Jobiglo

No results.

SOC Analyst

Astute Cybersecurity · Cebu

New
🇬🇧 English
SIEM SOAR EDR IDS IPS TCP/IP Windows Linux Python PowerShell SQL APIs MITRE ATT&CK PCAP network forensics threat hunting incident response

Job description

About the role

We are seeking a skilled and driven SOC Analyst to join our growing Security Operations Center. This role is critical in detecting, investigating, and responding to cyber threats affecting both internal and managed customer environments. You will work as part of a 24x7 SOC team tasked with maintaining our organization's cybersecurity resilience.

Key responsibilities

  • Monitor SIEM, SOAR, EDR, and other cybersecurity tools to identify and analyze security events.
  • Proactively detect anomalies and suspicious behaviors across infrastructure and endpoints.
  • Correlate data from diverse sources to uncover advanced threats.
  • Investigate and respond to security events, including triage, containment, and recovery.
  • Perform root cause analysis, threat attribution, and vector identification.
  • Document incidents in accordance with standardized procedures and escalation protocols.
  • Conduct proactive threat hunting to detect undetected threats and APT behaviors.
  • Research emerging threats, vulnerabilities, and TTPs.
  • Analyze threat intelligence feeds and reports to inform SOC operations.
  • Develop and fine‑tune detection use cases to enhance SOC effectiveness.

Required profile

  • Bachelor’s degree in Computer Engineering, Electronics Engineering, Information Technology, or related discipline.
  • Solid understanding of TCP/IP networking and common enterprise protocols.
  • Moderate‑level experience with SIEM, SOAR, EDR, and IR tools.
  • Familiarity with IDS/IPS technologies and rule analysis.
  • Working knowledge of current cyber threats including APTs, malware, and cybercrime tactics.
  • Foundational knowledge in Windows and Linux operating systems and endpoint security controls.
  • Familiarity with forensic investigation concepts and incident response methodologies.
  • Comfortable working in a 24x7 operational environment (shift‑based and on‑call as required).

Required skills

  • SIEM, SOAR, EDR tools
  • IDS/IPS technologies
  • TCP/IP networking
  • Windows and Linux operating systems
  • Python scripting
  • PowerShell scripting
  • SQL queries and API integration
  • MITRE ATT&CK framework
  • PCAP and network forensics
  • Threat hunting and incident response

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Astute Cybersecurity.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

By continuing, you accept our terms of use.

Already have an account? Login

💬 Chat with us on Telegram Chat on WhatsApp

Published 7 hours ago

Expires 1 month from now

5 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

Astute Cybersecurity

Cebu