Senior Security Analyst
4 hours ago
Job Summary
We are seeking a dedicated and experienced Senior Security Analyst to be our subject matter expert for Application Security and DevSecOps. In this hands-on technical role, you will act as a critical bridge between our cybersecurity team and our development and operations teams. Your mission will be to champion and integrate security practices throughout the entire software development lifecycle (SDLC), ensuring our applications are resilient to threats by design. This is a senior individual contributor role with no people management duties.
Required Qualifications & Experience:
- 5+ years of direct, hands-on experience in a dedicated Application Security, Product Security, or DevSecOps role.
- Proven experience integrating and managing security tools (e.g., Snyk, Checkmarx, Veracode, SonarQube) within CI/CD pipelines (e.g., Jenkins, GitLab CI, Azure DevOps).
- Expert proficiency with application security testing tools such as Burp Suite Pro, OWASP ZAP, or similar DAST tools.
- Strong knowledge of the OWASP Top 10, secure coding principles, common vulnerability classes (e.g., XSS, SQLi, CSRF, SSRF), and API security best practices (e.g., OWASP API Security Top 10).
- Solid understanding of modern programming languages (e.g., Python, Java, Go, JavaScript) and software architectures (e.g., microservices, REST APIs, serverless).
- Excellent communication skills with the ability to build strong relationships and collaborate effectively with technical development teams.
Preferred Qualifications:
- A background as a software developer is a significant advantage.
- Relevant industry certifications (e.g., GWAPT, GWEB, OSWE).
- Experience with Infrastructure as Code (IaC) and its associated security challenges (e.g., Terraform, Ansible).
- Hands-on experience with cloud security in AWS, Azure, or GCP environments.
- Bachelor's degree in Computer Science, Information Security, or a related field.
Key Responsibilities
- Integrate Security into the SDLC: Design, implement, and manage the integration of security tools (SAST, DAST, SCA, IAST) into our CI/CD pipelines to provide automated and continuous security feedback to developers.
- Conduct In-Depth Application Security Assessments: Perform manual and automated security testing for our web applications, mobile apps, and APIs, including dynamic testing, manual code review, and business logic analysis.
- Champion Threat Modeling: Partner with development teams to conduct threat modeling exercises (e.g., using STRIDE) for new applications and significant feature changes to proactively identify and mitigate design-level security flaws.
- Provide Developer Enablement: Act as a security consultant to developers, providing expert guidance on secure coding best practices (per OWASP Top 10 and other standards), explaining vulnerability findings, and advising on effective remediation strategies.
- Secure Modern Architectures: Assess the security of applications deployed in cloud environments and containerized workflows (Docker, Kubernetes), focusing on secure configurations and runtime security.
- Research & Analysis: Stay current with the latest application security vulnerabilities, attack vectors, and industry best practices to continuously improve our AppSec program.
-
Senior Security Analyst
2 weeks ago
Manila, National Capital Region, Philippines QBE Insurance Group Full time ₱60,000 - ₱120,000 per yearPrimary DetailsTime Type: Full timeWorker Type: EmployeeWe are seeking a highly skilled and motivated Senior Security Analyst to join our Global Security Operations Centre based in the Philippines. Reporting to the Global Security Operations Centre Lead, the Senior Security Analyst will be a key member of our rapidly growing Global team. This role is...
-
Senior Analyst, Cyber Security Operations
3 hours ago
Manila, National Capital Region, Philippines Melco Resorts & Entertainment Full time ₱1,200,000 - ₱2,400,000 per yearREQ12454 Senior Analyst, Cyber Security Operations (Open)Position SummaryThe Senior Analyst, Cyber Security Operations acts as a critical escalation point within the Cyber Security Operations Center (CSOC) team. He/she is responsible for advanced analysis, incident handling, and in-depth investigations of security events. The analyst serves as a mentor to...
-
Senior Security Operations Analyst
2 weeks ago
Manila, National Capital Region, Philippines Private Advertiser Full timePosition Overview:As a Senior Security Operations Analyst, you will support governance, compliance, and security-related initiatives within the IT department. Lead and mature security operations by defining playbooks, metrics, and continuous improvement of detection and response capabilities.This is a night shift position with a schedule of 9am EST - 6pm...
-
IT Security Analyst
2 weeks ago
Manila, National Capital Region, Philippines First Focus Full time ₱40,000 - ₱60,000 per yearAbout First FocusFirst Focus is Australia's leading Managed Service Provider, with a team of over 300 technical professionals across Australia, New Zealand, and the Philippines. For over 15 years, we've delivered exceptional IT services and solutions, growing consistently and profitably. Our commitment to innovation and excellence has led to the expansion of...
-
Security Analyst
1 week ago
Manila, National Capital Region, Philippines blueAPACHE Full time ₱1,200,000 - ₱3,600,000 per yearAbout usblueAPACHE is an Australian owned award-winning Managed Service Provider, recognised for the 5th year running, as Mid-Market Partner of the Year at the ARN Innovation Awards.We pride ourselves on being a genuinely great place to work, with a vibrant culture, clear vision, and strong leadership. When joining blueAPACHE, you are joining an organisation...
-
Security Operations Center Analyst
4 days ago
Manila, National Capital Region, Philippines Nezda Global Full time ₱900,000 - ₱1,200,000 per yearAbout the RoleAs a Senior SOC Analyst, you'll take the lead in detecting, investigating, and responding to security incidents across global networks, endpoints, and cloud environments. You'll mentor SOC analysts, support compliance audits, and continuously refine detection processes to keep us one step ahead of attackers.Key ResponsibilitiesLead...
-
SOC Security Analyst III
7 days ago
Manila, National Capital Region, Philippines BlueVoyant Full time $104,000 - $130,878 per yearSOC Security Analyst IIILocation: Hybrid in the Philippines Office 50% of the timeThis position will be core hours 4 X 10BlueVoyant is looking for Security Operations Center (SOC) Security Analyst III to help our global customers manage their IT security. You will be part of a fast-paced team that helps customers to reduce the impact of security incidents...
-
Security Analyst
4 days ago
Manila, National Capital Region, Philippines Cambridge University Press & Assessment Full time ₱60,000 - ₱81,000 per yearSalary:₱60,000 - ₱81,000- Location:Manila- Country:Philippines- Business Unit:Technology- Vacancy Type:Permanent- Closing Date:8 November 2025Meet the recruiterBeige SalesWork setup: We operate in a hybrid work environment, and we encourage applicants who are open to working in the office two days a week to apply.Work schedule: 15:00 to 23:00 Manila...
-
Security Analyst
4 days ago
Manila, National Capital Region, Philippines Summit 360 Solutions Full time ₱576,000 - ₱1,140,000 per yearCyber Security AnalystLocation:Remote / Flexible (with overlap to US CST)Department:Security OperationsSchedule:Monday–Friday, 8:00 AM–5:00 PM US CST (flexibility +/- 3 hours)Salary: PHP80,000 to 95,000/mo (paid bimonthly)About The RoleAs aCyber Security Analyst,you will play a key role in supporting our Incident Response andSecurity Operations programs,...
-
Senior IT Business Analyst
2 weeks ago
Manila, National Capital Region, Philippines Aurecon Full time ₱70,000 - ₱120,000 per yearOverall PurposeThe purpose of theSeniorBusiness Analystrole is to lead the analysis and documentation of Aurecon's project delivery needs so that our programs deliver the highest quality change into Aurecon. TheSeniorBusiness Analysthas the experience and insight to work quickly and autonomously and will be expected to produce high-quality deliverables that...