It Security Analyst

Staff4Me

Compostela

On-site

PHP 360,000 - 600,000

Full time

4 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Staff4me is seeking an IT Security Analyst in Cebu City, Philippines. You will review alerts from Wazuh, Bitdefender GravityZone, and related tools, validate context, inspect devices, and document findings in the incident-management system.

You will work under IT Security Manager direction, applying solid IT and security knowledge, maintaining confidentiality, and escalating uncertainties promptly while avoiding unauthorized changes.

Qualifications

  • Associate's or bachelor's degree in Information Technology, Cybersecurity, Computer Science, Information Systems, or related field.
  • Zero to two years of experience in IT support, desktop support, system administration, networking, NOC, SOC, managed services, cybersecurity operations, or related environment.
  • Basic IT knowledge: Windows endpoints, hardware, apps, permissions, file systems, remote support, patching, IP addressing, DNS.
  • Basic security knowledge: malware, phishing, endpoint protection, logs, vulnerabilities, incident-response fundamentals.
  • Ability to read alerts/logs, follow procedures, document findings clearly, escalate when evidence is incomplete.
  • Strong attention to detail, professional judgment, confidentiality, integrity.

Responsibilities

  • Monitor alert queue and acknowledge events to prevent aging without ownership.
  • Perform initial incident analysis using logs, assets, and approved tools.
  • Inspect affected endpoints remotely or physically with approved checklists.
  • Collect and preserve evidence for escalation, remediation, and audits.
  • Classify incidents using the severity matrix and escalate when needed.
  • Provide authorized containment actions and report any disruption or failures.
  • Verify remediation steps like scans, quarantines, patches, or credential actions.

Skills

Attention to Detail
Analytical Thinking
Procedure Discipline
Escalation Judgment
Communication
Learning Agility
Integrity and Teamwork

Education

Bachelor's degree in IT / Cybersecurity / Computer Science
Related discipline or equivalent experience

Tools

Wazuh
Bitdefender GravityZone
SIEM
XDR
EDR
Ticketing tools

Job description

IT Security Analyst

Company : Staff4me Job Type : Full Time Cebu City, Philippines

Job Description - IT Security Analyst

Description

The Entry-Level IT Security Analyst provides first-line review and analysis of alerts generated by Wazuh, Bitdefender, and other approved security or IT management tools. The analyst validates alert context, reviews relevant logs, inspects affected computers or devices, gathers evidence, follows approved response procedures, and records findings in the designated ticketing or incident-management system.

This role works under the direction of the IT Security Manager or assigned senior security resource. The analyst is expected to use sound basic IT and security knowledge, remain within approved access and response boundaries, elevate uncertainty promptly, protect confidential information, and avoid making unsupported conclusions or high-risk production changes without authorization.

Requirements

  • Alert Queue Monitoring: Review assigned security alerts and notifications consistently, acknowledge them promptly, and prevent unresolved events from aging without ownership.
  • Initial Incident Analysis: Gather relevant facts from Wazuh, Bitdefender, operating-system logs, ticket history, asset records, and approved supporting tools before forming an assessment.
  • Affected Equipment Inspection: Perform structured remote or physical inspection of affected endpoints and related equipment using approved checklists, access methods, and safety precautions.
  • Evidence Collection and Preservation: Capture sufficient evidence to support escalation, investigation, remediation, audit, and possible root-cause review while protecting integrity and confidentiality.
  • Incident Classification and Escalation: Apply the approved severity matrix and elevate suspected malware, unauthorized access, data exposure, policy violations, repeated detections, or uncertain findings to the designated incident lead.
  • Authorized Containment Support: Carry out only approved containment actions and immediately report any business interruption, tool failure, unexpected behavior, or unsuccessful response action.
  • Remediation Verification: Confirm that scans, updates, quarantine actions, policy corrections, patches, credential actions, or other assigned remediation steps were completed and produced the expected result.
  • Tool Coverage and Health Review: Identify inactive agents, outdated components, missed check-ins, policy mismatches, logging gaps, duplicate assets, and other conditions that weaken security visibility or protection.
  • Ticketing and Reporting: Maintain accurate, factual, and timely incident records; avoid speculation and clearly distinguish confirmed facts, working assessments, pending validation, and required decisions.
  • Policy, Privacy, and Access Compliance: Use assigned privileges only for authorized work, follow least-privilege principles, protect credentials and confidential information, and comply with evidence-retention and acceptable-use requirements.
  • Process Improvement Support: Identify repeat alerts, confusing runbook steps, missing data, common false positives, and training needs, then submit improvement recommendations to the security team.

Qualifications:

  • Associate's or bachelor's degree in Information Technology, Cybersecurity, Computer Science, Information Systems, or a related discipline, or equivalent technical education, laboratory training, certification study, internship, or practical experience.
  • Zero to two years of experience in IT support, desktop support, system administration, networking, NOC, SOC, managed services, cybersecurity operations, or a related technical environment; qualified entry-level candidates are encouraged.
  • Basic IT knowledge is required, including Windows endpoints, computer hardware, applications, user accounts, permissions, file systems, services, remote support, software installation, patching, IP addressing, DNS, and common network concepts.
  • Basic security knowledge is required, including malware, phishing, endpoint protection, event logs, indicators of compromise, vulnerabilities, patching, least privilege, account security, data protection, and incident-response fundamentals.
  • Ability to read alerts and logs, follow written procedures, perform careful equipment inspection, document technical findings clearly, and elevate when evidence is incomplete or risk is uncertain.
  • Strong attention to detail, professional judgment, confidentiality, integrity, and willingness to work with sensitive company, employee, client, or system information under approved access controls.
  • Ability to communicate clearly with security, help desk, infrastructure, network, managed services, operations, and non-technical users while remaining factual, respectful, and calm during incidents.

Preferred Certifications and Experience

  • Exposure to Wazuh, Bitdefender GravityZone, or comparable SIEM, XDR, EDR, antivirus, endpoint-management, vulnerability, or ticketing tools.
  • CompTIA A+, Network+, Security+, Microsoft, Linux, Cisco, or comparable entry-level technical training or certification.
  • Basic experience with PowerShell, Windows command-line tools, Linux commands, event logs, browser troubleshooting, packet or connection information, hashes, and common security research methods.
  • Experience or internship in a BPO, MSP, NOC, SOC, service desk, contact center, multi-site company, or remote-work support environment.
Core Competencies
  • Attention to Detail: Notices inconsistencies in alerts, logs, timestamps, users, assets, processes, and documentation before reaching conclusions.
  • Analytical Thinking: Connects related facts, tests reasonable explanations, and distinguishes evidence from assumptions.
  • Procedure Discipline: Follows approved playbooks, access controls, checklists, and escalation paths consistently.
  • Escalation Judgment: Recognizes uncertainty, potential impact, and personal authority limits, then seeks help early.
  • Communication: Writes clear incident notes and provides concise factual updates appropriate to the audience.
  • Learning Agility: Builds practical skill through training, supervised investigations, review feedback, and repeated use of tools.
  • Integrity and Teamwork: Protects confidentiality, reports mistakes promptly, supports shared ownership, and treats users and colleagues professionally.

Original job IT Security Analyst posted on GrabJobs ©.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IT Security Analyst
IT Security Analyst

CallTek, Inc. • Cebu City

On-site
PHP 334,800 - 502,200
IT Security Analyst
IT Security Analyst

CallTek • Cebu City

On-site
PHP 200,000 - 360,000
Junior IT Security Analyst - Incident Alerts & Logs
Junior IT Security Analyst - Incident Alerts & Logs

Staff4Me • Compostela

On-site
PHP 360,000 - 600,000
Hiring! Lead IT Security Analyst
Hiring! Lead IT Security Analyst

Ascendion • Mandaluyong

Hybrid
PHP 1,800,000 - 3,000,000
Entry-Level IT Security Analyst: Incident Response
Entry-Level IT Security Analyst: Incident Response

CallTek, Inc. • Cebu City

On-site
Confidential
Junior IT Security Analyst | Alert Triage & Incident Review
Junior IT Security Analyst | Alert Triage & Incident Review

CallTek • Cebu City

On-site
PHP 200,000 - 360,000
IT Security Analyst
IT Security Analyst

Ibex Limited • Davao del Sur

On-site
PHP 480,000 - 840,000
IT Security Analyst
IT Security Analyst

IBEX Global Solutions (Philippines) Inc. • Davao del Sur

On-site
PHP 420,000 - 560,000
Security Analyst
Security Analyst

Booth & Partners • Philippines

On-site
PHP 500,000 - 640,000
IT Security Analyst
IT Security Analyst

Wings Global Service Center Corp • Makati

On-site
PHP 360,000 - 600,000