Security Analyst, InfoSec

Kroll

Manila

On-site

PHP 669,600 - 1,004,400

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Kroll is seeking a Security Operations Analyst to monitor security events in a 24/7 environment. Candidates should possess a Bachelor's degree in Computer Science or a related field and at least four years of experience in Cyber Security Operations. Responsibilities include using SIEM technologies for event monitoring, incident response, and leveraging various security tools.

The role is crucial for the security of our clients, requiring a detailed understanding of network services and vulnerabilities. Desired certifications include CompTIA Security+ and Certified Ethical Hacker.

Qualifications

  • Minimum 4 years of monitoring experience in Cyber Security Operations Center.
  • Understanding of basic network services, TCP/IP, IP Routing, attacks, exploits, and vulnerabilities.
  • Experience with VPN, SSL, and other encryption methodologies.

Responsibilities

  • Use SIEM technologies to monitor security events on a 24/7 basis.
  • Manage inbound requests and provide security notifications via multiple methods.
  • Perform analysis on logs from network devices such as firewalls and intrusion detection.

Skills

Monitoring security events
Incident response
Packet analysis
Troubleshooting Microsoft products

Education

Bachelor's degree in Computer Science or related field

Tools

SIEM
IDS/IPS
Web application firewalls
Antivirus

Job description

Our professionals balance analytical skills, deep market insight and independence to deliver solid, defensible analysis and practical advice to our clients. As an organization, we think globally. We create transparency in an opaque world, and we encourage our people to do the same. That means when you take your place on our team, you’ll discover a supportive and collaborative work environment that empowers you to excel. If you’re ready to share your perspective with the world, then you can make a real impact here. This is the Kroll’s difference.

Kroll’s Security Operation’s Center helps firm manage cybersecurity risks at every stage of preparedness by identifying vulnerabilities and readiness through a comprehensive gap analysis and risk assessment; implementing best practices to avoid compromise; and recovering from cybersecurity attacks.

At Kroll, your work will help protect, restore and maximize value for our clients. Join us and together we’ll maximize the value of your career.

Security Operations Analyst

We are seeking candidates for a 24/7 security operations team. Candidate will be responsible for monitoring security events and alerts for potential malicious behaviors and evaluating the type and severity of security events by making use of packet analyses, and an in-depth understanding of exploits and vulnerabilities and providing incident response and escalation to the incident response team.

RESPONSIBILITIES

Use SIEM technologies and other native tools to perform the monitoring of security events on a 24x7 basis.

Manage inbound requests via the ticketing system, as well as via telephone calls, and provide security notifications via three methods: logging incident tickets, sending emails, and placing telephone calls.

Perform analysis on logs produced by network devices utilized within the infrastructure such as firewalls, content filtering, syslog from various sources/devices, assorted Intrusion Detection capabilities, substantiating vulnerability scanner results, directory services, DHCP logs, Secure Email Gateway logs, and approved applications.

Use the SIEM to monitor security events and perform analysis, while integrating the results and information needed to proactively protect the enterprise.

Provide security events analysis and support to include identifying potential threat, anomalies, and infections, documenting findings, providing recommendations within the incident management system, performing triage of incoming security events, performing preliminary and secondary analysis of those events, and validating the events.

Provide cybersecurity root‑cause analysis in support of any tickets for which it fails to meet the Acceptable Quality Levels. This root‑cause analysis will include documenting recommendations for corrective action.

REQUIREMENTS

Bachelor’s degree or equivalent in Computer Science, Systems Engineering, Cybersecurity, Information Technology, or related area.

Minimum 4 years of monitoring experience in Cyber Security Operations Center.

Excellent technical experience and expertise in troubleshooting Microsoft products and Operating system (desirable – knowledge of MAC OS & Linux).

Understanding of basic network services, TCP/IP, IP Routing, attacks, exploits and vulnerabilities.

Experience with VPN, SSL, other encryption methodology / technology a plus.

Working knowledge of policies, procedures, and protocols of Security Operations Center.

Experience using numerous security tools and technologies to include some of the following technologies: SIEM, IDS/IPS, Web application firewalls, Antivirus, Proxy and Url filtering, DLP, Vulnerability scanner.

DESIRED CERTIFICATIONS

CompTIA Security+

Certified Ethical Hacker (CEH)

GIAC Certified Incident Handler (GCIH)

Certified SOC Analyst (CSA)

Microsoft Certified: Security Operations Analyst Associate

In order to be considered for a position at Kroll, you must formally apply via careers.kroll.com.

Kroll is committed to equal opportunity and diversity, and recruits people based on merit.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Analyst - 24/7 SIEM & Incident Response
Security Operations Analyst - 24/7 SIEM & Incident Response

Kroll • Manila

On-site
Associate Principal, Response Operations, Cyber Risk
Associate Principal, Response Operations, Cyber Risk

Kroll • Manila

On-site
PHP 1,100,000 - 1,300,000
Senior Associate, Security Engineer
Senior Associate, Security Engineer

Kroll • Manila, Hinoba-an

On-site
PHP 1,100,000 - 1,700,000
Senior Associate, Security Engineer
Senior Associate, Security Engineer

Kroll Global Solutions Inc. • Manila

On-site
PHP 700,000 - 1,100,000
Associate, Cyber Risk
Associate, Cyber Risk

Kroll • Manila

On-site
PHP 240,000 - 360,000
Cybersecurity Operations Analyst
Cybersecurity Operations Analyst

UL Solutions • Makati

On-site
PHP 600,000 - 900,000
SOC Analyst
SOC Analyst

Astute Cybersecurity • Cebu City

On-site
PHP 360,000 - 600,000
Security Analyst / Network Security Analyst
Security Analyst / Network Security Analyst

RippedBoxStation • Philippines

On-site
PHP 260,000 - 420,000
IT Security Analyst
IT Security Analyst

Ibex Limited • Davao del Sur

On-site
PHP 480,000 - 840,000
IT Security Analyst (Junior to Intermediate) - Leading Multinational Company
IT Security Analyst (Junior to Intermediate) - Leading Multinational Company

PFCC Group • Manila

On-site
PHP 500,000 - 900,000