Cybersecurity And Incident Response Specialist

Accenture in the Philippines

Mandaluyong

On-site

PHP 900,000 - 1,500,000

Full time

9 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Accenture in the Philippines is seeking an experienced Cyber Incident Response and Digital Forensics Specialist to serve as the first responder to cyber-security incidents across multiple channels. You will investigate cases ranging from malware to sophisticated cyber attacks and coordinate containment and remediation steps.

The role requires executing CIRT playbooks, collecting volatile evidence, and producing detailed forensic reports for stakeholders.

Qualifications

  • 4-5 years experience in information security (computer security incident response and digital forensics).
  • Used computer / network forensics tools (EnCase, SIFT, IEF, HB Gary, FireEye, Mandiant/Fire Eye, Nuix).
  • Exposure in workstation and server operating systems (Windows, Linux or OS X, iOS/Android).
  • Excellent written and communication skills.
  • Strong leadership and interpersonal skills. Must be able to work collaboratively across physical locations.
  • Ability to multi-task and prioritize assigned workload.

Responsibilities

  • Act as the first responder for cyber-security incidents identified through different channels.
  • Investigate cases such as malware, policy violations, fraud, cyber attack, and more.
  • Execute documented processes within the CIRT playbook and incident response lifecycle; escalate as needed.
  • Prepare detailed forensic reports and present findings to non-technical audiences; testify as needed.
  • Mentor incident response staff and contribute to forensic methodologies and documentation.

Skills

Information security
Incident response
Digital forensics
Leadership
Communication

Tools

EnCase
SIFT
IEF
HB Gary
FireEye
Nuix

Job description

Job Description:

  • Act as the first responder for cyber-security incidents identified through different channels, Human Resources, Employee Relations, Corporate Investigations, ASOC, Infrastructure CIRT, and client escalations.
  • Investigate cases such as, but not limited to:
    • Acceptable Use Policy / Code of Business Ethics Violation
    • Malware
    • Fraud, Intellectual Property Theft, Industrial Espionage
    • Cyber Attack / Hacking / APT / Security Breaches
    • Mobile Devices
  • Execute documented processes within all activities of the CIRT playbook and security incident response lifecycle. Escalate security events, depending on determined crisis levels, to management in accordance with the incident response plan Collect, preserve and process volatile information and evidences needed to conduct highly-confidential forensic investigations. Investigation of digital evidences may include:
    • Storage media (i.e. hard drives, optical and flash media)
    • Electronic data (i.e. electronic files, pictures, web data, technology device logs)
    • Mobile devices (i.e. mobile phones, tablets)
    • Volatile media (i.e. workstation memory)
  • Ensures forensic investigation and incident response procedures comply with standard operating procedures, processes, policies, guidelines, and forensics best practices.
  • Examine and analyze security events or incidents, and investigate significant issues, related to technology infrastructure. Employ technical, investigative and analytical skills to solve a wide range of complex issues or problems.
  • Coordinate and resolve, or provide recommendations as necessary, containment and remediation steps, until security incident closure.
  • Produce detailed written reports outlining the circumstances around the incident, present forensic evidences to a non-technical audience and provide further input as expert opinion. Present and communicate investigation results and relevant findings, for administrative or legal purpose, to internal stakeholders, senior management, auditors or clients, and testify in court as an expert witness, as necessary.
  • Participate in the improvement and development of forensic methodologies, process/procedure manuals and documentation.
  • Periodically make recommendations that aid in the successful completion of highly complex and technical projects within a process, control or functional area.
  • Complete varied complex and non-standard tasks in an assigned area of responsibility.
  • Provide eDiscovery and litigation support to identify, preserve, collect, process, review and produce electronically stored information (ESI) for litigation purposes.
  • Mentor and provide guidance to incident response staff on security best practices, processes, procedures and countermeasures.
Skills and Work Experience:
Must Have:
  • 4-5 years experience in an information security discipline (computer security incident response and digital forensics)
  • Used Computer / Network forensics tools (i.e. Encase, SIFT, IEF, HB Gary, FireEye, Mandiant/Fire Eye, Nuix)
  • Exposure in Workstation and Server Operating systems (Windows, Linux or OS X, iOS/Android)
  • Excellent written and communication skills
  • Strong leadership and interpersonal skills. Must be able to work collaboratively physical locations
  • Ability to multi-task and prioritize assigned workload
Good to Have:

Advanced understanding of the following topics:

  • Network protocols, TCP/IP fundamentals and Network architecture and security infrastructure (i.e. intrusion detection systems, data loss prevention, antivirus, etc.)
  • Knowledge of the following topics:
  • ISO 27001 / ITIL and COBIT frameworks
  • Up to date with current cyber threat landscape and trends
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Network Security - Cyber Incident Specialist
Network Security - Cyber Incident Specialist

Siegen HR Solutions • Mandaluyong

On-site
Incident Response Analyst
Incident Response Analyst

PM Consulting • Philippines

On-site
PHP 400,000 - 600,000
Cybersecurity Incident Response Manager
Cybersecurity Incident Response Manager

Smart Communications, Inc. • Makati

On-site
PHP 1,800,000 - 3,000,000
Senior Consultant – Digital Forensics & Incident Response (DFIR)
Senior Consultant – Digital Forensics & Incident Response (DFIR)

PM Consulting • Philippines

Hybrid
PHP 900,000 - 1,500,000
Incident Response Analyst
Incident Response Analyst

Smart Communications, Inc. • Makati

On-site
PHP 480,000 - 800,000
Senior Analyst, Cyber Security Operations
Senior Analyst, Cyber Security Operations

Melco Resorts & Entertainment • Manila

On-site
PHP 1,004,000 - 1,674,000
Specialist (Cybersecurity)
Specialist (Cybersecurity)

NTUC FIRST CAMPUS LIMITED • Santo Niño 1st

On-site
PHP 1,200,000 - 1,800,000
Cybersecurity Incident Commander - CIRT
Cybersecurity Incident Commander - CIRT

Thrive • Mabalacat

On-site
PHP 900,000 - 1,600,000
Security Operations Center Analyst
Security Operations Center Analyst

Centrics Networks • Cebu City

On-site
PHP 400,000 - 640,000
IT Operations Security Analyst
IT Operations Security Analyst

Infinit-O • Santa Clara

On-site
PHP 420,000 - 750,000