Talent.com
Incident Response Analyst
Incident Response AnalystBaker McKenzie • Manila
Incident Response Analyst

Incident Response Analyst

Baker McKenzie • Manila
8 days ago
Job description

The Incident Response Analyst will provide detection, containment, and analysis of security events to protect the confidentiality, integrity, and availability of information systems in accordance with the firm's business objectives, regulatory requirements, and strategic goals.

Responsibilities :

  • Provide Tier 2 incident response services to the global organization on behalf of the Information Security Team
  • Receive, process, and resolve tickets per defined SLA's
  • Analyze information garnered from monitoring systems, operational incidents, and other sources to determine the scope and impact of potential security incidents, and process accordingly
  • Critically assess current practices and provide feedback to management on improvement opportunities
  • Assist with the design and implementation of threat detection and prevention solutions identified as necessary for the protection of Firm assets
  • Effectively utilize common IR toolsets, platforms, and processes, such as SIEM, log management, packet capture, and breach detection systems
  • Assist with forensic examinations and chain-of-custody procedures as directed by the Security Incident Response Engineers
  • Provide input into standards and procedures
  • Report compliance failures to management for immediate remediation
  • Maintain assigned systems to ensure availability, reliability, and integrity, including the oversight of current and projected capacity, performance, and licensing
  • Provide status reports and relevant metrics to the Security Operations Manager
  • Contribute to the Firm's security-related information repositories and other marketing / awareness endeavors
  • Participate in special projects as needed

Skills and Experience :

Education :

  • Possess a Computer Science Bachelor’s Degree or substantial equivalent experience
  • Special Requirements, Licenses, and Certifications :

  • GCFE, GCFA, GCTI, GREM, GPEN, GWAPT
  • CISSP or SSCP desired
  • Experience :

  • Some professional experience in information security with a
  • Focus on incident response and forensics

  • Foundational knowledge of IR concepts and best practices, including forensics and chain-of-custody
  • Experience with common IR tools such as SIEM, log management, IDS, breach detection systems (APT / BDS / EDR), and packet capture.
  • Broad understanding of TCP / IP, DNS, common network services, and other foundational topics
  • Working knowledge of malware detection, analysis, and evasion techniques
  • Able to conduct static and dynamic analysis of malware to extract indicators of compromise, profile malware behavior, and provide recommendations for mitigating and detecting malware; Able to analyze suspicious websites, script-based and malware code
  • Experience with vulnerability management tools such as Qualys, Nessus, or other vulnerability scanning discovery tools
  • Broad familiarity with the threat landscape and the ability to adapt practices to evolving circumstances
  • Identify, analyze, and report threats within the enterprise by using information collected from a variety of sources (IDS / IPS, SIEM, AV), to protect data and networks. Implement techniques to hunt for known and unknown threats based on available threat intelligence reports and knowledge of the attacker's TTPs
  • Able to gather and analyze facts, draw conclusions, define problems, and suggest solutions
  • Maintain critical thinking and composure under pressure
  • Strong written and oral communication skills. Ability to convey complex concepts to non-technical constituents. Proficiency in oral and written English
  • Capable of assisting with the preparation of internal training materials and documentation
  • Able to be productive and maintain focus without direct supervision
  • Passionate in the practice and pursuit of IR excellence
  • Can exhibit a disciplined and rigorous approach to incident handling
  • Willing to accommodate shift-based work for a global organization
  • Provide exemplary customer service by striving for first-call resolution and demonstrating empathy, respect, professionalism, and expertise
  • Experience with digital forensics on host or network and identification of anomalous behavior on the network or endpoint devices. Familiar with host and network-based forensic tools such as EnCase, FTK, Sleuth Kit, X Ways, etc.
  • About us

    At Baker McKenzie we are different in the way we think, work and behave. With our team of 13,000 people, including over 6,500 locally admitted lawyers, in over 70 offices worldwide, we have a passionately collaborative community of 60 nationalities and are committed to world-class career development to everyone in every job at every level. Baker McKenzie can offer you both the uncompromising commitment to excellence expected of a top firm paired with a passionately global and genuinely collaborative working environment.

    Additional Information

    Baker McKenzie is an Equal Opportunity Employer. We are committed to promoting diversity and inclusion for all. Our unique international culture is reflected in the drawing together of a worldwide family of individuals from diverse cultures and backgrounds in all of our offices. We encourage the best people - regardless of race, religion or belief if any, gender, gender identity, disability, sexual orientation or age - to fulfill their professional aspirations with us. We are committed to ensuring an inclusive and accessible experience for all candidates.

    Reasonable Accommodation statement

    If you require a reasonable accommodation during the application process, please let your recruitment contact know. We are committed to working with candidates to ensure an inclusive and accessible experience in accordance with applicable laws and our commitment to diversity.

    Create a job alert for this search

    Analyst • Manila

    Similar jobs
    Incident Response Analyst

    Incident Response Analyst

    HRTX • Quezon City, Metro Manila, Philippines
    Provide Tier 2 incident response services to the global organization on behalf of the Information Security Team.Receive, process, and resolve tickets per defined SLA's. Analyze information garnered ...Show more
    Last updated: 13 days ago • Promoted
    Release of Information (ROI) Request Analyst |Remote

    Release of Information (ROI) Request Analyst |Remote

    OpsArmy • Quezon City, Metro Manila, Philippines
    JOB DESCRIPTION : Release of Information (ROI) Request Analyst.Release of Information (ROI) Request Analyst.You will evaluate authorization packets, validate compliance, and ensure all documentation...Show more
    Last updated: 13 days ago • Promoted
    SaaS Support Analyst

    SaaS Support Analyst

    HRTX • Pasay City, Metro Manila, Philippines
    Fielding first contact from customers to quickly get to the root of their problem.Providing timely and accurate customer feedback. Triaging submitted customer tickets for clarity, assignment, and ca...Show more
    Last updated: 13 days ago • Promoted
    Cyber Threat Analyst

    Cyber Threat Analyst

    HRTX • Pasay City, Metro Manila, Philippines
    TTP MNL reports on technical subject matter such as malware developments, offensive security tools, vulnerability exploits, cloud security, and mobile security. Cyber Threat Analysts are expected to...Show more
    Last updated: 13 days ago • Promoted
    IT Operations Senior Analyst

    IT Operations Senior Analyst

    HRTX • Makati City, Metro Manila, Philippines
    Supports the operation of ticket dispatching and chat support.Supervises IT Service Management Assistants.Management and Administration of ManageEngine Service Desk. Handles all projects / enhancement...Show more
    Last updated: 13 days ago • Promoted
    Vulnerability Analyst

    Vulnerability Analyst

    HRTX • Pasay City, Metro Manila, Philippines
    Vulnerability Analysts aid in the identification, assessment, and communication of new and emergent threats in the cybersecurity landscape, specifically vulnerability intelligence and detections.As...Show more
    Last updated: 13 days ago • Promoted
    IT Operations Analyst (Senior Level Analyst)

    IT Operations Analyst (Senior Level Analyst)

    HRTX • Makati City, Metro Manila, Philippines
    Provides support for ticket dispatching operations and chat support.Supervises IT Service Management Assistant.Manages and administers the ManageEngine Service Desk. Oversees projects and enhancemen...Show more
    Last updated: 13 days ago • Promoted
    Systems Analyst

    Systems Analyst

    MR DIY Philippines • Marikina, Metro Manila, Philippines
    We are seeking a detail-oriented and proactive.This role is ideal for someone who thrives at the intersection of business and technology—translating complex requirements into actionable solutions t...Show more
    Last updated: 7 days ago • Promoted
    Threat Response and Intelligence Officer

    Threat Response and Intelligence Officer

    EastWest Bank • Makati City, Metro Manila, Philippines
    Information Security and Data Protection.Threat Response and Intelligence Officer.In this role you will support daily cybersecurity operations by detecting and responding to threats while implement...Show more
    Last updated: 7 days ago • Promoted
    Senior IT Operations Analyst

    Senior IT Operations Analyst

    HRTX • Makati City, Metro Manila, Philippines
    Handles all projects / enhancement of other service desk (Support Service Desk).Handles different tasks related to IT governance and compliance. Supports the operation of ticket dispatching and chat s...Show more
    Last updated: 13 days ago • Promoted
    Release of Information (ROI) Request Analyst | Remote

    Release of Information (ROI) Request Analyst | Remote

    OpsArmy • Quezon City, Metro Manila, Philippines
    JOB DESCRIPTION : Release of Information (ROI) Request Analyst.Release of Information (ROI) Request Analyst.You will evaluate authorization packets, validate compliance, and ensure all documentation...Show more
    Last updated: 13 days ago • Promoted
    Threat Intelligence Analyst

    Threat Intelligence Analyst

    HRTX • Pasay City, Metro Manila, Philippines
    As a Threat Intelligence Analyst, you will research and analyze emerging cyber threats, produce concise analyst notes, and communicate findings to both technical and non-technical audiences.You wil...Show more
    Last updated: 13 days ago • Promoted
    Jr. Threat Intelligence Analyst

    Jr. Threat Intelligence Analyst

    HRTX • Pasay City, Metro Manila, Philippines
    As a Threat Intelligence Analyst, you will research and analyze emerging cyber threats, produce concise analyst notes, and communicate findings to both technical and non-technical audiences.You wil...Show more
    Last updated: 13 days ago • Promoted
    Security Data Loss Prevention Manager

    Security Data Loss Prevention Manager

    HRTX • Taguig, Metro Manila, Philippines
    To oversee and manage the organization's data loss prevention strategies and technologies.This role is vital for safeguarding sensitive information from unauthorized access, loss, or misuse.It aims...Show more
    Last updated: 13 days ago • Promoted
    SOC Analyst

    SOC Analyst

    HRTX • Quezon City, Metro Manila, Philippines
    Monitor various security tools to identify potential incidents, network intrusions, and malware events, etc.Generate trouble tickets and perform initial validation and triage to determine whether i...Show more
    Last updated: 13 days ago • Promoted
    Solutions Analyst

    Solutions Analyst

    Azeus Systems Limited • Pasig City, Metro Manila, Philippines
    This role combines business analysis with a strong technical foundation in relational database design and solution architecture. The Solution Analyst ensures that the application design not only sup...Show more
    Last updated: 6 days ago • Promoted
    Jr. Cyber Threat Analyst

    Jr. Cyber Threat Analyst

    HRTX • Pasay City, Metro Manila, Philippines
    You will be reporting on technical subject matter such as malware developments, offensive security tools, vulnerability exploits, cloud security, and mobile security. Cyber Threat Analysts are expec...Show more
    Last updated: 13 days ago • Promoted
    Senior Cyber Defense Security Analyst

    Senior Cyber Defense Security Analyst

    Procter & Gamble • Taguig City, NCR, Philippines
    The Senior Security Analyst plays a key role in proactively protecting networks, applications, and infrastructure from cyber threats globally. This role involves resolving complex problems, building...Show more
    Last updated: 7 days ago • Promoted