Tactical Threat Analyst - Philippines

Zoomcar

Manila

On-site

PHP 6,769,000 - 9,231,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Fortinet is seeking a Tactical Threat Analyst to join our cybersecurity team. You will triage events from FortiEDR, analyze and contain threats, and support escalation for complex incidents.

The role requires memory forensics, malware analysis, and collaboration with the security operations group. You will work in a fast-paced environment, applying threat intelligence and OS-level expertise to protect our global customers.

Qualifications

  • Bachelor's degree in a computing field is required.
  • Experience in security operations, threat intel, or incident response.
  • Hands-on experience with memory forensics and malware analysis tools.
  • Strong written and verbal communication skills.
  • Ability to work independently and in a team under pressure.

Responsibilities

  • Review incoming security events to perform initial triage from Fortinet's FortiEDR.
  • Identify highly suspicious events and notify stakeholders of malware infections.
  • Conduct host-based analysis on Windows, Linux, and macOS.
  • Escalate and assist team members on complex incidents.
  • Enhance and tune Fortinet Cloud Services and AIR system.
  • Review logs to identify indicators of malicious activity.
  • Leverage FortiEDR to quickly detect, analyze, and contain threats.
  • Perform memory forensics and file analysis as needed.
  • Monitor FortiGuard data and open-source intel for latest threat techniques.
  • Reverse engineer threat actor tools as required.

Skills

Scripting (Shell/Python)
OS internals
Active Directory
Endpoint security
Incident response
Security operations
Forensic analysis
Malware analysis
Communication skills

Education

Bachelor's Degree in Computer Engineering or Computer Science

Tools

EnCase
FTK
X-Ways
SIFT
Splunk
Redline
Volatility
Wireshark
TCPDump

Job description

Join Fortinet, a cybersecurity pioneer with over two decades of excellence, as we continue to shape the future of cybersecurity and redefine the intersection of networking and security. At Fortinet, our mission is to safeguard people, devices, and data everywhere. We are currently seeking a dynamic Tactical Threat Analyst to contribute to the success of our rapidly growing business.

This role requires this individual to work in US EST Sunday - US EST Thursday (12pm EST – 9pm EST) / Local time (1am– 10am).

As a Tactical Threat Analyst, you will:
  • Review incoming security events to perform initial triage of events primary from our FortiEDR technology.
  • Identify and analyze events that appear highly suspicious and notifying customs of malware infections.
  • Conduct host-based analysis and forensic functions on Windows, Linux, and Mac OS X systems.
  • Work on escalated events and help to assist other team members.
  • Assist in enhancing and tuning Fortinet’s Cloud Services and Automated Incident Response (AIR) system.
  • Review firewall, web, database, and other log sources to identify evidence and artifacts of malicious and compromised activity.
  • Leverage on our FortiEDR platform to conduct investigations to rapidly detect, analyze and contain security threats.
  • Perform memory forensics and file analysis as needed.
  • Monitor FortiGuard Labs data and open-source intelligence outlets to maintain proficiency in latest threat actor tactics and techniques.
  • Preform reverse engineering of threat actor’s malicious tools.
We Are Looking For:
  • Experience with of at least one scripting language: Shell, Ruby, Perl, Python, etc.
  • Strong knowledge of operating system internals, endpoint security experience an active directory a must.
  • Experienced with EnCase, FTK, X-Ways, SIFT, Splunk, Redline, Volatility, WireShark, TCPDump, and open-source forensic tools a plus.
  • Demonstrate relevant experience as a contributing member of a security operations, threat intelligence or incident response team.
  • Experience with malware analysis tools such as IDA Pro, OllyDbg, Immunity Debugger a plus.
  • Hands-on experience dealing with APT campaigns, attack Tactics, Techniques and Procedures (TTPs), memory injection techniques, static and dynamic malware analysis and malware persistence mechanism.
  • Hands-on experience with memory forensics.
  • Excellent written and verbal communication skills a must.
  • Reading and writing skills of non-English languages such as Chinese and Russian a plus.
  • Analysis of Linux and MAC binary files and the understanding of MAC internals is a plus but not required.
  • Highly motivated, self-driven and able to work both independently and within a team.
  • Able to work under pressure in time critical situations and occasional nights and weekends.
  • Bachelor’s Degree in Computer Engineering, Computer Science or related field.
  • 5 to 8+ years’ experience with incident response and or Forensics.
  • GCFA, GCIH, GCFE, GREM or any other related GIAC certification a plus.
Why Join Us:

At Fortinet, we embrace diversity and inclusivity. We encourage applications from diverse backgrounds and identities. Explore our welcoming work environment designed for a rewarding career journey with an attractive Total Rewards package to support you with your overall health and financial well-being. Join us in bringing solutions that make a meaningful and lasting impact to our 660,000+ customers around the globe.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Threat Hunter & Incident Response Analyst
Threat Hunter & Incident Response Analyst

Zoomcar • Manila

On-site
PHP 6,769,000 - 9,231,000
Cyber Security Operations Engineering
Cyber Security Operations Engineering

Amihan Solutions • Metro Manila

Hybrid
PHP 900,000 - 1,300,000
HMO insurance starts day 1
Laptop provided
Flexible working hours
+2
Systems Engineer (Commercial) - Philippines
Systems Engineer (Commercial) - Philippines

Zoomcar • Manila

On-site
PHP 800,000 - 1,200,000
Business Development Manager (SecOps) - Philippines
Business Development Manager (SecOps) - Philippines

Zoomcar • Manila

On-site
Business Development Manager (SecOps) - Philippines
Business Development Manager (SecOps) - Philippines

Fortinet • Manila

On-site
PHP 1,200,000 - 2,000,000
Total Rewards package
Welcoming work environment
Senior Network Engineer (Focus on Fortinet)
Senior Network Engineer (Focus on Fortinet)

Amihansolutions • Manila

Remote
HMO insurance coverage
Vacation and sick leave credits
Company-issued laptop
+5
Senior Manager, Major Accounts - Philippines
Senior Manager, Major Accounts - Philippines

Fortinet, Inc. • Northern Manila District

On-site
PHP 1,500,000 - 2,300,000
Senior Manager, Major Accounts - Philippines
Senior Manager, Major Accounts - Philippines

Zoomcar • Manila

On-site
PHP 2,000,000 - 2,500,000
Attractive Total Rewards package
Cyber Threat Analyst - Global Threat Operations
Cyber Threat Analyst - Global Threat Operations

Trustwave • Philippines

On-site
IT Security Analyst (Junior to Intermediate) - Leading Multinational Company
IT Security Analyst (Junior to Intermediate) - Leading Multinational Company

PFCC Group • Manila

On-site
PHP 500,000 - 900,000