Search by job, company or skills

  • Posted 13 hours ago
  • Be among the first 10 applicants

Job Description

Lead Incident Response. Strengthen Cyber Defense.

Join Accenture's Cybersecurity team as a SOC Team Lead (L2) and play a key role in detecting, investigating, and responding to advanced security threats. This role is ideal for experienced SOC professionals who enjoy leading analysts, driving incident response efforts, and continuously improving security operations.

What You'll Do

  • Lead the investigation and resolution of complex security incidents escalated by L1 analysts.
  • Perform root cause analysis, threat validation, and incident triage across enterprise environments.
  • Act as a key responder during high-severity incidents, coordinating with CSIRT, engineering teams, and stakeholders.
  • Conduct threat hunting activities using indicators of compromise (IoCs) and threat intelligence.
  • Mentor and guide SOC analysts through coaching, quality reviews, and incident handling best practices.
  • Collaborate with detection engineering teams to improve use cases, alert quality, and SOC processes.
  • Maintain incident documentation, reports, playbooks, and operational procedures.

  • What We're Looking For

  • 3–5+ years of experience in a SOC, Incident Response, or Cyber Defense environment.
  • Previous experience leading, mentoring, or supervising SOC analysts is highly preferred.
  • Strong hands-on experience investigating security incidents using SIEM and security monitoring tools.
  • Knowledge of network security, threat detection, malware analysis, incident response, and threat hunting.
  • Experience analyzing logs, network traffic, and security events across enterprise environments.
  • Ability to work effectively during high-priority security incidents and coordinate cross-functional response efforts.

  • Preferred Qualifications

  • Experience with CrowdStrike Falcon (highly preferred).
  • Hands-on experience with SIEM platforms such as Splunk, Sentinel, QRadar, Google SecOps, or similar.
  • Scripting experience using Python or PowerShell for automation and investigations.
  • Certifications such as Security+, CEH, GCIH, GCIA, or similar.
  • Exposure to cloud security monitoring across AWS, Azure, or GCP.

  • Work Setup

  • Hybrid work arrangement
  • Cubao office location
  • Amenable to possible shifting schedules

  • Why Join Accenture

    At Accenture, you'll work on impactful projects using emerging technologies while collaborating with some of the industry's top cybersecurity professionals.

    Benefits & Perks

  • Competitive salary package
  • Performance bonus and 13th Month Pay
  • Day 1 HMO and Life Insurance coverage
  • Flexible working arrangements*
  • Company-sponsored training, upskilling, and certifications
  • Expanded maternity and paternity benefits*
  • Employee Stock Purchase Plan
  • Inclusive and collaborative work culture
  • Terms and conditions apply.

  • Be Part of an Inclusive Workplace

    At Accenture, we celebrate diversity and are committed to creating an inclusive environment where everyone can thrive. We welcome applications from all qualified candidates and provide reasonable accommodations throughout the recruitment process.

    Application Reminder

    To help us process your application faster, please complete your Workday profile within 24 hours after applying.

    Important: In line with Accenture's identity verification process, please ensure your resume/CV includes a recent photo.

    If you're an experienced SOC professional ready to step into a leadership role, we'd love to hear from you.







    More Info

    Job Type:
    Industry:
    Function:
    Employment Type:

    Job ID: 152063053

    Beware of Scammers

    We don’t charge money for job offers