IT Security Analyst

SGL Manila (Shared Service Center), Inc.

Muntinlupa

On-site

PHP 600,000 - 900,000

Full time

4 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

SGL Manila (Shared Service Center), Inc. is seeking a skilled Security Operations Center (SOC) Analyst to monitor, detect, and respond to cyber threats across the environment.

You will perform threat hunting, develop analytic rules, and analyze CTI to strengthen detection and response capabilities. Ideal candidates have 3–5 years of SOC experience, hands‑on use of Microsoft Sentinel, and experience with CTI platforms like Recorded Future.

Qualifications

  • 3–5+ years in SOC operations, IR, threat hunting or CTI.
  • Hands‑on with SIEM platforms (e.g., Microsoft Sentinel).
  • Experience creating/tuning analytic rules, detections, and alerting.

Responsibilities

  • Perform day‑to‑day monitoring, investigation, triage, containment, and handling of security incidents and alerts.
  • Conduct proactive threat hunting to identify suspicious, anomalous, or malicious activity across the environment.
  • Create, tune, and maintain analytic/detection rules within SIEM and security monitoring platforms.
  • Analyze CTI feeds, IoCs, emerging threats, and attacker behaviors to improve detection and response.
  • Perform threat actor profiling, TTP analysis, and MITRE ATT&CK mapping.
  • Manage IoC lifecycle: validation, enrichment, tracking, tuning, operationalization.
  • Utilize CTI platforms (e.g., Recorded Future) for threat research and analysis.
  • Investigate phishing, malware, endpoint, identity, cloud, and network incidents.
  • Correlate logs/telemetry to identify attack patterns and gaps.
  • Present findings and security recommendations to technical teams and management.
  • Coordinate with internal teams during incident response and remediation.
  • Continuously improve SOC processes, use cases, and detection coverage.

Skills

SOC operations
Incident response
Threat hunting
CTI concepts
SIEM (Microsoft Sentinel)
Analytic rule creation
Threat intelligence platforms
MITRE ATT&CK mapping
KQL / SPL
Communication skills

Education

Bachelor's degree in CS/IT

Tools

Microsoft Sentinel
Recorded Future

Job description

General Overview of the Job:

We are looking for a skilled Security Operations Center (SOC) Analyst with experience in cyber threat intelligence (CTI), threat hunting, analytic rule creation, and incident response. This role will be responsible for day‑to‑day security operations, proactive threat detection, and threat intelligence analysis to help strengthen the organization’s overall security posture.

Job Duties and Responsibilities:
  • Perform day‑to‑day monitoring, investigation, triage, containment, and handling of security incidents and alerts.
  • Conduct proactive threat hunting activities to identify suspicious, anomalous, or malicious activities across the environment.
  • Create, tune, and maintain analytic/detection rules within SIEM and security monitoring platforms.
  • Analyze cyber threat intelligence feeds, indicators of compromise (IoCs), emerging threats, and attacker behaviors to improve detection and response capabilities.
  • Perform threat actor profiling, TTP (Tactics, Techniques, and Procedures) analysis, and mapping using frameworks such as MITRE ATT&CK.
  • Manage IoC lifecycle activities including validation, enrichment, tracking, tuning, and operationalization.
  • Utilize threat intelligence platforms such as Recorded Future or similar CTI solutions for threat research and analysis.
  • Investigate phishing, malware, endpoint, identity, cloud, and network‑related security incidents.
  • Correlate logs, telemetry, and intelligence data to identify attack patterns and security gaps.
  • Present findings, discuss risks, and provide security recommendations to technical teams, management, and stakeholders.
  • Coordinate with internal teams during incident response and remediation activities.
  • Continuously improve SOC processes, use cases, playbooks, and detection coverage.
Minimum Qualifications:
  • At least 3–5 years of experience in SOC operations, incident response, threat hunting, or cyber threat intelligence.
  • Hands‑on experience with SIEM platforms such as Microsoft Sentinel
  • Experience creating and tuning analytic rules, detections, correlation logic, and alerting mechanisms.
Strong knowledge of cyber threat intelligence concepts including:
  • Threat actor profiling
  • TTP analysis
  • IOC management
  • Threat landscape monitoring
  • MITRE ATT&CK mapping
  • Experience using CTI platforms such as: Recorded Future
  • Experience investigating phishing, malware, account compromise, insider threats, and advanced attack activities.
  • Knowledge of KQL, SPL, or similar query languages.
  • Strong analytical, investigative, documentation, and communication skills.
  • Ability to present technical findings clearly to stakeholders and management.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Security Analyst
IT Security Analyst

Ibex Limited • Davao del Sur

On-site
PHP 480,000 - 840,000
IT Security Analyst
IT Security Analyst

IBEX Global Solutions (Philippines) Inc. • Davao del Sur

On-site
PHP 420,000 - 560,000
Security Analyst – SOC
Security Analyst – SOC

Moder Solutions Inc. • Cebu City

On-site
PHP 420,000 - 720,000
Junior SOC Analyst
Junior SOC Analyst

Kinettix Inc. • Manila

On-site
SOC Analyst
SOC Analyst

Paynamics • Philippines

On-site
PHP 600,000 - 900,000
SOC Analyst Tier 1
SOC Analyst Tier 1

Centrics Networks • Cebu City

On-site
PHP 480,000 - 600,000
SOC Analyst/Incident Response Analyst
SOC Analyst/Incident Response Analyst

PM Consulting • Metro Manila

On-site
PHP 320,000 - 520,000
Security Analyst / Network Security Analyst
Security Analyst / Network Security Analyst

RippedBoxStation • Philippines

On-site
PHP 260,000 - 420,000
Associate Security Analyst
Associate Security Analyst

Hammerjack Pty Ltd • Dumaguete

On-site
PHP 420,000 - 620,000
Associate Security Analyst
Associate Security Analyst

itm8 PH • Dumaguete

On-site
PHP 420,000 - 680,000