Cybersecurity Analyst

Chooks to Go Inc.

Taguig

On-site

PHP 600,000 - 900,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Chooks to Go Inc. is seeking a Security Operations and Incident Response specialist in Taguig, Philippines.

The role requires hands-on SOC experience, SIEM management, and strong incident handling abilities. You will cover detection, triage, containment, and recovery across multi-layer security platforms Responsibilities include vulnerability management, governance alignment with ISO 27001/NIST, threat intelligence, and security awareness initiatives for staff.

Qualifications

  • Bachelor's degree in IT/CS/Cybersecurity or related field.
  • Relevant cybersecurity certifications are an advantage.
  • Minimum 2 years in SOC/cybersecurity/infosec.
  • Experience with FortiSIEM, Splunk, or equivalents.
  • Experience in incident detection, investigation and response.
  • Knowledge of Windows, Linux, AD, networking, and server administration.
  • Understanding of phishing, malware, ransomware, brute force, DDoS.
  • Experience in log analysis and event correlation.
  • Familiar with ISO 27001, NIST CSF, and related controls.
  • Strong analytical and problem-solving skills.
  • Excellent oral and written communication skills.
  • Attention to detail and documentation.
  • Scripting in Python/PowerShell is an advantage.
  • Industry tools: FortiSIEM, Splunk, QRadar, Defender.

Responsibilities

  • Monitor and investigate security events across SIEM, NDR, EDR/DR, and network security.
  • Perform incident triage, containment, eradication and recovery activities.
  • Manage high-volume security events and conduct threat analysis.
  • Conduct root-cause analysis and post-incident reviews.
  • Develop and maintain detection rules, use cases, and playbooks.
  • Maintain vulnerability and patch management processes.
  • Support governance, risk, and compliance initiatives.
  • Participate in audits and produce technical reports.
  • Monitor threat intel feeds and perform proactive threat hunting.
  • Lead awareness campaigns and phishing simulations.

Skills

SOC experience
SIEM & incident response
Threat detection & hunting
Windows/Linux/AD
Networking & server admin
Documentation & reporting
Scripting: Python/PowerShell
ISO 27001/NIST familiarity
Threat intel basics
Communication skills

Education

Bachelor's degree in IT/CS/Cybersecurity

Tools

FortiSIEM
Splunk
QRadar
Microsoft Defender
FortiAnalyzer
Trend Vision One
Nessus/Qualys/Rapid7

Job description

QUALIFICATIONS:
  • Bachelor's Degree in Information Technology, Computer Science, Cybersecurity, or related field.
  • Relevant cybersecurity certifications are an advantage.
  • Minimum of 2 years' experience in a Security Operations Center (SOC), Cybersecurity Operations, or Information Security role.
  • Experience working with SIEM platforms such as FortiSEM, Splunk, or equivalent.
  • Experience in incident detection, investigation, and response.
  • Knowledge in Windows, Linux, Active Directory, networking, and server administration.
  • Understanding of common cyberattack techniques, including phishing, malware, ransomware, brute force attacks, and DDoS.
  • Experience in log analysis and event correlation.
  • Familiar with cybersecurity frameworks and standards such as NIST CSF and ISO 27001.
  • Strong analytical and problem-solving skills.
  • Good understanding of cybersecurity concepts and incident handling prodflures.
  • Excellent oral and written communication skills.
  • Attention to detail and strong documentation skills.
  • Background in scripting Python, or PowerShell is an advantage.
  • SIEM: FortiSIEM, Splunk, QRadar, Microsoft Sentinel
  • Security Analytics: FortiAnalyzer
  • EDR/DR: Trend Vision One, CrowdStrike, Microsoft Defender
  • NDR: Trend Micro Deep Discovery Inspector
  • Vulnerability Management: Nessus, Qualys, Rapid7
  • Patch Management: Action1
  • Threat Intelligence: SOCRadar, Resecurity
  • Compliance: ISO 27001, NIST RMF, NIST SP 800 Series
  • Linux Administration and Network Security
  • Google Workspace and Hybrid Infrastructure Security
  • Preferred Certifications: CompTIA Security+, CompTIA CySA+, ISC2 CC, ISC2 CISSP (Preferred), CEH, GIAC
DUTIES AND RESPONSIBILITIES:
Security Operations & Incident Response
  • Monitor and investigate security events across SIEM, NDR, EDR/DR, firewalls, email security, and network security platforms.
  • Perform incident triage, containment, eradication, and recovery activities.
  • Manage high-volume security event monitoring and threat analysis.
  • Conduct root cause analysis and post-incident reviews.
  • Develop and maintain detection rules, use cases, and playbooks.
Vulnerability & Patch Management
  • Conduct vulnerability assessments, penetration testing and risk analysis.
  • Track remediation activities and validate corrective actions.
  • Oversee deployment and verification of security patches.
  • Support third-party security assessments and audits.
Governance, Risk & Compliance
  • Develop and maintain SOPs aligned with ISO 27001, NIST CSF/RMF, and the Data Privacy Act of the Philippines.
  • Support cybersecurity governance initiatives and security maturity improvement programs.
  • Participate in internal and external audits.
  • Prepare technical and executive-level cybersecurity reports.
Threat Intelligence & Threat Hunting
  • Monitor threat intelligence feeds and emerging cyber threats.
  • Analyze Indicators of Compromise (IOCs) and attacker tactics, techniques, and procedures (TTPs).
  • Perform proactive threat hunting activities.
Security Awareness
  • Lead phishing simulation exercises and awareness campaigns.
  • Promote cybersecurity best practices across the organization.

WORK ARRANGEMENT: FULL ONSITE IN BGC, TAGUIG | MON - FRI

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Analyst
Cybersecurity Analyst

Bounty Fresh Food, Inc. • Taguig

Hybrid
PHP 700,000 - 1,100,000
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

Bounty Fresh Food, Inc. • Taguig

Hybrid
PHP 520,000 - 900,000
Cyber Security Analyst
Cyber Security Analyst

ePLDT, Inc. • Makati

On-site
PHP 420,000 - 660,000
Security Analyst / Network Security Analyst
Security Analyst / Network Security Analyst

RippedBoxStation • Philippines

On-site
PHP 260,000 - 420,000
Cybersecurity Operations Engineer
Cybersecurity Operations Engineer

RecruitNest Consulting • Taguig

On-site
PHP 1,200,000 - 1,800,000
Cybersecurity Operations Engineer (SecOps)
Cybersecurity Operations Engineer (SecOps)

RecruitNest Consulting • Taguig

On-site
PHP 1,200,000 - 1,600,000
Security Engineer
Security Engineer

JetSon Manpower Agency • Manila

Hybrid
Security Engineer – SIEM / SOC (Cybersecurity)
Security Engineer – SIEM / SOC (Cybersecurity)

Gratitude Philippines • Quezon

On-site
PHP 1,000,000 - 1,800,000
Security Operations Engineer (SIEM / Cybersecurity)
Security Operations Engineer (SIEM / Cybersecurity)

Recruitify_HR • Taguig

On-site
PHP 600,000 - 900,000
Equity Incentive Plan
Performance Bonus
Health Insurance
+4
SOC Analyst (Microsoft Sentinel) - Hyrbid
SOC Analyst (Microsoft Sentinel) - Hyrbid

KMC Solutions • Muntinlupa

Hybrid
PHP 420,000 - 720,000
Comprehensive HMO coverage
Career growth opportunities
HR Cloud Sprout onboarding