Job Description:
Detect Threats. Hunt Adversaries. Strengthen Cyber Defense.
Join Accenture's Cybersecurity team as a SOC L2 Analyst specializing in Google SecOps, Threat Hunting, and Security Analytics. You will investigate advanced threats, conduct proactive threat hunts, and develop detections using Google SecOps, MITRE ATT&CK, and Python-based automation.
What You'll Do
- Perform proactive threat hunting using the MITRE ATT&CK Framework to identify adversary tactics, techniques, and procedures (TTPs).
- Analyze endpoint, network, cloud, and security telemetry to detect suspicious activity and validate threats.
- Leverage Google SecOps (Chronicle) for investigations, threat hunting, detection tuning, and security analytics.
- Develop and optimize detection rules, use cases, and threat hunting methodologies.
- Create Python-based automation to improve investigations, threat intelligence enrichment, and SOC efficiency.
- Collaborate with incident response, detection engineering, and security operations teams to strengthen cyber defense capabilities.
- Maintain investigation findings, playbooks, and operational documentation.
What We're Looking For
- 3–5+ years of experience in SOC Operations, Incident Response, Detection Engineering, or Threat Hunting.
- Strong analytical and investigative skills with the ability to identify complex attack patterns.
- Hands‑on experience with Google SecOps (Chronicle).
- Proven experience conducting threat hunting activities using the MITRE ATT&CK Framework.
- Experience analyzing security logs, network traffic, threat intelligence, and security events.
- Proficiency in Python scripting for security automation and data analysis.
- Strong understanding of cyber adversary behaviors, attack techniques, and incident response processes.
Preferred Qualifications
- Experience with Google SecOps, YARA-L, and detection engineering.
- Familiarity with threat intelligence platforms and IOC/TTP analysis.
- Relevant certifications or similar:
- Google Cloud Professional Cloud Security Engineer
- MITRE ATT&CK Defender (MAD)
- GIAC Certified Incident Handler (GCIH)
- GIAC Certified Intrusion Analyst (GCIA)
- GIAC Cyber Threat Intelligence (GCTI)
Work Setup
- Hybrid work arrangement
- Cubao office location
- Amenable to possible shifting schedules
Why Join Accenture?
At Accenture, you'll work on impactful projects using emerging technologies while collaborating with some of the industry's top cybersecurity professionals.
Benefits & Perks
- Competitive salary package
- Performance bonus and 13th Month Pay
- Day 1 HMO and Life Insurance coverage
- Flexible working arrangements*
- Company-sponsored training, upskilling, and certifications
- Expanded maternity and paternity benefits*
- Employee Stock Purchase Plan
- Inclusive and collaborative work culture
- Terms and conditions apply.
Be Part of an Inclusive Workplace
At Accenture, we celebrate diversity and are committed to creating an inclusive environment where everyone can thrive. We welcome applications from all qualified candidates and provide reasonable accommodations throughout the recruitment process.