SOC Analyst

Commit

Metro Manila

On-site

PHP 350,000 - 550,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Commit is seeking a Tier 1 SOC Analyst to join our security team. You will handle initial triage, monitor alerts across cloud and endpoint environments, and help investigate incidents. This client-facing role requires fluent English and excellent verbal communication to clearly convey findings and escalations.

Candidates should have at least 1 year of hands-on SOC experience. Morning shifts align with East Asia working hours, with opportunities to contribute to playbooks and detection

Qualifications

  • 1+ years of experience in SOC / Security Operations.
  • Hands-on experience with EDR tools (CrowdStrike, SentinelOne, or Defender for Endpoint).
  • Familiarity with SIEM platforms (Splunk, Sentinel, QRadar).
  • Understanding of networking basics (IP, DNS, HTTP/S, ports).
  • Basic knowledge of Linux and Windows operating systems.
  • Ability to analyze logs and identify suspicious behavior.
  • Fluent English, both written and spoken.
  • Excellent verbal communication for client-facing situations.

Responsibilities

  • Monitor security alerts from SIEM, EDR, and cloud platforms.
  • Perform initial triage and classification of alerts as true/false positives.
  • Investigate suspicious activities across endpoints, identities, and cloud environments.
  • Escalate confirmed incidents to Tier 2 / Incident Response teams with context.
  • Analyze logs from CloudTrail, Azure logs, OS logs, and other sources.
  • Document findings clearly in tickets and investigation reports.
  • Follow playbooks and contribute to improving detection logic over time.
  • Communicate clearly with internal teams and clients about alerts and escalations.

Skills

SOC experience
English fluency
Client-facing communication
Log analysis
Attention to detail

Tools

CrowdStrike
SentinelOne
Microsoft Defender for Endpoint
Splunk
Microsoft Sentinel
QRadar

Job description

We’re looking for a Tier 1 SOC Analyst to join our team and handle initial triage, monitoring, and investigation of security alerts across cloud and endpoint environments.

This is a client-facing role requiring strong English, excellent verbal communication skills, and the ability to clearly communicate findings and escalations. The position is intended for candidates with at least 1 year of hands‑on SOC / Security Operations experience.

The role is based on morning shifts aligned with East Asia working hours.

Key Responsibilities
  • Monitor security alerts from SIEM, EDR, and cloud platforms
  • Perform initial triage and classification of alerts as true or false positives
  • Investigate suspicious activities across endpoints, identities, and cloud environments
  • Escalate confirmed incidents to Tier 2 / Incident Response teams with proper context
  • Analyze logs from multiple sources, including CloudTrail, Azure Activity Logs, OS logs, and other relevant security data sources
  • Document findings clearly in tickets and investigation reports
  • Follow existing playbooks and contribute to improving detection logic over time
  • Communicate clearly with internal teams and clients regarding alerts, findings, and escalations
Requirements
Required Qualifications
  • 1+ years of experience in SOC / Security Operations
  • Hands‑on experience with EDR tools such as CrowdStrike, SentinelOne, or Microsoft Defender for Endpoint
  • Familiarity with SIEM platforms such as Splunk, Microsoft Sentinel, QRadar, or similar
  • Understanding of networking basics, including IP, DNS, HTTP/S, ports, and related concepts
  • Basic knowledge of Linux and Windows operating systems
  • Ability to analyze logs and identify suspicious behavior
  • Fluent English, both written and spoken — mandatory
  • Excellent verbal communication skills, especially in client-facing situations
Preferred Qualifications
  • Experience with cloud environments such as AWS, Azure, or GCP
  • Knowledge of GCP / Google Cloud Platform — significant advantage
  • Ability to investigate cloud activity, including IAM, API calls, and resource changes
  • Understanding of identity-based attacks, such as token abuse and privilege escalation
  • Experience with scripting in Python or Bash
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Tier 1 SOC Analyst: Alert Triage & Monitoring
Tier 1 SOC Analyst: Alert Triage & Monitoring

Commit • Metro Manila

On-site
PHP 350,000 - 550,000
Security Operations Center Analyst
Security Operations Center Analyst

Centrics Networks • Cebu City

On-site
PHP 400,000 - 640,000
SOC Analyst/Incident Response Analyst
SOC Analyst/Incident Response Analyst

PM Consulting • Metro Manila

On-site
PHP 320,000 - 520,000
SOC Analyst – Splunk ES
SOC Analyst – Splunk ES

Outsourcea Services Incorporated • Pasay

On-site
PHP 600,000 - 900,000
SOC Analyst
SOC Analyst

Continent 8 Technologies • Makati

On-site
PHP 900,000 - 1,300,000
Senior Security Engineer – SOC
Senior Security Engineer – SOC

42 Gears Mobility Systems • Hinoba-an

On-site
PHP 995,000 - 1,592,000
SOC Analyst
SOC Analyst

Paynamics • Philippines

On-site
PHP 600,000 - 900,000
SOC Analyst
SOC Analyst

Continent 8 Technologies • Manila, Hinoba-an

On-site
PHP 600,000 - 850,000
Cybersecurity Engineer
Cybersecurity Engineer

Hrtx • Philippines

Hybrid
PHP 1,000,000 - 1,800,000
Hybrid work setup
IT Security Analyst
IT Security Analyst

Ibex Limited • Davao del Sur

On-site
PHP 480,000 - 840,000