Security Operations Analyst
The Security Operations Analyst will provide technical, administrative, and procedural support for the Firm's information security program to protect the confidentiality, integrity, and availability of information systems in accordance with the Firm's business objectives, regulatory requirements, and strategic goals. Responsibilities: Provide Tier 2 technical and support services to the global organization on behalf of the Information Security Team. Receive, process, and resolve tickets per defined SLAs. Assist in the architecture, deployment, and ongoing support of key security systems necessary for the protection of firm assets. Understand firm policies and standards and effectively communicate those requirements to end users in a non-confrontational manner. Critically assess current practices and provide feedback to management on improvement opportunities. Report compliance failures to management for immediate remediation. Maintain assigned systems to ensure confidentiality, availability, integrity, and reliability, including oversight of current and projected capacity, performance, and licensing. Provide status reports and relevant metrics to the Security Operations Manager. Contribute to the firm's security-related information repositories and other marketing/awareness endeavors. Participate in special projects as needed. Liaise with the GSEC Engineering team as an advanced support participant for designated GSEC systems. Actively participate in cross-training and knowledge transfer opportunities with GSEC Engineering to obtain junior-level mastery of designated systems. Skills and Experience: Education and Certifications: Bachelor's Degree in Computer Science or substantial equivalent experience. Certifications: GSEC, GCIH, GCIA, GMON, Comptia CySa+. Desired: CISSP or SSCP. Technical Skills: Experience with common security platforms such as antivirus, full disk encryption, two-factor authentication, PKI, and data leakage protection. Deep understanding of TCP/IP, DNS, common network services, and foundational topics. Intermediate knowledge of server, workstation, and Active Directory technologies affecting security controls. Some experience with security operations response procedures, including security orchestration tools, ticketing systems, and handling threats (e.g., malware behavior and persistence), attacks, and vulnerabilities. Demonstrated experience implementing industry best practices in IT service delivery, problem management, risk management, and continuous improvement. Familiarity with Tier 2 customer issue handling and subject matter expert responsibilities within Security Operations, including root cause determination, remediation planning, and playbook updates. Soft Skills: Strong analytical and troubleshooting skills, including the ability to interpret user issues and resolve them within organizational policies and standards. Excellent written and oral communication skills with the ability to explain complex concepts to non-technical constituents. Proficiency in oral and written English. Critical thinking and composure under pressure. Capable of creating internal training materials and documentation. Productive and focused without direct supervision. Passionate about customer service excellence, striving for first-call resolution, and demonstrating empathy, respect, professionalism, and expertise. Willing to accommodate shift-based work for a global organization. Experience with Tools and Technologies: AWS: DynamoDB, Aurora, Parameter Store, CloudWatch, CodePipeline. Databases: PostgreSQL, TimescaleDB, Kafka, Redis, Redshift. CICD: Git Workflow, Docker, Docker Compose. Security Concepts: Test-Driven Development, Domain-Driven Design, Hexagonal Architecture, Microservices. Other Skills: Websockets, ITCH and FIX Protocol, Scikit-Learn.
-
Quezon City
-
Permanent
-
PHP100000 - PHP120000 per month