Information Security Analyst II
On-site · Quezon City, Metro Manila, Philippines
Job Summary
Design, implement, and maintain enterprise-wide security policies, procedures, and systems across endpoints and networks. Proactively identifies risks, investigates incidents, and develops strategies to strengthen defenses. Evaluate, test, recommend, and implement security solutions; monitor complex systems; conduct detailed investigations of security events; lead incident handling (containment, remediation, recovery); design and configure security systems (proxies, remote access, mail gateways, DLP, SIEM, WAF); perform risk assessments and compliance audits (ISO, PCI, HIPAA, etc.); align security initiatives with policy and regulatory requirements; contribute to long-term security strategy including penetration testing and policy creation; collaborate with business stakeholders and maintain ongoing security posture.
Required Qualifications
- Minimum Qualifications Bachelor’s Degree in Computer Science, Information Security, or related field; or equivalent work experience
- Minimum of 4 years of hands-on experience in Endpoint Security (EDR, SIEM, DLP, etc.)
- Hands-on experience in Unix, Linux, macOS, or Windows environments
- Proven background in security operations, SIEM, and log analysis
- Familiarity with PCI, SOX, GLBA, and other regulatory standards
- Experience with cloud platforms (AWS, GCP, Azure) and endpoint security in cloud environments
- Professional certifications such as CISSP, CISM, CISA, GSEC, Network+ or Security+
- Strong knowledge of compliance frameworks (PCI, SOX, GLBA) and cloud security standards
- Knowledge of security architectures including proxies, remote access, mail gateways, WAF, DLP, and SIEM
- Experience with incident response and risk assessment
- Ability to work independently and collaborate with stakeholders
- Desire to stay current on evolving threats and security best practices
Desired Qualifications
- Bachelor’s degree in Computer Science, Information Security, or related field; or equivalent work experience
- Minimum of 4 years of hands-on experience in Endpoint Security (EDR, SIEM, DLP, etc.)
- Experience across Unix, Linux, macOS, or Windows environments
- Familiarity with PCI, SOX, GLBA, and other regulatory standards
- Experience with cloud platforms (AWS, GCP, Azure) and deployment of endpoint security solutions in cloud environments
- Professional certifications such as CISSP, CISM, CISA, GSEC, Network+ or Security+
- Strong collaboration and incident response skills
- Knowledge of security standards (NIST, ISO 27001) and threat modeling
- Experience with security operations, log analysis, and vulnerability management
- Ability to perform risk assessments and support compliance audits
- Experience with proxies, remote access, mail gateways, WAFs, DLP, SIEM, and related security controls
- Experience with penetration testing and vulnerability assessment programs
- Ability to work independently and with senior stakeholders at scale
- Experience with enterprise security architecture and design
Apply with one swipe on Sorce. We auto-fill applications and apply on your behalf — no cover letters, no 40-minute forms.
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.