure Monitor Data Center critical infrastructure and raise incident tickets for any defects or faults which might occur Performs preventive operations and react to ad-hoc task...
-
Incident Manager
2 weeks ago
, Metro Manila, Philippines TENTEN PARTNERS PTE. LTD Full timeJoin us in partnership with a leading financial institution to hire an Incident Manager responsible for safeguarding mission-critical systems and ensuring seamless operations. You will serve as the c entral point of contact for managing major incidents, leading high-pressure recovery efforts across cross-functional teams. Your leadership will ensure rapid...