SOC Analyst: Splunk ES & Threat Detection Expert

Outsourcea Services Incorporated

Pasay

On-site

PHP 600,000 - 900,000

Full time

8 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Outsourcea Services Incorporated is seeking an experienced SOC Analyst to monitor security alerts, investigate incidents, and develop detections using Splunk Enterprise Security and Splunk Core. You will analyze endpoints and email security events and collaborate with clients to improve security postures.

The ideal candidate has 2+ years in a SOC, strong SPL skills, hands-on CrowdStrike Falcon and Proofpoint TAP/TRAP, and solid knowledge of SIEM, MITRE ATT&CK, and incident response processes.

Qualifications

  • 3–5 years in cybersecurity with at least 2 years in a SOC role.
  • Strong hands-on experience in security monitoring, incident response, alert triage, and threat detection.
  • Advanced Splunk ES and/or Splunk Core experience with SPL query development.
  • Hands-on CrowdStrike Falcon experience and familiarity with Proofpoint TAP/TRAP.
  • Good understanding of SIEM, endpoint security, threat detection and response processes.
  • Familiarity with MITRE ATT&CK and common cybersecurity frameworks.

Responsibilities

  • Monitor and investigate security alerts, events, and potential threats within the SOC.
  • Perform alert triage, incident investigation, containment, escalation, and follow-up.
  • Create and optimize advanced Splunk SPL queries for threat detection and investigation.
  • Develop and maintain correlation searches, dashboards, and other Splunk-based security content.
  • Review and tune detection rules to improve alert quality and minimize false positives.
  • Investigate security incidents involving endpoints and email using CrowdStrike Falcon and Proofpoint TAP/TRAP or comparable platforms.
  • Conduct security event analysis and identify indicators of compromise and potential threats.
  • Support threat hunting and proactive detection activities.
  • Maintain accurate documentation of incidents, investigations, findings, and remediation actions.
  • Work closely with Security Engineers, IT teams, and clients during investigations and response activities.

Skills

Splunk ES & SPL
Incident response
Threat detection
SOC monitoring
CrowdStrike Falcon
Proofpoint TAP/TRAP
SPL query writing
MITRE ATT&CK

Tools

Splunk Core
CrowdStrike Falcon
Proofpoint TAP/TRAP

Job description

Outsourcea Services Incorporated is seeking an experienced SOC Analyst to monitor security alerts, investigate incidents, and develop detections using Splunk Enterprise Security and Splunk Core. You will analyze endpoints and email security events and collaborate with clients to improve security postures.

The ideal candidate has 2+ years in a SOC, strong SPL skills, hands-on CrowdStrike Falcon and Proofpoint TAP/TRAP, and solid knowledge of SIEM, MITRE ATT&CK, and incident response processes.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Analyst – Splunk ES
SOC Analyst – Splunk ES

Outsourcea Services Incorporated • Pasay

On-site
PHP 600,000 - 900,000
SOC Engineer & Intrusion Response Analyst: Detect & Contain Threats
SOC Engineer & Intrusion Response Analyst: Detect & Contain Threats

OFFSHORE BUSINESS PROCESSING INC. • Philippines

On-site
PHP 502,000 - 558,000
HMO on Day 1
Perks & rewards
Travel opportunities
+3
SOC Analyst I: Threat Hunting & Incident Response
SOC Analyst I: Threat Hunting & Incident Response

Continental Industry • Philippines

On-site
PHP 600,000 - 1,000,000
SOC Lead - Incident Response & Threat Hunting
SOC Lead - Incident Response & Threat Hunting

OFFSHORE BUSINESS PROCESSING INC. • Philippines

On-site
PHP 558,000 - 614,000
HMO day 1
Perks & rewards
Travel opportunities
+3
Security Operations Center Analyst L2 (Crowdstrike)
Security Operations Center Analyst L2 (Crowdstrike)

Penbrothers • Philippines

On-site
PHP 900,000 - 1,500,000
Senior SOC Analyst — Splunk & Incident Response
Senior SOC Analyst — Splunk & Incident Response

DXC Technology • Manila

Hybrid
PHP 900,000 - 1,300,000
Health Insurance (HMO)
Life Insurance
Vacation & Sick Leave
+11
SOC Analyst L2: Incident Response & Threat Intel Lead
SOC Analyst L2: Incident Response & Threat Intel Lead

Penbrothers • Philippines

On-site
PHP 900,000 - 1,500,000
SOC Analyst
SOC Analyst

Commit • Metro Manila

On-site
PHP 350,000 - 550,000
Splunk Enterprise Security Engineer
Splunk Enterprise Security Engineer

Orbus International • Hinoba-an

On-site
PHP 900,000 - 1,300,000
SOC Analyst/Incident Response Analyst
SOC Analyst/Incident Response Analyst

PM Consulting • Metro Manila

On-site
PHP 320,000 - 520,000