7 часов назад
Senior Incident Response Analyst (AI)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Incident Response Analyst (AI) (Cybersecurity): Leading investigations into malware infections, data breaches, and advanced persistent threats while performing forensic analysis across endpoints, networks, logs, and multi-cloud environments with an accent on AI-assisted detection, triage, and investigation workflows. Focus on reconstructing attacker activity from cloud-native artifacts and audit logs, identifying IOCs and TTPs, and improving detection and response capabilities through automation.
Location: Manila, Philippines
Company
operates in the cybersecurity and digital threat protection industry, helping make digital information exchange safer.
What you will do
- Lead investigations into malware infections, data breaches, and advanced persistent threats.
- Perform forensic analysis of compromised systems, network traffic, and WAF, firewall, endpoint, cloud, and application logs.
- Evaluate and integrate AI-based tools for SIEM/XDR triage, anomaly detection, log analysis, reporting, and response automation.
- Prepare incident reports and executive summaries for stakeholders and customers during live incidents.
- Identify indicators of compromise and threat actor tactics, techniques, and procedures, including AI-enabled attack methods.
- Mentor junior analysts and support post-incident reviews, root cause analysis, and improvements to detection and response capabilities.
Requirements
- 5+ years of experience in incident response and digital forensics.
- Hands-on experience with AI-related security projects, including AI-based detection or triage tools, generative AI, LLMs, or machine-learning automation.
- Experience working directly with clients during live incident engagements and communicating technical findings to non-technical audiences.
- Strong knowledge of network protocols, Windows/Linux operating systems, AWS, Azure, and GCP environments.
- Experience with cloud forensics, cloud-native artifacts, control-plane and audit logs, storage, managed databases, Kubernetes, containers, and ephemeral resources across major cloud providers.
- Hands-on experience with SIEM, EDR/XDR, log analysis, WAF, load balancer, application gateway logs, MITRE ATT&CK, threat intelligence, and chain-of-custody procedures.
Nice to have
- Relevant certifications such as GCIH, GCFA, GNFA, CISSP, CEH, OSCP, or cloud-specific credentials.
- Scripting and automation experience with Python or PowerShell, including AI library or API integration.
- Exposure to model training, prompt engineering, AI governance, cloud-native security, container security, and cloud forensic tooling.
- A bachelor's degree in Computer Science, Information Security, or a related field, or equivalent experience.
Culture & Benefits
- Work on challenging cybersecurity incidents and evolving digital threats.
- Contribute to AI-driven detection, triage, analysis, and response capabilities.
- Support professional development through mentoring and work with advanced security technologies.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
5 дней назад
Senior Security Analyst (Cybersecurity)
4 часа назад
Analyst II - IT Security Operations (Cybersecurity)
22 часа назад
Senior Security Analyst (Cybersecurity)
13 часов назад
Security Analyst (AI)
120 000 - 140 000$
4 часа назад
Senior Incident Response Analyst (Cybersecurity)
13 часов назад