Enable job alerts via email!

Incident Response Analyst

Ciena

Manila

Hybrid

PHP 800,000 - 1,200,000

Full time

Today
Be an early applicant

Job summary

A global technology leader is seeking a Cybersecurity Incident Response specialist in Manila. The role involves leading incident detection and response, performing digital forensic analysis, and conducting proactive threat hunting. Ideal candidates have a Bachelor's degree in Cybersecurity and 3-5+ years of experience. This position offers a flexible working environment and opportunities for growth.

Qualifications

  • 3-5+ years of experience in cybersecurity focused on incident response and threat hunting.
  • Experience in Digital Forensics and Incident Response within a global organization is highly desirable.
  • Strong understanding of attacker Tactics, Techniques, and Procedures.

Responsibilities

  • Lead cybersecurity incident response phases in collaboration with the SOC.
  • Perform digital forensic analysis on Windows-based systems.
  • Design and lead regular Tabletop Exercises to test incident response capabilities.
  • Conduct proactive threat-hunting activities to identify risks and vulnerabilities.
  • Work closely with various teams to enhance incident response processes.

Skills

Incident response methodologies
Threat-hunting
Cyber threat intelligence research
Cybersecurity tools (e.g., SIEM, EDR)
Scripting and automation (e.g., Python, PowerShell)
Strong analytical skills
Communication skills
Organizational skills

Education

Bachelor’s degree in Cybersecurity or related field

Tools

Forensic tools
Job description

As the global leader in high-speed connectivity, Ciena is committed to a people-first approach. Our teams enjoy a culture focused on prioritizing a flexible work environment that empowers individual growth, well-being, and belonging. We’re a technology company that leads with our humanity—driving our business priorities alongside meaningful social, community, and societal impact.

The Security Organization

The Security team at Ciena is a tightly knit group of skilled professionals who share the same passion for defending against cyber criminals. With the increase in volume and sophistication of cyber-crime, we are growing and have tons of exciting work planned.

Key Responsibilities

  • Incident Response Leadership
    • Lead the detection, containment, eradication, and recovery phases of cybersecurity incidents in collaboration with the SOC and other teams.
    • Coordinate and facilitate the Extended Security Incident Response Team (ESIRT) during high-severity incidents.
    • Develop and maintain incident response playbooks, procedures, and workflows to improve readiness and efficiency.
  • Digital Forensic Analysis
    • Perform host forensic analysis on Windows based systems.
    • Conduct network forensics by leveraging disparate log sources to include firewall logs, NetFlow, full packet capture, and various intrusion detection/prevention logs.
    • Leverage available tooling to contain and eradicate a threat actor's presence from the network when responding to live intrusion events.
    • Understand the capabilities of malicious binaries and scripts through usage of sandbox environments and static analysis.
  • Tabletop Exercises (TTXs)
    • Design, develop, and lead regular Tabletop Exercises (TTXs) to test and enhance the organization’s incident response capabilities.
    • Evaluate the performance of participants during TTXs and provide actionable feedback for improvement.
    • Maintain detailed records and reports of TTX outcomes to guide future training and preparedness.
  • Proactive Threat Hunting
    • Conduct regular proactive threat-hunting activities to identify potential risks, vulnerabilities, and indicators of compromise (IOCs).
    • Utilize advanced tools, techniques, and threat intelligence to uncover malicious activity within the environment.
    • Collaborate with the SOC to refine detection mechanisms and improve response capabilities based on threat-hunting findings.
  • Collaboration and Communication
    • Work closely with the SOC, Security Architecture, IT, and other teams to enhance incident response and threat-hunting processes.
    • Serve as a liaison between technical teams and executive stakeholders during incidents, providing clear and concise updates.
    • Represent the organization in external threat-sharing communities and partnerships to stay ahead of emerging threats.
  • Process Development and Maintenance
    • Continuously improve incident response processes and threat-hunting methodologies.
    • Ensure compliance with relevant regulations, industry standards, and company policies in all incident response activities.
    • Maintain detailed and accurate documentation of incidents, investigations, and lessons learned.

Qualifications

  • Education:
    • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field or equivalent experience.
    • Relevant Certifications pertaining to DFIR are desirable but not required.
  • Experience:
    • 3-5+ years of experience in cybersecurity, with a focus on incident response and threat hunting.
    • Experience in Digital Forensics and Incident Response ("DFIR") consulting or IR within a global organization is highly desirable.
  • Skills
    • Strong knowledge of incident response methodologies, threat-hunting, cyber threat intelligence research, and cybersecurity tools (e.g., SIEM, EDR, forensic tools).
    • Familiarity with digital forensics and Windows based artifacts.
    • Strong understanding of attacker Tactics, Techniques, and Procedures ("TTPs").
    • Proficiency in scripting and automation (e.g., Python, PowerShell) is a plus.
    • Strong analytical, communication, and organizational skills.
  • Other Requirements:
    • Ability to work effectively in a fast-paced, 24/7/365 environment, including participating in on-call rotations as needed.
    • Strong problem-solving skills with a focus on collaboration and teamwork.
    • Experience designing and leading Tabletop Exercises is a significant advantage.

#LI-SM #LI-Remote #LI-Hybrid

Not ready to apply? Join our Talent Community to get relevant job alerts straight to your inbox.

At Ciena, we are committed to building and fostering an environment in which our employees feel respected, valued, and heard. Ciena values the diversity of its workforce and respects its employees as individuals. We do not tolerate any form of discrimination.

Ciena is anEqual Opportunity Employer, including disability and protected veteran status.

If contacted in relation to a job opportunity, please advise Ciena of any accommodation measures you may require.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.