
Incident Response Analyst
3 weeks ago
The Incident Response Analyst will provide detection, containment, and analysis of security events to protect the confidentiality, integrity, and availability of information systems in accordance with the firm's business objectives, regulatory requirements, and strategic goals.
Responsibilities- Provide Tier 2 incident response services to the global organization on behalf of the Information Security Team
- Receive, process, and resolve tickets per defined SLA's
- Analyze information garnered from monitoring systems, operational incidents, and other sources to determine the scope and impact of potential security incidents, and process accordingly
- Critically assess current practices and provide feedback to management on improvement opportunities
- Assist with the design and implementation of threat detection and prevention solutions identified as necessary for the protection of Firm assets
- Effectively utilize common IR toolsets, platforms, and processes, such as SIEM, log management, packet capture, and breach detection systems
- Assist with forensic examinations and chain-of-custody procedures as directed by the Security Incident Response Engineers
- Provide input into standards and procedures
- Report compliance failures to management for immediate remediation
- Maintain assigned systems to ensure availability, reliability, and integrity, including the oversight of current and projected capacity, performance, and licensing
- Provide status reports and relevant metrics to the Security Operations Manager
- Contribute to the Firm's security-related information repositories and other marketing/awareness endeavors
- Participate in special projects as needed
- Possess a Computer Science Bachelor's Degree or substantial equivalent experience
- GSEC, GCIH, GCFE, GREM
- CISSP or SSCP
- Some professional experience in information security with a focus on incident response and forensics
- Foundational knowledge of IR concepts and best practices, including forensics and chain-of-custody
- Experience with common IR tools such as SIEM, log management, IDS, breach detection systems (APT/BDS/EDR), and packet capture.
- Broad understanding of TCP/IP, DNS, common network services, and other foundational topics
- Working knowledge of malware detection, analysis, and evasion techniques
- Able to conduct static and dynamic analysis of malware to extract indicators of compromise, profile malware behavior, and provide recommendations for mitigating and detecting malware;
- Able to analyze suspicious websites, script-based and malware code
- Experience with vulnerability management tools such as Qualys, Nessus, or other vulnerability scanning discovery tools
- Broad familiarity with the threat landscape and the ability to adapt practices to evolving circumstances
- Identify, analyze, and report threats within the enterprise by using information collected from a variety of sources (IDS/IPS, SIEM, AV), to protect data and networks. Implement techniques to hunt for known and unknown threats based on available threat intelligence reports and knowledge of the attacker's TTPs
- Able to gather and analyze facts, draw conclusions, define problems, and suggest solutions
- Maintain critical thinking and composure under pressure
- Strong written and oral communication skills. Ability to convey complex concepts to non-technical constituents. Proficiency in oral and written English
- Capable of assisting with the preparation of internal training materials and documentation
- Able to be productive and maintain focus without direct supervision
- Passionate in the practice and pursuit of IR excellence
- Can exhibit a disciplined and rigorous approach to incident handling
- Willing to accommodate shift-based work for a global organization
- Provide exemplary customer service by striving for first-call resolution and demonstrating empathy, respect, professionalism, and expertise
- Experience with digital forensics on host or network and identification of anomalous behavior on the network or endpoint devices. Familiar with host and network-based forensic tools such as EnCase, FTK, Sleuth Kit, X Ways, etc.
#J-18808-Ljbffr
-
Incident Response Analyst
4 days ago
Manila, National Capital Region, Philippines Ciena Full time ₱1,200,000 - ₱2,400,000 per yearAs the global leader in high-speed connectivity, Ciena is committed to a people-first approach. Our teams enjoy a culture focused on prioritizing a flexible work environment that empowers individual growth, well-being, and belonging. We're a technology company that leads with our humanity—driving our business priorities alongside meaningful social,...
-
Incident Response Analyst
3 days ago
Manila, National Capital Region, Philippines Ciena Full time ₱1,200,000 - ₱2,400,000 per yearAs the global leader in high-speed connectivity, Ciena is committed to a people-first approach. Our teams enjoy a culture focused on prioritizing a flexible work environment that empowers individual growth, well-being, and belonging. We're a technology company that leads with our humanity—driving our business priorities alongside meaningful social,...
-
Senior Security Incident Response Analyst
5 days ago
Manila, National Capital Region, Philippines Five9 Full time ₱1,200,000 - ₱2,400,000 per yearJoin us in bringing joy to customer experience. Five9 is a leading provider of cloud contact center software, bringing the power of cloud innovation to customers worldwide.Living our values everyday results in our team-first culture and enables us to innovate, grow, and thrive while enjoying the journey together. We celebrate diversity and foster an...
-
Incident Response Specialist
3 weeks ago
Manila, National Capital Region, Philippines QBE Insurance Group Full timeIncident Response Specialist page is loadedIncident Response SpecialistApply locations PHI - Manila time type Full time posted on Posted Yesterday job requisition id 341283Primary DetailsTime Type: Full timeWorker Type: EmployeeIncident Response Specialist, Group CyberReporting to the GSOC Lead, the Incident Response Specialist will be a key member of our...
-
Cybersecurity Incident Response Analyst
3 days ago
Manila, National Capital Region, Philippines SGL Manila (Shared Service Center), Inc. Full time $70,000 - $120,000 per yearTechnical Skills and Experience:Practical experience with email system security, including phishing prevention, spam filtering, and email security protocols.At least 2 years of experience with security incident monitoring, with the ability to identify and assess significant security events.Familiarity with security information and event management (SIEM)...
-
Incident Response Senior Associate
4 weeks ago
Manila, National Capital Region, Philippines DTCC Full timeAre you ready to make an impact at DTCC?Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We're committed to helping our employees grow and succeed. We believe that you have the skills and...
-
Incident Response Senior Associate
14 hours ago
Manila, National Capital Region, Philippines The Depository Trust & Clearing Corporation (DTCC) Full time ₱1,200,000 - ₱2,400,000 per yearAre you ready to make an impact at DTCC?Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We're committed to helping our employees grow and succeed. We believe that you have the skills and...
-
Incident Response Senior Associate
4 days ago
Manila, National Capital Region, Philippines Depository Trust & Clearing Corporation Full time ₱900,000 - ₱1,200,000 per yearAre you ready to make an impact at DTCC?Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We're committed to helping our employees grow and succeed. We believe that you have the skills and...
-
Computer Security Incident Response Team
4 days ago
Manila, National Capital Region, Philippines Ascendion Full time ₱900,000 - ₱1,200,000 per yearOn a day-to-day basis, you will assist with, identify and respond to incidents as well as proactively propose improvements for how to reduce risk and potential future incidents.Receiving and monitoring incident information from our managed security services and other sources.Reviewing the collected incident data and confirming or rejecting incidents based on...
-
Incident Manager
5 days ago
Manila, National Capital Region, Philippines TENTEN Partners Full time ₱4,200,000 per yearJoin us in partnership with a leading financial institution to hire anIncident Managerresponsible for safeguarding mission-critical systems and ensuring seamless operations.You will serve as thecentral point of contact for managing major incidents, leading high-pressure recovery efforts across cross-functional teams. Your leadership will ensure rapid...