Manager, Cyber Threat Intel Information Security

AIA

Philippines

On-site

PHP 1,800,000 - 2,700,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

AIA Digital+ is seeking a Senior Manager in the Cyber Threat Intelligence Team to lead proactive threat hunting and incident support in a dynamic security environment.

The role focuses on investigating security events, identifying TTPs, and developing detection methodologies to counter advanced adversaries.

Qualifications

  • 5+ years of experience in a technical cybersecurity role with CTI, threat hunting, purple teaming, or red teaming.
  • Relevant cybersecurity certifications such as GCTI, CCIP, or CIA.
  • Strong knowledge of MITRE ATT&CK, Cyber Kill Chain, and Diamond Model; practical threat hunting workflows.

Responsibilities

  • Develop, document, and maintain the Cyber Threat Hunting Framework.
  • Hunt and identify threat actor groups, techniques, tools, and procedures (TTPs).
  • Perform threat hunting through analysis of anomalous log data to detect and mitigate cyber threats.
  • Develop threat hunting hypotheses, translate hunting activities into an iterative process, and automate where possible.
  • Review alerts and recommend enhancements to improve monitoring efficiency.
  • Conduct forensic analysis of network captures, DNS logs, proxy logs, malware artifacts, host logs, applications, and other data sources.
  • Provide expert investigative support during large-scale security incidents.
  • Analyze security incidents and recommend improvements to monitoring and alert catalogs.
  • Investigate and validate suspicious events using OSINT and proprietary sources.
  • Document and communicate findings to technical and executive audiences.
  • Continuously improve processes and capabilities within security monitoring tools.
  • Stay current with threat landscapes and CTI trends.
  • Support day-to-day CTI operations and participate in strategic initiatives.

Skills

CTI
Threat Hunting
Purple Team
Red Teaming
MITRE ATT&CK
Cyber Kill Chain
Diamond Model
TIPs
OSINT Tools
Malware Analysis
Log Analysis
YARA
SNORT
Executive Briefings

Education

GCTI (GIAC Cyber Threat Intelligence)
CCIP
CIA

Tools

Threat Intelligence Platforms
OSINT Tools

Job description

_ Are you ready to shape a better tomorrow? _

AIA Digital+ is a Technology, Digital and Analytics innovation hub dedicated to powering AIA to be more efficient, connected and innovative as it fulfils its Purpose to help millions of people across Asia-Pacific live Healthier, Longer, Better Lives.

If you are hungry and driven to play an active role in shaping a better tomorrow, we want to hear from you. Because the work we do at AIA Digital+ makes a difference in the lives of millions of people, every day. We will equip you with the critical skills, tools and technology, and endless opportunities to learn, contribute and thrive in a dynamic and exciting environment.

If you want to shape a brighter future at AIA Digital+, please read on.

About the Role

The role of the candidate is to be a part of GIS Cybersecurity team to function as a
Senior Manager in the Cyber Threat Intelligence Team.
The role requires proactively investigate security events to identify artifacts of a
cyber-attack detect advanced threats that evade traditional security solutions,
threat actor-based investigations, creating new detection methodology, support
incident investigations and monitoring functions. Threat hunting includes using both
manual and machine-assisted capabilities, that aims to find the Tactics, Techniques
and Procedures (TTPs) of advanced adversaries.

  • Develop, document, and maintain the Cyber Threat Hunting Framework.
  • Hunt and identify threat actor groups, techniques, tools, and procedures (TTPs).
  • Perform threat hunting through analysis of anomalous log data to detect and mitigate cyber threats.
  • Develop threat hunting hypotheses, translate hunting activities into an iterative process, and automate threat hunting activities where possible.
  • Review alerts generated by security monitoring tools and recommend enhancements to improve monitoring efficiency.
  • Conduct forensic analysis of:
    • Network packet captures
    • DNS logs
    • Proxy logs
    • Malware artifacts
    • Host-based security logs
    • Application logs
    • Other relevant data sources
  • Provide expert investigative support during large-scale and complex security incidents.
  • Analyze security incidents and recommend enhancements to security monitoring and alert catalogs.
  • Investigate and validate suspicious events using both open-source and proprietary intelligence sources.
  • Document and communicate findings effectively to both technical and executive audiences.
  • Continuously improve processes, use cases, and capabilities within security monitoring tools.
  • Stay current with information security news, threat landscapes, emerging adversary techniques, and cyber threat intelligence trends.
  • Support day-to-day Cyber Threat Intelligence (CTI) operations and ensure efficient service delivery.
  • Participate in strategic initiatives, security-related projects, and additional support activities as required.
Experience
  • Minimum of 5 years of experience in a technical cybersecurity role, specifically in one or more of the following areas:
    • Cyber Threat Intelligence (CTI)
    • Cyber Threat Hunting
    • Purple Teaming
    • Red Teaming
Certifications
  • Relevant cybersecurity certifications such as:
    • GCTI (GIAC Cyber Threat Intelligence)
    • CCIP
    • CIA
Technical Knowledge & Skills
  • Experience researching and integrating Cyber Threat Intelligence findings into threat hunting workflows.
  • Strong knowledge and practical experience with:
    • MITRE ATT&CK Framework
    • Cyber Kill Chain Model
    • Diamond Model
  • Proficiency in using:
    • Threat Intelligence Platforms (TIPs)
    • Open-Source Intelligence (OSINT) tools
  • Understanding of:
    • Malware analysis
    • Threat actor behaviors
    • Network protocols and applications
  • Experience with incident response processes, including:
    • Detection of advanced threats and adversaries
    • Log analysis
    • Malware triage
  • Strong understanding of:
    • Network protocols
    • System vulnerabilities
  • Experience developing detection signatures using:
    • YARA
    • SNORT
  • Highly capable of producing:
    • Threat Advisories
    • Threat Intelligence Reports
    • Executive-level security briefings for senior management in a timely manner.

Build a career with us as we help our customers and the community live healthier, longer, better lives.

You must provide all requested information, including Personal Data, to be considered for this career opportunity. Failure to provide such information may influence the processing and outcome of your application. You are responsible for ensuring that the information you submit is accurate and up-to-date.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Cyber Threat Intel Information Security
Manager, Cyber Threat Intel Information Security

AIA Hong Kong and Macau • Makati

On-site
PHP 1,200,000 - 1,500,000
Cyber Threat Intelligence Manager
Cyber Threat Intelligence Manager

MediCard Phils., Inc. • Philippines

On-site
PHP 1,800,000 - 3,200,000
HMO with free 4 dependents
15 days VL and 15 days SL (pro-rated)
Guaranteed 14th-month pay
+3
Cyber Threat Intelligence Analyst
Cyber Threat Intelligence Analyst

Optum Philippines • Muntinlupa

On-site
PHP 1,200,000 - 2,000,000
Senior Cyber Threat Hunter & Intelligence Lead
Senior Cyber Threat Hunter & Intelligence Lead

MediCard Phils., Inc. • Philippines

On-site
PHP 1,800,000 - 3,200,000
HMO with free 4 dependents
15 days VL and 15 days SL (pro-rated)
Guaranteed 14th-month pay
+3
Senior Cyber Threat Intelligence Manager
Senior Cyber Threat Intelligence Manager

AIA Hong Kong and Macau • Makati

On-site
PHP 1,200,000 - 1,500,000
Cyber Security Incident Response - Assistant Manager
Cyber Security Incident Response - Assistant Manager

Willis Towers Watson • España

On-site
PHP 3,690,000 - 4,921,000
Jr. Technical Writer (Cyber Threat Intelligence) | Hybrid Setup | Pasay
Jr. Technical Writer (Cyber Threat Intelligence) | Hybrid Setup | Pasay

Infinit-O • Philippines

On-site
PHP 300,000 - 540,000
SOC Manager
SOC Manager

SM Investments • Philippines

On-site
PHP 1,200,000 - 2,000,000
Cyber Threat Intelligence Analyst - LATAM
Cyber Threat Intelligence Analyst - LATAM

Group-IB • Mexico

On-site
MXN 480,000 - 680,000
Remote-friendly
Career growth opportunities
Senior Incident Response (IR) Analyst
Senior Incident Response (IR) Analyst

TrendMicro • Manila

On-site
PHP 1,200,000 - 1,800,000