Cyber Security Analyst
4 days ago
Is this your next challenge in Cyber Security Analyst?
We are expanding and looking for a SOC Engineering Specialist to join our IT Security Team. This position is the Level 2 blue team for manage SIEM platform, cyber security investigations and incident handling.
Your background should include develop and maintain the SIEM and SOAR, hands-on security incident response and exposure to security technologies including firewalls, IPS/IDS, logging, monitoring, Vulnerability Assessment.
You should understand network security and system administration. To execute your expertise with excellent stakeholder management while problem solving will be a top priority for you.
- Perform accurate and precise real-time analysis and correlation of logs/alerts from a multitude of client devices with a focus on the determination of whether said events constitute security incidents.
- Hands-on experience in the setup and writing of SIEM & SOAR correlation rules.
- Enhance and fine-tune threat detection scenarios and strategies.
- Research and analyse the latest attacker tactics and implement proactive security measures.
- Establish new and maintain existing security operation guidelines, procedures, and playbooks.
- Responsible, interpreting, conducting analysis and making recommendations for resolution from security logs sources and alerts from the (SIEM, IAM, CASB, EDR, SEG & other security tools) and other threat detection systems for threats activity from our managed services Security Operations Centre (SOC).
- Report incident statistics through SIEM platform and provide analysis of incidents.
- Ability to explain the risks of security threats and devise mitigations.
- Familiarity with various SIEM platforms such as Splunk/Elastic/Microsoft Sentinel, etc.
- Act as team and responsible for cyber security incidents arising (e.g. for end-point devices such as laptops, desktops, servers, firewalls, routers, O365, SEG, security devices, etc), including those escalated by Security Operations Centre (SOC). This involves following up with the respective end users and IT personnel to ensure incidents are effectively closed.
- Representing Group-level IT Security COE across IT teams at key cross-team projects/Initiatives and managing Group-level IT Security project plan, schedule, issue/dependency tracking and security check on Pre and Go-Live.
- Maintain Security Hardening Standard: creating secured configuration standards for new platform/technology, and enhancements of overall existing standards.
- Facilitate security request on firewall, email, etc whitelisting review & approval.
- Prepare regular cyber security status reports for submission to Leadership team.
- Review and analyse the vulnerability based on CVE & CVSS industry standards; identify the impact and measure the risk of exploitability and provide recommendation to prioritize the implementation especially those High & Medium risks to the relevant stakeholders.
- Provide advice to IT/End users and managing the cyber security policies, procedures and best practices.
- Perform periodic review on Privilege accounts & other Security owned accounts.
- Communicate cyber security advisories to IT/End users.
- Any other duties as required by the company.
Do you have experience as Cyber Security Analyst?
- Degree holder in Information Security, IT, Computer Science or other related disciplines
- Overall IT relevant experience of minimum 3 years, in a combination of multi-disciplinary IT/Security Operations with minimum 2 years in cyber security
- Experience in working for a demanding security operations Centre with multiple tracks.
- Proficient in cyber security and technology risk management
- Good knowledge and understanding of Vulnerability Management and Penetration Testing
- Knowledge in OWASP and common attack vectors in different platforms (Windows, Linux, Network, etc)
- Knowledgeable in TCP/IP, Linux/UNIX System Administration, DNS server and Windows System Administration
- Experience in working with Cloud and vendors risk assessment.
- Experience and understanding of IT operations and processes.
- Knowledge of Security Standards and Frameworks including MITRE & ATT&CK, ISO 27001:2013, NIST, PCI-DSS, Data Protection etc., cyber security threats, tools and best practices
- Experience and knowledge of Microsoft Sentinel Kusto Query Language (KQL)
- Experience and knowledge of cloud & network security is preferred
- Experience in supporting or managing Security projects or Risk Management programs
- Experience in working with managing external vendor supporting SOC
If you have the right skills and experience, this is an opportunity to build your career with Asia's leading retailer.
DFI Retail Group is an equal opportunity employer and responsible for ensuring that all personal information collected from each Candidate presented to DFI Retail Group is used for recruitment purposes only and the personal data will be kept and handled confidentially. We will retain the applications of candidates not selected for a period of no more than 24 months. The data collection process is in accordance with all applicable laws and compliant with the Code of Practice on Human Resource Management.
To find out more about Our Businesses and Our People, please visit our website: Issued by The Dairy Farm Company, Limited
-
L1 Cyber Security Analyst
6 days ago
Makati City, National Capital Region, Philippines SecureOps Full time ₱150,000 - ₱250,000 per yearSOC - Cyber Security Analyst L1The primary responsibilities of the Level 1 Cyber Security Analyst are to sort, filter, analyze, qualify and escalate various cyber-security alerts inside log aggregation tools (SIEM) such as ArcSight, Splunk, and QRadar. The Analyst is also responsible for incident follow-up, process suggestions, and basic automation. This...
-
Cyber Security Analyst
6 days ago
Makati City, National Capital Region, Philippines ProV International PH Full time ₱40,000 - ₱80,000 per yearAtProV International Philippines, we're not just another tech company – we're athriving communityofpassionate problem-solvers,visionary creators, andtech trailblazers, united by one goal: to empower businesses withcutting-edge IT solutions. With over350 talented professionalsacross the Philippines and growing fast, we're committed to deliveringexceptional...
-
Cyber Security Analyst
4 days ago
Makati City, National Capital Region, Philippines Mizuho Full timeJob Description:Provide support related to the implementation of various cybersecurity initiatives/projects;Liaise with Head Office & Asia Pacific Corporate Function Coordination Department (APCF) on matters related to Cybersecurity;Provide support in the conduct of annual Cyber Risk Assessment (CRA) & Vulnerability Assessment as required by Head...
-
Cyber Security Analyst
10 hours ago
Quezon City, National Capital Region, Philippines Comrise Full timeJob Description:As a Security Analyst, you will be a key member of our Global Cybersecurity Team, helping to strengthen cybersecurity posture.This role involves monitoring tools and dashboards, identifying and mitigating security vulnerabilities, and collaborating with teams to address risks effectively. You will also contribute to continuously improving our...
-
Cyber Threat Analyst
4 days ago
Makati City, National Capital Region, Philippines China Bank PH Full timeThe Cyber Threat Analyst is responsible for detecting, analyzing, and mitigating cyber threats to safeguard the bank's digital assets. The role operates on a 24x7 shift rotation and involves monitoring, investigating, and responding to security events using SOC tools such as SIEM, IDS/IPS, and antivirus systems.Key Responsibilities:Monitor, analyze, and...
-
Cyber Security Officer
6 days ago
Quezon City, National Capital Region, Philippines Public Safety Savings and Loan Association, Inc. (PSSLAI) Full time $40,000 - $80,000 per yearJob Summary:The Cyber Security Officer is responsible for protecting an organization's information systems, networks, and data from cyber threats. This role involves developing and implementing security policies, conducting risk assessments, managing security technologies, and responding to incidents to ensure the confidentiality, integrity, and availability...
-
Cyber Security Specialist(Risk)
4 days ago
Makati City, National Capital Region, Philippines Rockwell Land Corporation Full time ₱1,200,000 - ₱2,400,000 per yearJob Summary:The Cyber Security Risk Officer is responsible for identifying, assessing, mitigating, and monitoring cyber risks across the organization. This role ensures the company's digital assets, infrastructure, and data are protected from internal and external cyber threats. The officer collaborates with IT, legal, compliance, and business units to...
-
Junior Security Analyst
6 days ago
Makati City, National Capital Region, Philippines Cambridge University Press & Assessment | Manila Full time ₱35,000 - ₱47,000 per yearWork setup: We operate in a hybrid work environment, and we encourage applicants who are open to working in the office two days a week to apply.Work schedule: 15:00 to 23:00 Manila time, requiring some flexibility during major incidents or to support shifting schedules.Employment type: PermanentLocation: Makati City, Metro ManilaPay range:We value...
-
Security Operations Analyst
4 days ago
Quezon City, National Capital Region, Philippines ACCPRO INTERNATIONAL Full timeCybersecurity / SOC Analyst (Mid to Senior Level)Location: Quezon CityWork Setup: Hybrid (4 days onsite, 1 day WFH)Schedule: Flexible / ShiftingAbout the Role:We're looking for a proactive and skilled Cybersecurity / SOC Analyst to join our Cybersecurity Operations Team. This role is ideal for professionals passionate about protecting networks, detecting...
-
Makati City, National Capital Region, Philippines NEXUS TECHNOLOGIES INCORPORATED Full time ₱80,000 - ₱120,000 per yearThe Cyber Security Engineer 1 or 2 – Patch Management will be responsible for monitoring, day-to-day platform administration of patch management system and analysis of related CVE's and patches needed to ensure proper security hygiene. Apart from patch management activities, they will be expected to support SOC on different incident resolution activities...