Job Description

About LevelBlue (including Trustwave)

LevelBlue reduces risk and builds lasting resilience so organizations can innovate and advance their mission with confidence. As the world’s most analyst-recognized and largest pure-play managed security services provider, LevelBlue elevates client outcomes that matter: stronger defense, faster response, and sustained business continuity. Following LevelBlue’s acquisition of Trustwave, some roles may still appear under the Trustwave or “Trustwave, a LevelBlue company” name in legacy systems. These positions will be a part of LevelBlue’s global security organization. Learn more at levelblue.com.

This position will cover the following shift: Sunday - Wednesday

A Cyber Threat Engineer is a member of the Threat Detection and Response (TDR) team within Trustwave Managed Security Services (MSS). This team specifically will act as the monitoring and response extension of a Digital Forensics and Incident Response Services (DFIR) team to provide 24/7 monitoring. In addition to possessing technical knowledge, a Threat Engineer interacts extensively with customers and partners using polite professional etiquette and serves as a technical point of escalation within TDR.

Cyber Threat Engineers Perform The Following Duties

  • Analyze escalated, complex cases involving a pattern of security events from endpoint detection and response technologies.
  • Resolve intractable technical problems within managed security solutions as part of a sustained improvement project.
  • Create, improve, and document processes for the management and monitoring of security solutions.
  • Tune devices for blocking and reporting based on customer business need.
  • Baseline threat detection devices for complex and potentially breached customer environments.
  • Test and improve endpoint detection, protection, and response policies.
  • Take responsibility for customer satisfaction and overall success of managed services.
  • Timely respond to questions and concerns of the DFIR and client security teams concerning incident investigation and response.
  • Adhere to policies, procedures, and security best practices.
  • Resolve problems independently and understand appropriate documentation and escalation procedures.
  • Perform rotating on-call duties (nights/weekend rotations).
  • Act as a mentor and escalation point for analysts within the Threat Detection and Response team.

Skills & Knowledge Requirements

Must have intermediate skills/knowledge in some of the following:

  • Cyber investigation and incident handling best practices
  • Endpoint Detection and Response
  • Unix/Linux and Windows system administration
  • Current exploit and remediation techniques
  • Threat Hunting and Investigation
  • Web Services Administration
  • Log collection and analysis tools

Desired Experience

  • Advanced Palo Alto Cortex XDR
  • Intrusion analysis experience
  • Incident handling and documentation
  • Excellent customer service skills
  • Excellent analytical thinking and problem-solving skills
  • Strong oral and written communication skills
  • Self-managed and team oriented
  • Deadline and detail oriented
  • Highly motivated

Preferred

  • Intermediate to advanced experience in Information Security related areas
  • Certified in Security related Industry, Vendor or Professional Certification- GCIA, GCIH, Security+, OSCP, or CEH preferred.
  • Certified in Vendor Specific Incident Handling and Investigation Certifications:
  • Palo Alto Networks Systems Engineer: Cortex Associate
  • Palo Alto Networks Systems Engineer: Cortex Professional
  • Palo Alto Networks Certified Detection and Remediation Analyst (PCDRA)
  • SentinelOne Incident Response
  • Crowdstrike Certified Falcon Responder (CCFR)

Education

  • A high school diploma or equivalent is required; a college or university degree is a plus.

This role is open to candidates legally authorized to work in the Philippines. At LevelBlue, including teams that previously operated as Trustwave, we support flexible work and bring people together in person for key moments based on role, team, and business needs.

LevelBlue is committed to a culture of respect, inclusion, and equal opportunity. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age, or any other status protected under applicable law.

To all agencies: Please do not contact LevelBlue or Trustwave employees outside of the Talent Acquisition team. LevelBlue’s policy is to only accept resumes from agencies through its approved agency process and with a valid agreement in place. Any resume submitted outside this process will be considered the property of LevelBlue, and no fee will be paid if a candidate is hired from such a submission.


Job Details

Role Level: Mid-Level Work Type: Full-Time
Country: Philippines City: Manila, National Capital Region
Company Website: http://www.trustwave.com Job Function: Engineering
Company Industry/
Sector:
IT Services and IT Consulting Technology Information and Internet and Computer and Network Security

What We Offer


About the Company

Searching, interviewing and hiring are all part of the professional life. The TALENTMATE Portal idea is to fill and help professionals doing one of them by bringing together the requisites under One Roof. Whether you're hunting for your Next Job Opportunity or Looking for Potential Employers, we're here to lend you a Helping Hand.

Report

Disclaimer: talentmate.com is only a platform to bring jobseekers & employers together. Applicants are advised to research the bonafides of the prospective employer independently. We do NOT endorse any requests for money payments and strictly advice against sharing personal or bank related information. We also recommend you visit Security Advice for more information. If you suspect any fraud or malpractice, email us at abuse@talentmate.com.


Recent Jobs
View More Jobs
Talentmate Instagram Talentmate Facebook Talentmate YouTube Talentmate LinkedIn