Cyber Threat Intelligence Manager

MediCard Phils., Inc.

Philippines

On-site

PHP 1,800,000 - 3,200,000

Full time

12 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

HMO with free 4 dependents
15 days VL and 15 days SL (pro-rated)
Guaranteed 14th-month pay
Annual Targeted Incentive (Performance
Group Life Insurance
Protection benefits

Job summary

AIA Philippines invites a Senior Manager to join the GIS Cybersecurity Threat Intelligence team. The role focuses on proactive threat hunting, detecting sophisticated adversaries, and supporting large-scale incident investigations.

Onsite role at Makati City (4 days a week), with a regular day schedule and on-call weekends/holidays. The candidate will develop detection methodologies, craft Threat Advisories, and communicate findings to executive teams.

Qualifications

  • 6-8+ years in technical security (TI/Threat Hunting/IR/Malware)
  • Experience with MITRE ATT&CK framework or equivalent
  • Proven ability to translate findings into actionable intelligence and reports

Responsibilities

  • Develop and maintain cyber threat hunting framework
  • Identify threat actor groups, TTPs, and tools
  • Analyze anomalous logs to detect threats and mitigate activities
  • Automate hunting processes and hypotheses testing
  • Review security alerts and enhance monitoring efficiency
  • Provide forensic analysis of network data and logs
  • Support investigations during complex incidents
  • Communicate findings to technical and executive audiences

Skills

Cyber Threat Intelligence
Threat Hunting
Incident Response
MITRE ATT&CK
OSINT Tools
Malware Analysis
YARA
SNORT
Threat Reports

Education

GCTI Certification
CCIP Certification
CIA Certification

Tools

Threat Intelligence Platforms
Network Analysis Tools

Job description

About the role

The role of the candidate is to be a part of GIS Cybersecurity team to function as a Senior Manager in the Cyber Threat Intelligence Team. The role requires to proactively investigate security events to identify artifacts of a cyber-attack detect advanced threats that evade traditional security solutions, threat actor-based investigations, creating new detection methodology, support incident investigations and monitoring functions. Threat hunting includes using both manual and machine-assisted capabilities, that aims to find the Tactics, Techniques and Procedures (TTPs) of advanced adversaries.

  • Employment Type: Full Time/Permanent
  • Location: PhilamLife Gammon Building, 126 LP Leviste Street, Salcedo Village, Makati City
  • Work Schedule: Regular day Schedule, w/ possibleoncallarrangementonweekends&holidays
  • Work Set-up: Onsite report (4 days per week)
Key responsibilities
  • Develop, document, and maintain cyber threat hunting framework
  • Hunt and identify for threat actor groups, techniques, tools and procedures (TTPs)
  • Perform threat hunting through analysis of anomalous log data to detect and mitigate cyber threat activities
  • Actively develop threat hunting hypothesis, translating hunt activities into an iterative process, and automating the process of hunting for cyber threats
  • Review alerts generated by security monitoring tools and provide recommendation to enhance alerts for more efficient monitoring
  • Provide forensic analysis of network packet captures, DNS, proxies, malware, host-based security, and application logs, as well as logs from various data sources
  • Provide expert investigative support during large scale and complex security incidents
  • Analysis of security incidents to enhance security monitoring and alert catalogue
  • Investigate and validate suspicious events by using open-source and proprietary intelligence sources
  • Document and communicate findings to an array of audiences which includes both technical and executive teams
About you
  • Minimum 6-8 years of experience in a technical security role in one of the following areas: Cyber Threat Intelligence, Cyber Threat Hunting, Cyber Incident Response, Malware Analysis, Purple Teaming
  • Acquired relevant certifications: GCTI, CCIP, CIA
  • Experience with researching and incorporating Cyber Threat Intelligence findings into threat hunting workflow
  • Knowledge and experience working with MITRE ATTACK framework, Cyber Kill Chain Model or Diamond Model
  • Proficiency in using threat intelligence platforms and OSINT tools
  • Knowledge of malware and threat actor's behavior, and how common protocol and applications work at network level
  • Experience with incident response process, including detecting advanced adversaries, log analysis and malware triage
  • Good understanding in network protocols and system vulnerabilities
  • Knowledge and experience in developing detection signatures (YARA, SNORT)
  • Highly capable in producing Threat Advisories and Intelligence Reports for Senior Management in a timely manner
Be part of AIA Philippines's Technology Hub, the AIA Digital+ Philippines.

We are a brand that captures AIA’s Group-led Technology, Digital and Analytics hubs dedicated to powering AIA to be more efficient, connected and innovative as it fulfils its Purpose to help millions of people across Asia-Pacific live Healthier, Longer, Better Lives.

Launched in Mainland China, Malaysia and the Philippines, AIA Digital+ is bringing together top Technology, Digital and Analytics talent to accelerate AIA’s transformation and secure our position as the technology leader in the insurance industry.

At AIA and AIA Digital+, we strive to attract,developandretaina workforce that is as diverse as the customers we serve and to cultivate an inclusive work environment that accepts the strength of heritage and individuals.

  • HMO with free 4 dependents (upon hire for Principal and upon regularization for the eligible dependents)
  • 15 days VL and 15 days SL (Pro-rated for mid-year hire)
  • Guaranteed 14th-month pay
  • Annual Targeted Incentive (Performance Bonus)
  • Group Life Insurance
  • Protection benefits, and a lot more w/c will be discussed during the job offer stage
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Cyber Threat Intel Information Security
Manager, Cyber Threat Intel Information Security

AIA • Philippines

On-site
PHP 1,800,000 - 2,700,000
Senior Manager – Command Centre Operation
Senior Manager – Command Centre Operation

AIA Digital+ • Philippines

On-site
PHP 1,200,000 - 2,400,000
HMO coverage for dependents (up to 4)
15 days vacation leave
15 days sick leave
+1
Senior Cyber Threat Hunter & Intelligence Lead
Senior Cyber Threat Hunter & Intelligence Lead

MediCard Phils., Inc. • Philippines

On-site
PHP 1,800,000 - 3,200,000
HMO with free 4 dependents
15 days VL and 15 days SL (pro-rated)
Guaranteed 14th-month pay
+3
Senior Manager, IT Operations
Senior Manager, IT Operations

AIA Digital+ • Makati

On-site
PHP 1,200,000 - 2,000,000
HMO with dependents
15 days VL
15 days SL
+1
Senior Manager, Command Centre Operation
Senior Manager, Command Centre Operation

MediCard Phils., Inc. • Philippines

On-site
PHP 1,800,000 - 3,000,000
HMO with free dependents
14th-month pay
Annual Targeted Incentive (Performance
+1
Manager, Cyber Threat Intel Information Security
Manager, Cyber Threat Intel Information Security

AIA Hong Kong and Macau • Makati

On-site
PHP 1,200,000 - 1,500,000
Cloud Engineer (AKS)
Cloud Engineer (AKS)

MediCard Phils., Inc. • Philippines

On-site
PHP 900,000 - 1,400,000
HMO with 4 dependents
14th-month pay
Annual incentive
+2
Active Directory Specialist
Active Directory Specialist

MediCard Phils., Inc. • Philippines

On-site
PHP 900,000 - 1,100,000
HMO with free 4 dependents
15 days VL and 15 days SL
Guaranteed 14th-month pay
+3
Manager, Identity & Access Management
Manager, Identity & Access Management

AIA Digital+ • Philippines

Hybrid
PHP 1,800,000 - 3,000,000
HMO with 4 dependents
15 days VL
15 days SL
+1
Associate Threat Intelligence Analyst
Associate Threat Intelligence Analyst

NCC Group Philippines • Manila

On-site
PHP 400,000 - 720,000
Transportation and rice allowances
Night differential
13th‑month pay and bonus plan
+7