The Security Operation Analyst is responsible for monitoring, reporting and analyzing the organization’s global security posture. They must be able to analyze all available information including logs, network traffic and all other data emanating from the security systems in place to determine the existence of actual anomalies, security breaches and all other incidents from false positive ones.
What does a typical day look like?
- Continuously monitoring the alert queue, analyzing available logs, and contexting necessary to initiate Incident Response work.
- Coordinating triage with local stakeholders on security alerts
- Analyzing and determining actionable items base on all available logs, packet captures and all other data siting through them and accurately distinguishing actionable form all other static and weeding out false positive and irrelevant information.
- Handling Security offense tickets and ensure compliance with SLA by communicating, escalating and following up with the internal team, stakeholders and ensure timely update until resolution.
- Performing vulnerability assessments and resolve security issues from assessments and other sources
- Supporting numerous security project implementations from a technical perspective
- Evangelizing security within the company and be an advocate for partner/customer trust
- Staying up to date with emerging security threats including applicable regulatory
- security requirements.
- Other responsibilities and additional duties as assigned by the security management team
What qualities are we seeking?
- A minimum of 3 years of experience working and at least 1 year within Information Security
- Detail‑oriented with strong organizational and analytical skills.
- Strong written communication and presentation skills.
- Strong understanding of security incident management, malware management, and vulnerability management processes.
- Expertise in Microsoft Sentinel (SIEM), including alert handling, incident analysis, dashboard usage, and log correlation.
- Certification in Microsoft Sentinel or Microsoft Security Operations Analyst (e.g., SC‑200) is a plus.
- Network and Security Certifications are a plus (CCNA, CCNP, CompTIA Net+/Sec+/CySa+, etc.).
- Flexibility to work on a shifting schedule.
- Willingness to be assigned in Alabang, Muntinlupa.
Minimum Qualifications:
- Security Information & Event Management
- Public Key Infrastructure
- Vulnerability Management & Scanning
- Secure Domain Name Services
- Next Generation Firewalls
- Sandboxing
- Wireless Intrusion Detection
- Network Access Control
- Exciting learning and career growth opportunities
- Seamless HR experience with Cloud HR (Sprout)
- Above-standard leave benefits
Recognized as one of the Best Workplaces in the Philippines and certified by the global authority on workplace culture as a Great Place To Work.