SOC L2 Cyber Defense Lead - Incident Response

WTW

Taguig

On-site

PHP 1,200,000 - 1,600,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

WTW is seeking a L2 Security Operations Centre analyst to monitor, triage, and investigate security incidents. You will work across a 24/7 SOC with emphasis on rapid detection and containment, reporting, and knowledge sharing.

You will mentor L1 analysts, escalate incidents, and improve alerts and processes to strengthen our security posture. Strong communication, teamwork, and technical skills are essential.

Qualifications

  • Works as part of a 24/7 SOC across multiple locations.
  • 4-5 years’ experience in a mature cyber defence or SOC.
  • Able to troubleshoot security issues and communicate clearly with stakeholders.
  • Manage time and complete tasks/incidents within shift.
  • Hands-on use of SIEM, UEBA and EDR as a security analyst.

Responsibilities

  • Perform investigations on security incidents and analysis of threats.
  • Ensure timely response to incidents to minimize business impact.
  • Act as escalation point for L1 incidents and coordinate with L3 and other teams.
  • Escalate high/critical incidents according to process.
  • Safely preserve integrity of security data for incident analysis.
  • Provide guidance to L1 analysts and lead shift workload.

Skills

Teamwork
Communication
Calm under pressure
Mentorship
Analytical thinking

Tools

SIEM
UEBA
EDR
Linux
Windows
MacOS

Job description

WTW is seeking a L2 Security Operations Centre analyst to monitor, triage, and investigate security incidents. You will work across a 24/7 SOC with emphasis on rapid detection and containment, reporting, and knowledge sharing.

You will mentor L1 analysts, escalate incidents, and improve alerts and processes to strengthen our security posture. Strong communication, teamwork, and technical skills are essential.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Defence - Global Security Operations Centre (GSOC) Level 2 Analyst
Cyber Defence - Global Security Operations Centre (GSOC) Level 2 Analyst

WTW • Taguig

On-site
PHP 1,200,000 - 1,600,000
Cyber Defence - Global Security Operations Centre (GSOC) Level 2 Analyst
Cyber Defence - Global Security Operations Centre (GSOC) Level 2 Analyst

Willis Towers Watson • Pateros

On-site
PHP 600,000 - 900,000
SOC Lead - Incident Response & Threat Hunting
SOC Lead - Incident Response & Threat Hunting

OFFSHORE BUSINESS PROCESSING INC. • Philippines

On-site
PHP 558,000 - 614,000
HMO day 1
Perks & rewards
Travel opportunities
+3
SOC Analyst L2 - Incident Response & Detection
SOC Analyst L2 - Incident Response & Detection

Staff4Me • Philippines

On-site
PHP 600,000 - 840,000
SOC L2 Incident Responder
SOC L2 Incident Responder

Trends Group, Inc. • Philippines

On-site
PHP 420,000 - 720,000
Soc Analyst L2
Soc Analyst L2

Staff4Me • Philippines

On-site
PHP 600,000 - 840,000
SOC L1/Tech Support
SOC L1/Tech Support

solaireresort • Parañaque

On-site
PHP 300,000 - 540,000
Senior SOC Analyst - Remote Incident Response Lead
Senior SOC Analyst - Remote Incident Response Lead

Inchcape Motors Finland Oy • Philippines

Hybrid
PHP 500,000 - 800,000
Hybrid or remote work options
Remote work bonus
HMO coverage and life insurance
+1
Incident Response Analyst
Incident Response Analyst

Dencom Consultancy and Manpower Services • Taguig

On-site
PHP 700,000 - 900,000
SOC L2 Incident Responder
SOC L2 Incident Responder

Trends Group • Makati

On-site
PHP 360,000 - 600,000