Cyber Security Engineer – Security Controls & Operations

Jardine Service Centre

Mandaluyong

On-site

PHP 1,000,000 - 1,300,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jardine Service Centre Philippines is seeking a highly skilled Cybersecurity Engineer to act as Incident Responder for Jardine Matheson Corporate. The role covers Level 2/3 response, threat detection, and remediation across on-prem and cloud environments.

You will design, implement, monitor, and optimize cybersecurity controls; lead investigations, vulnerability management, and cross-team collaboration to strengthen defenses and reduce risk.

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, IT or equivalent practical experience.
  • Minimum 4–6 years in cybersecurity engineering, security operations or detection engineering.
  • Preferred: CISSP, GSEC, CySA+, CCNP Security, PCNSE, OSCP, OSCE, SGDN.

Responsibilities

  • Manage and optimize NGFWs, WAFs, secure remote access, VPN, ZTNA, DNS security and segmentation.
  • Administer Secure Email Gateways with phishing protection and DMARC engineering.
  • Manage EDR/XDR technologies such as CrowdStrike, Defender for Endpoint, SentinelOne.
  • Secure identity systems including Active Directory and Entra ID; enforce MFA.
  • Develop detection rules in Microsoft Sentinel, Splunk, Elastic, Defender stacks.
  • Create SOAR workflows to accelerate containment and remediation.
  • Lead vulnerability management and coordination across environments.
  • Collaborate with SOC, infra, cloud teams and third parties to improve visibility.
  • Lead technical investigations, root-cause analysis and security improvements.

Skills

Incident response
Security engineering
Threat detection
SIEM
Cloud security
Purple Team
Adversary emulation
Vulnerability management
Breach-and-attack simulation
Network security

Education

Bachelor's degree in Cybersecurity

Tools

Palo Alto
Fortinet
Check Point
CrowdStrike
Microsoft Defender for Endpoint
SentinelOne
Microsoft Sentinel
Splunk
Defender technologies
KQL

Job description

Jardine Service Centre Philippines is an organization fully owned by Jardine Matheson Group which is a diversified Asian-based group with unsurpassed experience in the region, having been founded in 1832. JSC is responsible for providing back-office support to the business units of Jardine Group by administrating transactional and rule-based activities. We aim to deliver world-class services to our internal customers in a cost-efficient manner via process harmonization, application of state-of-the-art technologies, automation and process simplification.

We are seeking a highly skilled and proactive Cybersecurity Engineer whose core responsibility is to serve as the Incident Responder for Jardine Matheson Corporate. The role provides Level 2 and Level 3 incident response, working closely with the Security Operations Centre (SOC) to investigate, contain, remediate, and support recovery from cybersecurity incidents in line with agreed service-level response requirements. In addition, the role will strengthen, engineer, and continuously improve enterprise security controls across network, endpoint, identity, cloud, and detection domains. The successful candidate will be a key technical contributor responsible for designing, implementing, monitoring, and optimizing cybersecurity technologies that protect critical business assets. Strong hands-on experience in security engineering, threat detection, incident response, and control validation is required. Candidates with Purple Team experience, adversary emulation exposure, or a background bridging offensive and defensive security operations are highly preferred.

Key Responsibilities
  • Manage and optimize Next-Generation Firewalls (Palo Alto, Fortinet, Check Point), WAFs, secure remote access, VPN, ZTNA, DNS security, and network segmentation controls.
  • Administer Secure Email Gateways including phishing protection, DMARC, SPF, DKIM enforcement, malware filtering, and executive protection controls.
  • Manage EDR/XDR technologies such as CrowdStrike, Microsoft Defender for Endpoint, SentinelOne, or equivalent platforms.
  • Secure identity systems including Active Directory, Microsoft Entra ID, Conditional Access, MFA, privileged access controls, and identity governance.
  • Develop and maintain detection rules in Microsoft Sentinel, Splunk, Elastic, and Defender technologies using KQL, SPL, Sigma, and related languages.
  • Create SOAR workflows and automation playbooks to accelerate containment, investigation, and remediation activities.
  • Perform security control validation through Purple Team exercises, breach-and-attack simulation, Atomic Red Team testing, and MITRE ATT&CK mapping.
  • Collaborate with SOC analysts, infrastructure teams, cloud teams, and third-party providers to improve visibility and threat coverage.
  • Lead technical investigations, root-cause analysis, and security improvement initiatives following incidents or control gaps.
  • Lead vulnerability management activities including vulnerability scanning, risk-based prioritization, remediation tracking, exception management, and reporting across on-premises, cloud, endpoint, and network environments
Key Qualifications & Technical Skills
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or equivalent practical experience.
  • Minimum 4-6 years of experience in cybersecurity engineering, security operations, network security, or detection engineering.
  • Preferred certifications: CISSP, GSEC, CySA+, CCNP Security, PCNSE, Fortinet NSE, SC-200, AZ-500, OSCP, eJPT, GDAT.
  • Perimeter Security: Architect, deploy, and manage Next-Generation Firewalls (NGFW), Web Application Firewalls (WAF), Secure Email Gateways (SEG), and DNS Security solutions. Implement and maintain strict Network Segmentation policies to reduce the attack surface.
  • Endpoint & Identity Protection: Oversee endpoint protection strategies using EDR/XDR platforms. Manage and secure identity infrastructures including on-premises Active Directory and Entra ID (Azure AD), enforcing Conditional Access policies and Multi-Factor Authentication (MFA).
  • Cloud Security: Secure hybrid and multi-cloud environments (Azure, AWS) by implementing cloud-native security controls, conducting posture management, and ensuring compliance with cloud security best practices.
  • Detection Engineering: Develop, tune, and maintain detection logic and analytics rules within SIEM platforms (Microsoft Sentinel, Splunk). Author complex queries using KQL, SPL, and Sigma to identify advanced threats and improve threat-hunting capabilities.
  • Security Automation: Design and implement automated security workflows and remediation scripts utilizing PowerShell, Python, and Bash to streamline operational efficiency and incident response.
  • Vulnerability Management (Lifecycle): Lead the full lifecycle of vulnerability management utilizing tools such as Tenable, Qualys, Rapid7 InsightVM, and Microsoft Defender Vulnerability Management. This includes conducting vulnerability assessments, performing risk-based prioritization, tracking remediation efforts, coordinating patching cycles, and generating executive reporting.
  • Security Frameworks & Compliance: Apply industry-standard security frameworks (MITRE ATT&CK, NIST CSF, CIS Controls) to assess security posture, guide control implementation, and align security operations with regulatory and industry best practices.
Preferred Qualifications
  • Purple Team, threat emulation, adversary simulation, or penetration testing experience.
  • Experience with Microsoft Defender XDR, Sentinel automation, and cloud-native security tooling.
  • Knowledge of PAM, PKI, Zero Trust, SASE, IaC security, Terraform, or Bicep.
  • Experience identifying command-and-control activity, malware behaviors, and advanced attack techniques.
  • Experience with vulnerability assessment tools such as Tenable, Qualys, Rapid7, Microsoft Defender Vulnerability Management, or equivalent solutions is highly desirable.
  • Preferred certifications: CISSP, GSEC, CySA+, CCNP Security, PCNSE, Fortinet NSE, SC-200, AZ-500, OSCP, eJPT, GDAT.

We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

At JSC, you can play a role in our business success. We understand that key to our success is our people, which is our foundation and priority. We invest in our people to ensure we have the right talent with the leadership and strategic skills the company needs for the future.

We are an equal opportunity employer and do not discriminate on the grounds of sex, race, disability, family status or any other factors.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Incident Response & Controls Engineer
Cybersecurity Incident Response & Controls Engineer

Jardine Service Centre • Mandaluyong

On-site
PHP 1,000,000 - 1,300,000
Junior Cyber Security Engineer/Analyst
Junior Cyber Security Engineer/Analyst

PM Consulting • Philippines

On-site
PHP 600,000 - 900,000
Sr Cybersecurity Analyst Manila, Philippines Posted a day ago
Sr Cybersecurity Analyst Manila, Philippines Posted a day ago

Dexcom Inc. • Manila

On-site
PHP 1,200,000 - 2,100,000
CGM technology access
Comprehensive benefits
Global growth opportunities
+2
Security Analyst (Remote)
Security Analyst (Remote)

Prime System Solutions • Philippines

On-site
PHP 1,200,000 - 1,600,000
HMO coverage
Paid time off
Career development and certification
+2
Cybersecurity Operations Engineer
Cybersecurity Operations Engineer

Cebu Pacific Air • Philippines

Hybrid
PHP 900,000 - 1,200,000
Healthcare coverage
Hybrid workplace flexibility
Travel perks for employee
Senior Security Engineer
Senior Security Engineer

Red Clay Consulting • Mandaluyong

On-site
PHP 900,000 - 1,500,000
Senior Cyber Security Engineer
Senior Cyber Security Engineer

Morgan McKinley • Philippines

On-site
PHP 1,200,000 - 2,400,000
Cybersecurity Engineer
Cybersecurity Engineer

Hrtx • Philippines

Hybrid
PHP 1,000,000 - 1,800,000
Hybrid work setup
Senior Officer, Security Engineering
Senior Officer, Security Engineering

PDAX • Pasig

On-site
PHP 900,000 - 1,300,000
Cybersecurity Engineer | MSP, Dayshift, Weekends off, Hybrid
Cybersecurity Engineer | MSP, Dayshift, Weekends off, Hybrid

First Focus Information Technology, Inc. • Metro Manila

Hybrid
PHP 600,000 - 900,000
Hybrid work arrangements
HMO from Day 1
Paid study days