Threat Detection, Response, and Intelligence Lead
3 days ago
GCash Taguig, National Capital Region, Philippines
3 days ago Be among the first 25 applicants
ROLES AND RESPONSIBILITIES:
- Incident Detection: Monitor network and system logs, security tools, and alerts to identify potential security incidents. Utilize intrusion detection systems, SIEM solutions, and other technologies to detect and report anomalies.
- Incident Analysis: Investigate and analyze security incidents to determine the scope, impact, and root cause. Identify the nature of the threat, the methods used, and potential vulnerabilities exploited.
- Incident Mitigation: Develop and implement strategies to contain and mitigate security incidents. This may involve isolating affected systems, patching vulnerabilities, and applying appropriate security controls.
- Response Planning: Create and maintain incident response plans and playbooks to ensure an organized and effective response to different types of incidents. Collaborate with relevant teams to establish incident response procedures.
- Coordination: Work closely with IT, security, legal, and compliance teams to coordinate incident response efforts. Ensure clear communication and collaboration during incident handling.
- Documentation: Maintain detailed records of incident response activities, including evidence, actions taken, and lessons learned. Prepare incident reports for management and stakeholders.
- Threat Intelligence: Stay current with the latest cybersecurity threats, vulnerabilities, and attack techniques. Leverage threat intelligence sources to enhance incident detection and response capabilities.
- Forensics: Conduct digital forensics and malware analysis to understand the nature of incidents and gather evidence for potential legal actions.
- Continuous Improvement: Review incident response processes and procedures regularly, identifying areas for improvement, and recommending updates to enhance the organization's security posture.
- Working Schedules: Able to work outside of regular business hours to respond to incidents promptly.
SKILLS, QUALIFICATIONS, AND COMPETENCIES
- Must have any 1 of the following:
- CEH: Certified Ethical Hacker
- CISSP: Certified Information Systems and Security Professional
- Comptia Security +
- With 4-6 years experience on Security Operations and Incident Response
- Has experienced in Splunk Admin such as data parsing and indexing
- Must have a strong position around Information Security and must have handled either or both ISO27001 and PCI-DSS certifications
- Proficient in identifying threats in network, endpoints, APIs and user behavior.
- Knowledge of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management, etc.
- Knowledge of various operating system flavors including but not limited to Windows and Linux
- Knowledge in cloud environment (AWS, Alibaba Cloud)
- Knowledge of applications, databases, middleware to address security threats against the same.
- Proficient in preparation of reports, dashboards and documentation
- Good Analytical skills, Problem solving and Interpersonal skills
- Working knowledge and experience with Google products with proficiency in Google sheet
- Some tasks may involve high-pressure situations and the need for quick decision-making.
- Experience using a scripting language such as Python, Bash, OR PowerShell.
- Knowledge with Infrastructure as Code tools like Terraform
- Experience with Cloud Native applications (Kubernetes, Docker) is an advantage.
What We Offer: Opportunity for career growth and development in the #1 FinTech company in the country. Working with a dynamic and highly collaborative team who want to change the game. A company that values their people with highly competitive and flexible compensation and benefits package.
Seniority levelMid-Senior level
Employment typeFull-time
Job functionStrategy/Planning, Analyst, and Information Technology
#J-18808-Ljbffr-
Taguig, National Capital Region, Philippines GCash Full timeThreat Detection, Response, and Intelligence LeadGCashNegotiableOn-site - Taguig 3-5 Yrs Exp Diploma Full-timeJob DescriptionDo you want to take the first step in making Filipinos' lives better every day? Here in GCash we want to stay at the forefront of the FinTech industry by creating innovative, meaningful, and convenient financial solutions for the...
-
Threat Detection and Analysis Lead
6 hours ago
Taguig, National Capital Region, Philippines GCash Full timeJoin Our Team:We are looking for a highly skilled Cybersecurity Lead Specialist to join our team at GCash. As a key member of our cybersecurity team, you will be responsible for leading the company's threat detection, response, and intelligence efforts.Responsibilities:Incident Detection: Monitor network and system logs, security tools, and alerts to...
-
Security Threat Response Expert
6 hours ago
Taguig, National Capital Region, Philippines GCash Full timeJob Description:GCash seeks a highly skilled Cybersecurity Lead Specialist to lead the company's threat detection, response, and intelligence efforts. The ideal candidate will possess in-depth knowledge of security concepts, including cyber-attacks and techniques, threat vectors, risk management, and incident management.Key Responsibilities:Incident...
-
Incident Response and Intelligence Manager
6 hours ago
Taguig, National Capital Region, Philippines GCash Full timeAbout the Role:We are seeking a highly skilled Threat Detection and Analysis Lead to join our team at GCash. As a key member of our cybersecurity team, you will be responsible for leading the company's threat detection, response, and intelligence efforts.Key Responsibilities:Incident Detection: Monitor network and system logs, security tools, and alerts to...
-
Security Operations Lead
3 days ago
Taguig, National Capital Region, Philippines GCash Full timeThreat Detection, Response, and Intelligence LeadAbout the Role:We are seeking a highly skilled Threat Detection, Response, and Intelligence Lead to join our team at GCash. As a key member of our security operations, you will be responsible for leading the detection, analysis, and response to potential security threats.Responsibilities:Incident Detection:...
-
Threat Intelligence Manager
3 days ago
Taguig, National Capital Region, Philippines GCash Full timeSenior Cybersecurity Analyst - Incident ResponseWe are seeking a highly skilled Senior Cybersecurity Analyst to join our Incident Response team at GCash. As a key member of our security operations, you will be responsible for detecting, analyzing, and responding to potential security threats.Responsibilities:Security Threats: Identify and respond to...
-
Cyber Security Incident Response Lead
5 days ago
Taguig, National Capital Region, Philippines Willis Towers Watson Full time**Job Summary:**We are seeking a skilled Senior Cyber Security Incident Response Analyst to join our Cyber Security Incident Response Team at Willis Towers Watson. As a key member of this team, you will play a critical role in supporting the response to security incidents and contributing to the improvement of our incident management capabilities.This is a...
-
Cybersecurity Lead Specialist
6 hours ago
Taguig, National Capital Region, Philippines GCash Full timeJob Overview:We are looking for a highly skilled Incident Response and Intelligence Manager to join our team at GCash. As a key member of our cybersecurity team, you will be responsible for leading the company's threat detection, response, and intelligence efforts.Responsibilities:Incident Detection: Monitor network and system logs, security tools, and...
-
Network Threat Investigator
4 days ago
Taguig, National Capital Region, Philippines Pinterview Full timePinterview is seeking a highly skilled Network Threat Investigator to join our team.Job Description:The Network Threat Investigator will be responsible for monitoring and analyzing system alerts to identify potential threats or operational issues. This involves initial investigation, documentation, and escalation of alerts to ensure timely incident response...
-
Taguig, National Capital Region, Philippines Willis Towers Watson Full time**About the Role:**We are looking for an experienced Cyber Security Incident Response Analyst to join our team at Willis Towers Watson. This is a challenging and rewarding role that requires strong technical skills, excellent communication abilities, and the ability to investigate and manage security incidents effectively.The successful candidate will have a...
-
Insider Threat Analyst
4 weeks ago
Taguig, National Capital Region, Philippines Nityo Infotech Full timeQualifications:- A minimum of 2 years of experience as a Senior Insider Threat Analyst / Senior DLP- Relevant MS Qualifications for Purview DLP (must have cert MS or Cyber Sec)- At least 1 – 2 years of experience with Defender and IRM- Prior experience in cyber security roles in areas such as incident response, threat detection or security operations.-...
-
Cyber Security Response Lead
6 hours ago
Taguig, National Capital Region, Philippines WTW Full timeCyber Security Response LeadAt WTW, we are seeking a highly experienced Cyber Security Response Lead to join our team. As a key player in our Cyber Defense strategy, you will lead the response to complex security incidents and drive initiatives to enhance our Cyber incident management capabilities.The successful candidate will have a strong understanding of...
-
Advanced Threat Analyst
5 hours ago
Taguig, National Capital Region, Philippines WTW Full timeAbout the RoleThis is an exciting opportunity for a skilled and experienced L2 Insider Threat Analyst to join our Cyber Security team at WTW.The successful candidate will have a proven track record as a Senior DLP or Insider Threat Analyst in a global enterprise organization and will be responsible for investigating escalated Insider Threat and Data Loss...
-
L2 Insider Threat Analyst
3 weeks ago
Taguig, National Capital Region, Philippines Nityo Infotech Full time- A minimum of 2 years of experience as a Senior Insider Threat Analyst / Senior DLP- Relevant MS Qualifications for Purview DLP (must have cert MS or Cyber Sec)- At least 1 – 2 years of experience with Defender and IRM- Prior experience in cyber security roles in areas such as incident response, threat detection or security operations.- Proficiency in...
-
Threat Modeling Lead
5 days ago
Taguig, National Capital Region, Philippines Manpower (Philippines) Full timeWe are looking for a seasoned Threat Modeling Lead to join our team at Manpower (Philippines). In this role, you will be responsible for developing detailed threat models identifying potential threats and vulnerabilities in solutions, software, and systems.The ideal candidate will have a minimum of 8 years of experience in cybersecurity, with a focus on...
-
Incident Response Specialist
4 days ago
Taguig, National Capital Region, Philippines Pinterview Full timePinterview is looking for an experienced Incident Response Specialist to join our team.Job Summary:The Incident Response Specialist will be responsible for monitoring and analyzing system alerts to identify potential threats or operational issues. This involves initial investigation, documentation, and escalation of alerts to ensure timely incident response...
-
Cyber Security Incident Response
9 hours ago
Taguig, National Capital Region, Philippines WTW Full timeCyber Security Incident Response - Senior AnalystWTWNegotiableOn-site - Taguig 3-5 Yrs Exp Diploma Full-timeJob DescriptionDescriptionThe Cyber Security Incident Response Senior Analyst will play a critical role in WTW's Cyber Security Incident Response Team (CSIRT), supporting the response to security incidents and contributing to the improvement of WTW's...
-
Cyber Security Incident Response
9 hours ago
Taguig, National Capital Region, Philippines WTW Full timeCyber Security Incident Response - Principal AnalystWTWNegotiableOn-site - Taguig 3-5 Yrs Exp Diploma Full-timeJob DescriptionDescriptionThe Cyber Security Incident Response Principal Analyst will play a pivotal role within WTW's Global Information and Cyber Security Defence (ICSD) function, leading the response to complex security incidents and driving...
-
Cyber Security Threat Analyst
6 hours ago
Taguig, National Capital Region, Philippines WTW Full timeCyber Security Threat Analyst**Job Description**We are seeking a highly skilled Cyber Security Threat Analyst to join our team. As a key member of our Cyber Defense strategy, you will play a critical role in managing and responding to security incidents within WTW's Cyber Security Incident Response Team.Support the investigation of security incidents...
-
L2 Insider Threat Analyst
9 hours ago
Taguig, National Capital Region, Philippines WTW Full timeOn-site - Taguig Fresh Graduate/Student Diploma Full-timeJob DescriptionDescriptionWe are seeking passionate people to grow the Cyber Security team within WTW and provide an excellent service and trusted expertise to all parts of our business. We have an exciting opening for a skilled and experienced L2 Insider Threat Analyst.As part of the Cyber Defence...