Team Lead (L2) – Cybersecurity

Gratitude Philippines

Manila

Hybrid

PHP 900,000 - 1,300,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Accenture Cybersecurity in Cubao, Philippines, invites experienced SOC professionals to lead investigations, incident response, threat hunting, and SOC operations.

As SOC Team Lead (L2), you will mentor analysts, coordinate with CSIRT, engineering, and business stakeholders, and drive improvements in detection and playbooks.

Qualifications

  • 3–5+ years of experience in a SOC, Incident Response, Cyber Defense, or related cybersecurity environment.
  • Previous experience leading, mentoring, or supervising SOC analysts is highly preferred.
  • Strong hands-on experience investigating security incidents using SIEM and security monitoring tools.

Responsibilities

  • Lead the investigation, triage, and resolution of complex security incidents escalated by L1 analysts.
  • Perform root cause analysis, threat validation, and incident investigation across enterprise environments.
  • Serve as a key responder during high-severity security incidents.
  • Coordinate incident response activities with CSIRT, engineering teams, and business stakeholders.
  • Conduct proactive threat hunting using IoCs, threat intelligence, and security telemetry.
  • Analyze logs, network traffic, alerts, and security events to identify potential threats.
  • Mentor and coach SOC analysts through quality reviews, case handling, and incident response best practices.
  • Collaborate with Detection Engineering teams to enhance security use cases, alert quality, and detection capabilities.
  • Maintain accurate incident reports, documentation, playbooks, and operational procedures.
  • Identify opportunities to continuously improve SOC processes, workflows, and security operations.

Skills

SOC experience
Incident Response
Threat Hunting
SIEM
Log Analysis

Tools

CrowdStrike Falcon
Splunk
Microsoft Sentinel
IBM QRadar
Google SecOps

Job description

NOW HIRING: SOC Team Lead (L2) – Cybersecurity

Work Setup: Hybrid – Cubao

Work Schedule: Shifting

Salary: Confidential – To be discussed during the Job Offer

Company: Accenture Cybersecurity

Location: Cubao, Philippines

Lead Incident Response. Strengthen Cyber Defense.

Are you an experienced SOC professional ready to take the lead in defending enterprise environments against sophisticated cyber threats?

Join Accenture’s Cybersecurity team as a SOC Team Lead (L2) and lead advanced security investigations, incident response, threat hunting, and SOC operations. This is an excellent opportunity for professionals who enjoy solving complex security incidents while mentoring and developing other SOC analysts.

What You'll Do
  • Lead the investigation, triage, and resolution of complex security incidents escalated by L1 analysts.
  • Perform root cause analysis, threat validation, and incident investigation across enterprise environments.
  • Serve as a key responder during high-severity security incidents.
  • Coordinate incident response activities with CSIRT, engineering teams, and business stakeholders.
  • Conduct proactive threat hunting using Indicators of Compromise (IoCs), threat intelligence, and security telemetry.
  • Analyze logs, network traffic, alerts, and security events to identify potential threats.
  • Mentor and coach SOC analysts through quality reviews, case handling, and incident response best practices.
  • Collaborate with Detection Engineering teams to enhance security use cases, alert quality, and detection capabilities.
  • Maintain accurate incident reports, documentation, playbooks, and operational procedures.
  • Identify opportunities to continuously improve SOC processes, workflows, and security operations.
What We're Looking For
  • 3–5+ years of experience in a SOC, Incident Response, Cyber Defense, or related cybersecurity environment.
  • Previous experience leading, mentoring, or supervising SOC analysts is highly preferred.
  • Strong hands-on experience investigating security incidents using SIEM and security monitoring tools.
  • Solid knowledge of:
    • Network Security
    • Threat Detection
    • Incident Response
    • Threat Hunting
    • Malware Analysis
    • Security Event Investigation
  • Experience analyzing enterprise logs, network traffic, and security alerts.
  • Strong analytical and problem-solving skills.
  • Ability to remain effective and make sound decisions during high-priority security incidents.
  • Excellent communication and coordination skills when working with cross-functional teams.
Preferred Qualifications
  • Experience with CrowdStrike Falcon is highly preferred.
  • Hands-on experience with SIEM platforms such as:
    • Splunk
    • Microsoft Sentinel
    • IBM QRadar
    • Google SecOps
    • or similar platforms
  • Scripting experience using Python or PowerShell.
  • Cybersecurity certifications such as:
    • Security+
    • CEH
    • GCIH
    • GCIA
    • or equivalent certifications
  • Exposure to cloud security monitoring across AWS, Azure, or GCP.
Important Eligibility Requirement

This opportunity is open to applicants currently residing in the Philippines who already have the legal right to live and work in the country.

Why Join?

Take your cybersecurity career to the next level by working in an environment where your expertise in incident response, threat detection, and cyber defense can make a real impact.

If you're ready to lead SOC operations, tackle complex security threats, and grow as a cybersecurity leader, this could be your next career move!

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Team Lead L2
SOC Team Lead L2

Accenture in the Philippines • Philippines

Hybrid
PHP 900,000 - 1,500,000
SOC Team Lead – Incident Response & Mentorship (Hybrid)
SOC Team Lead – Incident Response & Mentorship (Hybrid)

Accenture in the Philippines • Philippines

Hybrid
PHP 900,000 - 1,500,000
Cybersecurity Incident Response Lead
Cybersecurity Incident Response Lead

RecruitNest Consulting • Taguig

On-site
PHP 1,200,000 - 2,100,000
Security Engineer (SIEM & SOAR) | Specialist / Team Lead
Security Engineer (SIEM & SOAR) | Specialist / Team Lead

Gratitude Philippines • Philippines

Hybrid
PHP 1,800,000 - 2,400,000
Hybrid work arrangement
Cubao office location
Shifting schedules
Senior SOC Analyst
Senior SOC Analyst

Likha Careers • Pasig

Hybrid
Paid training
Health Insurance
Life Insurance
+2
IT.Senior SOC Analyst
IT.Senior SOC Analyst

the citco group limited • Philippines

Hybrid
PHP 900,000 - 1,300,000
Vacation and health insurance
Cybersecurity Engineer
Cybersecurity Engineer

Hrtx • Philippines

Hybrid
PHP 1,000,000 - 1,800,000
Hybrid work setup
Senior SOC Analyst (L3)
Senior SOC Analyst (L3)

Permworks • Philippines

Remote
PHP 2,405,000 - 3,608,000
Health Benefits (HMO Provided)
Work from home flexibility
Cyber SOC Lead Manager (AC Manila)
Cyber SOC Lead Manager (AC Manila)

PwC Acceleration Center Manila • Philippines

On-site
PHP 1,800,000 - 2,800,000
IT.Senior SOC Analyst
IT.Senior SOC Analyst

Citco Group of Companies • Makati

Hybrid