Jobs › Companies › Astreya › Security Operations III - Cyber Security Analyst

About this Security Operations III - Cyber Security Analyst role at Astreya

Astreya · Onsite · Taguig City, Philippines

About the Role

We are seeking a dedicated Cyber Security Analyst to join one of our client's teams of cybersecurity professionals. In this role, you will work closely with senior security team members to master existing security processes, procedures, and protocols. We are committed to the ongoing professional development of our team, providing the resources and collaborative environment needed to further elevate your technical expertise.

 

Scope of Work

  • Incident Response & Triage: Conduct in-depth investigations and incident response for complex security events, including Managed Detection and Response (MDR) alerts, malware/phishing campaigns, and CASB/SOC escalations.
  • Threat Hunting & Analysis: Analyze anomalous log data and collaborate during brainstorming sessions to proactively detect and eradicate threat actors across client networks.
  • Process Improvement & Automation: Analyze security incidents to enhance the alert catalog and continuously improve processes. Leverage automation to streamline detection sets and build a more efficient security posture.
  • Reporting & Remediation: Manage escalated investigations handed off from the Service Desk from start to finish. Provide comprehensive reports detailing the investigation's outcome, recommended remediation actions, and strategies to prevent future occurrences.

 

Required Qualifications & Skills

  • Bachelor's degree and 4+ years of prior relevant cybersecurity experience; or an equivalent combination of education and hands-on work experience.
  • Minimum of 3 years of experience in a dedicated Cyber Security support, incident response, or similar role.
  • Strong ability to conduct incident investigations and provide comprehensive triage support with minimal supervision.
  • Demonstrated understanding of network threat lifecycles, attack vectors, and exploitation methods, including strong familiarity with the MITRE ATT&CK framework and TTPs.
  • Solid foundational knowledge of TCP/IP, common networking ports/protocols, traffic flow, the OSI model, system administration, and defense-in-depth strategies.
  • Proficiency with modern enterprise security technologies, including Endpoint and Extended Detection and Response (EDR/XDR), Network Detection and Response (NDR), Next-Generation Firewalls (NGFW), and SIEM/SOAR platforms.
  • Familiarity with Zero Trust architecture, Intelligence-Driven Defense, and/or the Cyber Kill Chain methodology.
  • Introductory understanding of securing cloud services, containers, multi-tier web applications, data lakes, alongside solid SQL query skills.
  • Experience utilizing ServiceNow or similar enterprise ticketing systems.
  • Proficiency with Microsoft Excel and PowerPoint.
  • Proven track record of managing multiple concurrent tasks and meeting strict deadlines.
  • Must be willing to work USA Central time zone business hours.

 

Preferred Qualifications & "Plus" Factors

  • Specialized Security Platforms: Hands-on experience with ThreatLocker for zero-trust endpoint security and application control is a strong plus. Experience with CyberArk for privileged access management (PAM) and identity security is also highly desirable.
  • MDR & Incident Response: Advanced experience driving incident response specifically for Managed Detection and Response (MDR) security events.
  • Network & Access Security: Experience implementing and managing Cisco Secure Access or modern Security Service Edge (SSE) environments is a plus.
  • Web & Mobile Security: Proven experience managing website blacklisting and whitelisting, as well as administering Mobile Device Management (MDM) security tools and policies.
  • Automation & Scripting: Strong scripting and programming experience (especially PowerShell) to drive process automation.
  • OS Expertise: Intermediate knowledge of Windows 10, 11, and Windows Server administration, including OS hardening techniques. Familiarity with using and navigating Linux endpoints.
  • Tooling: Hands-on experience utilizing various open-source incident response tools and utilities.
  • Certifications: Advanced industry certifications (e.g., CISSP, SANS GIAC/GCIA/GCIH) or SIEM-specific training/certifications are highly preferred.
  • Continuous Improvement: A demonstrated commitment to self-study, training, and maintaining ongoing proficiency across emerging technical cybersecurity domains.
Ready to apply to Astreya?
Apply to Astreya

About Astreya

Astreya is a global IT managed services provider dedicated to creating technology solutions that are reliable and human-centered. We partner with the world’s most innovative organizations to optimize modern IT environments across the digital workplace, cloud, data, AI, and enterprise platforms. Our people are our strength. Across regions and roles, Astreyans bring deep expertise, curiosity, and a commitment to excellence. We believe great technology starts with great humans, which is why we invest in learning, collaboration, and career growth. At Astreya, transparency, accountability, and trust guide how we work with each other and our customers. We foster an inclusive culture where diverse

See all jobs at Astreya →

Similar jobs

Cardinal Health
Sr. Analyst, Global Security
Cardinal Health
⚡ Apply early Philippines-Bonifacio Global C... · location restricted
● New 👁 Seen ✓ Applied 1w ago
SB
Cybersecurity Engineer I - FIM
SouthState Bank
⚡ Apply early Remote Opportunity - VA, NC, S... · location restricted $76,260–$121,819
● New 👁 Seen ✓ Applied 1h ago
Diligent Corporation
Security GRC Analyst II
Diligent Corporation
⚡ Apply early Bengaluru, Karnataka, India Hybrid
● New 👁 Seen ✓ Applied 1h ago
Nebius
Security Analyst- Tier 2
Nebius
⚡ Apply early Tel Aviv, Israel Onsite
● New 👁 Seen ✓ Applied 2h ago
Nebius
Security Analyst - Tier 3
Nebius
⚡ Apply early Tel Aviv, Israel Onsite
● New 👁 Seen ✓ Applied 2h ago
Nebius
Security Analyst (compliance and controls)
Nebius
⚡ Apply early Prague, Czech Republic Onsite
● New 👁 Seen ✓ Applied 2h ago
Coupang
Security Analyst, Senior and Staff (CSOC - Cyber Security Operations Center)
Coupang
⚡ Apply early Seoul, South Korea Onsite
● New 👁 Seen ✓ Applied 3h ago
Coupang
Tier1 Security Analyst (계약직 - 선임/후임분석가)
Coupang
⚡ Apply early Seoul, South Korea Onsite
● New 👁 Seen ✓ Applied 3h ago
Coupang
Tier1 Security Analyst (계약직)
Coupang
⚡ Apply early Seoul, South Korea Onsite
● New 👁 Seen ✓ Applied 3h ago

Sign up for suggestions tailored to the jobs you open and the searches you save.

More jobs at Astreya

See all jobs at Astreya →

Apply now
🤖

Whoa — hold up

JobsRadar was built for real people having a rough time in their job search — not for automated requests. You're clicking way too fast and you're now temporarily blocked.

Come back later. If you're genuinely job hunting, we've got your back — just act like a human.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Get an edge on your job hunt.

Join our Telegram channel for the stuff that helps you land the role — salary benchmarks, the weekly market pulse, and new-feature drops. No spam, just signal.

Join the channel — it's free