Security Operations Center Analyst
PM Consulting View all jobs
- Quezon City, Metro Manila
- Permanent
- Full-time
- Monitor security monitoring platforms and tools to detect potential threats, suspicious activities, or malware-related events.
- Analyze alerts and logs to identify potential security incidents affecting systems, networks, or applications
- Validate alerts and perform initial investigation to determine whether events represent legitimate security incidents.
- Utilize threat intelligence sources and open-source information to assist with incident validation and analysis.
- Perform triage and investigation of security events following established incident response procedures.
- Correlate event data from multiple sources to determine potential root causes and recommend remediation actions.
- Escalate incidents to appropriate teams when advanced investigation or response is required.
- Manage cases throughout the incident lifecycle, ensuring proper documentation and tracking.
- Assist in maintaining and improving detection capabilities across security monitoring platforms.
- Contribute recommendations to enhance security tools, monitoring strategies, and operational processes.
- Participate in security assessments related to critical infrastructure and sensitive systems.
- Research emerging threats, vulnerabilities, and malware trends to support proactive security improvements.
- Maintain and update operational documentation such as standard operating procedures and incident investigation guides.
- Generate reports and metrics related to security operations activities and incident trends.
- Support compliance efforts by aligning with established security policies, governance practices, and change management processes.
- Participate in cybersecurity initiatives and collaborate with technical teams to strengthen security practices across projects.
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related technical discipline.
- Approximately 3–4 years of experience in IT, cybersecurity operations, or a related technical field.
- Working knowledge of cybersecurity monitoring tools, networking technologies, and security protocols.
- Experience with security event monitoring platforms such as SIEM solutions.
- Familiarity with firewall technologies, network security tools, and web security controls.
- Understanding of identity and access management tools and related security monitoring technologies.
- Experience investigating and documenting security incidents and identifying emerging threat patterns.
- Strong understanding of IT infrastructure components including Active Directory, DNS, and network security systems.
- Experience performing proactive threat hunting or identifying malicious activity within enterprise environments
- Familiarity with industry security frameworks and compliance standards such as ISO 27001, HIPAA, or SOX.
- Security monitoring and threat detection
- Incident investigation and analysis
- Attention to detail and analytical thinking
- Technical documentation and reporting
- Collaboration with cross-functional technology teams