Security Operations Analyst – Threat & Incident Response

ibex

Mandaluyong

On-site

PHP 420,000 - 640,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

ibex is seeking a skilled SOC security practitioner to join our IT Security team in the Philippines. You will monitor security dashboards, analyze threats, and drive incident response while ensuring compliance with core standards.

The role involves archiving logs, coordinating with IT to contain incidents, and supporting vulnerability management across AWS/Azure/GCP environments where applicable. A strong focus on MITRE ATT&CK and SIEM/EDR tuning is required.

Qualifications

  • Non-Negotiable: Security Monitoring & Incident Handling in Core SOC operations.
  • Vulnerability Management & Security Hardening support.
  • Detection Engineering & Threat Intelligence (SIEM / EDR / MITRE/IDS).
  • Automation of incident escalation and RCA of recurring issues.
  • Actively guide and escalation contact for Level-1 SOC Analysts.

Responsibilities

  • Oversee daily monitoring of security dashboards, alerts, and events.
  • Review threats, risks, and indicators of compromise (IOCs).
  • Coordinate with IT for investigation, containment, and resolution.
  • Perform log review to support investigations and visibility.
  • Manage security incidents from identification to closure with proper docs.
  • Ensure timely categorization, prioritization, and closure in eService tickets.
  • Review eService tickets daily for SLA compliance and closure quality.
  • Validate incident resolution and supporting documentation before closure.
  • Support vulnerability scanning and track remediation with IT teams.
  • Follow up on vulnerability closure based on risk severity.
  • Identify security gaps and enforce baselines and configurations.
  • Support ISO 27001, SOC 2, PCI-DSS, CIS Controls requirements.
  • Assist in audit preparation through evidence collection and control validation.
  • Weekly review of wireless networks to detect rogue APs.
  • Periodic review of endpoint security alerts and EDR findings.
  • Quarterly review of firewall, VPN, and proxy logs for suspicious activity.
  • Monthly privileged access review and inactive account identification.
  • Assist in monthly validation of system security configurations against baselines.
  • Monitor patch compliance and coordinate with system owners.
  • Participate in threat hunting using MITRE ATT&CK.
  • Support development and tuning of SIEM use cases and alerts.
  • Support integration of threat intelligence feeds to enhance detection.

Skills

Security Monitoring
Incident Handling
Vulnerability Management
Threat Intelligence
SIEM / EDR
MITRE ATT&CK
Automation
L1 SOC Escalation
Cloud Security

Education

Bachelor's degree in CS/IT
Security certifications (e.g., CISSP/SEC+)

Tools

SIEM Tools
EDR Tools
Firewall/VPN

Job description

ibex is seeking a skilled SOC security practitioner to join our IT Security team in the Philippines. You will monitor security dashboards, analyze threats, and drive incident response while ensuring compliance with core standards.

The role involves archiving logs, coordinating with IT to contain incidents, and supporting vulnerability management across AWS/Azure/GCP environments where applicable. A strong focus on MITRE ATT&CK and SIEM/EDR tuning is required.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Threat Hunter & Incident Response Analyst
SOC Threat Hunter & Incident Response Analyst

Ibex Limited • Davao del Sur

On-site
PHP 480,000 - 840,000
Security Operations Analyst: Threat Detection & Response
Security Operations Analyst: Threat Detection & Response

Ibex Limited • Manila

On-site
PHP 600,000 - 900,000
Security Analyst — Threat Detection & Incident Response
Security Analyst — Threat Detection & Incident Response

Acquire Intelligence • Pasig

On-site
PHP 480,000 - 720,000
Remote Security Analyst: Threat Detection & Response
Remote Security Analyst: Threat Detection & Response

AIPI Acquire Intelligence Philippines Inc. • Pasig

On-site
PHP 480,000 - 780,000
Security Operations Analyst — Incident Response & Detection
Security Operations Analyst — Incident Response & Detection

Globe Telecom, Inc. • Philippines

On-site
PHP 600,000 - 1,000,000
Security Analyst: SIEM & Threat Detection Specialist
Security Analyst: SIEM & Threat Detection Specialist

RippedBoxStation • Philippines

On-site
PHP 260,000 - 420,000
Cyber Defense Analyst: Threat Hunter & Incident Response
Cyber Defense Analyst: Threat Hunter & Incident Response

Acquire Intelligence • Pasig

On-site
PHP 600,000 - 900,000
24x7 SOC Analyst: Threat Detection & Response
24x7 SOC Analyst: Threat Detection & Response

Astute Cybersecurity • Cebu City

On-site
PHP 360,000 - 600,000
Senior Threat Response Analyst: Incident & Forensics
Senior Threat Response Analyst: Incident & Forensics

IBM • Taguig

On-site
PHP 600,000 - 1,200,000
Junior SOC Analyst: Start in Threat Detection & Response
Junior SOC Analyst: Start in Threat Detection & Response

Kinettix Inc. • Manila

On-site