Associate Security Analyst
.
We usually respond within a week
The Associate SOC Analyst will be responsible for monitoring and responding to security incidents using various security tools such as SIEM (Security Information and Event Management), AV (Antivirus), Endpoint Detection and Response (EDR), VM (Vulnerability Management), TI (Threat Intelligence) and SOAR (Security Orchestration and Automatic Response).
• Be ensuring that internal and customer’s IT infrastructure remains secure.
•The role involves incident detection, analysis, and response, as well as continuous monitoring for threats.
• As an Associate SOC Analyst, you will be required to work in a 24/7 shift rotation, including nights, weekends, and holidays.
Minimum Requirements
The minimum required skills (education and experience) are:
• You are service minded and a team-player
• You are structured, detail-oriented and put an honor in the quality of your work
• You can communicate your professional knowledge to end-users as well as experts
• You are self-driven and solution-oriented
• You have strong analytical and critical thinking skills to quickly assess and respond to security incidents
• You have a minimum understanding in DNS, TCP/IP networks and protocols
• You have a minimum understanding in Antivirus, IDS/IPS, SIEM, SOAR and Vulnerability Management tools
• You have a basic knowledge of cloud platforms (Azure, AWS)
• You are keen to learn, taking part in trainings and certifications
• You are fluent in English – both spoken and written
• You are willing to work in 24/7 rotation Job Responsibilities
The responsibilities of this job are to:
• Security Monitoring:
o Continuously monitor security alerts and events using tools defined in Section 2 in this document to detect potential security threats.
o Analyze and prioritize alerts based on the severity and impact of the potential threat.
• Incident Detection and Response:
o Investigate security incidents, identify the root cause, and take appropriate actions based on established procedures.
o Escalate incidents to higher-level analysts or other teams when necessary.
• Incident Management:
o Document and track security incidents within the ITSM system, ensuring accurate and timely recording of all relevant information.
o Collaborate with team members to ensure incidents are resolved in a timely manner.
• Threat Analysis:
o Conduct basic threat analysis to understand the nature of identified threats and potential risks to the organization.
o Utilize available threat intelligence to enhance detection capabilities.
• Security Tools Operation:
o Operate and maintain security monitoring tools defined in Section 2 in this document, ensuring they function optimally.
o Provide input on tool configurations to enhance detection and response capabilities.
• Communication and Reporting:
o Communicate findings and incident details to team members and other stakeholders as needed.
o Generate regular reports on security incidents and monitoring activities.
• Continuous Learning:
o Participate in ongoing training to stay up-to-date with the latest cybersecurity threats, trends, and tools.
o Engage in knowledge sharing within the team to improve collective expertise.
- Locations
- itm8 Philippines
- Fields of work
- IT Support
About itm8 PH
We are itm8, your IT partner with 20+ years of experience providing strategic IT guidance and ensuring stable operations.
With offices in Denmark, Sweden, Czech Republic, and the Philippines, we are 1,700+ itm8s – including specialist in cyber security, cloud, software, infrastructure, AI and more.
We celebrate PURPLE POWER, our unique culture of collaboration, ambition, and growth. itm8 is for people who want to continually innovate. Who ask: What can I build today? Where can it take us tomorrow?