Cyber SOC Incident Response Manager
4 days ago
Search by keyword and location and click "create alert" to receive your job alerts by email:
Select how often (in days) to receive an alert:
Job ID: 95648
Country: Philippines
City: Taguig, National Capital Region
Professional area: Information Technology
Contract type: Permanent
Professional level: Experienced
Location:
Taguig, National Capital Region, 00, PH, 1634
At JTI we celebrate differences, and everyone truly belongs. 46,000 people from all over the world are continuously building their unique success story with us. 83% of employees feel happy working at JTI.
To make a difference with us, all you need to do is bring your human best.
Reporting to: Infosec & Risk Management Director
Duty Post: GBS Manila, Taguig, Philippines
Application Duration: This job posting will remain open until the vacancy is filled.
With a growing number of Security Incidents and in order to improve the Incident Response process, the Security Operations Center needs to assign a Tier 2 Cyber SOC Incident Response Manager who will be able to quickly identify the true cause of a cyber incident, determine the span of a compromise and provide practical advice to fix and prevent the threats and if required, to assist with recovering critical data and services.
Within its main functions, the Cyber SOC Incident Response Manager will:
- Support the Tier 1 Incident Response Analysts during the handling of low and medium severity incidents.
- Escalate to the Tier 3 Cyber Incident Response Managers high severity incidents and contribute to the resolution.
- Follow IR security standards, properly document IR actions and coordinate IR tasks with other functions within SOC and the rest of the organization.
Responsibilities:
- Respond to low and medium Security Incidents, mainly but not exclusively to Phishing, Malware and Web Attacks related Security Incidents.
- Assess, triage, categorize, prioritize and track Security Incidents and escalate the ones with high severity and provide support to its resolution.
- Derive immediate mitigation measures for containment, eradication, and recovery of Security Incidents and document implementation progress in line with JTI internal SLAs.
- Coordinate Incident Response taskforces with different IT functions and end users.
- Estimate the scope of impacted assets, ensure that remediation is properly addressed to all scope identified during the Analysis stage according to security standards.
- Collect forensics malicious payloads, forensics artifacts and IOCs according to JTI SOPs and for further analysis by JTI SOC personnel.
- Concisely summarize the analysis and actions carried out during the Incident Response handling.
- Provide basic malware analysis using sandboxes.
- Support
- Support Security Incident Managers during relevant security incidents by following their ad-hoc instructions during the incident handling and forensics activities.
- Support Incident Response Analysts and provide them with necessary guidance during daily operations and ensure that appropriate actions were taken in a timely and effective manner and in line with JTI SOPs.
- Documentation
- Contribute to the creation, maintenance and improvements of Security Incident runbooks and SOPs in scope of Incident Response daily activities.
- Track security incidents, provide close notes and contribute to the reporting.
- Contribute to internal reports, KPIs and metrics.
- Contribute with other SOC functions (CTI, Threat Detection, Threat Hunting and MSSP) by providing inputs from an IR perspective. Also support activities for collaboration with other IT and business functions to improve the overall security posture.
- Knowledge management
- Monitor Security Industry trends on new threats and share knowledge with the rest of the team.
- Develop JTI current and forward-looking threat profile and recommendations for baseline security configurations for operating systems, applications, and networking equipment.
Requirements
- Strong knowledge of information security principles and best practices in incident response.
- Practical knowledge of tools and techniques used in incident detection and response.
- Demonstrated experience working with EDR/XDR solutions, SIEM platforms and Ticketing systems.
- Experience with Microsoft security products is a plus. E.g. Microsoft Defender for Endpoint.
- Demonstrated experience and knowledge with NIST 800-61 standard and MITRE ATT&CK framework.
- Analytical/problem solving ability.
- Process management and Standard/Procedures literacy.
- Ability to work under constantly changing conditions and tight deadlines.
- Strong verbal, written communication and presentation skills.
- Scripting skills are a plus.
Are you ready to join us? Build your success story at JTI. Apply now
Next Steps:
After applying, if selected, please anticipate the following within 1-3 weeks of the job posting closure: Phone screening with TA > Assessment tests > Interviews > Offer. Each step is eliminatory and may vary by role type.
At JTI, we strive to create a diverse and inclusive work environment. As an equal-opportunity employer, we welcome applicants from all backgrounds. We are committed to providing reasonable adjustments to applicants with special needs. If you require any accommodations, please let the Talent Advisor know during the selection process.
#J-18808-Ljbffr-
Cyber SOC Incident Response Manager
1 week ago
Taguig, National Capital Region, Philippines JTI Full timeSearch by keyword and location and click "create alert" to receive your job alerts by email:Select how often (in days) to receive an alert:Job ID: 95648Country: PhilippinesCity: Taguig, National Capital RegionProfessional area: Information TechnologyContract type: PermanentProfessional level: ExperiencedLocation:Taguig, National Capital Region, 00, PH,...
-
Cyber SOC Incident Response Lead
4 days ago
Taguig, National Capital Region, Philippines JTI Full timeAbout the RoleThe Cyber SOC Incident Response Manager will be responsible for identifying and resolving cyber security incidents in a timely manner, ensuring minimal impact on business operations. This role requires strong analytical and problem-solving skills, as well as excellent communication and collaboration abilities.Key Responsibilities:Respond to low...
-
Cyber Threat Response Specialist
3 days ago
Taguig, National Capital Region, Philippines Cyber Crime Full timeCyber Crime is seeking a highly skilled and experienced Cyber Defense Engineer to join our team. As a key member of our security team, you will be responsible for leading the development and implementation of robust change management policies and procedures.Responsibilities:Change Management: Spearhead the development and implementation of comprehensive...
-
Cyber Security Incident Response
1 week ago
Taguig, National Capital Region, Philippines WTW Full timeCyber Security Incident Response - Senior AnalystWTWNegotiableOn-site - Taguig 3-5 Yrs Exp Diploma Full-timeJob DescriptionDescriptionThe Cyber Security Incident Response Senior Analyst will play a critical role in WTW's Cyber Security Incident Response Team (CSIRT), supporting the response to security incidents and contributing to the improvement of WTW's...
-
Cyber Security Incident Response
1 week ago
Taguig, National Capital Region, Philippines WTW Full timeCyber Security Incident Response - Principal AnalystWTWNegotiableOn-site - Taguig 3-5 Yrs Exp Diploma Full-timeJob DescriptionDescriptionThe Cyber Security Incident Response Principal Analyst will play a pivotal role within WTW's Global Information and Cyber Security Defence (ICSD) function, leading the response to complex security incidents and driving...
-
Incident Response Lead
1 day ago
Taguig, National Capital Region, Philippines Manpower Core Group Inc. Full timeCybersecurity Operations ManagerThe Manpower Core Group Inc. is seeking an experienced Cybersecurity Operations Manager to lead our 24/7 Security Operations Center (SOC) team. As a key member of our cybersecurity operations team, you will play a critical role in managing multiple security technologies, developing enhancements, and ensuring the effectiveness...
-
Cyber SOC Technology Manager
15 hours ago
Taguig, National Capital Region, Philippines JTI Full timeProfessional area: Information TechnologyContract type: PermanentProfessional level: ExperiencedLocation: Metro Manila, Taguig, PH, 00000At JTI we celebrate differences, and everyone truly belongs. 46,000 people from all over the world are continuously building their unique success story with us. 83% of employees feel happy working at JTI.To make a...
-
Cyber Incident Response Lead
3 days ago
Taguig, National Capital Region, Philippines Michael Page Full timeJoin a pioneer teamEnjoy market-aligned salaries & benefitsAbout Our ClientThe client is a leading multinational financial institution and pioneer in the digital banking in the Philippines.Job DescriptionIncident Response & Remediation:Lead the end-to-end incident response (IR) process, from detection to containment, eradication, recovery, and post-incident...
-
Cyber Defense Engineer Position
5 days ago
Taguig, National Capital Region, Philippines Cyber Crime Full timeWe are seeking a highly skilled Cyber Defense Engineer to join our team at Coins.ph. As a key member of our security operations center, you will play a pivotal role in ensuring the security of our organization's information assets.About the Role:The successful candidate will be responsible for spearheading the development and implementation of robust change...
-
Incident Response Team Lead
7 days ago
Taguig, National Capital Region, Philippines Amadeus Full timeThe Incident Response Team Lead at Amadeus is responsible for leading the incident response efforts in case of a security breach or other major incident. As an active member of the SOC (Security Operations Center), you will work closely with the Computer Security Incident Response Team (CSIRT) to provide First Response Service (FRS) and participate in...
-
Senior SOC Analyst
1 day ago
Taguig, National Capital Region, Philippines Manpower Core Group Inc. Full timeSOC Team Member Job DescriptionWe are looking for a highly skilled Security Operations Center (SOC) team member to join our 24/7 SOC team at Manpower Core Group Inc.. The successful candidate will play a critical role in managing multiple security technologies and developing enhancements that enable our team members to work collaboratively and efficiently...
-
L3 SOC Analyst
4 weeks ago
Taguig, National Capital Region, Philippines GSS PH Full time5+ Years of Cyber Security experience in a 24x7 SOC environment and handling L3 Security Issues or complex incidents (Issues that have been escalated by L2 SOC Analyst)Experienced using SIEM Tools (Splunk, Azure Sentinel etc.)Experienced in Cyber Incident Response, Security Monitoring, Malware Analysis, Reverse Engineering, Digital Forensics and Deep...
-
Incident Response Security Manager
4 days ago
Taguig, National Capital Region, Philippines JTI Full timeAbout the RoleThis position will play a key role in improving the incident response process at JTI, ensuring that security incidents are identified and resolved quickly and effectively. The successful candidate will have strong analytical and problem-solving skills, as well as excellent communication and collaboration abilities.Key Responsibilities:Identify...
-
Cyber Security Specialist @ Coins.ph
6 days ago
Taguig, National Capital Region, Philippines Cyber Crime Full timeAt Coins.ph, we are committed to providing secure and reliable services to our customers. We seek a highly skilled and experienced Cyber Defense Engineer to join our team. This pivotal role is instrumental in ensuring the security of our organization's information assets by leading and facilitating change management processes.The ideal candidate will have a...
-
Cyber Incident Response Specialist
2 days ago
Taguig, National Capital Region, Philippines TASQ Staffing Solutions Full timeKey Responsibilities:Analyze potential network security incidents to identify security breaches.Investigate security breaches and make qualified decisions and recommendations for corrective action.Participate in threat hunting activities.Coordinate with other teams and organizations as necessary.Assist in larger security incidents and more complex...
-
Taguig, National Capital Region, Philippines Manpower Core Group Inc. Full timeAt Manpower Core Group Inc., we are committed to providing top-notch services to our clients. We are currently seeking a highly skilled Security Monitoring and Incident Response Specialist to join our team.About the RoleThe successful candidate will work as part of a cybersecurity operations team responsible for carrying out 24x7 onsite security monitoring...
-
Cyber Defense Engineer @
6 days ago
Taguig, National Capital Region, Philippines Cyber Crime Full timeCoins.phCoins.ph is the Philippines' most trusted crypto wallet and exchange. Buy Bitcoin and other cryptocurrencies securely for as low as ₱5. Join 16M+ Filipinos on Coins.phJoin the Pioneer Crypto Brand in the Philippines Coins is the most established crypto brand in The Philippines and has gained the trust of more than 18 million users. Through the...
-
Cybersecurity Incident Response Specialist
2 days ago
Taguig, National Capital Region, Philippines Michael Page Full timeAbout the Role:As a Cybersecurity Incident Response Specialist, you will be responsible for leading end-to-end incident response processes from detection to containment, eradication, recovery, and post-incident review. Your expertise in handling major security incidents, forensics, and malware analysis will be invaluable to our organization.About Our...
-
SOC Threat Investigator
5 days ago
Taguig, National Capital Region, Philippines Willis Towers Watson Full timeAbout the OpportunityThis is an exciting opportunity to join a leading global professional services company, Willis Towers Watson, and contribute to the development of its cybersecurity capabilities.Responsibilities:Play a key role in our 24/7 SOC team, working closely with internal stakeholders and colleagues to deliver high-quality service and...
-
Incident Response Controller II @ FUJIFILM
35 minutes ago
Taguig, National Capital Region, Philippines Cyber Crime Full timeResponsibilities:Observing Quality Management and Technical and Professional Services procedures that govern the management and administration of Client CAREs in the corporate HEAT system, and the recording and categorisation of preventative actions in the problem management system (PROBi).Participating with TaPS technical teams and functional business teams...