Specialist - Threat Intel and Incident Investigation

Smart Communications, Inc.

Makati

On-site

PHP 600,000 - 1,000,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

PLDT is seeking a cybersecurity incident investigator to lead end-to-end investigations of security incidents, breaches, and threats, coordinating with security teams to minimize business impact and document findings for remediation.

Responsibilities include evidence collection, forensic analysis, tool support, reporting to management, and ensuring audit-ready records in line with regulations. Requires a bachelor's degree in IT/CS/engineering and 4–5 years of cybersecurity incident experience.

Qualifications

  • Bachelor's degree in Information Technology, Computer Science, Engineering, or related field.

Responsibilities

  • Lead end-to-end investigations of security incidents, breaches, and threats.
  • Coordinate evidence collection, analysis, and documentation with security teams.
  • Support investigation tooling deployment and integration with SIEMs and threat intel platforms.
  • Prepare management reports and maintain audit-ready documentation.

Skills

Incident investigation
Root cause analysis
Digital forensics
Documentation

Education

Bachelor's degree in IT/CS/Engineering

Tools

SIEM
Threat intelligence platforms

Job description

Support PLDT's cybersecurity investigation efforts in identifying, analyzing, and resolving security incidents, breaches, and threats to help ensure the organization is prepared to respond effectively. Collaborate with security teams and stakeholders to coordinate investigative activities aimed at minimizing business impact. Conduct thorough and timely investigations, contributing findings that support remediation efforts and help enhance PLDT's overall security posture and resilience.

Incident Investigation and Coordination
  • Conduct the end-to-end coordination of cyber investigation activities, including evidence collection, analysis, and documentation. Follow established investigation protocols, playbooks, and procedures that adapt to the evolving threat landscape. Ensure thorough documentation of investigation timelines, findings, actions taken, and lessons learned to support continuous improvement.
  • Participate in the ongoing enhancement of incident response and investigation processes by applying lessons learned from past incidents. Stay current with industry best practices, cyber threats, and emerging attack techniques. Take part in regular training, simulations, and tabletop exercises to maintain and improve response capabilities.
Tool and Technology Management
  • Support the deployment, configuration, and maintenance of investigation tools and technologies. Collaborate with security teams and stakeholders to ensure integration with broader security systems such as SIEMs and threat intelligence platforms. Utilize available tools effectively to perform investigations efficiently.
Reporting and Metrics
  • Support in gathering and maintaining key metrics related to investigation effectiveness, such as case closure rates and time-to-resolution. Contribute to preparing reports on investigation status and performance for senior management, using data to identify opportunities for improving investigative strategies.
Compliance and Risk Management
  • Conduct investigation activities in accordance with applicable regulations, industry standards, and organizational policies. Work closely with risk management teams to interpret investigation findings and support risk mitigation efforts. Maintain accurate, comprehensive, and audit-ready documentation to facilitate compliance and regulatory reviews.
EDUCATION
  • Bachelor's degree in Information Technology, Computer Science, Engineering, or any related course/discipline.
WORK EXPERIENCE
  • 4-5 years of experience in cybersecurity, with focus on incident investigation. Hands-on experience in root cause analysis and digital forensics.
TRAINING/CERTIFICATIONS

Preferably holds a combination of relevant industry recognized certification, such as:

  • CFA - GIAC Certified Forensic Analyst
  • CHFI - Computer Hacking Forensic Investigator
  • CIRL - Cyber Incident Response Leader
  • CISSP - Certified Information Systems Security Professional
  • CISM - Certified Information Security Manager
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Incident Investigation Information Security Sr. Specialist
Cybersecurity Incident Investigation Information Security Sr. Specialist

Smart Communications, Inc. • Makati

On-site
PHP 400,000 - 800,000
Threat Intel & Incident Investigation Specialist
Threat Intel & Incident Investigation Specialist

Smart Communications, Inc. • Makati

On-site
PHP 600,000 - 1,000,000
Information Security Specialist
Information Security Specialist

Hammerjack Pty Ltd • Philippines

On-site
PHP 500,000 - 900,000
Senior Cyber Incident Investigator & Forensics Lead
Senior Cyber Incident Investigator & Forensics Lead

Smart Communications, Inc. • Makati

On-site
PHP 400,000 - 800,000
Cyber Security Risk Assessment Specialist
Cyber Security Risk Assessment Specialist

PLDT • Makati

On-site
PHP 600,000 - 900,000
Network Security - Cyber Incident Specialist
Network Security - Cyber Incident Specialist

Siegen HR Solutions • Mandaluyong

On-site
IT Security Analyst: Incident Response & Threat Hunting
IT Security Analyst: Incident Response & Threat Hunting

PFCC Group • Manila

On-site
PHP 900,000 - 1,700,000
Digital Forensic & Incident Response Senior Analyst - Hybrid Ortigas - 70K
Digital Forensic & Incident Response Senior Analyst - Hybrid Ortigas - 70K

weSource Management Consultancy Firm • Pasig

Hybrid
Cybersecurity Incident Response Lead
Cybersecurity Incident Response Lead

RecruitNest Consulting • Taguig

On-site
PHP 1,200,000 - 2,100,000
Cyber Incident Investigator & Forensic Analyst
Cyber Incident Investigator & Forensic Analyst

Siegen HR Solutions • Mandaluyong

On-site