At Fujitsu, our purpose is to make the world more sustainable by building trust in society through innovation. Founded in Japan in 1935, Fujitsu has been a pioneer in technology and innovation for decades. Today, as a world-leading digital transformation partner, we are committed to transforming business and society in the digital age.
With approximately 130,000 employees across over 50 countries, Fujitsu offers a broad range of products, services, and solutions. We collaborate with our customers to co-create solutions that drive enterprise-wide digitalization while actively working to address social issues and contribute to the United Nations Sustainable Development Goals (SDGs).
Job Summary
The CSIRT Analyst is responsible for detecting, analyzing, investigating, containing, eradicating, and recovering from cybersecurity incidents affecting the organization's systems, applications, networks, cloud environments, and information assets. The role requires close collaboration with SOC teams, infrastructure teams, application owners, and business stakeholders to minimize business impact and improve the organization's security posture. Responsibilities align with the CSIRT lifecycle, including Preparation, Detection & Analysis, Containment, Eradication & Recovery, and Post-Incident Activities.
Key Responsibilities
Incident Response & Handling
- Monitor, validate, and investigate security incidents escalated from SOC and other sources.
- Perform incident triage, classification, prioritization, and impact assessment.
- Lead technical investigations and coordinate incident response activities.
- Execute containment, eradication, and recovery activities.
- Track incidents through their entire lifecycle until closure.
- Ensure incidents are handled within defined SLAs.
Deep Investigation
- Perform host, network, and log-based forensic investigations.
- Collect, preserve, and analyze digital evidence.
- Identify root causes and attack vectors.
- Document investigation findings for management and audit requirements.
Threat Analysis & Threat Intelligence
- Analyze Indicators of Compromise (IOCs), TTPs, and threat actor activities.
- Correlate threat intelligence from internal and external sources.
- Recommend preventive and detective security controls.
- Conduct proactive threat hunting activities.
- Develop detection use cases and improve monitoring capabilities.
Incident Reporting & Documentation
- Prepare incident reports, executive summaries, and root cause analysis documents.
- Conduct post-incident review meetings.
- Track and report incident trends and response metrics.
- Maintain incident response playbooks and SOPs.
Stakeholder Coordination
- Coordinate with Infrastructure, Network, Application, Cloud, and Business teams during incidents.
- Support crisis management and major incident response activities.
- Provide security recommendations and remediation guidance.
Continuous Improvement
- Participate in tabletop exercises and cyber simulations.
- Enhance incident response procedures and knowledge base.
- Contribute to security awareness and incident response training programs.
Required Technical Skills
- Incident Response & Incident Handling
- SIEM Platforms (Microsoft Sentinel, Splunk.)
- Endpoint Detection & Response (Microsoft Defender, CrowdStrike, FireEye, Cortex XDR)
- Network Security Analysis
- Digital Forensics Fundamentals
- Threat Intelligence Frameworks
- MITRE ATT&CK Framework
- Malware Analysis (basic to intermediate)
- Windows, Linux, and Cloud Security
- Log Analysis and Event Correlation
- Scripting knowledge (PowerShell, Python, Bash) preferred
Required Certifications (Preferred)
- GCIH (GIAC Certified Incident Handler)
- GCFA / GCFE
- CHFI
- CISSP
- Security+
- Microsoft Security Certifications
- CEH
Experience Requirements
CSIRT Analyst
- 5+ years of cybersecurity experience.
- Experience leading major security incidents and deep investigations.
- Experience handling malware, phishing, endpoint compromise, and network-based incidents
- Strong knowledge of threat intelligence, threat hunting, and incident coordination
At Fujitsu, we are committed to an inclusive recruitment process that values the diverse backgrounds and experiences of all applicants. We believe that hiring people from a wide variety of backgrounds makes us stronger, not because it's the right thing to do, but because it allows us to draw on a wider range of perspectives and life experiences.