Назад
Company hidden
7 часов назад

Senior Incident Response Analyst (AI)

Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Philippines
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Incident Response Analyst (AI) (Cybersecurity): Leading investigations into malware infections, data breaches, and advanced persistent threats while performing forensic analysis across endpoints, networks, logs, and multi-cloud environments with an accent on AI-assisted detection, triage, and investigation workflows. Focus on reconstructing attacker activity from cloud-native artifacts and audit logs, identifying IOCs and TTPs, and improving detection and response capabilities through automation.

Location: Manila, Philippines

Company

hirify.global operates in the cybersecurity and digital threat protection industry, helping make digital information exchange safer.

What you will do

  • Lead investigations into malware infections, data breaches, and advanced persistent threats.
  • Perform forensic analysis of compromised systems, network traffic, and WAF, firewall, endpoint, cloud, and application logs.
  • Evaluate and integrate AI-based tools for SIEM/XDR triage, anomaly detection, log analysis, reporting, and response automation.
  • Prepare incident reports and executive summaries for stakeholders and customers during live incidents.
  • Identify indicators of compromise and threat actor tactics, techniques, and procedures, including AI-enabled attack methods.
  • Mentor junior analysts and support post-incident reviews, root cause analysis, and improvements to detection and response capabilities.

Requirements

  • 5+ years of experience in incident response and digital forensics.
  • Hands-on experience with AI-related security projects, including AI-based detection or triage tools, generative AI, LLMs, or machine-learning automation.
  • Experience working directly with clients during live incident engagements and communicating technical findings to non-technical audiences.
  • Strong knowledge of network protocols, Windows/Linux operating systems, AWS, Azure, and GCP environments.
  • Experience with cloud forensics, cloud-native artifacts, control-plane and audit logs, storage, managed databases, Kubernetes, containers, and ephemeral resources across major cloud providers.
  • Hands-on experience with SIEM, EDR/XDR, log analysis, WAF, load balancer, application gateway logs, MITRE ATT&CK, threat intelligence, and chain-of-custody procedures.

Nice to have

  • Relevant certifications such as GCIH, GCFA, GNFA, CISSP, CEH, OSCP, or cloud-specific credentials.
  • Scripting and automation experience with Python or PowerShell, including AI library or API integration.
  • Exposure to model training, prompt engineering, AI governance, cloud-native security, container security, and cloud forensic tooling.
  • A bachelor's degree in Computer Science, Information Security, or a related field, or equivalent experience.

Culture & Benefits

  • Work on challenging cybersecurity incidents and evolving digital threats.
  • Contribute to AI-driven detection, triage, analysis, and response capabilities.
  • Support professional development through mentoring and work with advanced security technologies.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →