Sr. Cybersecurity Incident Response Analyst

5 days ago


Central Luzon Philippines Blue Yonder Full time

Location: Monterrey, Mexico Role: Sr. Cybersecurity Incident Response Analyst (Threat Hunting) Blue Yonder Job Profile: Sr. Security Engineer, Security Architect Overview Blue Yonder, a leading supply chain software company, is seeking a Sr Cybersecurity Incident Response Analyst (Threat Hunting) to join its Security Operations (SOC) team. The successful candidate will be responsible for assisting with the organization's Tier 2 incident response efforts in the event of a security breach or cyber-attack. This role requires strong technical skills, attention to detail, and the ability to work under pressure. The Sr Incident Response Analyst will work closely with the Security team to develop and maintain incident response plans, conduct investigations, and provide technical guidance and support during incident response activities. Blue Yonder is seeking a candidate with a deep passion for cybersecurity, eager to stay ahead of emerging threats and continuously enhance our security posture. The ideal candidate is driven, proactive, and committed to protecting the enterprise through effective threat detection, response, and mitigation strategies. Scope/Responsibilities This role is responsible for assisting with the detection, investigation, containment, and remediation of security incidents to protect an organization's systems, data, customers and reputation. They lead high-priority incident response efforts, coordinating with cross-functional teams such as IT, legal, and compliance to mitigate threats effectively. Technical Environment Candidate should be very familiar with all the below Security Information and Event Management (SIEM) Endpoint Detection and Response (EDR) / Extended Detection and Response (XDR) Network Security Monitoring & Intrusion Detection/Prevention Systems (IDS/IPS) Threat Intelligence Platforms (TIP) Security Orchestration, Automation, and Response (SOAR) Digital Forensics and Incident Response (DFIR) Tools Malware Analysis & Reverse Engineering Tools Vulnerability Management & Assessment Web Application Security Testing Tools Cloud Security Monitoring & Protection Email Security & Phishing Protection Deception & Honeypot Technologies Data Loss Prevention (DLP) Privileged Access Management (PAM) & Identity Security Firewall & Next-Generation Firewall (NGFW) Solutions What you’ll do Monitor and Analyze Security Alerts – Review alerts generated by security systems, appliances, and logs to determine the appropriate course of action to protect the enterprise and reduce overall risk. Incident Triage and Response – Quickly assess, prioritize, and respond to security incidents, ensuring timely containment, eradication, and recovery to minimize business impact. Root Cause Analysis (RCA) – Investigate security incidents to determine root causes, attack vectors, and vulnerabilities, providing recommendations to reduce the attack surface and prevent recurrence. Threat Hunting and Proactive Defense – Conduct proactive threat-hunting activities based on intelligence, anomalies, and adversary tactics to identify and mitigate threats before they escalate. Collaboration with Cross-Functional Teams – Work closely with IT, engineering, legal, compliance, and other teams to coordinate incident response efforts and ensure an effective security posture. Incident Documentation and Reporting – Maintain detailed documentation of security incidents, response actions, and lessons learned, ensuring continuous improvement in security processes. Develop and Improve Incident Response Playbooks – Enhance and maintain incident response procedures, ensuring alignment with industry best practices and emerging threats. Security Awareness and Training – Provide guidance, training, and mentorship to SOC analysts and IT staff on security threats, incident handling, and response best practices. Threat Intelligence Integration – Leverage threat intelligence sources to stay informed on evolving cyber threats and proactively adjust security strategies to defend against them. Strong familiarity with cloud security technologies and frameworks across major cloud providers (AWS, Azure, Google Cloud) is essential. The candidate should have experience with cloud-native security monitoring, incident response in cloud environments, and threat detection techniques to protect workloads, data, and identities in hybrid and multi-cloud architectures. What we are looking for Bachelor's degree in Computer Science, Information Security, or related equivalent experience 5+ years of experience in information security, cybersecurity, or related field Strong technical skills and attention to detail Excellent verbal and written communication skills Ability to work independently and as part of a team Ability to work under pressure and in a fast-paced environment Strong problem-solving skills and a proactive approach to work Knowledge of security frameworks such as NIST and ISO 27001 Familiarity with security regulations and standards (e.g. PCI DSS, HIPAA, etc.) Experience with incident response methodologies and tools (e.g. SANS IR, Threat Intelligence, etc.) All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. #J-18808-Ljbffr



  • , Metro Manila, Philippines Five9 Full time

    Senior Security Incident Response Analyst Join us in bringing joy to customer experience. Five9 is a leading provider of cloud contact center software, bringing the power of cloud innovation to customers worldwide. Living our values everyday results in our team-first culture and enables us to innovate, grow, and thrive while enjoying the journey together. We...


  • , Metro Manila, Philippines Ciena Full time

    Digital Forensics and Incident Response Analyst Ciena National Capital Region, Philippines As the global leader in high-speed connectivity, Ciena is committed to a people-first approach. Our teams enjoy a culture focused on prioritizing a flexible work environment that empowers individual growth, well-being, and belonging. We’re a technology company that...


  • , , Philippines Ciena Full time

    As the global leader in high-speed connectivity, Ciena is committed to a people-first approach. Our teams enjoy a culture focused on prioritizing a flexible work environment that empowers individual growth, well-being, and belonging. We’re a technology company that leads with our humanity—driving our business priorities alongside meaningful social,...


  • , Metro Manila, Philippines QBE Insurance Full time

    Join to apply for the Incident Response Specialist role at QBE Insurance 1 month ago Be among the first 25 applicants Join to apply for the Incident Response Specialist role at QBE Insurance Get AI-powered advice on this job and more exclusive features. Primary DetailsTime Type: Full timeWorker Type: EmployeeIncident Response Specialist, Group CyberReporting...


  • , , Philippines Virtual Business Partners Pty. Ltd. Full time

    Join VBP as a Cybersecurity Analyst and play a vital role in protecting our systems, data, and digital infrastructure from evolving threats. Purpose The responsibilities include reviewing computer networks and identifying any potential vulnerabilities, installing the necessary software to protect them from unauthorised access, and documenting detections so...


  • , Central Luzon, Philippines Blue Yonder Full time

    Location: Monterrey, Mexico Role: Sr. Security Engineer, IAM Blue Yonder Job Profile: Sr. Security Engineer Overview Blue Yonder is a global leader in digital supply chain transformation, empowering the world’s most recognized brands with AI‑driven platforms and end‑to‑end visibility. As we continue strengthening our global security posture, we are...


  • , Zamboanga Peninsula, Philippines City of Daly City Full time

    Position Overview Final Filing Date: Open Until Filled- Apply Immediately Interviews: TBD Resumes are not accepted in lieu of completing a City application. The main role for this position of Cybersecurity Analyst I/II will focus on Cybersecurity. The candidate that fills the role will assist in defining enterprise cybersecurity policies, standards,...


  • Philippines Summit 360 Solutions Full time ₱800,000 - ₱1,140,000 per year

    Cyber Security AnalystLocation: Remote / Flexible (with overlap to US CST)Department: Security OperationsSchedule: Monday–Friday, 8:00 AM–5:00 PM US CST (flexibility +/- 3 hours)Salary: PHP80,000 to 95,000/mo (paid bimonthly)About the RoleAs a Cyber Security Analyst, you will play a key role in supporting our Incident Response and Security Operations...


  • , , Philippines Healthtech Inc Full time

    Cybersecurity Engineer II page is loadedCybersecurity Engineer II Apply locations Philippines time type Full time posted on Posted 5 Days Ago job requisition id R4850Make a difference. Be happy. Grow your career. Exciting Opportunity on the Horizon – Join Our Talent Network! Nordic is gearing up for an exciting new project and anticipate opening a role...


  • Clark Freeport and Special Economic Zone, Central Luzon, Philippines Aprio Full time ₱80,000 - ₱120,000 per year

    Work with a nationally ranked CPA and advisory firm that is passionate for what's next. Aprio has 30 U.S. office locations, one in the Philippines and more than 2,100 team members that speak 60+ languages across the globe. By bringing together proven expertise, deep understanding, and strategic foresight for fast-growing industries, Aprio ensures clients are...