7 часов назад
Security Operations Specialist (Fintech)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Operations Specialist (Fintech): Monitoring and investigating security alerts across SIEM, endpoint, email, cloud, and network sources with an accent on incident triage, threat analysis, and evidence-based escalation. Focus on correlating attacker behavior with MITRE ATT&CK, supporting containment and remediation, and improving detection quality through tuning, playbooks, and false-positive reduction.
Location: NCR - WGC, Philippines
Company
operates GCash, a fintech platform focused on creating convenient financial solutions for Filipinos.
What you will do
- Monitor, acknowledge, triage, and investigate security alerts from SIEM, EDR, email, cloud, network, endpoint, firewall, IDS, and DLP systems.
- Perform incident response activities including threat analysis, evidence correlation, scoping, containment support, remediation, and closure.
- Apply the Cyber Kill Chain and MITRE ATT&CK to assess attacker behavior, incident impact, and investigative findings.
- Document cases and prepare complete, actionable escalation notes for senior analysts, leads, and partner teams.
- Identify recurring false positives and weak detections, recommending improvements to rules, playbooks, dashboards, and SOC processes.
- Coordinate with system owners, application teams, infrastructure teams, and other stakeholders during investigations.
Requirements
- Experience in security monitoring, incident response, or security operations center work.
- Working knowledge of SIEM, EDR, email security, cloud security, and related monitoring tools.
- Ability to analyze logs, investigate suspicious activity, and reach evidence-based conclusions.
- Familiarity with MITRE ATT&CK, attacker behavior mapping, or comparable investigative frameworks.
- Strong technical documentation and case-writing skills, with sound judgment in a high-volume operational environment.
- Willingness to cover 24/7 working hours on a rotation schedule and occasional on-call duties.
Nice to have
- At least 2 years of SOC or incident response experience.
- A bachelor’s degree in computer science, IT, or a related field, or equivalent work experience.
- Experience with threat hunting, detection engineering feedback loops, SOAR-oriented processes, reverse engineering, malware forensics, or penetration testing.
- Experience supporting security operations in finance or fintech.
- Security certifications such as CC, GCIH, CDSA, CompTIA Security+, SANS/GIAC, or CEH.
Culture & Benefits
- Career growth and development opportunities.
- Dynamic and collaborative working environment.
- Competitive and flexible compensation and benefits package.
- Opportunity to contribute to fintech products serving the Philippines.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
9 часов назад
Senior Channel Solutions Engineer (Cybersecurity)
7 часов назад
Senior Incident Response Analyst (AI)
9 часов назад
Senior Security Incident Response Analyst (Fintech)
6 часов назад
Incident Response Analyst - MDR (Cybersecurity)
2 дня назад
Senior Security Operations Analyst (Detection & Response)
117 800 - 166 950$
5 дней назад