Security Operations Analyst II

Vertiv

Mandaluyong

On-site

PHP 700,000 - 1,000,000

Full time

5 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Vertiv in the Philippines seeks a skilled SOC Analyst II to monitor, investigate, and respond to security incidents. You will act as escalation from Tier 1 and help improve detections, playbooks, and threat intelligence integration within a fast-paced security operations team.

The role collaborates with Incident Response, Threat Intelligence, and Security Engineering, mentors junior analysts, conducts deep-dive analysis, develops containment actions, and ensures robust incident response across

Qualifications

  • Strong analytical and problem-solving skills.
  • Excellent communication and documentation abilities.
  • Knowledge of incident response lifecycle (NIST/SANS).
  • Hands-on experience with log analysis, endpoint telemetry, and network traffic analysis.
  • Ability to analyze malware behavior and escalation paths.
  • Scripting experience (Python, PowerShell) for automation.
  • Familiarity with cloud security concepts and threat intel.

Responsibilities

  • Monitor security events and alerts from SIEM/SOAR and other tools.
  • Perform deep-dive analysis of alerts escalated by Tier 1 to determine scope and impact.
  • Conduct log correlation across SIEM, EDR, network, cloud, and identity platforms.
  • Investigate security incidents to determine root cause and containment actions.
  • Coordinate with stakeholders and escalate as necessary.
  • Develop and implement incident response procedures and playbooks.
  • Collaborate with IT and security teams to improve configurations and defenses.
  • Document incidents, findings, and recommendations for future mitigation.
  • Stay updated on threats and best practices; identify IOCs and ATT&CK mappings.
  • Assist in threat hunting and proactive security monitoring.

Job description

Job Description:

Job (Assignment) Title: SOC Analyst II
Function/Department: Security / Information Technology
Reports To: Manager Security Operations and Engineering
Position Summary
  • The SOC Analyst II is responsible for overseeing cybersecurity by monitoring, detecting, investigating, and responding to security incidents within an organization. And act as an escalation from Tier 1 analyst. This role focuses on incident analysis, threat validation, containment actions, and root cause identification, while supporting continuous improvement of SOC detections, playbooks, and threat intelligence integration.

The Level II analyst acts as a technical escalation point, mentoring junior analysts and collaborating closely with Incident Response, Threat Intelligence, and Security Engineering teams

Responsibilities
  • Monitor security events and alerts from SIEM (Security Information and Event Management) systems/ SOAR, 7AI Dashboard and other security tools.
  • Perform deep-dive analysis of security alerts escalated by Tier 1 to determine legitimacy, scope, and impact
  • Conduct log correlation and forensic analysis across SIEM, EDR, network, cloud, and identity platforms
  • Analyze and investigate security incidents to determine their impact and root cause.
  • Respond to security incidents, coordinate with stakeholders, and escalation as necessary.
  • Conduct risk analysis to identify security gaps.
  • Develop and implement incident response procedures and playbooks.
  • Collaborate with IT and security teams to improve security configurations and defenses.
  • Document security incidents, findings, and recommendations for future mitigation.
  • Stay updated on the latest cybersecurity threats, trends, and best practices.
  • Identify Indicators of Compromise (IOCs) and attack patterns using threat intelligence and MITRE ATT&CK
  • Execute containment and remediation actions (e.g., isolate hosts, block indicators, disable accounts)
  • Work with our Security Engineering group for any security application and tools within SOC for enhancement or fine tuning.
  • Assist in threat hunting and proactive security monitoring.
  • Participate in security awareness training and initiatives.
Qualifications
  • Candidate must be a degree holder in Computer Science, Computer Engineering, Information Technology or equivalent qualifications
  • 3-5 years of experience in cybersecurity, SOC operations, or a similar role.
  • Security certifications such as CompTIA Security+, CEH, GSEC, or equivalent.
  • Familiarity with SIEM tools, IDS/IPS, firewalls, and endpoint protection solutions.
  • Knowledge of cybersecurity frameworks such as NIST, MITRE ATT&CK, or ISO 27001.
  • Understanding of networking protocols, operating systems, and security best practices.
  • Strong analytical and problem-solving skills.
  • Strong understanding of incident response lifecycle (NIST / SANS)
  • Hands-on experience with log analysis, endpoint telemetry, and network traffic analysis
  • Ability to analyze malware behavior, lateral movement, persistence, and privilege escalation
  • Excellent communication and documentation abilities.
  • Experience with scripting languages (Python, PowerShell, etc.) for automation.
  • Knowledge of cloud security (AWS, Azure, Google Cloud).
  • Familiarity with forensic analysis and malware investigation techniques.
  • Rotational shifts may be required to support 24/7 security monitoring.
  • Ability to work in a fast-paced and high-pressure environment.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Operations Analyst II
Security Operations Analyst II

Vertiv Co • Mandaluyong

On-site
PHP 480,000 - 720,000
Security Operations Center II
Security Operations Center II

Siegen HR Solutions • Makati

On-site
PHP 420,000 - 780,000
SOC Analyst
SOC Analyst

Paynamics • Philippines

On-site
PHP 600,000 - 900,000
Security Operations Center III
Security Operations Center III

Siegen HR Solutions • Makati

On-site
PHP 600,000 - 900,000
Security Analyst – SOC
Security Analyst – SOC

Moder Solutions Inc. • Cebu City

On-site
PHP 420,000 - 720,000
Associate Security Analyst
Associate Security Analyst

itm8 PH • Dumaguete

On-site
PHP 420,000 - 680,000
Associate Security Analyst
Associate Security Analyst

itm8 Danmark • Lapu-Lapu

On-site
PHP 480,000 - 640,000
IT Security Analyst
IT Security Analyst

SGL Manila (Shared Service Center), Inc. • Muntinlupa

On-site
PHP 600,000 - 900,000
SOC Analyst/Incident Response Analyst
SOC Analyst/Incident Response Analyst

PM Consulting • Metro Manila

On-site
PHP 320,000 - 520,000
Junior SOC Analyst
Junior SOC Analyst

Kinettix Inc. • Manila

On-site
PHP 334,800 - 558,000