
Consulting Senior Threat Response Analyst
2 days ago
In this role, you'll work in one of our IBM Consulting Client Innovation Centers (Delivery Centers), where we deliver deep technical and industry expertise to a wide range of public and private sector clients around the world. Our delivery centers offer our clients locally based skills and technical expertise to drive innovation and adoption of new technology. Your Role and Responsibilities:Incident Response and Digital ForensicProvide incident investigation as per Security Incident Management Process / Guidelines.
Drive containment strategy during incidents escalated by the triage team. Investigate and resolve advanced vector attacks such as botnets and advanced persistent threats (APTs). For critical incidents, be part of CSIRT activities and execute the incident handling process.
Coordinate with IT, security operations, and other teams for remediation and trigger forensic processes as appropriate. Perform Root Cause Analysis (RCA) for security incidents and update knowledge management. Work directly with data asset owners and business response plan owners during high-severity incidents.
Client ManagementEngage with clients during debrief meetings to address questions, gather feedback, and align on security objectives. Provide tuning recommendations for IDS, proxy policies, and in-line malware tools based on threat feeds, trust and reputation data, incidents, or vulnerabilities and exploits of downstream systems. Provide tuning recommendations to administrators based on findings from investigations or threat information reviews.
Prepare and deliver comprehensive weekly and monthly Threat Incident debrief reports for clients, including insights on security trends, incidents, system performance, and recommendations.Required Education: Bachelor's DegreeRequired Technical and Professional Expertise:More than five years of experience in SOC, Incident Response, or Threat Hunting roles. Hands-on experience with SIEM platforms such as IBM QRadar, Splunk, ArcSight, Microsoft Sentinel, or LogRhythm. Strong knowledge of network security, log analysis, malware analysis, and forensic investigation techniques.
Knowledge of Digital Forensics, including disk imaging, memory forensics, log analysis, and evidence handling best practices. Familiarity with cyber threat intelligence frameworks like MITRE ATT&CK, NIST, and CIS.Expertise in network and endpoint security monitoring tools (IDS, firewalls, EDR, proxy, email security solutions). Proficiency in log analysis, regular expressions (regex), and scripting languages like Python or PowerShell.
Ability to create custom threat detection rules, SIEM dashboards, and correlation policies. Knowledge of packet capture and traffic analysis tools (Wireshark, Zeek, TCPDump). Familiarity with incident response methodologies and forensic investigation procedures.
Soft Skills:Strong analytical and problem-solving abilities with keen attention to detail. Excellent communication and collaboration skills, with the ability to interact effectively with stakeholders at all levels. Capable of managing multiple priorities in a fast-paced, dynamic environment.
Preferred Certifications:GIAC Certified Incident Handler (GCIH)GIAC Certified Forensic Analyst (GCFA) or GIAC Certified Forensic Examiner (GCFE) (Preferred for Digital Forensics)Certified Ethical Hacker (CEH)Certified SOC Analyst (CSA)Security / CISSP / CISMABOUT BUSINESS UNITIBM Consulting is IBM's consulting and global professional services business, with market leading capabilities in business and technology transformation. With deep expertise in many industries, we offer strategy, experience, technology, and operations services to many of the most innovative and valuable companies in the world. YOUR LIFE @ IBMIn a world where technology never stands still, we understand that, dedication to our clients success, innovation that matters, and trust and personal responsibility in all our relationships, lives in what we do as IBMers as we strive to be the catalyst that makes the world work better.
ABOUT IBMIBM's greatest invention is the IBMer. We believe that through the application of intelligence, reason and science, we can improve business, society and the human condition, bringing the power of an open hybrid cloud and AI strategy to life for our clients and partners around the world. OTHER RELEVANT JOB DETAILSJob Title: Senior Threat Response Analyst (L3)Job ID: 15181City / Township / Village: National Capital Region (Manila)Country: PhilippinesWork arrangement: HybridArea of work: ConsultingEmployment type: RegularPosition type: ProfessionalNo TravelCompany: IBM Business ServicesShift: General (daytime)
-
L2 Insider Threat Analyst
2 days ago
Taguig, National Capital Region, Philippines Willis Towers Watson Full time $80,000 - $100,000 per yearWe are seeking passionate people to grow the Cyber Security team within WTW and provide an excellent service and trusted expertise to all parts of our business. We have an exciting opening for askilled and experienced L2 Insider Threat Analyst. As part of the Cyber Defence department, this role will investigate Insider Threat and Data Loss Prevention (DLP)...
-
Incident Response Analyst
6 days ago
Taguig, National Capital Region, Philippines HR TechX Corp. Full timeOverviewJoin to apply for the Incident Response Analyst role at HR TechX Corp.To provide detection, containment, and analysis of security events to protect the confidentiality, integrity, and availability of information systems per the firm's business objectives, regulatory requirements, and strategic goals.ResponsibilitiesProvide detection, containment, and...
-
Incident Response Analyst
2 days ago
Taguig, National Capital Region, Philippines EPS Staffing Service Group Inc Full time ₱60,000 - ₱79,000 per yearWork Setup: Hybrid (8 times RTO per month. Must be amenable to render overtime, work on weekends, and/or PH holidays if needed); Office Location: Taguig, BGCWork Schedule: Shift (APAC: 6AM to 3PM, EMEA: 2PM to 11PM, WHEM: 10PM to 7AM (next day) Sunday to Thursday, or Monday to Friday. *Shift changes every 2 monthsSummary:Our client, a leading multinational...
-
Incident Response Analyst
2 days ago
Taguig, National Capital Region, Philippines EPS Staffing Service Group Inc Full time ₱60,000 - ₱79,000 per yearJob Type: Permanent (Full time)Work Arrangement: Hybrid (8 times RTO per month. Must be amenable to render overtime, work on weekends, and/or PH holidays if needed);Office Location: Taguig, BGCWork Schedule: Shift (APAC: 6AM to 3PM, EMEA: 2PM to 11PM, WHEM: 10PM to 7AM (next day) Sunday to Thursday, or Monday to Friday. *Shift changes every 2...
-
Cyber Threat Intelligence Analyst
2 days ago
Taguig, National Capital Region, Philippines Coins Full time $90,000 - $120,000 per yearJoin the Pioneer Crypto Brand in the Philippines Coins is the most established crypto brand in The Philippines and has gained the trust of more than 18 million users. Through the easy-to-use mobile app, users can buy and sell a variety of different cryptocurrencies and access a wide range of financial services Coins is fully regulated by the Bangko Sentral...
-
Cyber Threat Intelligence Analyst
2 days ago
Taguig, National Capital Region, Philippines Coins Full time ₱900,000 - ₱1,200,000 per yearJoin the Pioneer Crypto Brand in the PhilippinesCoins is the most established crypto brand in The Philippines and has gained the trust of more than 18 million users. Through the easy-to-use mobile app, users can buy and sell a variety of different cryptocurrencies and access a wide range of financial services.Coins is fully regulated by the Bangko Sentral ng...
-
Cyber Threat Intelligence Analyst
2 days ago
Taguig, National Capital Region, Philippines coins Full time $900,000 - $1,200,000 per yearJoin the Pioneer Crypto Brand in the PhilippinesCoins is the most established crypto brand in The Philippines and has gained the trust of more than 18 million users. Through the easy-to-use mobile app, users can buy and sell a variety of different cryptocurrencies and access a wide range of financial services.Coins is fully regulated by the Bangko Sentral ng...
-
Incident Response Analyst
2 days ago
Taguig, National Capital Region, Philippines HRTX Full time $60,000 - $80,000 per yearThe Incident Response Analyst will provide detection, containment, and analysis of security events to protect the confidentiality, integrity, and availability of information systems in accordance with the firm's business objectives, regulatory requirements, and strategic goals. Responsibilities:Provide Tier 2 incident response services to the global...
-
Incident Response Analyst
2 days ago
Taguig, National Capital Region, Philippines B & M Global Services Manila, Inc. Full time $80,000 - $120,000 per yearThe Incident Response Analyst will provide detection, containment, and analysis of security events to protect the confidentiality, integrity, and availability of information systems in accordance with the firm's business objectives, regulatory requirements, and strategic goals.ResponsibilitiesProvide Tier 2 incident response services to the global...
-
Incident Response Analyst
2 days ago
Taguig, National Capital Region, Philippines B & M Global Services Manila, Inc. Full timeThe Incident Response Analyst will provide detection, containment, and analysis of security events to protect the confidentiality, integrity, and availability of information systems in accordance with the firm's business objectives, regulatory requirements, and strategic goals.ResponsibilitiesProvide Tier 2 incident response services to the global...