IT Security Analyst

ibex

Philippines

On-site

PHP 600,000 - 900,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

ibex is seeking a Security Operations Analyst to monitor threats, investigate incidents, and support vulnerability management. You will work with cross-functional IT teams to analyze logs, triage alerts, and help strengthen security controls across endpoints and networks.

The role emphasizes incident response, documentation, and collaboration with vendors to resolve issues while maintaining SLAs and contributing to the organization’s security posture.

Qualifications

  • Must have experience in continuous security monitoring, triage, and first response.
  • Proficient in incident support, escalation coordination, and ticketing.
  • Hands-on with SIEM, EDR, IDS, and IPS tools for threat detection.
  • Ability to coordinate vulnerability assessments and remediation efforts.

Responsibilities

  • Continuously monitor security dashboards, SIEM alerts, and other tools to identify threats.
  • Participate in security incident response: triage, investigate, contain, escalate.
  • Perform initial analysis and first-level response for incidents and service queries.
  • Conduct log analysis to identify IOC and suspicious activity.
  • Support threat hunting activities to identify emerging threats.
  • Coordinate with IT and vendors to triage alerts and resolve incidents.
  • Assist in vulnerability assessments and remediation efforts with IT teams.
  • Maintain security posture through monitoring and feedback for audits.

Skills

Continuous Security Monitoring
Triage & First Response
Incident Support & Escalation
Ticketing & Documentation
SIEM Experience
EDR Experience
IDS/IPS Experience
Vulnerability Coordination

Tools

SIEM
EDR
IDS
IPS

Job description

Overview

This role is part of the Security Operations team and requires strong understanding of threat hunting, incident response, and security monitoring. The analyst will collaborate with cross-functional IT teams to perform log analysis, monitor security dashboards, investigate incidents, and support vulnerability management and compliance activities.

Responsibilities
  • Continuously monitor security dashboards, SIEM alerts, and other security monitoring tools to identify potential threats and anomalies
  • Participate in security incident response activities, including triage, investigation, containment, and escalation
  • Perform initial analysis and first-level response for security incidents and service/security-related queries
  • Conduct log analysis and correlate security events to identify Indicators of Compromise (IOCs) and suspicious activity
  • Proactively support threat hunting activities across the environment to identify hidden or emerging threats
  • Coordinate with IT infrastructure, application, and network teams to triage alerts and support incident resolution
  • Work with external vendors to raise support cases, track progress, and follow up on issue resolution
  • Perform regular vulnerability assessments on endpoints and systems, and coordinate remediation efforts with IT support teams
  • Assist in maintaining and improving the organization’s overall security posture through continuous monitoring and feedback
  • Support audit and compliance requirements by providing evidence, reports, and operational security support as needed
  • Review and manage security-related eService tickets on a daily basis to ensure proper logging, categorization, prioritization, and SLA adherence
  • Ensure timely assignment, tracking, and closure of security tickets within the eService system in coordination with relevant stakeholders
  • Validate completeness and accuracy of eService ticket documentation, including investigation notes, evidence, and resolution details
  • Monitor recurring security incidents and eService ticket trends to identify root causes and improvement opportunities

Ensure proper escalation of security tickets that breach SLAs or require higher-level technical or managerial attention

  • Monitor the health, availability, and operational status of security tools including SIEM, EDR, Email Security, and log collection platforms, and report any service degradation or failures to relevant support teams
  • Validate and enrich Indicators of Compromise (IOCs) against internal logs, SIEM alerts, and external threat intelligence sources to improve detection accuracy
  • Perform initial malware triage and assist in collecting relevant forensic artifacts (e.g., file hashes, process details, endpoint logs) to support incident investigation activities
  • Assist in testing and validation of newly onboarded log sources, SIEM integrations, and security detection use cases to ensure proper event ingestion and alerting
  • Support vulnerability scanning activities and assist in tracking remediation progress and closure status in coordination with IT infrastructure and system owners.
Qualifications

Non-Negotiable:

  • Continuous Security Monitoring, Triage & First Response (Core SOC Function)
  • Incident Support & Escalation Coordination
  • Ticketing, Documentation & Operational Discipline
  • Experience with SIEM, EDR, IDS, IPS
  • Vulnerability Assessments coordination

Additional Skills

  • Strong understanding of SOC operations, incident response, and threat hunting
  • Experience with SIEM tools
  • Knowledge of log analysis, event correlation, and IOC identification
  • Familiarity with endpoint security (EDR/XDR) tools
  • Understanding of MITRE ATT&CK framework and common attack techniques
  • Basic knowledge of Windows, Linux, and networking concepts (TCP/IP, DNS, HTTP/S)
  • Ability to analyze security alerts and distinguish false positives
  • Strong analytical and troubleshooting skills
  • Good communication and documentation skills
  • Ability to coordinate with IT teams and vendors during incidents
  • Understanding of vulnerability management and remediation process
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Security Analyst
IT Security Analyst

Ibex Limited • Davao del Sur

On-site
PHP 480,000 - 840,000
IT Security Specialist
IT Security Specialist

ibex • Philippines

On-site
PHP 350,000 - 550,000
IT Security Specialist
IT Security Specialist

Ibex Limited • Manila

On-site
PHP 600,000 - 900,000
IT Security Specialist
IT Security Specialist

IBEX Global Solutions (Philippines) Inc. • Mandaluyong

On-site
PHP 450,000 - 750,000
IT Security Specialist
IT Security Specialist

ibex • Mandaluyong

On-site
PHP 420,000 - 640,000
Security Analyst / Network Security Analyst
Security Analyst / Network Security Analyst

RippedBoxStation • Philippines

On-site
PHP 260,000 - 420,000
IT Security Analyst
IT Security Analyst

CallTek • Cebu City

On-site
PHP 200,000 - 360,000
IT Security Analyst
IT Security Analyst

CallTek, Inc. • Cebu City

On-site
Security Operations Center (SOC) - Head
Security Operations Center (SOC) - Head

SMITS, Inc. - IT Company of San Miguel Corporation • Mandaluyong

On-site
PHP 900,000 - 1,600,000
IT Security Analyst
IT Security Analyst

Staff4Me • Cebu City

On-site
PHP 200,000 - 260,000