Overview
Senior Information Security Incident Response Lead at NTT DATA Asia Pacific.
Key Responsibilities
- Lead and manage complex security incidents, acting as a key contact for stakeholders.
- Perform deep analysis of security alerts to identify, mitigate, and remediate threats.
- Conduct forensic investigations on compromised hosts, networks, and cloud environments.
- Proactively hunt for adversarial activity and anomalous behaviors across large datasets.
- Analyze malware samples (basic level) to determine functionality, impact, and mitigation strategies.
- Develop and refine detection rules, improving alert fidelity and response workflows.
- Contribute to threat intelligence gathering, analyzing attack patterns, and enhancing defensive strategies.
- Participate in red teaming or penetration testing activities to identify and remediate vulnerabilities.
- Provide strategic recommendations for improving the organization’s security posture.
- Create detailed incident reports, threat intelligence assessments, and executive summaries.
- Mentor and provide guidance to junior analysts, fostering continuous improvement in IR methodologies.
Knowledge and Attributes
Ability to communicate and work across different cultures and social groups.Ability to plan activities and projects well in advance, and account for changing circumstances.Ability to maintain a positive outlook at work and work well under pressure.Ability to work hard and put in longer hours when necessary.Active listening, paraphrasing for understanding, probing for relevant information, and avoiding interruptions.Adaptability to changing circumstances and a client-focused mindset.Academic Qualifications and Certifications
Bachelor's or Master's degree in Computer Science, Cybersecurity, or a related field.Minimum of 5 years of experience in cybersecurity, with at least 2 years in incident response, threat hunting, or forensic analysis.Required Experience
Extensive experience responding to targeted attacks from APT groups, cybercriminals, and nation-state actors.Strong forensic analysis skills across Windows, Linux, and macOS systems.Expertise in network forensics, traffic analysis, and packet inspection (Wireshark, Zeek).Proficiency in SIEM platforms (Splunk, Sentinel, QRadar) and EDR solutions (CrowdStrike, Microsoft Defender ATP).Knowledge of malware analysis techniques, including static and dynamic analysis.Familiarity with cloud security investigations (AWS, Azure, GCP).Strong scripting skills in Python, PowerShell, or similar languages for automation.Understanding of security architecture, authentication mechanisms, and enterprise IT operations is a plus.Experience with vulnerability management, red teaming, or penetration testing is a plus.Familiarity with MITRE ATT&CK framework and various cyber threat intelligence methodologies.Preferred Certifications
GIAC (GCFA, GNFA, GCIH, GCIA, GREM)CISSP (Certified Information Systems Security Professional)CEH (Certified Ethical Hacker)OSCP (Offensive Security Certified Professional)Cloud Security Certifications (AWS Security Specialty, Microsoft Azure Security)Key Competencies
Strong analytical and problem-solving skills in high-pressure situations.Ability to manage multiple investigations efficiently while meeting deadlines.Excellent verbal and written communication skills, with the ability to convey technical details to varied audiences.Strong team collaboration and leadership skills, with a proactive approach to knowledge sharing.Ability to work in a fast-paced environment and adapt to evolving threats and challenges.Workplace type
Full-time
About NTT DATA
NTT DATA is a global innovator of business and technology services serving 75% of the Fortune Global 100. We invest in R&D and support a diverse, inclusive workplace with experts in more than 50 countries.
Equal Opportunity Employer
NTT DATA is proud to be an Equal Opportunity Employer. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category.
#J-18808-Ljbffr