SOC - 3rd shift

Ayannah

Pasig

On-site

PHP 900,000 - 1,300,000

Full time

16 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Ayannah is seeking a Senior SOC Analyst to join our cybersecurity team in the Philippines. The role requires hands-on experience across enterprise security operations, threat detection, and incident response with a strong emphasis on SIEM and EDR tools.

The ideal candidate will demonstrate deep knowledge of security frameworks, regulatory standards, and the ability to translate complex risks into actionable guidance for technical and non-technical stakeholders.

Qualifications

  • 7+ years of proven experience in a SOC Analyst role.
  • 10+ years working in the Cybersecurity Domain, securing enterprise-level networks.
  • Industry certifications such as CYSA+, CEH, OWASP or GIAC certifications (preferred).
  • Bachelor's degree in Cybersecurity or related field (Master's preferred).
  • Advanced proficiency in security tools, including SIEM (Splunk or Devo), EDR (Carbon Black or CrowdStrike), IDS/IPS, and threat intelligence platforms.
  • Excellent analytical, problem-solving, and communication skills.
  • Advanced experience with SIEM administration, including watch list creation, alerting tuning, threat feeds, use case development, and case/incident management.
  • Proven experience working with leading EDR solutions, CAS, IDS/IPS, network- and host-based firewalls, data leakage protection (DLP), DAM (Database activity monitoring).
  • In-depth, hands-on experience with at least two of the following technologies: Unix administration, Windows Server administration, Active Directory, Windows Workstation, Routers /Switches management, Firewall Management, SANS/NAS, Web servers, IAM/AAA, IDS/HDS, System vulnerability scanning tools, Application/Database vulnerability scanning tools.

Responsibilities

  • Ability to analyze attack activities such as network probing, DDOS, malware activity, and abnormal behavior, coordinating remediation actions.
  • Understanding MITRE ATT&CK Framework and security forensics.
  • Experience with security industry standards and best practices; interpreting and implementing them in a corporate environment.
  • Strong knowledge of cybersecurity frameworks, regulations, and compliance standards (e.g., NIST, ISO 27001, FERPA).
  • Communicate security topics, policies, and risk concepts to technical and non-technical audiences.

Skills

SOC Analyst
Cybersecurity
SIEM Administration
EDR & IDS/IPS
Threat Intelligence
MITRE ATT&CK
Network Security
Incident Response
Communication Skills
Security Compliance

Education

Bachelor's degree in Cybersecurity or related field
Master's degree preferred

Tools

Splunk
Devo
Carbon Black
CrowdStrike
IDS/IPS

Job description

  • 7+ years of proven experience in a SOC Analyst role
  • 10+ years working in the Cybersecurity Domain, securing enterprise-level networks
  • Industry certifications such as CYSA+, CEH, OWASP or GIAC certifications (preferred)
  • Bachelor's degree in Cybersecurity or related field (Master's preferred)
  • Advanced proficiency in security tools, including SIEM (Splunk or Devo), EDR (Carbon Black or CrowdStrike), IDS/IPS, and threat intelligence platforms.
  • Excellent analytical, problem-solving, and communication skills
  • Advanced experience with SIEM administration, including watch list creation, alerting tuning, threat feeds, use case development, and case/incident management.
  • Proven experience working with leading EDR solutions, CAS, IDS/IPS, network- and host-based firewalls, data leakage protection (DLP), DAM (Database activity monitoring)
  • In-depth, hands-on experience with at least two of the following technologies: Unix administration, Windows Server administration, Active Directory, Windows Workstation, Routers /Switches management, Firewall Management, SANS/NAS, Web servers, IAM/AAA, IDS/HDS, System vulnerability scanning tools, Application/Database vulnerability scanning tools.
  • Ability to analyze possible attack activities such as network probing/ scanning, DDOS, malicious code activity, and possible abnormal activities, such as worms, Trojans, viruses, etc., and coordinating remediation actions as necessary.
  • Understanding and working knowledge of MITRE ATT&CK Framework and security forensics.
  • Experience with security industry standards and best practices. Proven experience with the interpretation and implementation of those standards in a corporate environment.
  • Strong knowledge of cybersecurity frameworks, regulations, and compliance standards (e.g., NIST, ISO 27001, FERPA)
  • Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate strategic information security topics, policies, and standards, as well as risk-related concepts, to technical and non-technical audiences at various hierarchical levels.
  • Understanding of network devices such as routers and switches. TCP/IP knowledge
  • Understanding of common network services (web, mail, FTP, etc.), network vulnerabilities, and network attack patterns.
  • Ability to work effectively under pressure and in a fast-paced environment.
Qualifications
  • 7+ years of proven experience in a SOC Analyst role
  • 10+ years working in the Cybersecurity Domain, securing enterprise-level networks
  • Industry certifications such as CYSA+, CEH, OWASP or GIAC certifications (preferred)
  • Bachelor's degree in Cybersecurity or related field (Master's preferred)
  • Advanced proficiency in security tools, including SIEM (Splunk or Devo), EDR (Carbon Black or CrowdStrike), IDS/IPS, and threat intelligence platforms.
  • Excellent analytical, problem-solving, and communication skills
  • Advanced experience with SIEM administration, including watch list creation, alerting tuning, threat feeds, use case development, and case/incident management.
  • Proven experience working with leading EDR solutions, CAS, IDS/IPS, network-and host-based firewalls, data leakage protection (DLP), DAM (Database activity monitoring)
  • In-depth, hands-on experience with at least two of the following technologies: Unix administration, Windows Server administration, Active Directory, Windows Workstation, Routers /Switches management, Firewall Management, SANS/NAS, Web servers, IAM/AAA, IDS/HDS, System vulnerability scanning tools, Application/Database vulnerability scanning tools.
  • Ability to analyze possible attack activities such as network probing/ scanning, DDOS, malicious code activity, and possible abnormal activities, such as worms, Trojans, viruses, etc., and coordinating remediation actions as necessary.
  • Understanding and working knowledge of MITRE ATT&CK Framework and security forensics.
  • Experience with security industry standards and best practices. Proven experience with the interpretation and implementation of those standards in a corporate environment.
  • Strong knowledge of cybersecurity frameworks, regulations, and compliance standards (e.g., NIST, ISO 27001, FERPA)
  • Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate strategic information security topics, policies, and standards, as well as risk-related concepts, to technical and non-technical audiences at various hierarchical levels.
  • Understanding of network devices such as routers and switches. TCP/IP knowledge
  • Understanding of common network services (web, mail, FTP, etc.), network vulnerabilities, and network attack patterns.
  • Ability to work effectively under pressure and in a fast-paced environment.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Operations Center (SOC) - Head
Security Operations Center (SOC) - Head

SMITS, Inc. - IT Company of San Miguel Corporation • Mandaluyong

On-site
PHP 900,000 - 1,600,000
Security Operations Analyst II
Security Operations Analyst II

Vertiv Co • Mandaluyong

On-site
PHP 480,000 - 720,000
Security Analyst / Network Security Analyst
Security Analyst / Network Security Analyst

RippedBoxStation • Philippines

On-site
PHP 260,000 - 420,000
Specialist (Cybersecurity)
Specialist (Cybersecurity)

NTUC FIRST CAMPUS LIMITED • Santo Niño 1st

On-site
PHP 1,200,000 - 1,800,000
GSOC L3 - Manila
GSOC L3 - Manila

Willis Towers Watson • Pateros

On-site
PHP 800,000 - 1,200,000
Security Analyst / Network Security Analyst - DFT - 08052026
Security Analyst / Network Security Analyst - DFT - 08052026

Rippedboxstation • Metro Manila

On-site
PHP 240,000 - 360,000
Cyber Defence - Global Security Operations Centre (GSOC) Level 2 Analyst
Cyber Defence - Global Security Operations Centre (GSOC) Level 2 Analyst

WTW • Taguig

On-site
PHP 1,200,000 - 1,600,000
Security Operations and Incident Manager
Security Operations and Incident Manager

Private Advertiser • Mandaluyong

On-site
PHP 3,000,000 - 5,000,000
Security Analyst – SOC
Security Analyst – SOC

Moder Solutions Inc. • Cebu City

On-site
PHP 420,000 - 720,000
Junior SOC Analyst
Junior SOC Analyst

Kinettix Inc. • Manila

On-site
PHP 334,800 - 558,000