SOC L1/Tech Support

solaireresort

Parañaque

On-site

PHP 300,000 - 540,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

solaireresort is seeking a Security Operations Analyst in the Philippines to monitor SIEM dashboards, alerts, and security events across network, endpoint, cloud, and applications on a 24/7 shift rotation. You will conduct initial triage, classify incidents, and prioritize findings following documented playbooks and runbooks.

You will escalate validated or complex incidents to SOC L2 with detailed documentation, perform routine health checks on monitoring tools, and maintain thorough shift

Qualifications

  • Bachelor’s degree in computer science, information technology, or a related field, or equivalent practical experience.
  • 0–2 years in security operations, IT support, or network/system administration; prior SOC or managed security service experience preferred.
  • Must be willing to work on a 24/7 shift rotation.

Responsibilities

  • Monitor SIEM dashboards, alerts, and security events on a 24/7 shift rotation.
  • Perform initial triage, classification, and prioritization of security alerts using playbooks.
  • Escalate incidents to SOC L2 with documentation of findings and actions taken.
  • Record alerts, investigations, and actions in the case management system.
  • Conduct routine health checks on monitoring tools and report gaps in log sources or detection coverage.
  • Triage phishing reports and user security concerns per playbook.
  • Execute containment actions during active incidents.
  • Contribute tuning recommendations to reduce false positives.
  • Maintain complete shift handover logs.

Skills

Networking basics
Windows
Linux
MITRE ATT&CK knowledge
SIEM familiarity
Ticketing tools
Phishing response

Education

Bachelor's degree in computer science or related field

Tools

Splunk
Microsoft Sentinel
QRadar

Job description

Duties and Responsibilities

Monitor SIEM dashboards, alerts, and security events across network, endpoint, cloud, and application log sources on a 24/7 shift rotation. Perform initial triage, classification, and prioritization of security alerts following documented playbooks and runbooks. Escalate validated or complex incidents to SOC L2 with complete and accurate documentation of findings and actions taken. Record all alerts, investigations, and response actions in the case management/ticketing system. Perform routine health checks on security monitoring tools and report gaps in log sources or detection coverage. Triage phishing reports and user-reported security concerns, executing first-response steps per playbook. Execute containment actions as directed by SOC L2 or the incident lead during active incidents. Contribute tuning recommendations to reduce false positives and improve alert quality. Maintain complete shift-handover logs to ensure continuity of monitoring between shifts.

Key Performance Indicators / Key Success Factors

Mean time to acknowledge (MTTA) alerts within defined SLAs. Alert triage accuracy and quality of escalations to SOC L2. Percentage of alerts and cases handled within SLA. Completeness and quality of case documentation and shift handovers. False-positive identification and tuning recommendations submitted.

Requirements

Education: Bachelor’s degree in computer science, information technology, or a related field, or equivalent practical experience. Experience: 0–2 years in security operations, IT support, or network/system administration; prior SOC or managed security service experience preferred. Must be willing to work on a 24/7 shift rotation.

Skills & Knowledge: Foundational knowledge of networking (TCP/IP, DNS, HTTP), Windows and Linux operating systems, and common attack techniques (MITRE ATT&CK); familiarity with SIEM platforms (Splunk, Microsoft Sentinel, QRadar, or similar) and ticketing tools.

Certifications (good to have): CompTIA Security+, CompTIA CySA+, or Microsoft SC-200 preferred.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

SOC L1/Tech Support
SOC L1/Tech Support

Solaire Resort • Parañaque

On-site
PHP 300,000 - 420,000
SOC Analyst (Online Gaming)
SOC Analyst (Online Gaming)

Sureste Properties Inc. • Parañaque

On-site
PHP 420,000 - 640,000
SOC L1/Tech Support
SOC L1/Tech Support

Bloomberry Resorts and Hotels Inc. • Naga

On-site
PHP 420,000 - 700,000
Soc Analyst L1
Soc Analyst L1

Dynamicminds Business Solutions, Inc • Parañaque

Remote
PHP 279,000 - 670,000
SOC Analyst/Incident Response Analyst
SOC Analyst/Incident Response Analyst

PM Consulting • Metro Manila

On-site
PHP 320,000 - 520,000
Security Operations Center (SOC) - Head
Security Operations Center (SOC) - Head

SMITS, Inc. - IT Company of San Miguel Corporation • Mandaluyong

On-site
PHP 900,000 - 1,600,000
Security Analyst / Network Security Analyst
Security Analyst / Network Security Analyst

RippedBoxStation • Philippines

On-site
PHP 260,000 - 420,000
IT Security Specialist
IT Security Specialist

Ibex Limited • Manila

On-site
PHP 600,000 - 900,000
IT Security Specialist
IT Security Specialist

ibex • Mandaluyong

On-site
PHP 420,000 - 640,000
Junior SOC Analyst
Junior SOC Analyst

Kinettix Inc. • Manila

On-site
PHP 334,800 - 558,000