Threat Detection, Response, and Intelligence Lead

3 days ago


Taguig, National Capital Region, Philippines GCash Full time
Threat Detection, Response, and Intelligence Lead

GCash Taguig, National Capital Region, Philippines

3 days ago Be among the first 25 applicants

ROLES AND RESPONSIBILITIES:

  • Incident Detection: Monitor network and system logs, security tools, and alerts to identify potential security incidents. Utilize intrusion detection systems, SIEM solutions, and other technologies to detect and report anomalies.
  • Incident Analysis: Investigate and analyze security incidents to determine the scope, impact, and root cause. Identify the nature of the threat, the methods used, and potential vulnerabilities exploited.
  • Incident Mitigation: Develop and implement strategies to contain and mitigate security incidents. This may involve isolating affected systems, patching vulnerabilities, and applying appropriate security controls.
  • Response Planning: Create and maintain incident response plans and playbooks to ensure an organized and effective response to different types of incidents. Collaborate with relevant teams to establish incident response procedures.
  • Coordination: Work closely with IT, security, legal, and compliance teams to coordinate incident response efforts. Ensure clear communication and collaboration during incident handling.
  • Documentation: Maintain detailed records of incident response activities, including evidence, actions taken, and lessons learned. Prepare incident reports for management and stakeholders.
  • Threat Intelligence: Stay current with the latest cybersecurity threats, vulnerabilities, and attack techniques. Leverage threat intelligence sources to enhance incident detection and response capabilities.
  • Forensics: Conduct digital forensics and malware analysis to understand the nature of incidents and gather evidence for potential legal actions.
  • Continuous Improvement: Review incident response processes and procedures regularly, identifying areas for improvement, and recommending updates to enhance the organization's security posture.
  • Working Schedules: Able to work outside of regular business hours to respond to incidents promptly.

SKILLS, QUALIFICATIONS, AND COMPETENCIES

  • Must have any 1 of the following:
  • CEH: Certified Ethical Hacker
  • CISSP: Certified Information Systems and Security Professional
  • Comptia Security +
  • With 4-6 years experience on Security Operations and Incident Response
  • Has experienced in Splunk Admin such as data parsing and indexing
  • Must have a strong position around Information Security and must have handled either or both ISO27001 and PCI-DSS certifications
  • Proficient in identifying threats in network, endpoints, APIs and user behavior.
  • Knowledge of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management, etc.
  • Knowledge of various operating system flavors including but not limited to Windows and Linux
  • Knowledge in cloud environment (AWS, Alibaba Cloud)
  • Knowledge of applications, databases, middleware to address security threats against the same.
  • Proficient in preparation of reports, dashboards and documentation
  • Good Analytical skills, Problem solving and Interpersonal skills
  • Working knowledge and experience with Google products with proficiency in Google sheet
  • Some tasks may involve high-pressure situations and the need for quick decision-making.
  • Experience using a scripting language such as Python, Bash, OR PowerShell.
  • Knowledge with Infrastructure as Code tools like Terraform
  • Experience with Cloud Native applications (Kubernetes, Docker) is an advantage.

What We Offer: Opportunity for career growth and development in the #1 FinTech company in the country. Working with a dynamic and highly collaborative team who want to change the game. A company that values their people with highly competitive and flexible compensation and benefits package.

Seniority level

Mid-Senior level

Employment type

Full-time

Job function

Strategy/Planning, Analyst, and Information Technology

#J-18808-Ljbffr

  • Taguig, National Capital Region, Philippines GCash Full time

    Threat Detection, Response, and Intelligence LeadGCashNegotiableOn-site - Taguig 3-5 Yrs Exp Diploma Full-timeJob DescriptionDo you want to take the first step in making Filipinos' lives better every day? Here in GCash we want to stay at the forefront of the FinTech industry by creating innovative, meaningful, and convenient financial solutions for the...


  • Taguig, National Capital Region, Philippines GCash Full time

    Join Our Team:We are looking for a highly skilled Cybersecurity Lead Specialist to join our team at GCash. As a key member of our cybersecurity team, you will be responsible for leading the company's threat detection, response, and intelligence efforts.Responsibilities:Incident Detection: Monitor network and system logs, security tools, and alerts to...


  • Taguig, National Capital Region, Philippines GCash Full time

    Job Description:GCash seeks a highly skilled Cybersecurity Lead Specialist to lead the company's threat detection, response, and intelligence efforts. The ideal candidate will possess in-depth knowledge of security concepts, including cyber-attacks and techniques, threat vectors, risk management, and incident management.Key Responsibilities:Incident...


  • Taguig, National Capital Region, Philippines GCash Full time

    About the Role:We are seeking a highly skilled Threat Detection and Analysis Lead to join our team at GCash. As a key member of our cybersecurity team, you will be responsible for leading the company's threat detection, response, and intelligence efforts.Key Responsibilities:Incident Detection: Monitor network and system logs, security tools, and alerts to...


  • Taguig, National Capital Region, Philippines GCash Full time

    Threat Detection, Response, and Intelligence LeadAbout the Role:We are seeking a highly skilled Threat Detection, Response, and Intelligence Lead to join our team at GCash. As a key member of our security operations, you will be responsible for leading the detection, analysis, and response to potential security threats.Responsibilities:Incident Detection:...


  • Taguig, National Capital Region, Philippines GCash Full time

    Senior Cybersecurity Analyst - Incident ResponseWe are seeking a highly skilled Senior Cybersecurity Analyst to join our Incident Response team at GCash. As a key member of our security operations, you will be responsible for detecting, analyzing, and responding to potential security threats.Responsibilities:Security Threats: Identify and respond to...


  • Taguig, National Capital Region, Philippines Willis Towers Watson Full time

    **Job Summary:**We are seeking a skilled Senior Cyber Security Incident Response Analyst to join our Cyber Security Incident Response Team at Willis Towers Watson. As a key member of this team, you will play a critical role in supporting the response to security incidents and contributing to the improvement of our incident management capabilities.This is a...


  • Taguig, National Capital Region, Philippines GCash Full time

    Job Overview:We are looking for a highly skilled Incident Response and Intelligence Manager to join our team at GCash. As a key member of our cybersecurity team, you will be responsible for leading the company's threat detection, response, and intelligence efforts.Responsibilities:Incident Detection: Monitor network and system logs, security tools, and...


  • Taguig, National Capital Region, Philippines Pinterview Full time

    Pinterview is seeking a highly skilled Network Threat Investigator to join our team.Job Description:The Network Threat Investigator will be responsible for monitoring and analyzing system alerts to identify potential threats or operational issues. This involves initial investigation, documentation, and escalation of alerts to ensure timely incident response...


  • Taguig, National Capital Region, Philippines Willis Towers Watson Full time

    **About the Role:**We are looking for an experienced Cyber Security Incident Response Analyst to join our team at Willis Towers Watson. This is a challenging and rewarding role that requires strong technical skills, excellent communication abilities, and the ability to investigate and manage security incidents effectively.The successful candidate will have a...


  • Taguig, National Capital Region, Philippines Nityo Infotech Full time

    Qualifications:- A minimum of 2 years of experience as a Senior Insider Threat Analyst / Senior DLP- Relevant MS Qualifications for Purview DLP (must have cert MS or Cyber Sec)- At least 1 – 2 years of experience with Defender and IRM- Prior experience in cyber security roles in areas such as incident response, threat detection or security operations.-...


  • Taguig, National Capital Region, Philippines WTW Full time

    Cyber Security Response LeadAt WTW, we are seeking a highly experienced Cyber Security Response Lead to join our team. As a key player in our Cyber Defense strategy, you will lead the response to complex security incidents and drive initiatives to enhance our Cyber incident management capabilities.The successful candidate will have a strong understanding of...


  • Taguig, National Capital Region, Philippines WTW Full time

    About the RoleThis is an exciting opportunity for a skilled and experienced L2 Insider Threat Analyst to join our Cyber Security team at WTW.The successful candidate will have a proven track record as a Senior DLP or Insider Threat Analyst in a global enterprise organization and will be responsible for investigating escalated Insider Threat and Data Loss...


  • Taguig, National Capital Region, Philippines Nityo Infotech Full time

    - A minimum of 2 years of experience as a Senior Insider Threat Analyst / Senior DLP- Relevant MS Qualifications for Purview DLP (must have cert MS or Cyber Sec)- At least 1 – 2 years of experience with Defender and IRM- Prior experience in cyber security roles in areas such as incident response, threat detection or security operations.- Proficiency in...


  • Taguig, National Capital Region, Philippines Manpower (Philippines) Full time

    We are looking for a seasoned Threat Modeling Lead to join our team at Manpower (Philippines). In this role, you will be responsible for developing detailed threat models identifying potential threats and vulnerabilities in solutions, software, and systems.The ideal candidate will have a minimum of 8 years of experience in cybersecurity, with a focus on...


  • Taguig, National Capital Region, Philippines Pinterview Full time

    Pinterview is looking for an experienced Incident Response Specialist to join our team.Job Summary:The Incident Response Specialist will be responsible for monitoring and analyzing system alerts to identify potential threats or operational issues. This involves initial investigation, documentation, and escalation of alerts to ensure timely incident response...


  • Taguig, National Capital Region, Philippines WTW Full time

    Cyber Security Incident Response - Senior AnalystWTWNegotiableOn-site - Taguig 3-5 Yrs Exp Diploma Full-timeJob DescriptionDescriptionThe Cyber Security Incident Response Senior Analyst will play a critical role in WTW's Cyber Security Incident Response Team (CSIRT), supporting the response to security incidents and contributing to the improvement of WTW's...


  • Taguig, National Capital Region, Philippines WTW Full time

    Cyber Security Incident Response - Principal AnalystWTWNegotiableOn-site - Taguig 3-5 Yrs Exp Diploma Full-timeJob DescriptionDescriptionThe Cyber Security Incident Response Principal Analyst will play a pivotal role within WTW's Global Information and Cyber Security Defence (ICSD) function, leading the response to complex security incidents and driving...


  • Taguig, National Capital Region, Philippines WTW Full time

    Cyber Security Threat Analyst**Job Description**We are seeking a highly skilled Cyber Security Threat Analyst to join our team. As a key member of our Cyber Defense strategy, you will play a critical role in managing and responding to security incidents within WTW's Cyber Security Incident Response Team.Support the investigation of security incidents...


  • Taguig, National Capital Region, Philippines WTW Full time

    On-site - Taguig Fresh Graduate/Student Diploma Full-timeJob DescriptionDescriptionWe are seeking passionate people to grow the Cyber Security team within WTW and provide an excellent service and trusted expertise to all parts of our business. We have an exciting opening for a skilled and experienced L2 Insider Threat Analyst.As part of the Cyber Defence...