Job Description
Lead Incident Response. Strengthen Cyber Defense.
Join Accenture's Cybersecurity team as a SOC Team Lead (L2) and play a key role in detecting, investigating, and responding to advanced security threats. This role is ideal for experienced SOC professionals who enjoy leading analysts, driving incident response efforts, and continuously improving security operations.
What You'll Do
Lead the investigation and resolution of complex security incidents escalated by L1 analysts.
Perform root cause analysis, threat validation, and incident triage across enterprise environments.
Act as a key responder during high-severity incidents, coordinating with CSIRT, engineering teams, and stakeholders.
Conduct threat hunting activities using indicators of compromise (IoCs) and threat intelligence.
Mentor and guide SOC analysts through coaching, quality reviews, and incident handling best practices.
Collaborate with detection engineering teams to improve use cases, alert quality, and SOC processes.
Maintain incident documentation, reports, playbooks, and operational procedures.
What We're Looking For
3–5+ years of experience in a SOC, Incident Response, or Cyber Defense environment.
Previous experience leading, mentoring, or supervising SOC analysts is highly preferred.
Strong hands-on experience investigating security incidents using SIEM and security monitoring tools.
Knowledge of network security, threat detection, malware analysis, incident response, and threat hunting.
Experience analyzing logs, network traffic, and security events across enterprise environments.
Ability to work effectively during high-priority security incidents and coordinate cross-functional response efforts.
Preferred Qualifications
Experience with CrowdStrike Falcon (highly preferred).
Hands-on experience with SIEM platforms such as Splunk, Sentinel, QRadar, Google SecOps, or similar.
Scripting experience using Python or PowerShell for automation and investigations.
Certifications such as Security+, CEH, GCIH, GCIA, or similar.
Exposure to cloud security monitoring across AWS, Azure, or GCP.
Work Setup
Hybrid work arrangement
Cubao office location
Amenable to possible shifting schedules
Why Join Accenture
At Accenture, you'll work on impactful projects using emerging technologies while collaborating with some of the industry's top cybersecurity professionals.
Benefits & Perks
Competitive salary package
Performance bonus and 13th Month Pay
Day 1 HMO and Life Insurance coverage
Flexible working arrangements*
Company-sponsored training, upskilling, and certifications
Expanded maternity and paternity benefits*
Employee Stock Purchase Plan
Inclusive and collaborative work culture
Terms and conditions apply.
Be Part of an Inclusive Workplace
At Accenture, we celebrate diversity and are committed to creating an inclusive environment where everyone can thrive. We welcome applications from all qualified candidates and provide reasonable accommodations throughout the recruitment process.
Application Reminder
To help us process your application faster, please complete your Workday profile within 24 hours after applying.
Important: In line with Accenture's identity verification process, please ensure your resume/CV includes a recent photo.
If you're an experienced SOC professional ready to step into a leadership role, we'd love to hear from you.