Quick Summary
Requirements Summary
Bachelor’s degree in computer science, information technology, or a related field, or equivalent practical experience. Experience: 0–2 years in security operations, IT support,
Technical Tools
OtherSupport
Duties and Responsibilities Monitor SIEM dashboards, alerts, and security events across network, endpoint, cloud, and application log sources on a 24/7 shift rotation. Perform initial triage, classification, and prioritization of security alerts following documented playbooks and runbooks. Escalate validated or complex incidents to SOC L2 with complete and accurate documentation of findings and actions taken. Record all alerts, investigations, and response actions in the case management/ticketing system. Perform routine health checks on security monitoring tools and report gaps in log sources or detection coverage. Triage phishing reports and user-reported security concerns, executing first-response steps per playbook. Execute containment actions as directed by SOC L2 or the incident lead during active incidents. Contribute tuning recommendations to reduce false positives and improve alert quality. Maintain complete shift-handover logs to ensure continuity of monitoring between shifts. Key Performance Indicators/ Key Success Factors Mean time to acknowledge (MTTA) alerts within defined SLAs. Alert triage accuracy and quality of escalations to SOC L2. Percentage of alerts and cases handled within SLA. Completeness and quality of case documentation and shift handovers. False-positive identification and tuning recommendations submitted. Requirements Education: Bachelor’s degree in computer science, information technology, or a related field, or equivalent practical experience. Experience: 0–2 years in security operations, IT support, or network/system administration; prior SOC or managed security service experience preferred. Must be willing to work on a 24/7 shift rotation. Skills & Knowledge: Foundational knowledge of networking (TCP/IP, DNS, HTTP), Windows and Linux operating systems, and common attack techniques (MITRE ATT&CK); familiarity with SIEM platforms (Splunk, Microsoft Sentinel, QRadar, or similar) and ticketing tools. Certifications (good to have): CompTIA Security+, CompTIA CySA+, or Microsoft SC-200 preferred.
Location & Eligibility
Where is the job
Paranaque City, Philippines
On-site at the office
Listing Details
- Posted
- September 28, 2026
- First seen
- September 28, 2026
- Last seen
- September 28, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 57%
- Scored at
- September 28, 2026
Signal breakdown
freshnesssource trustcontent trustemployer trust
External application
Browse Similar Jobs
Newsletter
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
A
B
C
D
No spam. Unsubscribe at any time.