Senior Manager, Global Security Incident Response
City of Dreams ManilaFull timePosted Aug 4, 2026
Job description
REQ14901 Senior Manager, Global Security Incident Response (Open) POSITION SUMMARY: The Senior Manager, Global Security Incident Response is responsible in the detection, triage, containment and post analysis of threats and the response to detected threats and cyber-attacks. The role is to build out a mature cyber defense capability for Melco and ensure that the cyber response is advanced and repeatable to ensure the industrialization of Cyber defense within the organization.
PRIMARY RESPONSIBILITIES:
- Senior Manager, Global Security Incident Response function for Melco-Resorts and all business units globally.
- Lead initiatives and projects to enhance or build new capabilities in Melco, related to threat intelligence, security monitoring, triage and incident response.
- Drive continuous enhancement of the cyber incident responses procedures and playbooks to support effective and efficient incident investigation and response.
- Manage external vendor performing 24x7 security monitoring and triage for Melco.
- Lead a small team of cyber incident responders and threat intel analysts globally to maximize the value on detection and response
- Coordinate and influence the Information Security team to ensure the use cases tools and arch are fit for purpose
- Work with peers and CISO to ensure the correct automation, contextualization and response capabilities are built across all areas
- Coordinate with Information Security team to define the right framework that facilitates evaluation of weaknesses or new risks, which require engineering continuous improvement.
- Recommends and/or executes management policies to hire, transfer, suspend, layoff, recall, discharge, re-assign or discipline employees.
- Performs ad hoc functions as may be required. KEY PERFORMANCE INDICATORS:
- Quality delivery of cyber security monitoring across all Technology assets.
- On time and on budget delivery of Information Security monitoring and incident response program uplifts or deployments and aligned with IT and InfoSec roadmap
- Ensure Melco Incident response teams has a clear road map to baseline against industry standards and measure the team’s adoption rate and report through Security Risk function any adoption issues
- Controls are delivered in a cost- effective way using processes and resources aligned with Melco goals.
- Information Security incident response support and governance are provided to all business units QUALIFICATIONS: I. Experience Minimum of 10 years working in IT security incident response management roles II.
Education
- A bachelor’s degree in computer science and an information security or other similar technical 2. certification such as Certified Information Systems Security Professional (CISSP) or Certified
- Desirable certifications
- ITIL, GIAC certified incident handler, GIAC Reverse Engineering, CISM, EC Council Computer Hacking Forensics Investigator (CHFI), Certified Ethical Hacker (CEH), OSCP
- Malware (GREM), GIAC Certified Forensic Analyst (GCFA) III. Skills / Competencies
- Knowledge and tech skills
- Excellent knowledge of emerging cyber security, technologies, threats and vulnerabilities Excellent knowledge of emerging cyber security, technologies, threats and vulnerabilities
- Experience with Red/Blue teaming exercises and familiarity with MITRE ATT&CK framework
- Familiarity with laws, rules and regulations including privacy i.e GDPR
- Familiarity with NIST CSF, NIST IR lifecycle and NIST NICE
- Excellent knowledge and understanding of security operations and control frameworks
- Excellent knowledge and understanding of various frameworks/regulations such as PCI, NIST Cybersecurity Framework, ISO27001 or similar
- Excellent knowledge of Advanced Persistent Threats, attack tools, techniques and methods used by adversaries.
- Excellent organization, project management mindset
- Experience leading a security incident response team
- Excellent knowledge of penetration testing services and techniques.
- Excellent communication skills including management of crisis response efforts
- Excellent written and verbal communication skills and ability to perform working under pressure (i.e incidents)
- Experienced in multicultural and regional team management
- Ability to define, prioritize and execute process in a structured manner.
- Experience in an operational capacity as part of an IT Security incident response function
- Experience with networking and TCP/IP traffic, along with Firewall, IDS/IPS, SIEM, SOAR,EPP, EDR, APT, Proxy, IAM, NAC, DLP, Vulnerability Management, Antivirus, Anti-spam, and Spyware solutions.
- Experience conducting log and activity review, along with stream or packet capture, in support of intrusion analysis
- Desirable - experience on SIEM solutions such as next generation SIEM solutions and programming and scripting IV. Other Attributes
- Displays a high commitment to delivering results
- Leads others to achieve business objectives
- Communicates effectively
- Achieves agreed objectives and accepts accountability for results
- Displays the highest level of integrity
- Ability to maintain discretion
- Self-motivated
- Approachable