Cyber Security Engineer

Jardine Service Centre

Mandaluyong

On-site

PHP 1,200,000 - 2,100,000

Full time

35 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Jardine Service Centre Philippines is seeking a highly skilled Cybersecurity Engineer to join our SOC-focused team. The role centers on incident response, threat detection, and strengthening enterprise security controls across hybrid environments.

You will work with NGFWs, EDR/XDR, Cloud security, and identity protection, developing detection rules and automations. A background in purple team activities and adversary emulation is highly valued.

Qualifications

  • Bachelor's degree in Cybersecurity, CS, or IT.
  • 4–6 years in cybersecurity engineering or security operations.
  • Certs preferred: CISSP, GSEC, CySA+, OSCP, or similar.

Responsibilities

  • Manage and optimize NGFWs, WAFs, secure remote access, VPN, DNS security, and network segmentation.
  • Administer Secure Email Gateways with phishing protection and DMARC/SPF/DKIM.
  • Manage EDR/XDR platforms like CrowdStrike, Defender, SentinelOne.
  • Secure identity systems including Active Directory and Entra ID with MFA.
  • Develop and maintain detection rules in Microsoft Sentinel and Splunk using KQL and Sigma.
  • Create SOAR playbooks to accelerate containment and remediation.
  • Lead vulnerability management lifecycle across on-prem, cloud, and endpoints.

Skills

Incident response
Security engineering
Threat detection
Purple Team
Cloud security
SIEM
PowerShell

Education

Bachelor's degree in Cybersecurity

Tools

Palo Alto
Fortinet
Check Point
EDR/XDR
CrowdStrike
SentinelOne
Microsoft Defender
Azure AD
KQL
Sigma
PowerShell
Python

Job description

Jardine Service Centre Philippines is an organization fully owned by Jardine Matheson Group which is a diversified Asian-based group with unsurpassed experience in the region, having been founded in 1832. JSC is responsible for providing back-office support to the business units of Jardine Group by administrating transactional and rule-based activities. We aim to deliver world-class services to our internal customers in a cost-efficient manner via process harmonization, application of state-of-the-art technologies, automation and process simplification.

We are seeking a highly skilled and proactive Cybersecurity Engineer whose core responsibility is to serve as the Incident Responder for Jardine Matheson Corporate. The role provides Level 2 and Level 3 incident response, working closely with the Security Operations Centre (SOC) to investigate, contain, remediate, and support recovery from cybersecurity incidents in line with agreed service-level response requirements. In addition, the role will strengthen, engineer, and continuously improve enterprise security controls across network, endpoint, identity, cloud, and detection domains. The successful candidate will be a key technical contributor responsible for designing, implementing, monitoring, and optimizing cybersecurity technologies that protect critical business assets. Strong hands-on experience in security engineering, threat detection, incident response, and control validation is required. Candidates with Purple Team experience, adversary emulation exposure, or a background bridging offensive and defensive security operations are highly preferred.

Key Responsibilities:
  • Manage and optimize Next-Generation Firewalls (Palo Alto, Fortinet, Check Point), WAFs, secure remote access, VPN, ZTNA, DNS security, and network segmentation controls.
  • Administer Secure Email Gateways including phishing protection, DMARC, SPF, DKIM enforcement, malware filtering, and executive protection controls.
  • Manage EDR/XDR technologies such as CrowdStrike, Microsoft Defender for Endpoint, SentinelOne, or equivalent platforms.
  • Secure identity systems including Active Directory, Microsoft Entra ID, Conditional Access, MFA, privileged access controls, and identity governance.
  • Develop and maintain detection rules in Microsoft Sentinel, Splunk, Elastic, and Defender technologies using KQL, SPL, Sigma, and related languages.
  • Create SOAR workflows and automation playbooks to accelerate containment, investigation, and remediation activities.
  • Perform security control validation through Purple Team exercises, breach-and-attack simulation, Atomic Red Team testing, and MITRE ATT&CK mapping.
  • Collaborate with SOC analysts, infrastructure teams, cloud teams, and third-party providers to improve visibility and threat coverage.
  • Lead technical investigations, root-cause analysis, and security improvement initiatives following incidents or control gaps.
  • Lead vulnerability management activities including vulnerability scanning, risk-based prioritization, remediation tracking, exception management, and reporting across on-premises, cloud, endpoint, and network environments
Key Qualifications & Technical Skills:
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or equivalent practical experience.
  • Minimum 4-6 years of experience in cybersecurity engineering, security operations, network security, or detection engineering.
  • Preferred certifications: CISSP, GSEC, CySA+, CCNP Security, PCNSE, Fortinet NSE, SC-200, AZ-500, OSCP, eJPT, GDAT.
  • Perimeter Security: Architect, deploy, and manage Next-Generation Firewalls (NGFW), Web Application Firewalls (WAF), Secure Email Gateways (SEG), and DNS Security solutions. Implement and maintain strict Network Segmentation policies to reduce the attack surface.
  • Endpoint & Identity Protection: Oversee endpoint protection strategies using EDR/XDR platforms. Manage and secure identity infrastructures including on-premises Active Directory and Entra ID (Azure AD), enforcing Conditional Access policies and Multi-Factor Authentication (MFA).
  • Cloud Security: Secure hybrid and multi-cloud environments (Azure, AWS) by implementing cloud-native security controls, conducting posture management, and ensuring compliance with cloud security best practices.
  • Detection Engineering: Develop, tune, and maintain detection logic and analytics rules within SIEM platforms (Microsoft Sentinel, Splunk). Author complex queries using KQL, SPL, and Sigma to identify advanced threats and improve threat-hunting capabilities.
  • Security Automation: Design and implement automated security workflows and remediation scripts utilizing PowerShell, Python, and Bash to streamline operational efficiency and incident response.
  • Vulnerability Management (Lifecycle): Lead the full lifecycle of vulnerability management utilizing tools such as Tenable, Qualys, Rapid7 InsightVM, and Microsoft Defender Vulnerability Management. This includes conducting vulnerability assessments, performing risk-based prioritization, tracking remediation efforts, coordinating patching cycles, and generating executive reporting.
  • Security Frameworks & Compliance: Apply industry-standard security frameworks (MITRE ATT&CK, NIST CSF, CIS Controls) to assess security posture, guide control implementation, and align security operations with regulatory and industry best practices.
Preferred Qualifications:
  • Purple Team, threat emulation, adversary simulation, or penetration testing experience.
  • Experience with Microsoft Defender XDR, Sentinel automation, and cloud-native security tooling.
  • Knowledge of PAM, PKI, Zero Trust, SASE, IaC security, Terraform, or Bicep.
  • Experience identifying command-and-control activity, malware behaviors, and advanced attack techniques.
  • Experience with vulnerability assessment tools such as Tenable, Qualys, Rapid7, Microsoft Defender Vulnerability Management, or equivalent solutions is highly desirable.
  • Preferred certifications: CISSP, GSEC, CySA+, CCNP Security, PCNSE, Fortinet NSE, SC-200, AZ-500, OSCP, eJPT, GDAT.

We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

At JSC, you can play a role in our business success. We understand that key to our success is our people, which is our foundation and priority. We invest in our people to ensure we have the right talent with the leadership and strategic skills the company needs for the future.

We are an equal opportunity employer and do not discriminate on the grounds of sex, race, disability, family status or any other factors.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer – Security Controls & Operations
Cyber Security Engineer – Security Controls & Operations

Jardine Service Centre • Mandaluyong

On-site
PHP 1,000,000 - 1,300,000
Cybersecurity Engineer: Incident Response & Defense
Cybersecurity Engineer: Incident Response & Defense

Jardine Service Centre • Mandaluyong

On-site
PHP 1,200,000 - 2,100,000
Cybersecurity Incident Response & Controls Engineer
Cybersecurity Incident Response & Controls Engineer

Jardine Service Centre • Mandaluyong

On-site
PHP 1,000,000 - 1,300,000
Junior Cyber Security Engineer/Analyst
Junior Cyber Security Engineer/Analyst

PM Consulting • Philippines

On-site
PHP 600,000 - 900,000
Sr Cybersecurity Analyst Manila, Philippines Posted a day ago
Sr Cybersecurity Analyst Manila, Philippines Posted a day ago

Dexcom Inc. • Manila

On-site
PHP 1,200,000 - 2,100,000
CGM technology access
Comprehensive benefits
Global growth opportunities
+2
Security Analyst (Remote)
Security Analyst (Remote)

Prime System Solutions • Philippines

On-site
PHP 1,200,000 - 1,600,000
HMO coverage
Paid time off
Career development and certification
+2
Cybersecurity Operations Engineer
Cybersecurity Operations Engineer

Cebu Pacific Air • Philippines

Hybrid
PHP 900,000 - 1,200,000
Healthcare coverage
Hybrid workplace flexibility
Travel perks for employee
Security Technician
Security Technician

First Focus AU • Manila

Hybrid
PHP 1,200,000 - 1,800,000
Hybrid work arrangements
HMO from Day 1 with dependent coverage
Dental cover
Cybersecurity Engineer | MSP, Dayshift, Weekends off, Hybrid
Cybersecurity Engineer | MSP, Dayshift, Weekends off, Hybrid

First Focus Information Technology, Inc. • Metro Manila

Hybrid
PHP 600,000 - 900,000
Hybrid work arrangements
HMO from Day 1
Paid study days
Specialist (Cybersecurity)
Specialist (Cybersecurity)

NTUC FIRST CAMPUS LIMITED • Santo Niño 1st

On-site
PHP 1,200,000 - 1,800,000