Senior Security Engineer — Detection, Response & Identity

Koine Ventures Inc.

Manila

On-site

PHP 1,200,000 - 1,800,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Koine Ventures Inc. is seeking a Staff Security Engineer in Manila to lead detection, response, and hardening across identity, endpoint, network, and email. This senior IC role shapes technical direction, tunes SOC tooling, and mentors junior analysts while supporting client and auditor compliance programs.

You will drive threat hunting, develop runbooks, and ensure robust security postures using Vanta/Drata, EDR, and policy frameworks, delivering strong client outcomes.

Qualifications

  • Strong hands-on experience in security operations, detection engineering, or incident response.
  • Deep identity security experience: Okta, Beyond Identity, Entra ID, Conditional Access, token and session attack patterns.
  • Hands-on experience with enterprise EDR (CrowdStrike or equivalent) and endpoint investigation.
  • Experience with application control and endpoint hardening (ThreatLocker, Senteon, or equivalent).
  • Working knowledge of SASE/SD-WAN and network security tooling (Cato Networks, FortiGate).
  • Multi-platform device management experience (NinjaOne, Addigy, Intune, Apple Business Manager).
  • Experience with GRC and compliance platforms (Vanta, Drata, or equivalent).
  • Incident response experience across identity, endpoint, and network.
  • Vulnerability management and hardening experience.
  • Working knowledge of frameworks such as NIST CSF and CIS Controls.
  • Scripting and automation experience (PowerShell preferred).
  • Excellent communication skills, including writing clear findings for non-technical audiences.
  • A deep desire to deliver an exceptional client experience.

Responsibilities

  • Build, tune, and maintain detections across the security stack to catch real threats and reduce noise.
  • Own the configuration and health of SOC tooling spanning EDR, application control, endpoint hardening, identity, and network security.
  • Develop and maintain detection logic, alerting rules, and automated response actions.
  • Lead threat hunting across client environments to find what automated detections miss.
  • Serve as the senior technical lead during security incidents and investigations.
  • Lead containment, eradication, and recovery for confirmed compromises.
  • Conduct root-cause analysis and produce clear post-incident findings.
  • Translate incident lessons into improved detections and procedures.
  • Lead the vulnerability management program: scanning, prioritization, and remediation tracking.
  • Assess client environments against recognized frameworks (NIST, CIS) and identify gaps.
  • Leverage GRC tooling (Vanta, Drata) to track posture, manage evidence, and support compliance programs.
  • Recommend and help implement security improvements that measurably reduce risk.
  • Develop and maintain SOC runbooks and investigation procedures.
  • Document detections, response steps, and tooling configuration in the team's documentation systems.
  • Ensure all investigations and actions are accurately tracked in Pylon.
  • Build repeatable, teachable processes so the team responds consistently.
  • Support compliance and evidence work using Vanta and Drata (frameworks, attestations, cyber insurance requirements).
  • Contribute security data and narrative to client reporting and business reviews.
  • Help translate technical security posture into business-level risk language.
  • Identify and proactively communicate security risks and gaps.
  • Escalate significant findings and incidents to the CISO / vCISO.
  • Ensure alignment between security work and client risk priorities.
  • Mentor and coach junior SOC analysts on investigation and detection skills.
  • Set the technical standard for quality and rigor on the security team.
  • Follow and contribute to SOPs.
  • Contribute to innovation and continuous improvement initiatives.

Skills

Security operations
Detection engineering
Incident response
Identity security
EDR
Endpoint hardening
Network security
Scripting
Communication

Tools

CrowdStrike
ThreatLocker
Senteon
NinjaOne
Addigy
Intune
Apple Business Manager
Vanta
Drata

Job description

Koine Ventures Inc. is seeking a Staff Security Engineer in Manila to lead detection, response, and hardening across identity, endpoint, network, and email. This senior IC role shapes technical direction, tunes SOC tooling, and mentors junior analysts while supporting client and auditor compliance programs.

You will drive threat hunting, develop runbooks, and ensure robust security postures using Vanta/Drata, EDR, and policy frameworks, delivering strong client outcomes.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Incident Lead & Threat Detection Architect
Senior Security Incident Lead & Threat Detection Architect

Asticom Technology Inc • Taguig

Hybrid
PHP 800,000 - 1,400,000
Staff Security Engineer
Staff Security Engineer

Koine Ventures Inc. • Manila

On-site
PHP 1,200,000 - 1,800,000
Senior SOC Manager — Threat Detection & Response
Senior SOC Manager — Threat Detection & Response

Advanced Energy • Quezon City

On-site
PHP 1,200,000 - 1,800,000
Senior Security Operations Leader
Senior Security Operations Leader

Advanced Energy • Philippines

On-site
PHP 900,000 - 1,500,000
Security Operations Analyst – Threat & Incident Response
Security Operations Analyst – Threat & Incident Response

ibex • Mandaluyong

On-site
PHP 420,000 - 640,000
Senior SecOps Engineer: Threat Detection & IR (Onsite)
Senior SecOps Engineer: Threat Detection & IR (Onsite)

RecruitNest Consulting • Taguig

On-site
PHP 1,200,000 - 1,800,000
Remote Security Analyst: Threat Detection & Response
Remote Security Analyst: Threat Detection & Response

AIPI Acquire Intelligence Philippines Inc. • Pasig

On-site
PHP 480,000 - 780,000
Security Managed Services Practitioner | Incident Response | SIEM | Manila
Security Managed Services Practitioner | Incident Response | SIEM | Manila

Gratitude Philippines • Manila

On-site
PHP 900,000 - 1,300,000
Senior Security Analyst - Cloud & Incident Response
Senior Security Analyst - Cloud & Incident Response

Staffstream • Taguig

Hybrid
PHP 900,000 - 1,200,000
HMO with 1 free dependent
Life Insurance
Paid Leave Credits
+2
Junior SOC Analyst: Start in Threat Detection & Response
Junior SOC Analyst: Start in Threat Detection & Response

Kinettix Inc. • Manila

On-site