{"id":1045634,"url":"https://alion.io/job/ubisoft-incident-response-security-analyst","title":"Incident Response Security Analyst","company":{"id":3624,"name":"Ubisoft","domain":"ubisoft.com","url":"https://alion.io/company/ubisoft","size_band":"1001-5000","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"SmartRecruiters","truth_index":{"grade":"B","score":75,"open_postings":15,"ghost_share":0,"stale_share":1,"repost_share":0,"time_to_fill_p50_days":36,"computed_at":"2026-10-05T05:45:15Z"}},"role":"Security","role_family":"Security","seniority":"junior","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Shanghai, China"],"countries":["CN"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":22000,"max_usd":60000,"period":"year","method":"global_role_cell_scaled_by_country","sample_n":394},"experience_years_min":2,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"SIEM","optional":false}],"status":"live","first_seen_at":"2026-09-18T09:30:50Z","employer_posted_date":"2026-09-18","last_verified_at":"2026-10-06T01:00:42Z","board_verified":true,"closed_at":null,"days_open":17,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":17},"description":"Ubisoft is a global leader in gaming with teams across the world creating original and memorable gaming experiences, from Assassin’s Creed, Rainbow Six, to Just Dance and more. We believe diverse perspectives help both players and teams thrive. If you’re passionate about innovation and pushing entertainment boundaries, join our journey and help us create the unknown!\nCreated in 1996, Ubisoft Shanghai studio, is a vibrant and exciting place where our talents get opportunities to either co-develop great AAA blockbuster games, create cutting-edge online games or produce fun mobile games.\nTo learn more, please visit: www.ubisoftgroup.com\n The incumbent works in coordination with all production and services teams, and other security relays to ensure the coherent execution of the Ubisoft security strategy.\nMoreover, they provide informational and technical security expertise in order to support, ensure and enhance the current security posture of all assets within Ubisoft.\nThe candidate will perform incident response activities while challenging current processes and suggesting improvements or alternatives. This role operates at the intersection of security operations and real-world business impact-where speed, precision, and judgment matter more than theory.\nResponsibilities\nActing as a central point of contact within the global incident response team, the Security Analyst will:\nAnalyze and respond to alerts generated by our SIEM (Security Information and Events management) and other security tool suite (EDR, Identity service, etc.) on a day to day basis\nPerform forensic and investigation activities on hosts, network, infrastructure and applications targeted by threat actors\nIdentify attacker tactics, techniques, and procedures and proactively hunt for threats based on intelligence and hypothesis.\nLead incident response activities end to end for incident of low and medium criticality before, during and after incidents;\nSupport and coordinate incident response activities for high and critical incidents before, during and after incidents;\nDrive decision-making processes under pressure to determine incident handling approaches (contain vs monitor, isolate vs preserve, shutdown or maintain availability).\nProduce clear investigation reports for technical and non-technical audiences\nThose circumstances may require to outside of traditional working hours.\nValidate and enrich detection by collaborating with detection engineering team and propose alert tuning strategies and implementations.\nValidate and tune our security tool suite by providing feedback to the detection engineering team and suggest improvement plan.\nParticipate in the creation and implementation of incident response plans;\nOccasionally participate in internal investigations (local and corporate headquarters) in accordance to established policies;\nCollaborate on threat intelligence activities by performing relevant and efficient analyses and reporting back findings;\nPropose solutions to mitigate identified risks and bring them to an acceptable level for management.\nCarry out all other related tasks.\n Education & Experience\nBachelors’ Degree in Computer Sciences or any related discipline.\n2+ years in operating system administration and/or network administration.\n2+ years in audit and/or incident response and/or monitoring.\n2+ years in other security related function.\n1+ years in managing SIEM, IDS/IPS, EDR/XDR solutions in a fast paced environment.\nHands-on experience in incident response and coordination.\nSANS GIAC certification is a strong asset.\nKnowledge & Skills\nAbility to work under pressure and adapt quickly to change;\nGood problem-solving skills.\nAbility to manipulate sensitive information;\nAbility to analyse and summarize complex data;\nEffectively collaborate with a variety of stakeholders from top management to business and technical stakeholders;\nProactive, methodic, and result-oriented;\nSolid business understanding;\nAbility to write clear and concise documentation;\nAdapt quickly to change;\nEnglish & Mandarin is required (Written and verbal communication);\nFrench language is an asset;\nInterpersonal and negotiation skills.\n While the team operates under a “follow the sun” coverage model and not on a 24/7 rotation or night shift basis, on rare occasions you may be called to assist with resolving major incidents outside of standard working hours.\nDue to the nature of incident response, you will be working in a fast-paced environment and must be efficient at prioritizing multiple critical incidents.\nSkills and competencies show up in different forms and can be based on different experiences, that's why we strongly encourage you to apply even though you may not have all the requirements listed above.\nAt Ubisoft, you can come as you are. We embrace diversity in all its forms. We’re committed to fostering a work environment that is inclusive and respectful of all","description_format":"text","description_chars":4908,"description_truncated":false,"requirements":{"experience_years_min":2,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[{"language":"French","level":"All levels","optional":false},{"language":"English","level":"All levels","optional":false}]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Incident Response","Game Development"],"lifecycle":[{"event":"open","at":"2026-09-18T21:44:55Z"}],"visa":[],"liveness":{"score":52,"band":"ok","label":"Likely open","p_open":1,"p_active":0.582,"p_room":0.9,"age_days":16,"expected_fill_days":36,"reasons":["conf:1","stale_co","velocity","win:mid","comp:junior,brand"],"computed_at":"2026-10-05T05:45:15Z"},"pay":null,"html_url":"https://alion.io/job/ubisoft-incident-response-security-analyst","json_url":"https://alion.io/job/ubisoft-incident-response-security-analyst.json","meta":{"generated_at":"2026-10-06T03:17:20Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","about":"Alion is a live layer of people, companies and AI agents: who they are, whether they are real and active right now, what they do and how to work with them, readable by people and by agents and paid per call.","catalog":"https://alion.io/catalog.json","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":4838,"day_limit":5000,"remaining_today":162,"minute_limit":60,"resets_at":"2026-10-07T00:00:00Z"}},"offers":[{"id":"company.slices","title":"One company in depth, by slice","status":"live","price":{"credits":0.02,"usd":0.002,"plus_per_slice":{"credits":0.05,"usd":0.005}},"unit":"per company, plus each slice with data","note":"the employer in depth","call":{"mcp_tool":"get_company","arguments":{"id":3624},"rest":"https://alion.io/mcp/rest/get_company?id=3624"},"human":"https://alion.io/catalog?offer=company.slices&for=job%2Fubisoft-incident-response-security-analyst"},{"id":"market.stats","title":"A market slice: pay, demand and time to fill","status":"live","price":{"credits":1,"usd":0.1},"unit":"per slice","note":"pay, demand and time to fill for this role and place","call":{"mcp_tool":"market_stats"},"human":"https://alion.io/catalog?offer=market.stats&for=job%2Fubisoft-incident-response-security-analyst"},{"id":"job.search","title":"Open jobs by role, technology, place, pay and visa","status":"live","price":{"credits":0.02,"usd":0.002},"unit":"per posting in a list","note":"similar open postings","call":{"mcp_tool":"search_jobs"},"human":"https://alion.io/catalog?offer=job.search&for=job%2Fubisoft-incident-response-security-analyst"},{"id":"company.verify","title":"Is this company real and active right now","status":"pilot","price":null,"unit":"per company","request":{"url":"https://alion.io/catalog/request","method":"POST","body":"{\"offer\": \"company.verify\", \"for\": \"job/ubisoft-incident-response-security-analyst\", \"note\": \"what you need it for\"}"},"human":"https://alion.io/catalog?offer=company.verify&for=job%2Fubisoft-incident-response-security-analyst"}]}