Job Description:
Investigate cyber threats. Lead critical incident response. Make a real impact.
Accenture is looking for an experienced DFIR Associate Manager to join our Cybersecurity team. If you're passionate about uncovering the truth behind cyber incidents, conducting complex forensic investigations, and helping organizations strengthen their defenses, this role is for you.
What You'll Do
As a DFIR Associate Manager, you'll lead and support the investigation of high-impact cybersecurity incidents while helping clients improve their cyber resilience.
Your Key Responsibilities
- Lead and support response efforts during critical cybersecurity incidents.
- Investigate ransomware attacks, malware infections, insider threats, data breaches, business email compromise (BEC), DDoS attacks, and advanced persistent threats (APTs).
- Conduct detailed forensic investigations to determine the scope, impact, root cause, and remediation requirements.
- Perform digital forensic analysis of endpoints, servers, cloud environments, and mobile devices.
- Work closely with security teams, business stakeholders, and management to coordinate response activities and communicate findings.
- Develop and enhance incident response playbooks, procedures, and documentation.
- Conduct proactive threat hunting and security investigations.
- Help optimize security tools and detection capabilities.
- Mentor team members and deliver knowledge-sharing sessions on incident response and forensic best practices.
What We're Looking For
Required Experience & Skills
- Minimum 5 years of Digital Forensics and Incident Response (DFIR) experience
- Strong understanding of:
- Incident Response Lifecycle (Investigation, Containment, Eradication, Recovery)
- Digital Forensics Methodologies
- MITRE ATT&CK Framework
- Cyber Threat Investigation and Analysis
- Windows and Linux Operating Systems
- Networking and Security Fundamentals
- Hands-on experience with:
- Memory, Disk, and Network Forensics
- Malware Analysis (Static and/or Dynamic)
- SIEM, Endpoint Security, Network Security, and Email Security Technologies
- Experience with forensic tools such as:
- FTK
- Autopsy
- Volatility
- EnCase
- Magnet AXIOM
- SIFT
- REMnux
- Similar DFIR platforms
Nice-to-Have Skills
- Mobile Forensics (Android/iOS)
- Threat Intelligence and Threat Hunting
- Scripting and Automation using Python or PowerShell
- Industry certifications such as:
- GCFA
- GCFE
- GNFA
- Other GIAC certifications
Work Setup
- Hybrid work arrangement
- Cubao office
- Amenable to possible shifting schedules
Accelerate Your Cybersecurity Career
- OSCP, OSDA
- CDSA, CPTS
- GCFA, GCFE, GMON, GCIH, GREM
- CRTO, CRTL
Certification sponsorship and upskilling opportunities are available to support your growth and career advancement.
Why Join Accenture?
At Accenture, you'll work on impactful projects using emerging technologies while collaborating with some of the industry's top cybersecurity professionals.
Benefits & Perks
- Competitive salary package
- Performance bonus and 13th Month Pay
- Day 1 HMO and Life Insurance coverage
- Flexible working arrangements*
- Company-sponsored training, upskilling, and certifications
- Expanded maternity and paternity benefits*
- Employee Stock Purchase Plan
- Car and Housing Plan*
- Inclusive and collaborative work culture
- Terms and conditions apply.
Be Part of an Inclusive Workplace
At Accenture, we celebrate diversity and are committed to creating an inclusive environment where everyone can thrive. We welcome applications from all qualified candidates and provide reasonable accommodations throughout the recruitment process.