SOC Team Lead
2 days ago
I PURPOSEParticipate and support activities that will help improve the existing service operations and operationalize the service portfolio to achieve service excellence, operational efficiency, and retention of customers.II. DUTIES AND RESPONSIBILITIESAccomplish all assigned tasks by the Shift Manager in a timely and effective manner as deemed necessary for the betterment of the organization.Follow effective and efficient processes and comply with escalation protocols.Report significant events to the Shift Manager and participate in shift turnovers.Contribute to the knowledge and information relevant to Service Operations.Collaborate with other team members to improve workflows, documentations, standards, and processes.Participate in activities promoting a harmonious working environment such as demonstrating trust and respect and practicing open communication.Comply with company policies, guidelines, standards, and procedures.Perform all other duties and tasks as assigned by the Shift Manager and MSS Manager.Availability ManagementManage daily shifts and leaves, create operational procedures, and schedule team members' trainings to be taken as compliance to agreed levels of availability of people and processes needed for Service Operations delivery.Monitor daily metrics compliance defined by the management and is accountable for the team's daily operations.Ensure that the tools being used are appropriate for the agreed service level targets for availability such as tools for requesting access and for error/Incident reporting and escalation.Capacity ManagementDetermine and track the capacity and performance of people, processes, and organizational controls, and ensure resolution of issues through operational adjustment of processes, tools, and people.Execute strategies developed by the managers to deliver the service and plans for short, medium, and long-term business requirements.IT Service Continuity ManagementPerform the role assigned in the Business Continuity Plan (BCP).Lead the team in following and participating in Business Continuity Plan (BCP) activities to ensure continuity of performance of people and processes and that minimum agreed service levels are met in case of a disruptive incident/s.Risk ManagementParticipate in the execution of risk treatment plans to people and processes needed for Service Operations that may impact clients, Sales Groups, and other relevant stakeholders.Service Level ManagementEnsure compliance of Service Level Agreements with clients.Manage the performance of team members in Internal SupportMonitor and report on Operational Service Levels.Change Advisory BoardReview Method of Procedures (MOP) to be presented during Managed ICT Services Change Advisory Board meetings.Participate in client Change Advisory Board meetings as needed.Create advisories on the possible impact, risks, and effects of proposed client changes.Provides Method of Procedure/s and other documentation to clients whenever necessary.Configuration ManagementCollects and ensures accurate information of configurations of client assets during Service Operations.Maintains information about Configuration Items (CIs) of client assets as part of Service Operations.Maintains a logical model, containing the components of client CIs and their associations.Handover configuration items and other relevant information to Service Transition for Offboarding.Client SupportEnsure that the team members are:o Performing triage received events and incidents.o Handling cases assigned to team members.o Performing brand monitoring and takedown requests.o Processing Service Requests within agreed Service Level Agreement.o Undertaking immediate effort/s to restore a failed service of a Managed Service client as quickly as possible.o Handling escalation and follow-ups until resolution.Create Incident and Root-Cause-Analysis (RCA) Reports.Execute set frameworks, guidelines, and procedures that follow best practices and applicable frameworks for Events Management, Incident Management, and Service Requests.Client Incident ManagementCreate operational playbooks to detect, analyze, eradicate, remediate, and recover from client cybersecurity and quality of service incidents.Lead resolution of Priority-2 escalations.Lead initial triage and resolution of Priority-1 incidents.Escalate incidents that may turn into a problem or disaster.Create RCA Reports and execute Compromise Assessment/Preventive Action (CA/PA).Client Access ManagementEnsure team members perform authorization of users' right to access client assets, while preventing access to non-authorized users.Essentially executes Terms and Conditions of the client.Client IT Asset ManagementEnsure that clients' managed assets are accounted for, maintained, upgraded if within scope.Monitors the clients' managed assets lifecycle and provides reports and recommendations to the Client, Service Delivery Manager/s, and other relevant stakeholders.Client Problem ManagementProvide necessary data and ensure CA/PA is implemented.Ensure team's compliance to contractual problem management deliverables.Process ManagementCreate, share, use, and manage the documented processes of Service Operations, and ensure that these processes are being followed.Knowledge ManagementResponsible in updating the knowledge and information pertaining to existing Clients and clients' Managed ICT assets.Continual Service Improvement ManagementExecute improvement plans of the people and processes of Service Operations.Suggest, follow, and deploy new processes, and ensure that the team follows.Review and guarantee quality of data and content of tickets.III. QUALIFICATIONSA. Minimum EducationMust be a graduate of any IT related bachelor's degree such as:o Computer Studieso Computer Engineeringo Information Technologyo Electronics EngineeringB. Minimum Experience/TrainingHave at least 4 years of working experience in a 24x7x365 Security or Network Operations Center.Trainings and/or certifications on any of the following domains are required:IT Service ManagementIT Infrastructure (Network, Servers, Cloud, etc.)Cybersecurity and/or Information SecurityC. Competency(F) - Familiar / 0-12 months (N) - Novice / 1-2 years (I) - Intermediate / 3-4 years (A) - Advanced / > 5 yearsKNOWLEDGE(I) Knowledge of cybersecurity and privacy principles.(I) Knowledge of computer networking concepts and protocols, and network security methodologies.(I) Knowledge of risk management processes (e.g., methods for assessing and mitigating risk).(I) Knowledge of cyber threats and vulnerabilities.(I) Knowledge of specific operational impacts of cybersecurity lapses.(I) Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth).(I) Knowledge of system administration, network, and operating system hardening techniques.(N) Knowledge of MITRE ATT&CK Framework and NIST SP800-61SKILL(N) Skill in using SIEM (Splunk or McAfee SIEM is a plus) and SOAR (Swimlane or Siemplify is a plus) platforms(I) Skill of identifying, capturing, containing, and reporting malware.(I) Skill to design incident response procedures.(I) Skill to collaborate with different teams and communicate thoughts and ideas.ABILITY(N) Ability to apply SOAR playbooks and SIEM correlation rules for investigating host and network-based intrusions.COMMUNICATION SKILLS(N) Speaks clearly and can be easily understood.(N) Expresses & speaks ideas in a logical and organized sequence.(N) Writes clearly, concisely, and effectively.(N) Expresses ideas in a logical and organized sequence in written form.IV. WORKING CONDITIONSReporting to the company's main office in Makati City.Shifting schedule.Collaborate physically and/or virtually with internal and external stakeholders.May travel for company-sponsored conferences and related marketing events.Attend training and acquire certifications that are applicable to the role.
-
SOC Engineer
2 days ago
Makati City, National Capital Region, Philippines Yempo Solutions Full time ₱180,000 - ₱250,000 per yearWe have an exciting day shift,opportunity available for a SOC Engineer. Work from home or the office - you chooseWhen you join Yempo, you'll receive the following fantastic benefits:Highly competitive salary – paid weeklyHMO enrollment on commencementAdditional HMO dependents added each year of service20 vacation days per year; 7 sick daysAnnual...
-
SOC Team Lead
2 days ago
Makati City, National Capital Region, Philippines Trends Group, Inc. Full time ₱1,200,000 - ₱2,400,000 per yearI. PURPOSEParticipate and support activities that will help improve the existing service operations and operationalize the service portfolio to achieve service excellence, operational efficiency, and retention of customers.II. DUTIES AND RESPONSIBILITIESAccomplish all assigned tasks by the Shift Manager in a timely and effective manner as deemed necessary...
-
SOC Analyst
1 week ago
Quezon City, National Capital Region, Philippines Richard Fleischman & Associates, Inc. Full time ₱300,000 - ₱600,000 per yearCertification requirements = Microsoft Certified: Security Operations Analyst Associate SC200Working shift - 6pm - 3:30am PHT - Sunday - Thursday As a member of the RFA Security Operations Center, a SOC Analyst monitors and analyzes the output from various security monitoring and scanning tools to detect malicious or anomalous activity on behalf of RFA...
-
SOC Analyst
2 days ago
Quezon City, National Capital Region, Philippines Richard Fleischman & Associates Full time ₱1,200,000 - ₱2,400,000 per yearCertification requirements = Microsoft Certified: Security Operations Analyst Associate SC200 Working shift - 6pm - 3:30am PHT - Sunday - Thursday As a member of the RFA Security Operations Center, a SOC Analyst monitors and analyzes the output from various security monitoring and scanning tools to detect malicious or anomalous activity on behalf of RFA...
-
L1 SOC Analyst
7 days ago
Mandaluyong City, National Capital Region, Philippines Emapta Full time ₱1,200,000 - ₱2,400,000 per yearGuard the Future of Cybersecurity with Balance in Mind Cybersecurity is more than firewalls and alerts-it's about protecting what's most valuable. Here, you'll dive into defense, sharpen your threat-hunting skills, and expand your expertise in IT security. All while enjoying the balance to unplug, recharge, and live securely beyond the screen. Job...
-
Security Operations Lead
2 weeks ago
Makati City, National Capital Region, Philippines PRO INTEGRATE WORLD IT CONSULTING INC. Full time ₱1,000,000 - ₱1,500,000 per yearSecurity Operations LeadLocation: Makati CityWork Setup: HybridSchedule: Day ShiftEmployment Type: Full-TimeAbout the RoleWe are seeking a skilled and experienced Security Operations Lead to manage and oversee the organization's cybersecurity operations. This role will lead both Red and Blue Teams, drive SOC initiatives, and ensure proactive detection and...
-
Security Operations Manager
2 days ago
Makati City, National Capital Region, Philippines Kroll Global Solutions Inc. Full time ₱80,000 - ₱120,000 per yearSecurity Operations ManagerThe SOC Manager will lead the Security Operations Center, overseeing day-to-day security monitoring, incident detection, response, and threat intelligence activities. This role requires strong technical expertise in cybersecurity, leadership skills to manage a team of analysts, and the ability to coordinate with cross-functional...
-
SOC Analyst
5 days ago
Makati City, National Capital Region, Philippines Trends Group, Inc. Full time ₱250,000 - ₱500,000 per yearI. PURPOSEParticipate and support activities that will help improve the existing service operations and operationalize new service portfolio to achieve service excellence, operational efficiency, and retention of customers. II. DUTIES AND RESPONSIBILITIES• Accomplish all assigned tasks by the Shift Manager in a timely and effective manner...
-
Mandaluyong City, National Capital Region, Philippines Emapta Full time ₱800,000 - ₱1,200,000 per yearAutomate. Detect. Defend.Take cybersecurity to the next level. Use your Sentinel and Defender expertise to sharpen detection rules, automate playbooks, and lead investigations that keep global businesses secure. This is your chance to grow your SOC career while enjoying balance and purpose in your every day.Be at the Core of Cyber DefenseBe part of our...
-
Makati City, National Capital Region, Philippines Paynamics Technologies Inc. Full time ₱1,200,000 - ₱3,600,000 per yearA Security Operations Center (SOC) Analyst is responsible for monitoring, detecting, investigating, and responding to cybersecurity threats and incidents in real-time. This position plays a crucial role in maintaining the organization's security posture and protecting critical assets from cyber threats. Key ResponsibilitiesMonitor and analyze security...