Skip to main contentA logo with &quat;the muse&quat; in dark blue text.

L1 SOC Analyst

AT IBM
IBM

L1 SOC Analyst

Bonifacio Global City, Philippines

Introduction

We are looking for an L1 SOC Analyst (Threat Monitoring) to join our Security Operations Center (SOC) team. As an L1 Analyst, you will play a crucial role in monitoring, analyzing, and responding to security alerts, ensuring swift incident detection and escalation. This is an exciting opportunity for those who want to build a career in cybersecurity while working with cutting-edge security tools and methodologies.

Your role and responsibilities

  • Monitor security alerts in real-time from SIEM and other security tools.
  • Perform Level 1 triage of security incidents by analyzing logs, network traffic, and endpoint events.
  • Investigate suspicious activity and escalate security events according to SOC guidelines.
  • Analyze and correlate security data from multiple sources to identify potential threats.
  • Coordinate with Level 2 and Level 3 analysts for complex investigations.
  • Escalate high-priority incidents and provide detailed incident reports.
  • Monitor the health of SIEM alerts and dependencies to ensure continuous security monitoring.
  • Assist in forensic investigations by gathering relevant security logs and evidence.
  • Identify and report false positives to fine-tune security monitoring rules.
  • Work within a ticketing system to document findings, actions, and resolutions.
  • Provide security recommendations for improving detection capabilities and security policies.
  • Support compliance and audit activities by maintaining security logs and incident

Want more jobs like this?

Get jobs in Bonifacio Global City, Philippines delivered to your inbox every week.

By signing up, you agree to our Terms of Service & Privacy Policy.

Required education

Bachelor's Degree

Required technical and professional expertise

  • Basic to Intermediate knowledge of network security, TCP/IP, and troubleshooting.
  • Familiarity with SIEM platforms such as IBM QRadar, Splunk, ArcSight, Microsoft Sentinel, or LogRhythm.
  • Understanding of log analysis and ability to interpret system, network, and security logs.
  • Knowledge of firewalls, IDS/IPS, endpoint security, and anti-malware solutions.
  • Familiarity with MITRE ATT&CK Framework for understanding adversary tactics and techniques.
  • Basic knowledge of cybersecurity frameworks such as NIST Cybersecurity Framework, CIS Controls, and ISO 27001.
  • Ability to identify and investigate phishing emails and suspicious file activity.
  • Familiarity with incident response processes and escalation procedures.
  • Basic knowledge of Linux/Unix and Windows operating systems.
  • Understanding of common network services (web, mail, DNS, authentication).
  • Knowledge of vulnerability management and basic remediation steps.
  • Understanding of threat intelligence sources and how they apply to SOC operations.
  • Strong analytical and problem-solving skills.
  • Excellent written and verbal communication skills.

Preferred technical and professional experience

  • CompTIA Security+
  • Certified SOC Analyst (CSA)
  • Microsoft Security Operations Analyst (SC-200)
  • GIAC Security Essentials (GSEC)
  • IBM QRadar SIEM Training
  • MITRE ATT&CK Defender (MAD) Certifications

ABOUT BUSINESS UNIT

IBM Consulting is IBM's consulting and global professional services business, with market leading capabilities in business and technology transformation. With deep expertise in many industries, we offer strategy, experience, technology, and operations services to many of the most innovative and valuable companies in the world. Our people are focused on accelerating our clients' businesses through the power of collaboration. We believe in the power of technology responsibly used to help people, partners and the planet.

YOUR LIFE @ IBM

In a world where technology never stands still, we understand that, dedication to our clients success, innovation that matters, and trust and personal responsibility in all our relationships, lives in what we do as IBMers as we strive to be the catalyst that makes the world work better.

Being an IBMer means you'll be able to learn and develop yourself and your career, you'll be encouraged to be courageous and experiment everyday, all whilst having continuous trust and support in an environment where everyone can thrive whatever their personal or professional background.

Our IBMers are growth minded, always staying curious, open to feedback and learning new information and skills to constantly transform themselves and our company. They are trusted to provide on-going feedback to help other IBMers grow, as well as collaborate with colleagues keeping in mind a team focused approach to include different perspectives to drive exceptional outcomes for our customers. The courage our IBMers have to make critical decisions everyday is essential to IBM becoming the catalyst for progress, always embracing challenges with resources they have to hand, a can-do attitude and always striving for an outcome focused approach within everything that they do.

Are you ready to be an IBMer?

ABOUT IBM

IBM's greatest invention is the IBMer. We believe that through the application of intelligence, reason and science, we can improve business, society and the human condition, bringing the power of an open hybrid cloud and AI strategy to life for our clients and partners around the world.

Restlessly reinventing since 1911, we are not only one of the largest corporate organizations in the world, we're also one of the biggest technology and consulting employers, with many of the Fortune 50 companies relying on the IBM Cloud to run their business.

At IBM, we pride ourselves on being an early adopter of artificial intelligence, quantum computing and blockchain. Now it's time for you to join us on our journey to being a responsible technology innovator and a force for good in the world.

OTHER RELEVANT JOB DETAILS

For additional information about location requirements, please discuss with the recruiter following submission of your application.

Client-provided location(s): Taguig, Metro Manila, Philippines
Job ID: IBM-16938
Employment Type: Other

Company Videos

Hear directly from employees about what it is like to work at IBM.