
Cybersecurity Engineer
- Taguig City, Metro Manila
- Permanent
- Full-time
- Lead and coordinate real-time monitoring, triage, and response to security incidents across cloud and on-prem environments.
- Develop and tune SIEM detection rules, use cases, and correlation logic to improve threat visibility.
- Perform threat hunting and forensic investigations using logs, endpoint telemetry, and network data.
- Collaborate with threat intelligence teams to integrate IOCs and TTPs into detection workflows.
- Maintain and enhance SOC playbooks, runbooks, and incident response procedures.
- Mentor junior SOC analysts and provide technical guidance during escalated incidents.
- Work with engineering and infrastructure teams to implement security controls and logging standards.
- Support compliance efforts (e.g., GLBA, FFIEC, PCI DSS) by ensuring logging, monitoring, and incident response capabilities meet regulatory requirements.
- Participate in red/blue/purple team exercises and post-incident reviews.
- Lead and coordinate real-time monitoring, triage, and response to security incidents across cloud and on-prem environments.
- Develop and tune SIEM detection rules, use cases, and correlation logic to improve threat visibility.
- Perform threat hunting and forensic investigations using logs, endpoint telemetry, and network data.
- Collaborate with threat intelligence teams to integrate IOCs and TTPs into detection workflows.
- Maintain and enhance SOC playbooks, runbooks, and incident response procedures.
- Mentor junior SOC analysts and provide technical guidance during escalated incidents.
- Work with engineering and infrastructure teams to implement security controls and logging standards.
- Support compliance efforts (e.g., GLBA, FFIEC, PCI DSS) by ensuring logging, monitoring, and incident response capabilities meet regulatory requirements.
- Participate in red/blue/purple team exercises and post-incident reviews.
- GIAC Certified Incident Handler (GCIH)
- GIAC Security Operations Certified (GSOC)
- Certified Information Systems Security Professional (CISSP)
- Certified SOC Analyst (CSA)