Skip to content

Open nowPosted 25 days ago

Senior Cyber Security Engineer

Workable (global search)109,826 open roles

Where
Quezon City, Metro Manila, Philippines
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSenior Cyber Security EngineerWorkable (global search) · Quezon City, Metro Manila, Philippines
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Workable (global search)'s own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.9% of postings close within 7 days. Measured by our own scanner across the market. Workable (global search) postings stay open a median of 2 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 7.9%7 days
  4. 14.9%14 days
  5. 34.0%30 days
This job: posted 25 days ago

Workable (global search) median: 2 days open

The posting

About GoTyme

GoTyme is a joint venture between the Gokongwei Group, one of the biggest conglomerates in the Philippines, and the Singapore-headquartered digital banking group Tyme. This venture combines the trusted Gokongwei brand, customer base, and distribution ecosystem with Tyme’s globally proven digital banking technology and hands-on experience building South Africa’s leading digital bank, TymeBank, one of the fastest-growing digital banks in the world today.

At GoTyme, we have embarked on a journey to democratize financial services and bring next-level banking to the Philippines. We seek individuals who share our belief that the game is worth changing, to join our growing team of GoTymers as we build, launch, and scale a bank that empowers all Filipinos to navigate a path to financial freedom.

About the role

We are seeking a Senior Cyber Security Engineer to join our cybersecurity team, operating with an AI- and automation-first mindset. This role goes beyond monitoring and response and requires technical leadership, deep investigative expertise, and the ability to design, improve, and scale security controls across cloud, endpoint, and identity environments.

The successful candidate will act as a subject-matter expert, leading complex investigations, driving proactive threat detection, mentoring junior engineers, and partnering with technology and business teams to continuously strengthen the organisation’s security posture.

Security Monitoring, Engineering & Analysis

  • Lead advanced monitoring and analysis of security events across AWS, Azure, and endpoint platforms
  • Design, enhance, and optimise detection logic using CloudTrail, GuardDuty, Security Hub, Azure Sentinel, Defender, and EDR/XDR tools
  • Proactively identify security gaps, misconfigurations, and control weaknesses across cloud and SaaS environments
  • Develop and maintain automated detection and response workflows using scripting and SOAR principles
  • Perform deep analysis of DLP alerts, ensuring protection of sensitive and regulated data

Incident Response, Forensics & Crisis Management

  • Act as a lead investigator for high-severity security incidents
  • Drive end-to-end incident response activities, including containment, eradication, and recovery
  • Conduct advanced host, cloud, and log-based forensic analysis
  • Produce executive-level incident reports, root-cause analyses, and post-incident improvement plans
  • Support tabletop exercises, incident simulations, and continuous improvement of IR playbooks

Threat Detection, Hunting & Intelligence

  • Lead proactive threat hunting activities using behavioural analytics and threat intelligence
  • Map detections to MITRE ATT&CK and continuously improve coverage
  • Perform advanced malware analysis and support reverse-engineering efforts when required
  • Translate threat intelligence into actionable detections and preventive controls
  • Stay ahead of emerging attack techniques, cloud-native threats, and identity-based attacks

Identity, Access & Privileged Security

  • Oversee monitoring and investigation of privileged access and identity-based threats
  • Lead IAM security reviews and contribute to least-privilege and zero-trust initiatives
  • Investigate anomalous authentication behaviour and insider-risk indicators
  • Partner with IAM teams to strengthen identity security architecture and controls

Security Engineering, Architecture & Enablement

  • Contribute to the design and improvement of cloud and enterprise security architectures
  • Define security requirements for new platforms, services, and integrations
  • Support compliance initiatives aligned to ISO 27001, SOC 2, NIST, PCI DSS and internal risk frameworks
  • Mentor junior engineers and analysts, providing technical guidance and review
  • Influence security strategy through technical insight and data-driven recommendations

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field
  • 7–10+ years of hands-on experience in cybersecurity engineering, SOC, or security operations roles
  • Demonstrated experience leading complex security investigations and incident response
  • Proven ability to design, tune, and maintain security detections at scale
  • Experience mentoring or technically leading other security practitioners
  • Deep expertise in AWS security services (CloudTrail, GuardDuty, Config, Security Hub)
  • Strong experience with Azure security tooling (Sentinel, Defender, Security Center)
  • Advanced knowledge of EDR/XDR platforms and endpoint telemetry
  • Hands-on experience with SIEM, SOAR, and log analytics platforms
  • Strong understanding of networking, IAM, authentication protocols, and attack vectors
  • Proficiency in Python, PowerShell, or Bash for automation and analysis
  • Experience applying threat hunting and detection engineering methodologies
  • Familiarity with AI-driven security tooling and prompt-based analysis
From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Workable (global search)'s own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Workable (global search)'s form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Workable (global search)'s answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.