Global SOC L2 Analyst
1 week ago
Principal Duties/Responsibilities
- Investigate alerts, security incidents and seeking out potential security issues through log analysis, and use of tools such as SIEM, UEBA, EDR, etc.
- Ensure that there is a timely response to any cyber incidents to minimise the impact to the business, including interacting with different technical teams and business areas where needed.
- Primary escalation point for complex incidents to conduct investigation, and initiate containment actions required.
- Escalate high priority or high severity alerts/incidents to escalations team according to the prescribed process.
- Safely acquire and preserve the integrity of cyber security data required for incident analysis to help determine the technical/operational impact, root cause(s), scope, and nature of incidents.
- Escalation point to provide process and/or technical advice for Level 1 analysts.
- Manages shift workload to make sure they are assigned and handled according to KPI targets.
- Prepare and send the end of shift report to Leadership team.
- Document, attend and lead the handover call to ensure updates, unassigned tickets, tasks, and incident investigation that needs to be continued by next shift will be communicated.
- Perform quality audit for tickets that were handled by Level 1s to ensure incidents were handled according to prescribed processes.
- Recommend alert/s for tuning to minimize false positives and improve the businesses' security posture against attackers and threats.
- Regularly contribute to the SOC playbooks and knowledgebase with findings from investigations such as different attacker tools, tactics, and procedures which can be applied to future investigations.
- Help deliver training to mature skills of new joiners or colleagues.
What you will need:
- You will be working as part of a 24/7 SOC across different locations and therefore you must be a true team player, with the ability and desire to engage with different internal stakeholders and colleagues to deliver the very highest standards of service and support.
- 4 - 7 Years' Experience working as part of a mature cyber defence centre or security operations centre.
- To be effective, you need to have great troubleshooting skills, the ability to research problems and the ability to effectively communicate during stressful times, while keeping a cool, calm, and friendly approach when dealing with stakeholders and colleagues.
- Solid time management skills and be dependable.
- Hands on experience of using a SIEM, UEBA, and EDR as a Level 2 security analyst.
- Leading Investigations and comfortable talking to stakeholders and colleagues on both a technical and non-technical level
- Great verbal and written communication skills, and the ability to write reports in a structured methodology.
- BSc/MSc in a security field or equivalent experience working within a security related function.
- To be inquisitive, with a strong sense of personal responsibility for learning and self-development.
- Being able to identify common attack techniques within the context of specific technologies.
- Working knowledge of networking protocols/technologies (e.g. TCP, IP, HTTP/HTTPS).
- Working knowledge of Unix, Linux, and Windows operating systems.
Beneficial:
- Any relevant security certifications (SSCP, OCSP, Security+, CySA+, etc.).
- Any relevant network certifications (Network +, CCNA, etc.).
- Knowledge of other key IT fields (such as Web Applications, databases, Active Directory, network security systems such as web proxies, firewalls & data loss protection).
- Exposure to attack and penetration methods and tools.
- Working knowledge of scripts, tools, or methodologies to enhance our incident investigation and processes (such as Python, PowerShell, etc.).
WTW is an Equal Opportunity Employer
#J-18808-Ljbffr
-
Global SOC L1 Analyst
2 weeks ago
Taguig, National Capital Region, Philippines WTW Full timeOn-site - Taguig Fresh Graduate/Student Diploma Full-timeJob DescriptionDescriptionPrincipal Duties/ResponsibilitiesSafely acquire and preserve the integrity of cyber security data required for incident analysis to help determine whether further investigation is required.Level 1 Analyst will be responsible for confirming that the incident is a true positive...
-
SOC Level 2 Security Analyst
6 days ago
Taguig, National Capital Region, Philippines Manpower Core Group Inc. Full timeAre you passionate about cybersecurity? Do you have what it takes to join our dynamic team at Manpower Core Group Inc.? As a SOC Level 2 Security Analyst, you will play a vital role in ensuring the security and integrity of our clients' systems.Key ResponsibilitiesManage multiple priorities simultaneously.Moderate knowledge of networking fundamentals...
-
SOC Analyst
1 day ago
Taguig, National Capital Region, Philippines N-able Technologies Ltd. Full timeWhy N-ableIT doesn't get better than this N-able isn't just another software company – we're going places, and we'd love for you to be a part of that journey. With N-ablites in more than 15 countries around the world, you're adding your unique voice to a diverse team of people who are supporting our customers, and one another. The Way We Work, our hybrid...
-
SOC Analyst
1 day ago
Taguig, National Capital Region, Philippines N-able Technologies Ltd. Full timeWhy N-ableIT doesn't get better than this N-able isn't just another software company – we're going places, and we'd love for you to be a part of that journey. With N-ablites in more than 15 countries around the world, you're adding your unique voice to a diverse team of people who are supporting our customers, and one another. The Way We Work, our hybrid...
-
L2 Insider Threat Analyst
2 weeks ago
Taguig, National Capital Region, Philippines WTW Full timeOn-site - Taguig Fresh Graduate/Student Diploma Full-timeJob DescriptionDescriptionWe are seeking passionate people to grow the Cyber Security team within WTW and provide an excellent service and trusted expertise to all parts of our business. We have an exciting opening for a skilled and experienced L2 Insider Threat Analyst.As part of the Cyber Defence...
-
Security Operations Center
3 weeks ago
Taguig, National Capital Region, Philippines JobsAvenuePH Full timeJob DescriptionYour key responsibilitiesThe Security Operations Center (SOC) Level 2 (L2) manages multiple Security technologies and produces enhancements that allow SOC team members to work collaboratively and efficiently while responding to threats. The individual in this role will work as part of a cybersecurity operations team responsible for carrying...
-
Security Operations Center
7 days ago
Taguig, National Capital Region, Philippines Pinterview Full timeRole Overview:Pinterview is seeking a highly skilled Security Operations Center (SOC) Analyst to join our team. As a SOC Analyst, you will be responsible for monitoring, analyzing, and prioritizing system alerts to identify potential threats or operational issues.The Alert Triage Analyst role involves initial investigation, documentation, and escalation of...
-
Security Operations Center
3 weeks ago
Taguig, National Capital Region, Philippines Manpower Core Group Inc. Full timeYour key responsibilitiesThe Security Operations Center (SOC) Level 2 (L2) manages multiple Security technologies and produces enhancements that allow SOC team members to work collaboratively and efficiently while responding to threats. The individual in this role will work as part of a cybersecurity operations team responsible for carrying out 24x7 onsite...
-
Senior SOC Analyst
6 days ago
Taguig, National Capital Region, Philippines Manpower Core Group Inc. Full timeSOC Team Member Job DescriptionWe are looking for a highly skilled Security Operations Center (SOC) team member to join our 24/7 SOC team at Manpower Core Group Inc.. The successful candidate will play a critical role in managing multiple security technologies and developing enhancements that enable our team members to work collaboratively and efficiently...
-
Security Operations Center
3 weeks ago
Taguig, National Capital Region, Philippines Manpower Core Group Inc. Full timeYour key responsibilitiesThe Security Operations Center (SOC) Level 3 (L3) manages multiple Security technologies and produces enhancements that allow SOC team members to work collaboratively and efficiently while responding to threats. The individual in this role will work as part of a cybersecurity operations team responsible for carrying out 24x7 onsite...
-
Cyber SOC Incident Response Manager
2 weeks ago
Taguig, National Capital Region, Philippines JTI Full timeSearch by keyword and location and click "create alert" to receive your job alerts by email:Select how often (in days) to receive an alert:Job ID: 95648Country: PhilippinesCity: Taguig, National Capital RegionProfessional area: Information TechnologyContract type: PermanentProfessional level: ExperiencedLocation:Taguig, National Capital Region, 00, PH,...
-
Cyber SOC Incident Response Manager
1 week ago
Taguig, National Capital Region, Philippines JTI Full timeSearch by keyword and location and click "create alert" to receive your job alerts by email:Select how often (in days) to receive an alert:Job ID: 95648Country: PhilippinesCity: Taguig, National Capital RegionProfessional area: Information TechnologyContract type: PermanentProfessional level: ExperiencedLocation:Taguig, National Capital Region, 00, PH,...
-
Global Market Analyst
1 day ago
Taguig, National Capital Region, Philippines We Search @ Searchers & Staffers Corp. Full timeJob SummaryWe Search @ Searchers & Staffers Corp. is seeking a highly skilled Global Market Analyst to join our team.As a Global Market Analyst, you will be responsible for analyzing global financial markets, identifying key trends, regulations, and major stakeholders.Key responsibilities include:Prepare comprehensive client shareholder reports, including...
-
Confidentiality Specialist
1 day ago
Taguig, National Capital Region, Philippines B & M Global Services Manila, Inc. Full timeJob OverviewB & M Global Services Manila, Inc. seeks an experienced Information Security Leader to manage the organization's data loss prevention strategies and technologies. The successful candidate will be responsible for safeguarding sensitive information from unauthorized access, loss, or misuse.The ideal candidate will have experience in leading and...
-
IT Security Monitoring Expert
1 day ago
Taguig, National Capital Region, Philippines N-able Technologies Ltd. Full timeN-able Technologies Ltd. is a global software company that partners with technology leaders to offer secure infrastructure and tools to navigate their evolving IT needs.Job Summary:This role involves working as part of a 24/7 SOC operation to monitor suspicious activities via in-depth analysis and leverage this to develop client behavior patterns.The analyst...
-
Cybersecurity Operations Manager
2 weeks ago
Taguig, National Capital Region, Philippines Michael Page Full timeAbout Our ClientWe are a global leader in cybersecurity, committed to helping businesses safeguard their digital assets and stay ahead of evolving threats. Operating at the cutting edge of technology, our team delivers advanced managed services, threat detection, and incident response solutions to clients worldwide. With a strong focus on innovation and...
-
Cyber Incident Response Lead
7 days ago
Taguig, National Capital Region, Philippines Michael Page Full timeJoin a pioneer teamEnjoy market-aligned salaries & benefitsAbout Our ClientThe client is a leading multinational financial institution and pioneer in the digital banking in the Philippines.Job DescriptionIncident Response & Remediation:Lead the end-to-end incident response (IR) process, from detection to containment, eradication, recovery, and post-incident...
-
Information Security Leader
1 day ago
Taguig, National Capital Region, Philippines B & M Global Services Manila, Inc. Full timeJob ResponsibilitiesThe Confidentiality Specialist will be responsible for overseeing and managing the organization's data loss prevention strategies and technologies. This role involves safeguarding sensitive information from unauthorized access, loss, or misuse.Experience in leading and managing a team of security engineers, including DLP analysts and SOC...
-
Risk Management Director
1 day ago
Taguig, National Capital Region, Philippines B & M Global Services Manila, Inc. Full timeJob SummaryWe are seeking a highly experienced Risk Management Director to lead our data loss prevention strategies and technologies. The successful candidate will be responsible for safeguarding sensitive information from unauthorized access, loss, or misuse.The ideal candidate will have experience in leading and managing a team of security engineers,...
-
Cyber Security Threat Analyst
2 days ago
Taguig, National Capital Region, Philippines Willis Towers Watson Full timeAt Willis Towers Watson, we are seeking a highly experienced Cyber Security Incident Response Principal Analyst to lead our global response to complex security incidents and drive initiatives to enhance our cyber incident management capabilities.This senior-level role requires a professional with more than 5 years of expertise in incident response and...