IT.Security Operations Analyst
The Citco Group Limited
Date: 4 hours ago
City: Makati City
Contract type: Full time

Job Description
The SOC Analysts work collaboratively to detect and respond to information security incidents, maintain and follow procedures for security event alerting, and participate in security incident investigations. The SOC analyst is responsible for investigating security events by performing the following:
Security Analysts work with and learn from experienced security team leaders and use the latest technology to detect, analyze and limit intrusions and security events. Candidates must be willing to work in a 24x7x365 SOC environment, demonstrate intuitive problem solving skills and allow for flexible scheduling. The SOC Analyst must be competent to work at a high technical level, have a good understanding of threat routes/pathways, identification of potential/active threats, and understand how threat vectors can impact the environment.
Responsibilities
The SOC Analysts work collaboratively to detect and respond to information security incidents, maintain and follow procedures for security event alerting, and participate in security incident investigations. The SOC analyst is responsible for investigating security events by performing the following:
- Monitoring
- Researching
- Classifying
- Analyzing
- Security Incident and Event Management (SIEM)
- Endpoint Protection (EPP)
- Endpoint Detection & Response (EDR) systems
- Email Threat Protection (ETP) platforms
- Security Orchestration, Automation and Response (SOAR) platform
- Intrusion Prevention Systems (IPS) or NGFW’s
- Others
Security Analysts work with and learn from experienced security team leaders and use the latest technology to detect, analyze and limit intrusions and security events. Candidates must be willing to work in a 24x7x365 SOC environment, demonstrate intuitive problem solving skills and allow for flexible scheduling. The SOC Analyst must be competent to work at a high technical level, have a good understanding of threat routes/pathways, identification of potential/active threats, and understand how threat vectors can impact the environment.
Responsibilities
- Monitors and analyzes Intrusion Prevention Systems (IPS) and Security Information and Event Management (SIEM) to identify security issues for remediation
- Performs network and endpoint security monitoring and incident response
- Maintains records of security monitoring and incident response activities, utilizing case management and ticketing technologies
- Creates, modifies, and updates Security Information Event Management (SIEM) rules
- Escalates alerts regarding intrusions and compromises to the network infrastructure, applications and operating systems.
- Assists with analysis of threat data obtained from proprietary and open source resources to provide indication and warnings of impending attacks against networks within the relevant vertical
- Prepares briefings for SOC Manager and reports of analysis methodology and results
- Creates and maintains standard operating procedures and other similar documentation
- Generates end-of-shift reports for documentation and knowledge transfer to subsequent analysts on duty
- Work independently with or without direction and/or supervision
- Demonstrate effective teamwork and working relationships with others, both from CITCO and security vendors
- Other projects and responsibilities, as assigned by direct supervisor
- 2 to 4 years of experience in an in-house Security Operations Center team, or in an Security Consulting firm with an understanding of networking principles in a global environment across multiple data centers
- Candidates must be able to work a flexible schedule within a 24x7x365 Security Operations Center (SOC) environment, as well as may be expected to work holidays.
- A strong candidate is expected to have some or all of the following traits:
- Excellent analytical and problem-solving skills and interpersonal skills to interact with team members and upper management
- An understanding of cyber security incident response and network security monitoring
- Fundamental understanding of computer networking (TCP/IP), knowledge of windows, Linux and palo alto operating systems and information security principles
- Knowledge of intrusion detection/prevention systems (IDS/IPS) and SIEM technologies in an enterprise environment
- Good knowledge of endpoint protection (EPP) and endpoint defense and response (EDR) solutions
- Drive to learn and a desire and motivation to achieve IT security related certifications
How to apply
To apply for this job you need to authorize on our website. If you don't have an account yet, please register.
Post a resumeSimilar jobs
Billing Analyst - Philippines
Ogilvy,
Makati City
6 hours ago
About Ogilvy Ogilvy has been creating impact for brands through iconic, culture-changing, value-driving ideas since the company was founded by David Ogilvy 75 years ago. It builds on that rich legacy through Borderless Creativity – innovating at the intersections of its advertising, public relations, relationship design, consulting, and health capabilities with experts collaborating seamlessly across over 120 offices in nearly...

CSL Credit Assistant
BDO Unibank,
Makati City
1 day ago
Job MandateThe CSL Credit Assistant acts as alternate point person for receiving all applications from Sales Support Assistants in accordance with established cut-off time for Salary loans. This position is responsible for the initial review and processing of loan applications in accordance with the established policies and procedures for Salary loans and other various products such as Pabahay Loan, Seafarer...

Software Engineer
Optum,
Makati City
3 days ago
Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by diversity and inclusion, talented...
