IT Security Analyst

IBEX Global Solutions (Philippines) Inc.

Davao del Sur

On-site

PHP 420,000 - 560,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

IBEX Global Solutions (Philippines) Inc. is seeking a Security Operations Analyst to join the Security Operations team. The role emphasizes threat hunting, incident response, and security monitoring across multiple tools and dashboards.

You will analyze logs, triage incidents, and coordinate with IT and vendors to remediate vulnerabilities and strengthen security controls. Strong collaboration and documentation are essential.

Qualifications

  • Continuous security monitoring and triage in a Core SOC function.
  • Incident support, investigation, containment and escalation.
  • Knowledge of log analysis, event correlation, and IOC identification.

Responsibilities

  • Continuously monitor security dashboards, SIEM alerts, and other monitoring tools to identify threats and anomalies.
  • Participate in security incident response activities including triage, investigation, containment, and escalation.
  • Perform initial analysis and first-level response for security incidents and service/security-related queries.
  • Conduct log analysis to identify Indicators of Compromise and suspicious activity.
  • Support threat hunting across the environment to identify hidden threats.
  • Coordinate with IT infrastructure, application, and network teams to triage alerts and assist in resolution.
  • Work with external vendors to raise support cases and track progress.
  • Perform regular vulnerability assessments on endpoints and systems and coordinate remediation with IT teams.
  • Assist in maintaining security posture through continuous monitoring and feedback and support audit/compliance activities.
  • Review and manage security-related eService tickets daily, ensuring logging, categorization, prioritization, and SLA adherence.
  • Ensure timely assignment, tracking, and closure of security tickets within the eService system.
  • Validate completeness and accuracy of ticket documentation.
  • Monitor recurring security incidents and ticket trends to identify root causes and improvements.

Skills

SOC operations
Incident response
Threat hunting
Log analysis
MITRE ATT&CK
SIEM
EDR
Ticketing

Tools

SIEM
EDR
IDS/IPS

Job description

Overview

This role is part of the Security Operations team and requires strong understanding of threat hunting, incident response, and security monitoring. The analyst will collaborate with cross-functional IT teams to perform log analysis, monitor security dashboards, investigate incidents, and support vulnerability management and compliance activities.

Responsibilities
  • Continuously monitor security dashboards, SIEM alerts, and other security monitoring tools to identify potential threats and anomalies
  • Participate in security incident response activities, including triage, investigation, containment, and escalation
  • Perform initial analysis and first-level response for security incidents and service/security-related queries
  • Conduct log analysis and correlate security events to identify Indicators of Compromise (IOCs) and suspicious activity
  • Proactively support threat hunting activities across the environment to identify hidden or emerging threats
  • Coordinate with IT infrastructure, application, and network teams to triage alerts and support incident resolution
  • Work with external vendors to raise support cases, track progress, and follow up on issue resolution
  • Perform regular vulnerability assessments on endpoints and systems, and coordinate remediation efforts with IT support teams
  • Assist in maintaining and improving the organization’s overall security posture through continuous monitoring and feedback
  • Support audit and compliance requirements by providing evidence, reports, and operational security support as needed
  • Review and manage security-related eService tickets on a daily basis to ensure proper logging, categorization, prioritization, and SLA adherence
  • Ensure timely assignment, tracking, and closure of security tickets within the eService system in coordination with relevant stakeholders
  • Validate completeness and accuracy of eService ticket documentation, including investigation notes, evidence, and resolution details
  • Monitor recurring security incidents and eService ticket trends to identify root causes and improvement opportunities

Ensure proper escalation of security tickets that breach SLAs or require higher-level technical or managerial attention

  • Monitor the health, availability, and operational status of security tools including SIEM, EDR, Email Security, and log collection platforms, and report any service degradation or failures to relevant support teams
  • Validate and enrich Indicators of Compromise (IOCs) against internal logs, SIEM alerts, and external threat intelligence sources to improve detection accuracy
  • Perform initial malware triage and assist in collecting relevant forensic artifacts (e.g., file hashes, process details, endpoint logs) to support incident investigation activities
  • Assist in testing and validation of newly onboarded log sources, SIEM integrations, and security detection use cases to ensure proper event ingestion and alerting
  • Support vulnerability scanning activities and assist in tracking remediation progress and closure status in coordination with IT infrastructure and system owners.
Qualifications

Non-Negotiable:

  • Continuous Security Monitoring, Triage & First Response (Core SOC Function)
  • Incident Support & Escalation Coordination
  • Ticketing, Documentation & Operational Discipline
  • Experience with SIEM, EDR, IDS, IPS
  • Vulnerability Assessments coordination
Additional Skills
  • Strong understanding of SOC operations, incident response, and threat hunting
  • Experience with SIEM tools
  • Knowledge of log analysis, event correlation, and IOC identification
  • Familiarity with endpoint security (EDR/XDR) tools
  • Understanding of MITRE ATT&CK framework and common attack techniques
  • Basic knowledge of Windows, Linux, and networking concepts (TCP/IP, DNS, HTTP/S)
  • Ability to analyze security alerts and distinguish false positives
  • Strong analytical and troubleshooting skillsGood communication and documentation skills
  • Ability to coordinate with IT teams and vendors during incidents
  • Understanding of vulnerability management and remediation process
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Security Analyst
IT Security Analyst

Ibex Limited • Davao del Sur

On-site
PHP 480,000 - 840,000
IT Security Specialist
IT Security Specialist

Ibex Limited • Manila

On-site
PHP 600,000 - 900,000
IT Security Specialist
IT Security Specialist

ibex • Mandaluyong

On-site
PHP 420,000 - 640,000
Security Analyst / Network Security Analyst
Security Analyst / Network Security Analyst

RippedBoxStation • Philippines

On-site
PHP 260,000 - 420,000
IT Security Analyst
IT Security Analyst

CallTek • Cebu City

On-site
PHP 200,000 - 360,000
Security Operations Center (SOC) - Head
Security Operations Center (SOC) - Head

SMITS, Inc. - IT Company of San Miguel Corporation • Mandaluyong

On-site
PHP 900,000 - 1,600,000
IT Security Analyst
IT Security Analyst

CallTek, Inc. • Cebu City

On-site
Junior SOC Analyst
Junior SOC Analyst

Kinettix Inc. • Manila

On-site
Security Analyst
Security Analyst

Asticom Technology Inc • Philippines

Hybrid
PHP 600,000 - 900,000
Security Analyst / Network Security Analyst - DFT - 08052026
Security Analyst / Network Security Analyst - DFT - 08052026

Rippedboxstation • Metro Manila

On-site
PHP 240,000 - 360,000