Western Digital logo
Western Digital

We create data storage solutions that power the technology of today and inspire the innovations of tomorrow.

Security Operations Center Analyst – L3

Security OperationsSecurity OperationsFull TimeRemoteMid LevelTeam 10,001+Since 1970H1B SponsorCompany SiteLinkedIn

Location

Philippines

Posted

86 days ago

Salary

0

Seniority

Mid Level

Bachelor Degree2 yrs expEnglishAWSAzureGCPLinuxSplunk

Job Description

Security Operations Center Analyst – L3

Western Digital

• Monitor, detect, analyze, and respond to cybersecurity threats across the organization's environment • Oversee detection queue health and ensure consistent SLA adherence • Conduct advanced investigations involving complex, multi-stage attacks across endpoint, identity, network, cloud, and third-party environments • Act as a primary escalation point for major incidents • Drive continuous improvement of detection logic, escalation criteria, and investigative workflows • Support incident response efforts during active security events • Participate in threat hunting missions derived from threat intelligence reporting • Contribute to the development, testing, and refinement of detection rules and correlation logic in the SIEM • Review vulnerability scan results and assist in triaging findings based on severity, exploitability, and asset criticality • Support the review and triage of alerts generated by User and Entity Behavior Analytics (UEBA) platforms

Job Requirements

  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or equivalent practical experience
  • 2–4+ years of experience in a SOC, IT security, or related technical role depending on level applied for
  • Familiarity with enterprise IT environments including Windows/Linux systems, Active Directory, and cloud platforms (Azure, AWS, GCP)
  • Experience with security tools such as SIEM (Sentinel, Splunk), EDR (CrowdStrike, SentinelOne, Defender), or email security platforms
  • CompTIA Security+, CySA+, or equivalent foundational security certification preferred
  • Microsoft SC-200 (Security Operations Analyst) or AZ-900/AZ-500 preferred
  • EC-Council CEH, SANS GCIA/GCIH, or GREM preferred for L3

Benefits

  • Health insurance
  • Paid time off
  • Remote work options

Related Categories

Related Job Pages

More Security Operations Jobs

Full TimeRemoteTeam 201-500H1B No Sponsor

• Identify, analyze, and advise on adverse conditions and threats • Monitor security incidents and trends • Support the Client’s trust and safety function • Escalate security incidents to client stakeholders • Maintain visibility on employee movements • Participate in training and drills to rehearse incident preparation and response SOPs • Research and analyze a wide range of information to create insightful analysis

Brazil
Job Closed
Full TimeRemoteTeam 10,001+H1B Sponsor

• Investigates security incidents by performing host, disk, memory, network, and cloud forensic analysis under established processes and guidance • Analyzes artifacts across Windows, Linux, and macOS systems, helping reconstruct timelines and determine root cause • Supports clients through containment and recovery efforts by providing technical recommendations and clear communication • Participates in the team’s on‑call rotation for urgent incident response needs • Completes internal and client tasks such as tabletop exercises, IR readiness assessments, basic forensic reviews, and environment hardening support • Identifies observable gaps and risks within client environments and recommends improvements to strengthen security posture • Produces accurate documentation—including investigation notes, status updates, and final reports • Collaborates with global DFIR and other teams and stays current on threats, attacker techniques, and emerging forensic tools

United Kingdom
Zscaler logo

Threat Response Engineer (4th Shift)

Zscaler

Zscaler helps leading organizations in 180+ countries securely transform their networks and applications for a mobile and cloud-first world. Founded in 2008, th

OtherRemoteTeam 8,697Since 2007

About Zscaler Zscaler accelerates digital transformation to ensure our customers can be more agile, efficient, resilient, and secure. As an AI-forward enterprise, we are constantly pushing the envelope, leveraging the world’s largest security data lake to power our cloud-native Zero Trust Exchange platform. This innovation protects our customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. Here, impact in your role matters more than title and trust is built on results. We say, impact over activity. We seek innovators who actively use AI to amplify their impact and who thrive in an environment where we leverage intelligent systems to stay ahead of evolving threats. We believe in transparency and value constructive, honest debate—we’re focused on getting to the best ideas, faster. We build high-performing teams that can make an impact quickly and with high quality. To do this, we are building a culture of execution centered on customer obsession, collaboration, ownership, and accountability. We value high-impact, high-accountability with a sense of urgency where you’re enabled to do your best work and embrace your potential. If you’re driven by purpose, thrive on solving complex challenges, and want to be part of the team that’s helping to secure the AI age, we invite you to bring your talents to Zscaler and help shape the future of cybersecurity. The Red Canary Threat Response Engineering team is on the front lines, acting as the virtual boots on the ground for our customers to respond to and remediate threats. You will drive investigations using Endpoint Detection and Response (EDR) and Identity telemetry to perform behavioral analysis and threat hunting while leveraging the Red Canary platform to take immediate action. We aim to maximize efficiency and minimize customer vulnerability by finding innovative uses for existing tools and developing new ones. Our team provides customers with the confidence that any compromises will be fully remediated, allowing them to remain focused on their core business operations. Role We are looking for an experienced Threat Response Engineer to join our Active Remediation team. This is a remote role, reporting to the Senior Manager, Threat Response Engineering. You will perform investigations into detected threats, using customer security products to analyze, contain, and remediate issues while providing thorough reports. This role requires the ability to work a Wednesday – Saturday 10pm – 8am Mountain Time shift and participate in a 24x7 on-call rotation to ensure our customers remain protected. What you’ll do (Role Expectations) - Perform investigations into detected threats and leverage security products to analyze, contain, and remediate threats in customer environments - Provide customers with thorough reports of actions taken to ensure clarity on environment cleanup and protection strategies - Identify and implement effective response strategies to further enhance the security posture of the customer base - Collaborate with Detection Engineering, Threat Hunting, Intel, and Product teams to develop innovative methods for timely threat remediation - Prioritize and execute tasks effectively in a fast-paced operational environment while maintaining a 24x7 on-call rotation Who You Are (Success Profile) - You thrive in ambiguity. You're comfortable building the path as you walk it. You thrive in a dynamic environment, seeing ambiguity not as a hindrance, but as the raw material to build something meaningful. - You act like an owner. Your passion for the mission fuels your bias for action. You operate with integrity because you genuinely care about the outcome. True ownership involves leveraging dynamic range: the ability to navigate seamlessly between high-level strategy and hands-on execution. - You are a problem-solver. You love running towards the challenges because you are laser-focused on finding the solution, knowing that solving the hard problems delivers the biggest impact. - You are a high-trust collaborator. You are ambitious for the team, not just yourself. You embrace our challenge culture by giving and receiving ongoing feedback—knowing that candor delivered with clarity and respect is the truest form of teamwork and the fastest way to earn trust. - You are a learner. You have a true growth mindset and are obsessed with your own development, actively seeking feedback to become a better partner and a stronger teammate. You love what you do and you do it with purpose. What We’re Looking for (Minimum Qualifications) - Strong analytical and problem-solving skills demonstrated through direct experience responding to security events and threats - Experience with Endpoint Detection and Response (EDR) products such as CrowdStrike, Microsoft Defender for Endpoint, SentinelOne, or Palo Alto Cortex - Foundational understanding of internal system functionality for Windows and MacOS operating systems - Experience with or professional familiarity with Identity security products - Professional and articulate communication skills with the ability to provide clear technical documentation What Will Make You Stand Out (Preferred Qualifications) - Experience with security operations, enterprise technology, and network controls or protocols - Proven interest in developing operational efficiencies via technology or process improvement - Deep interest in staying current with the latest adversary tactics, techniques, and procedures #LI-DB1 #LI-Remote Zscaler’s salary ranges are benchmarked and are determined by role and level. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations and could be higher or lower based on a multitude of factors, including job-related skills, experience, and relevant education or training. The base salary range listed for this full-time position excludes commission/ bonus/ equity (if applicable) + benefits. Base Pay Range $101,500—$125,000 USD At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure. Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including: - Various health plans - Time off plans for vacation and sick time - Parental leave options - Retirement options - Education reimbursement - In-office perks, and more! Learn more about Zscaler’s Future of Work strategy, hybrid working model, and benefits here. By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines. Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link. Pay Transparency Zscaler complies with all applicable federal, state, and local pay transparency rules. Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.

United States
$101.5K - $125K / year
Job Closed
OtherRemoteTeam 501-1,000Since 2005H1B No Sponsor

Reddit is a community of communities. It’s built on shared interests, passion, and trust, and is home to the most open and authentic conversations on the internet. Every day, Reddit users submit, vote, and comment on the topics they care most about. With 100,000+ active communities and approximately 121 million daily active unique visitors, Reddit is one of the internet’s largest sources of information. For more information, visit www.redditinc.com. Reddit is continuing to grow our teams with the best talent. This role is completely remote friendly within the United States. If you happen to live close to one of our physical office locations (San Francisco, Los Angeles, New York City & Chicago) our doors are open for you to come into the office as often as you'd like. The Threat Detection and Enforcement team operates at the forefront of online safety, dedicated to detecting and preventing novel and systemic threats that compromise user experience and platform integrity. We proactively lead complex investigations, synthesize qualitative and quantitative data into compelling narratives, and translate signals into scalable actions. We are a highly influential, cross-functional partner, providing the critical context and foresight necessary for Policy, Engineering, Product Management, and Safety ML to build durable, long-term solutions to the most challenging safety problems. As the leader of the Threat Detection and Enforcement Ops team, you will execute on our proactive threat detection strategy and oversee the operational programs that convert investigative insights into scalable enforcement. You will be the strategic and operational leader for a team of Threat Analysts and Policy Enforcement Experts. You will oversee the team responsible for the entire lifecycle of emerging and systemic threats—from initial detection and deep investigation through cross-functional translation and the implementation of scaled enforcement and mitigation strategies. Your primary mission is to ensure the team consistently delivers high-impact, timely, and unbiased threat assessments and acts as the core operational and policy subject matter experts, driving the seamless transition from unknown threat or platform policy to a durable, enforced solution. Success in this role looks like: a measurable shift toward proactive detection, reduced time-to-mitigation for emerging threats, and improved scalability and accuracy of enforcement systems. Responsibilities: - Lead the strategic investigative roadmap by prioritizing the detection of emerging and systemic threats and ensuring the team surfaces novel safety problems for documentation and study. - Transform complex safety issues into data-driven narratives that enable cross-functional partners in Policy, Product, and Engineering to make informed and timely decisions. - Establish proactive processes and performance metrics to shift the organization away from reactive responses and provide partners with the necessary time to address threats. - Direct scaled enforcement programs and operational strategies by partnering with Data teams to improve safety tooling and ensure policy intent is accurately translated into action. - Manage high-pressure escalations and rapid response frameworks using deep policy expertise to mitigate immediate harm and guide the product lifecycle from development to deployment. - Mentor a high-performing team of analysts while acting as a strategic partner to executive leadership to ensure threat insights are integrated into long-term safety planning. Required Qualifications: - 5+ years of relevant experience in Trust & Safety, Safety Operations, Threat Intelligence, or a related field, with 1-2+ years in a leadership/management role leading operational or enforcement teams. - Prior domain experience in Trust & Safety operations, with an understanding of policy complexities and the challenges they present in content moderation, scaled enforcement, and real-time incident response. - Background in scaled enforcement program development, content moderation concepts, and leveraging data analysis to drive continuous improvement in tooling and scalability. - Familiarity with AI safety concepts (e.g., model evaluation, data quality, labeling) and a track record of applying operational rigor to new technologies - Well-versed in Operations Performance Metrics and a proven track record of leading and functioning effectively during high-pressure P0 escalations and critical incident response. - Understanding of the threat landscape, modern enforcement techniques, and the lifecycle of online harm (detection, investigation, mitigation, and scaling). - Exceptional ability to synthesize highly complex investigative findings into actionable, data-driven strategies for product/engineering teams. - Demonstrated ability to build effective cross-functional partnerships and acting as a sought-out SME by cross-functional partners (Product, Legal, Comms, Policy). - Benefits: - Comprehensive Healthcare Benefits and Income Replacement Programs - 401k with Employer Match - Global Benefit programs that fit your lifestyle, from workspace to professional development to caregiving support - Family Planning Support - Gender-Affirming Care - Mental Health & Coaching Benefits - Flexible Vacation & Paid Volunteer Time Off - Generous Paid Parental Leave #LI-SP1 Pay Transparency: This job posting may span more than one career level. In addition to base salary, this job is eligible to receive equity in the form of restricted stock units, and depending on the position offered, it may also be eligible to receive a commission. Additionally, Reddit offers a wide range of benefits to U.S.-based employees, including medical, dental, and vision insurance, 401(k) program with employer match, generous time off for vacation, and parental leave. To learn more, please visit https://www.redditinc.com/careers/. To provide greater transparency to candidates, we share base salary ranges for all US-based job postings regardless of state. We set standard base pay ranges for all roles based on function, level, and country location, benchmarked against similar stage growth companies. Final offer amounts are determined by multiple factors including, skills, depth of work experience and relevant licenses/credentials, and may vary from the amounts listed below. The base salary range for this position is: $167,500—$234,500 USD In select roles and locations, the interviews will be recorded, transcribed and summarized by artificial intelligence (AI). You will have the opportunity to opt out of recording, transcription and summarization prior to any scheduled interviews. During the interview, we will collect the following categories of personal information: Identifiers, Professional and Employment-Related Information, Sensory Information (audio/video recording), and any other categories of personal information you choose to share with us. We will use this information to evaluate your application for employment or an independent contractor role, as applicable. We will not sell your personal information or disclose it to any third party for their marketing purposes. We will delete any recording of your interview promptly after making a hiring decision. For more information about how we will handle your personal information, including our retention of it, please refer to our Candidate Privacy Policy for Potential Employees and Contractors. Reddit is proud to be an equal opportunity employer, and is committed to building a workforce representative of the diverse communities we serve. Reddit is committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If, due to a disability, you need an accommodation during the interview process, please let your recruiter know.

United States
$167K - $234K / year
Job Closed