DFIR Associate Manager (Digital Forensics & Incident Response)

Gratitude Philippines

Manila

Hybrid

PHP 1,200,000 - 1,800,000

Full time

9 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Certification sponsorship

Job summary

Accenture Philippines invites applications for a DFIR Associate Manager to lead investigations and incident response, helping clients strengthen cyber resilience. You will coordinate responses during high-impact incidents and work with diverse teams.

The role emphasizes mentoring, playbook development, and proactive threat hunting, with a hybrid Cubao setup and shifting schedules. Ideal candidates have 5+ years DFIR experience and strong MITRE ATT&CK knowledge.

Qualifications

  • Minimum 5 years of Digital Forensics and Incident Response (DFIR) experience.
  • Strong understanding of IR lifecycle and cyber threat investigation.
  • Familiar with MITRE ATT&CK framework and forensic methodologies.

Responsibilities

  • Lead and support response efforts during critical cybersecurity incidents.
  • Investigate ransomware, data breaches, BEC, and other threats.
  • Conduct detailed forensic investigations to determine scope and remediation needs.
  • Perform analysis of endpoints, servers, cloud, and mobile devices.
  • Collaborate with security teams and stakeholders to coordinate response.
  • Develop and enhance incident response playbooks and documentation.
  • Mentor team members and deliver knowledge-sharing sessions.

Skills

DFIR experience
Incident Response
MITRE ATT&CK
Windows OS
Linux OS
Networking basics
Memory forensics
Disk forensics
Malware analysis
SIEM

Tools

FTK
Autopsy
Volatility
EnCase
Magnet AXIOM
SIFT
REMnux

Job description

JOB TITLE: DFIR Associate Manager (Digital Forensics & Incident Response)

WORK SETUP: Hybrid in Cubao

WORK SHIFT: Shifting

Salary budget: Confidential (Will be discussed during the Job Offer)

What You'll Do:

As a DFIR Associate Manager, you'll lead and support the investigation of high-impact cybersecurity incidents while helping clients improve their cyber resilience.

Your Key Responsibilities:
  • Lead and support response efforts during critical cybersecurity incidents.
  • Investigate ransomware attacks, malware infections, insider threats, data breaches, business email compromise (BEC), DDoS attacks, and advanced persistent threats (APTs).
  • Conduct detailed forensic investigations to determine the scope, impact, root cause, and remediation requirements.
  • Perform digital forensic analysis of endpoints, servers, cloud environments, and mobile devices.
  • Work closely with security teams, business stakeholders, and management to coordinate response activities and communicate findings.
  • Develop and enhance incident response playbooks, procedures, and documentation.
  • Conduct proactive threat hunting and security investigations.
  • Help optimize security tools and detection capabilities.
  • Mentor team members and deliver knowledge-sharing sessions on incident response and forensic best practices.
What We're Looking For
Required Experience & Skills:
  • Minimum 5 years of Digital Forensics and Incident Response (DFIR) experience
Strong understanding of:
  • Incident Response Lifecycle (Investigation, Containment, Eradication, Recovery)
  • Digital Forensics Methodologies
  • MITRE ATT&CK Framework
  • Cyber Threat Investigation and Analysis
  • Windows and Linux Operating Systems
  • Networking and Security Fundamentals
Hands-on experience with:
  • Memory, Disk, and Network Forensics
  • Malware Analysis (Static and/or Dynamic)
  • SIEM, Endpoint Security, Network Security, and Email Security Technologies
Experience with forensic tools such as:
  • FTK
  • Autopsy
  • Volatility
  • EnCase
  • Magnet AXIOM
  • SIFT
  • REMnux
  • Similar DFIR platforms
Nice-to-Have Skills
  • Mobile Forensics (Android/iOS)
  • Threat Intelligence and Threat Hunting
  • Scripting and Automation using Python or PowerShell
  • Industry certifications such as: GCFA, GCFE, GNFA, Other GIAC certifications
Work Setup
  • Hybrid work arrangement
  • Cubao office
  • Amenable to possible shifting schedules
Accelerate Your Cybersecurity Career

At Accenture, continuous learning is part of the culture. As a member of our Cyber Resilience, Response, and Recovery (CRRR) team, you'll have opportunities to pursue advanced certifications, including:

  • OSCP, OSDA
  • CDSA, CPTS
  • GCFA, GCFE, GMON, GCIH, GREM
  • CRTO, CRTL

Certification sponsorship and upskilling opportunities are available to support your growth and career advancement.

Additional Information:
  • Minimum 5 years of experience is required
  • Open to applicants who are currently in the Philippines and already have the right to live and work in this country are eligible for this role
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

DFIR Associate Manager (Digital Forensics & Incident Response)
DFIR Associate Manager (Digital Forensics & Incident Response)

Accenture Inc. • Philippines

On-site
PHP 1,200,000 - 1,800,000
Joining bonus up to PHP80,000
DFIR Associate Manager | Incident Response & Forensics
DFIR Associate Manager | Incident Response & Forensics

Gratitude Philippines • Manila

Hybrid
PHP 1,200,000 - 1,800,000
Certification sponsorship
DFIR Associate Manager - Lead Incident Response (Bonus)
DFIR Associate Manager - Lead Incident Response (Bonus)

Accenture Inc. • Philippines

Hybrid
PHP 1,200,000 - 1,800,000
Joining bonus up to PHP80,000
Digital Forensic & Incident Response Senior Analyst - Hybrid Ortigas - 70K
Digital Forensic & Incident Response Senior Analyst - Hybrid Ortigas - 70K

weSource Management Consultancy Firm • Pasig

On-site
PHP 710,892 - 851,508
Senior Consultant – Digital Forensics & Incident Response (DFIR)
Senior Consultant – Digital Forensics & Incident Response (DFIR)

PM Consulting • Philippines

On-site
PHP 900,000 - 1,500,000
Dfir Specialist / Senior Soc Analyst
Dfir Specialist / Senior Soc Analyst

Theos Cyber Solutions • Philippines

Remote
PHP 900,000 - 1,300,000
GDS Consulting_Cyber Detection & Response Senior
GDS Consulting_Cyber Detection & Response Senior

Ernst & Young Advisory Services Sdn Bhd • Taguig

On-site
PHP 1,200,000 - 1,800,000
Competitive salary
Health benefits
Retirement plans
+1
Security Engineer (SIEM & SOAR) – Associate Manager
Security Engineer (SIEM & SOAR) – Associate Manager

Gratitude Philippines • Cebu City

On-site
PHP 1,200,000 - 2,000,000
Hybrid work arrangement
Security Engineer (SIEM & SOAR) | Specialist / Team Lead
Security Engineer (SIEM & SOAR) | Specialist / Team Lead

Gratitude Philippines • Philippines

On-site
PHP 1,800,000 - 2,400,000
Hybrid work arrangement
Cubao office location
Shifting schedules
SOC L2 Team Lead
SOC L2 Team Lead

Gratitude Philippines • Quezon City

Hybrid
PHP 725,000 - 2,232,000