Manager, Cyber Threat Intel Information Security

AIA Hong Kong and Macau

Makati

On-site

PHP 1,200,000 - 1,500,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

AIA Hong Kong and Macau is looking for a Senior Manager in the Cyber Threat Intelligence Team. This role involves investigating security events, identifying cyber-attack artifacts, and supporting incident investigations.

Candidates should have a minimum of 5 years in technical cybersecurity roles, including Cyber Threat Intelligence and hunting. Relevant certifications like GCTI, CCIP, and CIA are essential. A collaborative work culture is promoted with opportunities to lead strategic security initiatives.

Qualifications

  • 5+ years of experience in Cyber Threat Intelligence or similar roles.
  • Strong understanding of malware analysis and detection signature development.
  • Experience in integrating Cyber Threat Intelligence findings into hunting workflows.

Responsibilities

  • Investigate security events to identify artifacts of cyber‑attacks.
  • Support incident investigations and real-time monitoring.
  • Develop and maintain the Cyber Threat Hunting Framework.
  • Review security alerts and recommend monitoring enhancements.

Skills

Cyber Threat Intelligence
Incident Response
Cyber Threat Hunting
MITRE ATT&CK Framework
Network Protocols

Education

Relevant cybersecurity certifications (e.g. GCTI, CCIP, CIA)

Tools

Threat Intelligence Platforms (TIPs)
Open-Source Intelligence (OSINT) tools

Job description

Are you ready to shape a better tomorrow? AIA Digital+ is a Technology, Digital and Analytics innovation hub dedicated to powering AIA to be more efficient, connected and innovative as it fulfils its Purpose to help millions of people across Asia-Pacific live Healthier, Longer, Better Lives.

Role Summary

The candidate will serve as a Senior Manager in the Cyber Threat Intelligence Team within the GIS Cybersecurity group. The role focuses on proactively investigating security events, identifying artifacts of cyber‑attacks, detecting advanced threats, and supporting incident investigations.

Key Responsibilities
  • Investigate security events to identify artifacts of a cyber‑attack and detect advanced threats that evade traditional security solutions.
  • Conduct threat actor‑based investigations and create new detection methodologies.
  • Support incident investigations and monitoring functions, including forensic analysis of network packet captures, DNS logs, proxy logs, malware artifacts, host‑based logs, application logs, and other relevant data sources.
  • Develop, document, and maintain the Cyber Threat Hunting Framework.
  • Perform threat hunting through analysis of anomalous log data to detect and mitigate cyber threats.
  • Develop threat hunting hypotheses, translate hunting activities into an iterative process, and automate threat hunting activities where possible.
  • Review alerts generated by security monitoring tools and recommend enhancements to improve monitoring efficiency.
  • Analyze security incidents and recommend enhancements to security monitoring and alert catalogs.
  • Investigate and validate suspicious events using open‑source and proprietary intelligence sources.
  • Document and communicate findings effectively to technical and executive audiences.
  • Continuously improve processes, use cases, and capabilities within security monitoring tools.
  • Stay current with information security news, threat landscapes, emerging adversary techniques, and cyber threat intelligence trends.
  • Support day‑to‑day Cyber Threat Intelligence (CTI) operations and ensure efficient service delivery.
  • Participate in strategic initiatives, security‑related projects, and additional support activities as required.
Experience and Knowledge
  • Minimum of 5 years of experience in a technical cybersecurity role, specifically in Cyber Threat Intelligence, Cyber Threat Hunting, Purple Teaming, or Red Teaming.
  • Experience researching and integrating Cyber Threat Intelligence findings into threat hunting workflows.
  • Strong knowledge and practical experience with the MITRE ATT&CK Framework, Cyber Kill Chain Model, and Diamond Model.
  • Proficiency in using Threat Intelligence Platforms (TIPs) and Open‑Source Intelligence (OSINT) tools.
  • Understanding of malware analysis, threat actor behaviors, network protocols and applications.
  • Experience with incident response processes, including detection of advanced threats and adversaries, log analysis, and malware triage.
  • Strong understanding of network protocols, system vulnerabilities, and detection signature development using YARA and SNORT.
Certifications
  • GCTI (GIAC Cyber Threat Intelligence)
  • CCIP
  • CIA
  • Other relevant cybersecurity certifications
Key Deliverables
  • Threat Advisories and Intelligence Reports for executive-level briefings.
  • Executive‑level security briefings for senior management in a timely manner.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cyber Threat Intelligence Manager
Senior Cyber Threat Intelligence Manager

AIA Hong Kong and Macau • Makati

On-site
PHP 1,200,000 - 1,500,000
Threat Intelligence Analyst | Mid-Night Shift | Hybrid (1x-2x a month RTO)
Threat Intelligence Analyst | Mid-Night Shift | Hybrid (1x-2x a month RTO)

AVENSYS CONSULTING INC. • Central Luzon

On-site
PHP 600,000 - 900,000
Senior Incident Response (IR) Analyst
Senior Incident Response (IR) Analyst

TREND MICRO INCORPORATED-PHILIPPINE BRANCH • Manila

On-site
PHP 1,339,000 - 2,009,000
Senior Incident Response (IR) Analyst
Senior Incident Response (IR) Analyst

TrendMicro • Manila

On-site
PHP 1,200,000 - 1,800,000
Junior Cyber Threat Analyst
Junior Cyber Threat Analyst

Infinit-O • Philippines

On-site
PHP 300,000 - 540,000
Junior Cyber Security Engineer
Junior Cyber Security Engineer

Dormont Manufacturing Co • Philippines

On-site
PHP 420,000 - 620,000
Consulting_Cyber Detection & Response IRR Senior
Consulting_Cyber Detection & Response IRR Senior

EY • Taguig

On-site
PHP 900,000 - 1,200,000
Health and wellness packages
Opportunities for continuous learning
Access to cutting-edge technologies
Cyber Security Incident Response - Assistant Manager
Cyber Security Incident Response - Assistant Manager

Willis Towers Watson • España

On-site
PHP 3,690,000 - 4,921,000
Technical Writer
Technical Writer

Create Synergies Inc. • Pasay

On-site
PHP 400,000 - 800,000
CYBERSECURITY ANALYST
CYBERSECURITY ANALYST

Tenet Global Business Center, Inc. • Taguig

Hybrid
PHP 520,000 - 1,000,000
Night differential 15%
Paid time off 20 PTO per year
Annual appraisal
+4