Incident Response Analyst

Accessnow Llc

Philippines

Hybrid

PHP 1,020,000 - 1,222,000

Full time

3 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Paid time off
Health insurance
Professional development
Flexible work
Family leave

Job summary

Access Now is seeking an Incident Response Analyst to join the Helpline team. You will analyze threats, escalate complex cases, and strengthen the organization’s capacity to respond to digital security incidents affecting diverse communities.

The role requires collaboration with the Helpline team and other CSIRTs to share intelligence and improve response workflows. The position emphasizes building incident handling skills, threat intelligence sharing, and participation in global initiatives

Qualifications

  • Experience in incident response or escalation teams
  • Excellent English written and verbal communication skills
  • Familiarity with anonymity and circumvention tools and security technologies
  • Bachelor or Master in computer science or equivalent preferred

Responsibilities

  • Support management of digital security incidents as a 2nd level responder (Tier 2)
  • Assist incident handlers in root cause analyses of security events
  • Analyze artifacts from incidents while preserving forensic evidence
  • Correlate incident data to identify vulnerabilities and guide remediation
  • Learn and apply threat intelligence tools and adversary methods
  • Provide escalation support for Tier 1 incidents and guide teammates
  • Support creation of threat intel indicators and advisories
  • Help develop workflows to consume threat information and improve responses
  • Collaborate with CSIRTs and CSIRT communities to mitigate incidents
  • Assist in onboarding and training of incident handlers
  • Support global participation in RightsCon events
  • Perform other duties as assigned

Skills

Incident response
Customer support escalation
English communication
Security tools
Networking
C
PHP
JavaScript
Snort
Wireshark
MySQL
Perl

Education

Bachelor's or Master’s in Computer Science

Tools

Snort
Cisco networking
Apache
Firewalls
Tails
GPG encrypted email
C
PHP
Javascript
Wireshark
MySQL

Job description

Incident Response Analyst

Salary: ₱100,478.17 - 100,478.17 monthly

Company: Accessnow Llc

Job Type: Full Time Philippines

JobCopilot will tailor your resume and auto-fill the application

Job Description - Incident Response Analyst

The Organization and Role

About Access Now

Access Now defends and extends the digital rights of people and communities at risk. As a grassroots-to-global organization, we partner with local actors to bring a human rights agenda to the use, development, and governance of digital technologies, and to intervene where technologies adversely impact our human rights. By combining direct technical support, strategic advocacy, grassroots grantmaking, and convenings such as RightsCon, we fight for human rights in the digital age.

About this role

The Incident Response Analyst helps to manage the incident response efforts of the global, Access Now Helpline team. The Incident Response Analyst works closely with the Helpline regional team of incident handlers to analyze threats, and to elevate cases as needed. The Analyst helps to build and strengthen the Helpline’s capacity to respond to digital security incidents affecting Access Now’s constituency.

The Incident Response Analyst works closely with the Helpline Team, and reports through the Helpline’s Incident Response Manager.

What you will do
  • Support management of digital security incidents, such as instances of account compromise, malware, phishing and data leak, by serving as a 2nd level incident responder (Tier 2)
  • Support the team of incident handlers in conducting information security incident root cause analyses
  • Analyze and gain understanding of artifacts related to incidents managed by the Helpline, taking into consideration the need to preserve forensic evidence
  • Gather and correlate incident data to identify specific vulnerabilities and make recommendations that enable preparation and remediation both in individual cases and in response to trends affecting larger communities
  • Continuously learn about tools, techniques and tactics used by adversaries and the techniques used to defend against them
  • Serve as second level escalation point for the Incident Handling team on technical escalations related to incident response, providing guidance proactively or in reply to incident handlers (Tier 1) escalations requests
  • Strengthen the Helpline’s ability to produce and share quality threat intelligence indicators and trends, including by reviewing MISP events, supporting the development of public or confidential security advisories to inform constituents of the current situational picture and how it may be changing
  • Support the development of workflows and processes to increase the Helpline’s ability to consume threat information and feeds, including by following threat intelligence work done by other organizations and groups to better inform the Helpline’s work and protect it’s beneficiaries
  • Provide expertise to other security experts, CSIRTs, and CSIRT communities from Civil Society, including within CiviCERT, in order to help prevent and mitigate digital security incidents
  • Support the Helpline efforts to develop the skills and expertise of incident handlers (tier 1), including by supporting onboarding efforts and relevant internal working groups
  • Assist in global implementation of the annual RightsCon summit series
  • Perform other duties as assigned
Skills, education, and mindset you will bring
  • Demonstrated experience working in incident response or customer support escalation teams
  • Core technical competency, informally or formally
  • Prior experience working with, or interest in supporting women and/or queer communities, civil society, and human rights defender organizations in the region
  • Familiarity with anonymity and circumvention tools, security technologies, and risk assessment frameworks
  • Familiarity with: Snort or Bro IDS; Cisco networking; Apache; Firewalls; Tails; GPG encrypted email; malware analysis; web development; Perl; C; PHP; Javascript; Wireshark; MySQL; Wifi; TCP/IP; SMTP; HTTP/S; TLS; PKI; VPN; VM; or SSH
  • Skills in gender analysis and awareness
  • Strong cultural understanding and experience across the region
  • Interest in training and user education
  • Excellent English written and verbal communication skills
  • Fluency in other languages beside English
  • Appropriate education and work preparation for the role, with bachelor or master degree equivalent in computer science (or similar) preferred
Location

This is a full-time position, with preference for Philippines, Indonesia and India. The successful candidate must possess the right to work in the location in which they will be based. At this time, most Access Now Team Members are working through hybrid office arrangements, combining remote at-home work with intermittent use of offices and/or co-working spaces.

Remuneration

Access Now offers competitive compensation and benefits packages that align competitively with locations and regions around the world. Location-specific examples of initial placement within the salary range for this role include:

  • ₱100,478.17 gross monthly (Philippines)
  • Rp40,500,000.00 gross monthly (Indonesia)
  • ₹163,200.00 gross monthly (India)
Benefits
  • Work-life balance...including a generous paid time-off program between 36 and 40 days annually
  • Access to supplemental health care insurance policies
  • Professional development and growth opportunities
  • Extensive workplace flexibility
  • Organizational resilience and support for all team members, including paid family leave and employee assistance programs
  • Connection to a diverse, global team of passionate, principled professionals
  • Opportunities to recharge (including one month of paid refresher leave after 4 years)
Equal Opportunity Statement

We are a global human rights organization committed to inclusivity and equity, and seek the most talented team members who bring their true selves, with diverse backgrounds, cultures, perspectives, and experiences. We are interested in receiving applications from people who consider themselves as under-represented in their talent communities. As an equal opportunity employer, we value and encourage diversity and consider applicants for all positions without regard to race, color, religion, creed, gender, sex, national origin, age, disability, marital or veteran status, sexual orientation, gender identity or expression, or any other legally protected status. Our commitment applies with regard to all aspects of one’s employment, including hiring, transfer, promotion, compensation, eligibility for benefits, and termination.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Incident Response Analyst
Incident Response Analyst

accessnow • Philippines

Hybrid
PHP 1,402,000 - 3,505,000
Work-life balance
Professional development
Flexible work arrangements
Incident Response Analyst
Incident Response Analyst

Access Now • Philippines

Hybrid
PHP 1,116,000 - 1,228,000
Health insurance
Generous paid time-off
Remote Incident Response Analyst - Digital Security & Rights
Remote Incident Response Analyst - Digital Security & Rights

Access Now • Philippines

Hybrid
PHP 1,116,000 - 1,228,000
Health insurance
Generous paid time-off
Tier 2 Incident Response Analyst - Digital Security & Rights
Tier 2 Incident Response Analyst - Digital Security & Rights

accessnow • Philippines

Hybrid
PHP 1,402,000 - 3,505,000
Work-life balance
Professional development
Flexible work arrangements
DE033626-Delivery Operations Sr Analyst
DE033626-Delivery Operations Sr Analyst

Accenture • Quezon City

On-site
PHP 600,000 - 900,000
Specialist Analyst, Platform Risk Intelligence
Specialist Analyst, Platform Risk Intelligence

Kroll • Manila

On-site
PHP 600,000 - 900,000
Hybrid Office
Threat Response Coordinator (Makati Site)
Threat Response Coordinator (Makati Site)

Genfinity Philippines, Inc. • Makati

On-site
PHP 469,000 - 491,000
Cybersecurity Engineer | MSP, Dayshift, Weekends off, Hybrid
Cybersecurity Engineer | MSP, Dayshift, Weekends off, Hybrid

First Focus Information Technology, Inc. • Metro Manila

Hybrid
PHP 600,000 - 900,000
Hybrid work arrangements
HMO from Day 1
Paid study days
Security Technician
Security Technician

First Focus IT • Pasig

On-site
PHP 600,000 - 900,000
Hybrid work arrangements
HMO from Day 1 (one dependent + dental
Study days and paid certification
+3
Senior SOC Analyst
Senior SOC Analyst

Likha Careers • Pasig

On-site
PHP 781,200 - 1,116,000
Paid training
Health Insurance
Life Insurance
+2