SOC L3 Analyst Lead

KPMG R.G. Manabat & Co.

Makati

On-site

PHP 1,800,000 - 3,200,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

HMO with 2 Free Dependents
Communication Allowance
Rice Allowance
Clothing Allowance
Christmas/Holiday Gift
Group Personal Accident Insurance
Life Insurance with coverage
Flexi-ben reimbursement
Bereavement Assistance
Retirement Plan
Leave Privileges
Holiday shutdown on year-end
Weather disruption leave protections

Job summary

KPMG R.G. Manabat & Co. is seeking a Senior Security Leader to define and drive the Managed Detection & Response strategy.

You will lead cross-functional teams, orchestrate complex security incidents, and shape offerings for enterprise clients in a 24/7 security operations context. The role requires 10+ years in enterprise security, L3 SOC leadership, and strong cloud/on-prem knowledge with relevant certifications.

Qualifications

  • 10+ years in Enterprise Security Operations Centers or MDR/IR teams.
  • Experience as L3 SOC Analyst or lead security operations roles.
  • Knowledge of on-prem, hybrid and cloud security concepts and protocols.
  • Certifications: CEH, GIAC, OSCP, CREST, GCIH, GPEN or equivalent.

Responsibilities

  • Formulate strategic direction for MDR as a managed service.
  • Grow pipeline by working with internal and external channels.
  • Lead incident response orchestration with clients.
  • Lead research and correlation across data sources and feeds.
  • Develop SOC processes, Use Case Catalog and strategy execution.
  • Communicate offering and value proposition to opportunities.

Skills

SOC Leadership
Threat Hunting
Incident Response
Cloud Security
On-Prem/Hybrid Security

Education

Master's or Bachelor's degree

Tools

Microsoft
Splunk
Sentinel

Job description

About the role

Formulate and define the strategic direction for Managed Detection & Response as a managed service. Grow pipeline of the solution by working closely with internal and external channels. Identify and create pull through opportunity for other managed services and consulting services. Keep abreast of industrial, technology and business trends. Perform investigation and orchestration for complex/high severity security alerts, threats or incidents. Provide the people, process and technology background to ensure timely detection, identification and alerting of possible attacks/intrusions, anomalous activities, intrusion attempts/compromises, malicious behavior, insider risk, and misuse activities to distinguish these incidents from benign activities. Isolate, triage and eradicate malicious behaviors. Serve as the lead point of contact facilitating incident response orchestration with client. Lead research, analysis and correlation efforts across a variety of all source data sets/collectors, log collectors and threat feeds to inform and guide the strategic direction of the offering. Monitor competitive landscape in pricing, capabilities and offerings to analyze and report system security posture trends. Direct technical product managers in developing new or modified solutions for Managed Detection and Response. As a leader of a team, ensure that the right things are being worked on at the right time, and ensure quality throughout. Working with value architect to create pricing for opportunities. Provide ongoing strategic context for your team and clients, educating, sharing and capturing qualitative and quantitative metrics that corroborate decision making. Develop and maintain materials to communicate offering, value proposition and customize it to individual opportunity. Analysis of alerts from Security Event and Information Management tools, ideally Azure Sentinel (not required). Create and develop SOC processes and procedures, lead strategy development, methodology and execution of Use Case Catalog working with Level 1, Level 2 and Level 3 Analysts.

Key responsibilities
  • Formulate and define the strategic direction for Managed Detection & Response as a managed service

  • Grow pipeline of the solution by working closely with internal and external channels

  • Perform investigation and orchestration for complex/high severity security alerts, threats or incidents

  • Serve as the lead point of contact facilitating incident response orchestration with client

  • Lead research, analysis and correlation efforts across a variety of all source data sets/collectors, log collectors and threat feeds

  • Direct technical product managers in developing new or modified solutions for Managed Detection and Response

  • Ensure that the right things are being worked on at the right time, and ensure quality throughout

  • Create and develop SOC processes and procedures, lead strategy development, methodology and execution of Use Case Catalog

  • Analysis of alerts from Security Event and Information Management tools

  • Develop and maintain materials to communicate offering, value proposition and customize it to individual opportunity

About you
  • At least 10+ years of experience leading Enterprise Security Operations Centers or Managed Detection and Response analyst or incident response teams

  • Experience in lead security operations center analyst (L3), threat hunting, penetration testing, digital forensics, incident response

  • Knowledge of on-prem, hybrid and cloud security concepts and protocols

  • Certifications: CEH, GIAC, OSCP, CREST, GCIH, CCIA, GPEN, Platform Certifications (Microsoft, Splunk, Sentinel, etc.)

  • Experience with Cyber-Security solutions, Security Operation Center, Threat Intelligence Management, Vulnerability Research, Digital Forensics, Incident Response, Endpoint Management, Network Security

  • Product Management experience with Software as a Service (SaaS) or Infrastructure as a Service (IaaS) offerings for enterprises

  • Experience in the enterprise software market and with services / product companies

  • Knowledge of a global, 24/7, high availability and high trust operation aspects of managed services

  • 3+ years Level 3 SOC Analyst experience

  • Master's or Bachelor's degree; or an equivalent experience in lieu of degree

Benefits
  • HMO with 2 Free Dependents

  • Communication Allowance

  • Rice Allowance

  • Clothing Allowance

  • Christmas/Holiday Gift (Christmas Cash Gift)

  • Group Personal Accident Insurance

  • Life Insurance with coverage

  • Flexi-ben reimbursement (Medical/Dental/Optical)

  • Bereavement Assistance

  • Retirement Plan

  • Leave Privileges

  • Firm-wide holiday shutdown on last 2 weeks of the year

  • Company work suspensions during extreme weather conditions

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Lead
SOC Lead

Hammerjack Pty Ltd • Philippines

On-site
PHP 1,200,000 - 2,400,000
HMO with 2 Free Dependents
Communication Allowance
Rice Allowance
+5
SOC Analyst Lead - L3 Incident Response
SOC Analyst Lead - L3 Incident Response

KPMG R.G. Manabat & Co. • Manila

On-site
PHP 250,000 - 450,000
HMO with 2 Free Dependents
Communication Allowance
Rice Allowance
+6
SOC Manager
SOC Manager

KPMG R.G. Manabat & Co. • Makati

On-site
PHP 1,800,000 - 2,400,000
HMO with 2 Free Dependents
Communication Allowance
Rice Allowance
+10
SOC Manager (Cybersecurity)
SOC Manager (Cybersecurity)

KPMG R.G. Manabat & Co. • Manila

On-site
PHP 1,200,000 - 1,800,000
Day 1 HMO with 2 Free Dependents
Communication Allowance
Rice Allowance
+6
SOC Senior Manager
SOC Senior Manager

Hammerjack Pty Ltd • Philippines

On-site
PHP 1,200,000 - 1,800,000
HMO
Dependent coverage
Communication allowance
+7
Cybersecurity Manager
Cybersecurity Manager

KPMG R.G. Manabat & Co. • Makati

On-site
PHP 1,800,000 - 2,400,000
HMO with 2 Free Dependents
Communication Allowance
Rice Allowance
+6
Security Operations Engineer | Hybrid
Security Operations Engineer | Hybrid

Cloudstaff Philippines Inc. • Philippines

On-site
PHP 800,000 - 1,000,000
Comprehensive health and life ins.
Leave credits
Hybrid/Office perks
+5
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

Microgenesis Business Systems • Mandaluyong

On-site
PHP 279,000 - 390,600
Health insurance
Life insurance
Additional leave
+2
SOC Analyst | Hybrid
SOC Analyst | Hybrid

Cloudstaff Philippines Inc. • Philippines

On-site
PHP 400,000 - 600,000
Comprehensive health insurance
Flexible leave credits
Company-provided PC/Laptop
Security Operations and Incident Manager
Security Operations and Incident Manager

Private Advertiser • Mandaluyong

On-site
PHP 3,000,000 - 5,000,000