Security Analyst / Network Security Analyst
R
Ripped Box Station
50 - 55K PHP
Full-time
Remote
Network SecurityCybersecuritySIEM MonitoringIncident ResponseVulnerability Assessment
Key Responsibilities
- Monitor Security Information and Event Management (SIEM) dashboards and security monitoring tools for potential threats and suspicious activities.
- Perform initial alert triage and escalate security incidents to senior analysts in accordance with established incident response procedures.
- Analyze network security events, logs, and alerts from firewalls, intrusion detection/prevention systems (IDS/IPS), endpoint protection, and other security technologies.
- Assist in vulnerability scanning activities and support remediation validation for identified security weaknesses.
- Support incident response activities by documenting findings, collecting evidence, and maintaining incident records.
- Assist in preparing security reports, dashboards, compliance documentation, and operational metrics.
- Support security advisory activities by responding to user security inquiries and promoting cybersecurity awareness.
- Collaborate with infrastructure, network, cloud, and application teams to investigate and resolve security issues.
- Participate in routine security health checks, access reviews, and compliance monitoring activities.
- Maintain security documentation, standard operating procedures (SOPs), and knowledge base articles.
- Follow organizational security policies, incident handling procedures, and regulatory compliance requirements.
- Escalate security incidents, risks, and operational issues to senior security analysts or SOC leads when necessary.
Required Qualifications
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Computer Engineering, or a related field.
- 0–2 years of experience in Cybersecurity, Security Operations, Network Administration, IT Support, or a related technical role.
- Basic understanding of cybersecurity principles, networking concepts, and information security best practices.
- Familiarity with TCP/IP, DNS, VPN, firewalls, routers, and switches.
- Basic knowledge of SIEM platforms and security monitoring concepts.
- Understanding of common cyber threats, vulnerabilities, malware, phishing, and attack vectors.
- Familiarity with Windows and Linux operating systems.
- Strong analytical, problem-solving, and communication skills.
- Ability to work under close guidance and daily supervision.
- Willingness to work in a shift-based Security Operations Center (SOC) environment, if required.
Preferred Certifications
- CompTIA Security+
- AWS Certified Cloud Practitioner
- Microsoft Azure Fundamentals (AZ-900)
- Cisco Certified Support Technician (CCST) Cybersecurity or Cisco Certified Network Associate (CCNA)
- Scrum Foundations
- ITIL Foundation (Preferred)
Technical Skills
- Security Operations Center (SOC) Fundamentals
- SIEM Monitoring & Alert Triage
- Network Security Fundamentals
- TCP/IP, DNS, VPN & Firewall Concepts
- Vulnerability Scanning Fundamentals
- Incident Response Fundamentals
- Windows & Linux Administration
- Endpoint Security Fundamentals
- Security Documentation & Reporting
- Microsoft Defender, Microsoft Sentinel, Splunk, QRadar, or similar SIEM platforms (Basic Knowledge)
- Agile & IT Service Management (ITSM)
- Security Awareness & Compliance