Citco logo
CitcoPosted 1 month ago

IT.Senior SOC Analyst

HybridMakati City, Metro Manila, Philippines

Full TimeSenior LevelBachelors DegreeLargeFinancial Services

Job Summary

Lead end-to-end investigations involving malware, APTs, lateral movement, and insider threats while serving as the escalation point for complex security incidents. Conduct proactive threat hunting across on-prem and cloud environments using SIEM, EDR, and threat intelligence tools to identify and mitigate threats in a 24x7x365 SOC environment. Tune detection rules aligned to MITRE ATT&CK frameworks and develop SOAR playbooks to automate response actions. Collaborate with IT and DevSecOps teams to validate findings and coordinate remediation, while mentoring junior analysts through knowledge transfer sessions and training materials. Maintain accurate case documentation and contribute to post-incident reviews to propose hardening initiatives.

Required Qualifications

  • 3–5+ years of experience in a 24x7 SOC, CSIRT, or cyber incident response role in a global enterprise
  • Deep knowledge of SIEM, EDR and SOAR platforms and security automation tools
  • Familiarity with threat intelligence standards (e.g., STIX/TAXII) and frameworks like MITRE ATT&CK
  • Strong hands-on experience with forensic tools and utilities (e.g., Sysinternals, Wireshark)
  • Proficient in scripting and automation (e.g., PowerShell, Python)
  • Excellent verbal and written communication skills, especially for documentation, briefings, and reporting
  • Critical thinking and problem-solving skills with a high attention to detail
  • Comfortable working independently or collaboratively under pressure
  • Willingness to work flexible hours including weekends, holidays, and on-call as needed

Desired Qualifications

  • Preferred certifications: GCIH, GCIA, CEH, CySA+, or equivalent

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce