Global SOC L2 Analyst

1 week ago


Taguig, National Capital Region, Philippines Willis Towers Watson Full time

Principal Duties/Responsibilities

  • Investigate alerts, security incidents and seeking out potential security issues through log analysis, and use of tools such as SIEM, UEBA, EDR, etc.
  • Ensure that there is a timely response to any cyber incidents to minimise the impact to the business, including interacting with different technical teams and business areas where needed.
  • Primary escalation point for complex incidents to conduct investigation, and initiate containment actions required.
  • Escalate high priority or high severity alerts/incidents to escalations team according to the prescribed process.
  • Safely acquire and preserve the integrity of cyber security data required for incident analysis to help determine the technical/operational impact, root cause(s), scope, and nature of incidents.
  • Escalation point to provide process and/or technical advice for Level 1 analysts.
  • Manages shift workload to make sure they are assigned and handled according to KPI targets.
  • Prepare and send the end of shift report to Leadership team.
  • Document, attend and lead the handover call to ensure updates, unassigned tickets, tasks, and incident investigation that needs to be continued by next shift will be communicated.
  • Perform quality audit for tickets that were handled by Level 1s to ensure incidents were handled according to prescribed processes.
  • Recommend alert/s for tuning to minimize false positives and improve the businesses' security posture against attackers and threats.
  • Regularly contribute to the SOC playbooks and knowledgebase with findings from investigations such as different attacker tools, tactics, and procedures which can be applied to future investigations.
  • Help deliver training to mature skills of new joiners or colleagues.
Qualifications

What you will need:

  • You will be working as part of a 24/7 SOC across different locations and therefore you must be a true team player, with the ability and desire to engage with different internal stakeholders and colleagues to deliver the very highest standards of service and support.
  • 4 - 7 Years' Experience working as part of a mature cyber defence centre or security operations centre.
  • To be effective, you need to have great troubleshooting skills, the ability to research problems and the ability to effectively communicate during stressful times, while keeping a cool, calm, and friendly approach when dealing with stakeholders and colleagues.
  • Solid time management skills and be dependable.
  • Hands on experience of using a SIEM, UEBA, and EDR as a Level 2 security analyst.
  • Leading Investigations and comfortable talking to stakeholders and colleagues on both a technical and non-technical level
  • Great verbal and written communication skills, and the ability to write reports in a structured methodology.
  • BSc/MSc in a security field or equivalent experience working within a security related function.
  • To be inquisitive, with a strong sense of personal responsibility for learning and self-development.
  • Being able to identify common attack techniques within the context of specific technologies.
  • Working knowledge of networking protocols/technologies (e.g. TCP, IP, HTTP/HTTPS).
  • Working knowledge of Unix, Linux, and Windows operating systems.

Beneficial:

  • Any relevant security certifications (SSCP, OCSP, Security+, CySA+, etc.).
  • Any relevant network certifications (Network +, CCNA, etc.).
  • Knowledge of other key IT fields (such as Web Applications, databases, Active Directory, network security systems such as web proxies, firewalls & data loss protection).
  • Exposure to attack and penetration methods and tools.
  • Working knowledge of scripts, tools, or methodologies to enhance our incident investigation and processes (such as Python, PowerShell, etc.).

WTW is an Equal Opportunity Employer


#J-18808-Ljbffr
  • Global SOC L1 Analyst

    2 weeks ago


    Taguig, National Capital Region, Philippines WTW Full time

    On-site - Taguig Fresh Graduate/Student Diploma Full-timeJob DescriptionDescriptionPrincipal Duties/ResponsibilitiesSafely acquire and preserve the integrity of cyber security data required for incident analysis to help determine whether further investigation is required.Level 1 Analyst will be responsible for confirming that the incident is a true positive...


  • Taguig, National Capital Region, Philippines Manpower Core Group Inc. Full time

    Are you passionate about cybersecurity? Do you have what it takes to join our dynamic team at Manpower Core Group Inc.? As a SOC Level 2 Security Analyst, you will play a vital role in ensuring the security and integrity of our clients' systems.Key ResponsibilitiesManage multiple priorities simultaneously.Moderate knowledge of networking fundamentals...

  • SOC Analyst

    1 day ago


    Taguig, National Capital Region, Philippines N-able Technologies Ltd. Full time

    Why N-ableIT doesn't get better than this N-able isn't just another software company – we're going places, and we'd love for you to be a part of that journey. With N-ablites in more than 15 countries around the world, you're adding your unique voice to a diverse team of people who are supporting our customers, and one another. The Way We Work, our hybrid...

  • SOC Analyst

    1 day ago


    Taguig, National Capital Region, Philippines N-able Technologies Ltd. Full time

    Why N-ableIT doesn't get better than this N-able isn't just another software company – we're going places, and we'd love for you to be a part of that journey. With N-ablites in more than 15 countries around the world, you're adding your unique voice to a diverse team of people who are supporting our customers, and one another. The Way We Work, our hybrid...


  • Taguig, National Capital Region, Philippines WTW Full time

    On-site - Taguig Fresh Graduate/Student Diploma Full-timeJob DescriptionDescriptionWe are seeking passionate people to grow the Cyber Security team within WTW and provide an excellent service and trusted expertise to all parts of our business. We have an exciting opening for a skilled and experienced L2 Insider Threat Analyst.As part of the Cyber Defence...


  • Taguig, National Capital Region, Philippines JobsAvenuePH Full time

    Job DescriptionYour key responsibilitiesThe Security Operations Center (SOC) Level 2 (L2) manages multiple Security technologies and produces enhancements that allow SOC team members to work collaboratively and efficiently while responding to threats. The individual in this role will work as part of a cybersecurity operations team responsible for carrying...


  • Taguig, National Capital Region, Philippines Pinterview Full time

    Role Overview:Pinterview is seeking a highly skilled Security Operations Center (SOC) Analyst to join our team. As a SOC Analyst, you will be responsible for monitoring, analyzing, and prioritizing system alerts to identify potential threats or operational issues.The Alert Triage Analyst role involves initial investigation, documentation, and escalation of...


  • Taguig, National Capital Region, Philippines Manpower Core Group Inc. Full time

    Your key responsibilitiesThe Security Operations Center (SOC) Level 2 (L2) manages multiple Security technologies and produces enhancements that allow SOC team members to work collaboratively and efficiently while responding to threats. The individual in this role will work as part of a cybersecurity operations team responsible for carrying out 24x7 onsite...

  • Senior SOC Analyst

    6 days ago


    Taguig, National Capital Region, Philippines Manpower Core Group Inc. Full time

    SOC Team Member Job DescriptionWe are looking for a highly skilled Security Operations Center (SOC) team member to join our 24/7 SOC team at Manpower Core Group Inc.. The successful candidate will play a critical role in managing multiple security technologies and developing enhancements that enable our team members to work collaboratively and efficiently...


  • Taguig, National Capital Region, Philippines Manpower Core Group Inc. Full time

    Your key responsibilitiesThe Security Operations Center (SOC) Level 3 (L3) manages multiple Security technologies and produces enhancements that allow SOC team members to work collaboratively and efficiently while responding to threats. The individual in this role will work as part of a cybersecurity operations team responsible for carrying out 24x7 onsite...


  • Taguig, National Capital Region, Philippines JTI Full time

    Search by keyword and location and click "create alert" to receive your job alerts by email:Select how often (in days) to receive an alert:Job ID: 95648Country: PhilippinesCity: Taguig, National Capital RegionProfessional area: Information TechnologyContract type: PermanentProfessional level: ExperiencedLocation:Taguig, National Capital Region, 00, PH,...


  • Taguig, National Capital Region, Philippines JTI Full time

    Search by keyword and location and click "create alert" to receive your job alerts by email:Select how often (in days) to receive an alert:Job ID: 95648Country: PhilippinesCity: Taguig, National Capital RegionProfessional area: Information TechnologyContract type: PermanentProfessional level: ExperiencedLocation:Taguig, National Capital Region, 00, PH,...


  • Taguig, National Capital Region, Philippines We Search @ Searchers & Staffers Corp. Full time

    Job SummaryWe Search @ Searchers & Staffers Corp. is seeking a highly skilled Global Market Analyst to join our team.As a Global Market Analyst, you will be responsible for analyzing global financial markets, identifying key trends, regulations, and major stakeholders.Key responsibilities include:Prepare comprehensive client shareholder reports, including...


  • Taguig, National Capital Region, Philippines B & M Global Services Manila, Inc. Full time

    Job OverviewB & M Global Services Manila, Inc. seeks an experienced Information Security Leader to manage the organization's data loss prevention strategies and technologies. The successful candidate will be responsible for safeguarding sensitive information from unauthorized access, loss, or misuse.The ideal candidate will have experience in leading and...


  • Taguig, National Capital Region, Philippines N-able Technologies Ltd. Full time

    N-able Technologies Ltd. is a global software company that partners with technology leaders to offer secure infrastructure and tools to navigate their evolving IT needs.Job Summary:This role involves working as part of a 24/7 SOC operation to monitor suspicious activities via in-depth analysis and leverage this to develop client behavior patterns.The analyst...


  • Taguig, National Capital Region, Philippines Michael Page Full time

    About Our ClientWe are a global leader in cybersecurity, committed to helping businesses safeguard their digital assets and stay ahead of evolving threats. Operating at the cutting edge of technology, our team delivers advanced managed services, threat detection, and incident response solutions to clients worldwide. With a strong focus on innovation and...


  • Taguig, National Capital Region, Philippines Michael Page Full time

    Join a pioneer teamEnjoy market-aligned salaries & benefitsAbout Our ClientThe client is a leading multinational financial institution and pioneer in the digital banking in the Philippines.Job DescriptionIncident Response & Remediation:Lead the end-to-end incident response (IR) process, from detection to containment, eradication, recovery, and post-incident...


  • Taguig, National Capital Region, Philippines B & M Global Services Manila, Inc. Full time

    Job ResponsibilitiesThe Confidentiality Specialist will be responsible for overseeing and managing the organization's data loss prevention strategies and technologies. This role involves safeguarding sensitive information from unauthorized access, loss, or misuse.Experience in leading and managing a team of security engineers, including DLP analysts and SOC...


  • Taguig, National Capital Region, Philippines B & M Global Services Manila, Inc. Full time

    Job SummaryWe are seeking a highly experienced Risk Management Director to lead our data loss prevention strategies and technologies. The successful candidate will be responsible for safeguarding sensitive information from unauthorized access, loss, or misuse.The ideal candidate will have experience in leading and managing a team of security engineers,...


  • Taguig, National Capital Region, Philippines Willis Towers Watson Full time

    At Willis Towers Watson, we are seeking a highly experienced Cyber Security Incident Response Principal Analyst to lead our global response to complex security incidents and drive initiatives to enhance our cyber incident management capabilities.This senior-level role requires a professional with more than 5 years of expertise in incident response and...