Senior Associate, Response Operations, Cyber Risk

3 weeks ago


Manila, National Capital Region, Philippines Kroll Full time
Senior Associate, Response Operations, Cyber Risk

Compliance Risk and Diligence

Compliance Risk and Diligence | Manila, Philippines | 21010986

In a world of disruption and increasingly complex business challenges, our professionals bring truth into focus with the Kroll Lens. Our sharp analytical skills, paired with the latest technology, allow us to give our clients clarity—not just answers—in all areas of business. We embrace diverse backgrounds and global perspectives, and we cultivate diversity by respecting, including, and valuing one another. As part of One team, One Kroll, you'll contribute to a supportive and collaborative work environment that empowers you to excel.

Kroll's Cyber Risk team works on over 2,000 cases a year, including some of the most complex and highest profile matters in the world. With experts based around the world, supported by ground-breaking technology, we help protect our client's data, people, operations and reputation with innovative assessments, investigations, and intelligence. We are the only company in the world with the expertise and resources to deliver global, end-to-end cyber risk management, supporting organizations through every step of their journey toward cyber resilience.

Clients count on us for quick and expert support in the event of and in preparation against a cyber incident; from incident response to risk assessments, and complex forensics to breach notification and ID theft remediation we help clients – of all sizes – respond with confidence.

At Kroll, your work will help deliver clarity to our clients' most complex governance, risk, and transparency challenges. Apply now to join One team, One Kroll.

RESPONSIBILITIES:

We are looking for bright, motivated, and inquisitive minds to join our Kroll Responder 24x7 monitoring and response team who are experienced in and passionate about modern cyber threat hunting and active response. Our Senior Associates use leading endpoint detection and response tools to rapidly identify, investigate, and respond to threats and threat actors impacting systems and networks around the globe every day.

  1. Perform ongoing threat hunting, analysis, containment, and remediation of threats identified through advanced endpoint detection and response (EDR), endpoint prevention (EPP), SIEM, and related security tools.
  2. Collect and review relevant forensic artifacts to identify root cause and understand nature of threats.
  3. Develop and communicate written and verbal threat reports associated with events to customers.
  4. Assist in ongoing research, development, and testing of enhanced threat detection and response tools, techniques, and indicators.
  5. Support incident engagement teams with active intrusion detection and response tasks.
  6. Conduct threat research, forensic analysis, and basic malware analysis of threats.
  7. Actively participate in related client meetings and teleconferences.
  8. Assist clients with questions regarding threat detections, EDR tools, deployment, and maintenance.

REQUIREMENTS:

  1. Bachelor's degree or higher in Computer Science, Cyber Security, Computer Engineering, or similar technical degree.
  2. Minimum 3 years' experience in threat hunting, detection, and response or equivalent experience.
  3. Ability to respond rapidly, multi-task, and communicate effectively both verbally and in writing with customers, team members, and engagement managers.
  4. Highly motivated, tenacious, assertive problem solver with a desire to analyze root cause and reach effective conclusions to active intrusions and incidents on an ongoing basis both individually and as part of larger response teams.
  5. Solid understanding of Windows operating system fundamentals, architecture (File System, registry, processes, binaries, DLL's, etc.) and administration concepts. Similar understanding of MacOS and/or Linux a plus.
  6. Prior experience actively using endpoint threat detection and response (EDR) products to investigate threats such as Sentinel One, Crowdstrike Falcon, VMWare Carbon Black, Windows Defender ATP, Cortex XDR, Trend Micro XDR, or others.
  7. Understanding of common threat actor techniques, malware behavior and persistence mechanisms.
  8. Working knowledge of various scripting languages and tools (PowerShell, Python, VB, Yara).
  9. Working knowledge of TCP/IP and related networking concepts.
  10. Prior experience using Splunk or other SIEM solutions, intrusion detection solutions, or related security products.
  11. Relevant cyber security certifications including CISSP, GCIA, GCIH, GCFA, GMON, or GREM a plus.
  12. Excellent written and verbal communication skills.
  13. Availability for occasional after-hours, weekends, and/or holiday work in response to active incidents.

In order to be considered for a position, you must formally apply via careers.kroll.com.

Kroll is committed to creating an inclusive work environment. We are proud to be an equal opportunity employer and will consider all qualified applicants regardless of gender, gender identity, race, religion, color, nationality, ethnic origin, sexual orientation, marital status, veteran status, age or disability.

#J-18808-Ljbffr
  • Associate, Cyber Risk

    2 weeks ago


    Manila, National Capital Region, Philippines Kroll Full time

    In a world of disruption and increasingly complex business challenges, our professionals bring truth into focus with the Kroll Lens. Our sharp analytical skills, paired with the latest technology, allow us to give our clients clarity—not just answers—in all areas of business. We embrace diverse backgrounds and global perspectives, and we cultivate...


  • Manila, National Capital Region, Philippines Philinsure Full time

    Cyber Security Risk Specialist - Penetration Tester (Senior Manager)Philinsure Manila, National Capital Region, PhilippinesJOB TITLE: Cyber Security Risk Specialist - Penetration Tester (Senior Manager)JOB LEVEL: ManagerialNUMBER OF VACANCIES: 1 FTEREMOTE/ONSITE/HYBRID: On-site / Hybrid / RemoteFULL TIME/PART-TIME: Full-timePosition Summary:We are seeking a...


  • Manila, National Capital Region, Philippines Cyber Crime Full time

    MaerskMaersk is an integrated logistics company that offers supply chain solutions for managing shipments and cargo.Our Senior SOC Analyst provides Maersk with round-the-clock cyber security monitoring, using cutting-edge security technologies, processes, and teams of experts.Key responsibilities include:Acts as the first point of call for all cyber security...


  • Manila, National Capital Region, Philippines beBee Careers Full time

    Cyber Security Risk SpecialistWe are seeking a dedicated Cyber Security Risk Specialist to conduct comprehensive cyber risk assessments for our global clientele. This role involves managing cyber risk assessments, developing related services, and providing expert opinions based on assessments.Key Responsibilities:Coordinate Cyber Risk Management: Collaborate...


  • Manila, National Capital Region, Philippines beBee Careers Full time

    Risk Management Specialist - Cyber SecurityThis role involves managing and mitigating potential risks associated with computer systems and networks. The successful candidate will be responsible for conducting thorough risk assessments, developing mitigation strategies, and ensuring compliance with relevant laws and regulations.Key Responsibilities:Conduct...


  • Manila, National Capital Region, Philippines Hirebridge Full time

    ABOUT TRIBUTE TECHNOLOGY:At Tribute Technology, we make end-of-life celebrations memorable, meaningful, and effortless through thoughtful and innovative technology solutions. Our mission is to help communities around the world celebrate life and pay tribute to those we love. Our comprehensive platform brings together software and technology to provide a...


  • Manila, National Capital Region, Philippines beBee Careers Full time

    Key ResponsibilitiesDevelop and implement strategies and controls to minimise technology and cyber risks.Lead end-to-end Technology Risk assessments, with a focus on public cloud platforms (AWS, Azure).Partner closely with senior business leaders, global heads, and C-level stakeholders to drive risk mitigation initiatives.Liaise with auditors, regulators,...


  • Manila, National Capital Region, Philippines beBee Careers Full time

    The SOC Manager will play a key role in leading the Cyber Detect and Respond function, delivering operational security capabilities to detect and respond to cyber threats effectively. This is crucial for maintaining confidentiality, integrity, and availability.Key responsibilities include:Providing technical support and leadership direction to a team of...


  • Manila, National Capital Region, Philippines beBee Careers Full time

    Dedicated Mid-Level Cyber Security Analyst PositionRequired Skills and Qualifications:This exciting opportunity requires a dedicated and experienced Mid-level Cyber Security Analyst who can work in a collaborative environment and make a tangible impact in cyber defence. As a Security Analyst (L2), you will be responsible for developing and implementing...


  • Manila, National Capital Region, Philippines beBee Careers Full time

    About the Role:We are seeking a Senior Cyber Security Analyst to join our Cloud Operations team. This role plays a crucial part in protecting and defending against cyber threats and vulnerabilities.The successful candidate will have a deep understanding of threats, vulnerability assessments, incident response, and compliance.Responsibilities:Threat...