Senior Security Incident Response Analyst
Manila, Manila, Philippines (Hybrid)
Join us in bringing joy to customer experience. Five9 is a leading provider of cloud contact center software, bringing the power of cloud innovation to customers worldwide.
Living our values everyday results in our team-first culture and enables us to innovate, grow, and thrive while enjoying the journey together. We celebrate diversity and foster an inclusive environment, empowering our employees to be their authentic selves.
Job Title: Sr. Security Incident Response Analyst
Location: Manila
Work Schedule: Day-Shift Manila Time (8am to 5pm)
Company Overview: Five9 provides businesses with reliable, scalable, and secure cloud contact center software designed to create exceptional customer experiences, increase agent productivity, and deliver tangible business results.
We are driven by a passion to transform contact centers into customer engagement centers of excellence. Since 2001, Five9 has led the cloud revolution in contact centers, helping organizations transition from legacy premise-based solutions to the cloud. The Sr Security Incident Response Analyst will ensure a swift and effective response to security incidents. This role requires a deep understanding of incident management best practices and a proven ability to navigate high-pressure situations.
We are looking for an experienced Sr Security Incident Response Analyst to join our Cyber Command Center team. This role includes hands-on involvement in incident response, detection engineering, and security automation. We value a candidate who is autonomous, responsible, and motivated. The right candidate will be comfortable pointing out weak points in our operation and implementing innovative changes that continuously improve our security posture.
Responsibilities:
- Participate in and lead incident response efforts, from triage to remediation
- Develop and maintain detection rules, ensuring alerts are high-quality and actionable
- Perform detection tuning based on threat intelligence, use cases, and incident learnings
- Build and maintain SOAR playbooks to streamline and automate key workflows
- Contribute to continuous improvement of SOC processes, tooling, and documentation
Required Qualifications:
- 3–5 years specifically in incident response and security operations (SOC)
- Strong analytical and problem-solving skills
- Excellent communication and reporting abilities (especially during incident escalation)
- Ability to work under pressure and lead incident investigations
- Bachelor’s degree in Computer Science, Information Security, Cybersecurity, or a related field
- Hands-on experience with modern SIEMs
- Experience working with SOAR platforms (e.g., writing and maintaining automation playbooks)
- Background in security investigations
- Strong understanding of log sources, detection logic, and correlation techniques
- Familiarity with scripting or automation (e.g., Python, Bash)
Preferred Qualifications:
- Exposure to threat hunting and behavioral detection techniques
- Experience with cloud environments (GCP, AWS, or Azure)
- Familiarity with EDR solutions and host-level investigation techniques
- Experience with hot/cold forensics techniques
- Experience with reverse engineering
- Background in enterprise-driven SaaS or customer experience is a plus
What We Offer:
- A role with real impact in improving and maturing our globally distributed security operations
- A collaborative environment that encourages autonomy, ownership, and new ideas
- Opportunities to work on a variety of tasks across detection, response, and automation
- Support for professional development and growth within the security field
Company Benefits
- Company stocks
- Annual merit increase based on performance
- 15% night shift differential pay
- Paid Leave with Cash Conversion
- HMO with free dependents
- Retirement Plan
- Life Insurance
- While on work from home setup: Internet and meal allowance are provided
- Employee Assistance Program for mental and social well-being
- Government-mandated Benefits (SSS, PhilHealth, PagIBIG, 13th month pay, Solo parent leave, Special leave for women)
Five9 embraces diversity and is committed to building a team that represents a variety of backgrounds, perspectives, and skills. The more inclusive we are, the better we are. Five9 is an equal opportunity employer.
View our privacy policy, including our privacy notice to California residents here: https://www.five9.com/pt-pt/legal.
Note: Five9 will never request that an applicant send money as a prerequisite for commencing employment with Five9.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Automation AWS Azure Bash Cloud Computer Science EDR Forensics GCP Incident response Privacy Python Reverse engineering SaaS Scripting SIEM SOAR SOC Threat intelligence
Perks/benefits: Career development Startup environment
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.