Senior Associate, Response Operations, Cyber Risk
5 days ago
Compliance Risk and Diligence
Compliance Risk and Diligence | Manila, Philippines | 21010986
In a world of disruption and increasingly complex business challenges, our professionals bring truth into focus with the Kroll Lens. Our sharp analytical skills, paired with the latest technology, allow us to give our clients clarity—not just answers—in all areas of business. We embrace diverse backgrounds and global perspectives, and we cultivate diversity by respecting, including, and valuing one another. As part of One team, One Kroll, you'll contribute to a supportive and collaborative work environment that empowers you to excel.
Kroll's Cyber Risk team works on over 2,000 cases a year, including some of the most complex and highest profile matters in the world. With experts based around the world, supported by ground-breaking technology, we help protect our client's data, people, operations and reputation with innovative assessments, investigations, and intelligence. We are the only company in the world with the expertise and resources to deliver global, end-to-end cyber risk management, supporting organizations through every step of their journey toward cyber resilience.
Clients count on us for quick and expert support in the event of and in preparation against a cyber incident; from incident response to risk assessments, and complex forensics to breach notification and ID theft remediation we help clients – of all sizes – respond with confidence.
At Kroll, your work will help deliver clarity to our clients' most complex governance, risk, and transparency challenges. Apply now to join One team, One Kroll.
RESPONSIBILITIES:
We are looking for bright, motivated, and inquisitive minds to join our Kroll Responder 24x7 monitoring and response team who are experienced in and passionate about modern cyber threat hunting and active response. Our Senior Associates use leading endpoint detection and response tools to rapidly identify, investigate, and respond to threats and threat actors impacting systems and networks around the globe every day.
- Perform ongoing threat hunting, analysis, containment, and remediation of threats identified through advanced endpoint detection and response (EDR), endpoint prevention (EPP), SIEM, and related security tools.
- Collect and review relevant forensic artifacts to identify root cause and understand nature of threats.
- Develop and communicate written and verbal threat reports associated with events to customers.
- Assist in ongoing research, development, and testing of enhanced threat detection and response tools, techniques, and indicators.
- Support incident engagement teams with active intrusion detection and response tasks.
- Conduct threat research, forensic analysis, and basic malware analysis of threats.
- Actively participate in related client meetings and teleconferences.
- Assist clients with questions regarding threat detections, EDR tools, deployment, and maintenance.
REQUIREMENTS:
- Bachelor's degree or higher in Computer Science, Cyber Security, Computer Engineering, or similar technical degree.
- Minimum 3 years' experience in threat hunting, detection, and response or equivalent experience.
- Ability to respond rapidly, multi-task, and communicate effectively both verbally and in writing with customers, team members, and engagement managers.
- Highly motivated, tenacious, assertive problem solver with a desire to analyze root cause and reach effective conclusions to active intrusions and incidents on an ongoing basis both individually and as part of larger response teams.
- Solid understanding of Windows operating system fundamentals, architecture (File System, registry, processes, binaries, DLL's, etc.) and administration concepts. Similar understanding of MacOS and/or Linux a plus.
- Prior experience actively using endpoint threat detection and response (EDR) products to investigate threats such as Sentinel One, Crowdstrike Falcon, VMWare Carbon Black, Windows Defender ATP, Cortex XDR, Trend Micro XDR, or others.
- Understanding of common threat actor techniques, malware behavior and persistence mechanisms.
- Working knowledge of various scripting languages and tools (PowerShell, Python, VB, Yara).
- Working knowledge of TCP/IP and related networking concepts.
- Prior experience using Splunk or other SIEM solutions, intrusion detection solutions, or related security products.
- Relevant cyber security certifications including CISSP, GCIA, GCIH, GCFA, GMON, or GREM a plus.
- Excellent written and verbal communication skills.
- Availability for occasional after-hours, weekends, and/or holiday work in response to active incidents.
In order to be considered for a position, you must formally apply via careers.kroll.com.
Kroll is committed to creating an inclusive work environment. We are proud to be an equal opportunity employer and will consider all qualified applicants regardless of gender, gender identity, race, religion, color, nationality, ethnic origin, sexual orientation, marital status, veteran status, age or disability.
#J-18808-Ljbffr-
Cyber Risk Response Expert
5 days ago
Manila, National Capital Region, Philippines Kroll Full timeCyber Risk ManagementKroll's Cyber Risk team is at the forefront of protecting clients' data, people, operations, and reputation from cyber threats. With a global presence and cutting-edge technology, we deliver end-to-end cyber risk management solutions that support organizations in achieving cyber resilience.Our Senior Associates work closely with clients...
-
Cyber Security Expert for Incident Response
2 days ago
Manila, National Capital Region, Philippines Cyber Crime Full timeAbout the RoleWe are seeking a highly skilled Senior SOC Analyst to join our team at Maersk. As a key member of our cyber security operations, you will play a critical role in protecting our organization from cyber threats.As a Senior SOC Analyst, you will be responsible for providing 24/7 cyber security monitoring using cutting-edge technologies and...
-
Senior Cyber Crime Analyst
2 days ago
Manila, National Capital Region, Philippines Cyber Crime Full timeResponsibilitiesThis role involves managing and executing the operational activities of our Security Operations Centre (SOC). You will be responsible for:Monitoring and responding to cyber security incidents in real-time.Developing and maintaining knowledge of emerging cyber threats and mitigation strategies.Communicating cyber risks and impacts to internal...
-
Security Operations Centre Analyst Lead
2 days ago
Manila, National Capital Region, Philippines Cyber Crime Full timeJob OverviewThis is an exciting opportunity to join our Information Security team as a Senior Cyber Crime Analyst. You will work closely with our Security Operations Centre (SOC) to execute operational activities and provide expertise on incident response.Key responsibilities include:Managing and responding to cyber incidents in collaboration with the wider...
-
Cyber Operations Specialist
5 days ago
Manila, National Capital Region, Philippines Kroll Full timeCyber Security Solutions and ServicesKroll's Cyber Risk team provides expert cyber security solutions and services to help organizations protect themselves against evolving cyber threats. Our Senior Associates work closely with clients to identify, investigate, and respond to complex cyber threats, providing valuable insights and recommendations to enhance...
-
Senior Cyber Threat Hunter
5 days ago
Manila, National Capital Region, Philippines Kroll Full timeIncident Response and Threat HuntingKroll's Cyber Risk team works on over 2,000 cases a year, including some of the most complex and highest-profile matters in the world. Our Senior Associates use innovative assessments, investigations, and intelligence to help protect our clients' data, people, operations, and reputation from cyber threats.We are looking...
-
Lead Cyber Security Analyst
5 days ago
Manila, National Capital Region, Philippines Kroll Full timeCyber Threat Intelligence and Incident ResponseKroll's Cyber Risk team delivers comprehensive cyber threat intelligence and incident response services to help organizations mitigate cyber risks and achieve cyber resilience. Our Senior Associates work closely with clients to identify, investigate, and respond to complex cyber threats, providing valuable...
-
Cyber Security Risk Analyst
7 days ago
Manila, National Capital Region, Philippines Manulife Full timeManulife is seeking a highly skilled Cyber Security Risk Analyst to join our Procurement Operations team. In this role, you will be responsible for reviewing independent audit reports and drafting final output/deliverables.The ideal candidate will have 3-5 years of experience in Technology, Technology Risk and Controls, Technology Audit, Cybersecurity,...
-
Senior SOC Analyst @ Maersk
3 days ago
Manila, National Capital Region, Philippines Cyber Crime Full timeMaerskMaersk is an integrated logistics company that offers supply chain solutions for managing shipments and cargo.Our Senior SOC Analyst provides Maersk with round-the-clock cyber security monitoring, using cutting-edge security technologies, processes, and teams of experts.Key responsibilities include:Acts as the first point of call for all cyber security...
-
Cyber Security Incident Response
6 days ago
Manila, National Capital Region, Philippines Willis Towers Watson Full timeThe Cyber Security Incident Response Principal Analyst will play a pivotal role within WTW's Global Information and Cyber Security Defence (ICSD) function, leading the response to complex security incidents and driving initiatives to enhance WTW's Cyber incident management capabilities. This mid senior-level role requires a highly experienced professional...
-
IT Security Incident Response Professional
3 days ago
Manila, National Capital Region, Philippines Nearshore Cyber Full timePosition SummaryNearshore Cyber is seeking a highly skilled Senior SOC Analyst to join our team. As a Senior SOC Analyst, you will play a key role in safeguarding our clients' infrastructure, ensuring compliance with security best practices, and proactively identifying potential threats.Responsibilities:Monitor and analyze security alerts from SIEM and XDR...
-
Senior Security Operations Analyst
5 days ago
Manila, National Capital Region, Philippines Nearshore Cyber Full timeJob SummaryNearshore Cyber requires a highly skilled Senior SOC Analyst for our U.S.-based Managed Security Services Provider (MSSP) client. This full-time role is fully remote but requires candidates to be based in the Philippines and have the necessary work authorization.Responsibilities and ExpectationsMonitoring and analyzing security alerts from leading...
-
Cyber Risk Specialist
6 days ago
Manila, National Capital Region, Philippines Kroll Full timeWe are seeking an experienced Cyber Risk Specialist to join our thriving Cyber Team.Day-to-day Responsibilities:To be a key member of the SOC and provide real-time threat analysis and detection.Carry out in-depth investigation on security events, raise incidents and support the Incident Management process.Conduct remote incident handling activities and...
-
Senior Cyber Threat Response Specialist Role
6 days ago
Manila, National Capital Region, Philippines etechnology Full timeRole OverviewWe are currently seeking a skilled Senior Cyber Threat Response Specialist to join our esteemed Manila Group Security Team. This role is critical in ensuring the team delivers efficient and effective security operations.Main ResponsibilitiesThe successful candidate will be responsible for overseeing the daily activities of the Security...
-
Incident Response Director
2 days ago
Manila, National Capital Region, Philippines Maersk Global Service Centres Philippines Limited Full timeWe value diversity and inclusion in our workplace and strive to create a welcoming environment for all employees.The SOC Manager will report to the Head of SOC and work closely with Cyber Security Teams (Risk, Cyber Security Officers, Assurance, Platform Security Engineers, Security by Design, Product Owners, and Cyber Operations) to deliver cyber detection...
-
Information Security Specialist
2 days ago
Manila, National Capital Region, Philippines Cyber Crime Full timeAbout the PositionWe are looking for a highly skilled Senior SOC Analyst to join our Maersk team. As a key member of our cyber security operations, you will play a vital role in protecting our organization from cyber threats.Your key responsibilities will include:Providing 24/7 cyber security monitoring using advanced tools and technologies.Collaborating...
-
Cyber Incident Response Specialist
4 weeks ago
Manila, National Capital Region, Philippines Neksjob Full timeWe are actively recruiting a highly skilled and experienced Cyber Incident Response Specialist to join our dedicated team.Job Description/ Responsibilities -Analyze potential network security incidents to identify security breaches.-Investigate security breaches and make qualified decisions and recommendations for corrective action.-Participate in threat...
-
Cyber Threat Intelligence Senior Analyst
7 days ago
Manila, National Capital Region, Philippines Willis Towers Watson Full timeAbout Us:Willis Towers Watson is a global consulting, broking, and human resources company that provides advice and solutions to businesses, governments, and institutions worldwide. Our Cyber Defense strategy is designed to protect our clients' assets and reputation from cyber threats.We are seeking a highly skilled and experienced Cyber Threat Intelligence...
-
Cyber Security Analyst
3 days ago
Manila, National Capital Region, Philippines Next Generation Technologies Global Inc. Full timeJob Description:Conduct and/or support authorized penetration testing on enterprise network assets.Prepare reports that identify technical and procedural findings and provide recommended remediation strategies/solutions.Perform technical (evaluation of technology) and non-technical (evaluation of people and operations) risk and vulnerability assessments of...
-
Cyber Incident Response Specialist
4 weeks ago
Manila, National Capital Region, Philippines Neksjob Full timeWe are actively recruiting a highly skilled and experienced Cyber Incident Response Specialist to join our dedicated team.Job Description/ Responsibilities-Analyze potential network security incidents to identify security breaches.-Investigate security breaches and make qualified decisions and recommendations for corrective action.-Participate in threat...