Security Engineer
S
SMS Global Technologies, Inc.
55 - 100K PHP
Full-time
N/A
Cybersecurity Specialist
Qualifications
- Bachelor’s degree in Information Technology, Computer Science, or a related field
- Minimum of 7 years of experience in network and systems administration or related technical domains
- At least 3 years of hands-on experience in cybersecurity, with a strong focus on technical security assessments and methodologies
- Strong critical thinking and analytical skills with high attention to detail
- Demonstrated accountability and ability to work both independently and collaboratively within a team
- Adaptable, resourceful, and eager to learn and adopt emerging security technologies and platforms
- Working knowledge of security standards and frameworks such as NIST, MITRE ATT&CK, CIS, ISO/IEC 27001, and CVE
- Familiarity with indicators of compromise (IOCs), OWASP Top 10, common attack types, malware behavior, threat actors, and vulnerability analysis
- Experience using security monitoring tools, cloud security platforms, and operating within enterprise or global cybersecurity environments
- Proven ability to manage customer issues, including troubleshooting, providing recommendations, and delivering clear and comprehensive reports
Core Responsibilities
Security Assessment & Penetration Testing (SA/PT)
- Develop processes, tools, and techniques to enhance the delivery of security services
- Conduct vulnerability and penetration testing based on industry standards (OWASP, NIST, SANS, STIG, etc.) across servers, networks, and applications
- Simulate attacks and evaluate adversarial techniques to identify vulnerabilities and potential exploitation paths
- Perform end-to-end security testing and deliver detailed threat and vulnerability assessment reports with findings, risk analysis, impact, and recommended mitigations to stakeholders
Threat Hunting & Threat Intelligence
- Support proactive threat hunting operations and collaborate on threat monitoring initiatives
- Manage threat intelligence platforms, feeds, and workflows to ensure timely detection, classification, and response to security incidents
- Analyze emerging threats, patterns, and adversarial tactics
- Produce threat intelligence reports, dashboards, and knowledge-sharing materials for stakeholders
- Stay current with evolving tools, technologies, and methodologies in cybersecurity and threat intelligence
Operational and Technical Responsibilities
- Proactively monitor and manage systems and hardware
- Track, monitor, and report system status, issues, risks, mitigations, and callouts, ensuring KPIs and customer satisfaction are met
- Conduct site and system inspections, handle support mobilization planning, and ensure efficient support and/or deployment
- Lead project handover, demonstrations, training sessions, workshops, knowledge transfer, and proofs-of-concept (POC) until project realization with customers
- Responsible for end-to-end project implementation, including development, testing, quality assurance, handover, training, workshops, demonstrations, knowledge transfer, post-implementation support, and POC until project realization
- Conduct and/or assist with technical deep-dive requirements gathering, solution presentation, architecture design, feasibility and market studies, system audits, KPI analysis, system assessments, service investigations, validation, documentation, and pre/post-sales tasks to ensure best-practice deployment and optimization
- Explore new services and solutions to identify business opportunities
- Cross-check project deviations and qualifications, ensuring compliance and quality
- Propose and implement recommendations and processes to proactively prevent customer issues, minimize future risks, and maintain high customer satisfaction
- Manage multiple projects simultaneously while driving positive changes internally and externally