Prime System Solutions logo
Prime System Solutions

"Empowering Excellence, Ensuring Continuity, Uninterrupted Success"

Security Analyst

Security AnalystSecurity AnalystFull TimeRemoteLeadTeam 51-200Since 2023H1B No SponsorCompany SiteLinkedIn

Location

Philippines

Posted

3 days ago

Salary

0

Seniority

Lead

Job Description

Security Analyst

Prime System Solutions

• Operate and maintain proactive security capabilities across client environments. • Monitor and validate security signals while continuously improving security configurations and detection capabilities. • Perform Security-as-a-Service operations, including reporting on security posture and security tool health. • Enhance detection quality through SIEM tuning, alert optimization, dashboard improvements, and correlation rule refinement. • Conduct advanced Windows and Microsoft 365 log analysis to identify suspicious activity, security gaps, and potential indicators of compromise. • Implement and support security hardening initiatives across endpoints, servers, cloud environments, and identity platforms. • Manage and support security awareness training programs and phishing simulation initiatives. • Ensure security tools and operational processes align with established security standards and service requirements. • Evaluate emerging security technologies and provide recommendations for adoption and standardization. • Support AI-driven security and automation initiatives by validating outputs and optimizing repeatable workflows. • Serve as a senior technical escalation point for complex security-related issues. • Collaborate with infrastructure, cloud, and operations teams to improve security processes and standards. • Communicate security risks, findings, and recommendations clearly to both technical and non-technical stakeholders. • Participate in compliance-related discussions, evidence collection, and security assessments. • Assist with CMMC, SOC, and other security compliance initiatives as needed. • Perform additional duties as assigned.

Job Requirements

  • Minimum of 7 years of experience working within a Managed Service Provider (MSP) environment.
  • Preferred: 10+ years of experience in cybersecurity, systems administration, security engineering, or systems integration.
  • Technical ExpertiseSecurity Operations & SIEM
  • Advanced experience with SIEM platforms, including:
  • Log onboarding and normalization
  • Correlation rule development
  • Alert tuning
  • Dashboard creation
  • Security monitoring and incident investigation
  • Experience supporting SOC workflows and security automation initiatives.
  • Endpoint Security & EDR/XDR
  • Advanced hands-on experience with:
  • SentinelOne
  • Huntress
  • EDR/XDR deployment and management
  • Threat detection and response workflows
  • Identity & Access Management
  • Advanced knowledge of:
  • Microsoft Entra ID / Azure AD
  • Conditional Access
  • Multi-Factor Authentication (MFA)
  • Privileged Access Management
  • Identity Governance
  • Microsoft Intune
  • Duo MFA
  • Networking & Security Infrastructure
  • Strong understanding of:
  • TCP/IP networking
  • Firewall hardening
  • Secure network design
  • VLANs
  • Routing and switching
  • VPN technologies (IPSec and SSL)
  • Network segmentation
  • Email & DNS Security
  • Experience administering:
  • Mimecast (preferred)
  • Email Threat Protection solutions
  • DNS and web filtering technologies
  • Security policy management and troubleshooting
  • Security Awareness & Training
  • Experience managing:
  • Phishing simulation campaigns
  • Security awareness training platforms
  • Compliance-focused end-user security education
  • Vulnerability Management
  • Ability to analyze vulnerability assessments and convert findings into actionable remediation plans and hardening initiatives.
  • Automation & Scripting
  • Strong PowerShell scripting skills.
  • Python experience is a plus.
  • Experience leveraging automation and AI tools to improve operational efficiency.
  • Compliance & Frameworks
  • Familiarity with:
  • NIST Cybersecurity Framework (CSF) 2.0
  • CMMC 2.0
  • SOC 1 and SOC 2
  • Security governance and risk management principles
  • Soft Skills
  • Excellent written and verbal communication skills.
  • Strong organizational and time management abilities.
  • Ability to work independently in a fast-paced environment.
  • Strong analytical and problem-solving skills.
  • Detail-oriented with a proactive mindset.
  • Ability to communicate complex security concepts to technical and non-technical audiences.
  • Strong collaboration and stakeholder management skills.
  • Preferred Certifications
  • CISSP (Highly Preferred)
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500)
  • Microsoft Certified: Security Operations Analyst Associate (SC-200)
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300)
  • Microsoft 365 Security Certifications
  • AWS Certified Security – Specialty or equivalent AWS security certification

Benefits

  • HMO coverage upon regularization
  • Paid time off and holiday benefits
  • Government-mandated benefits (SSS, PhilHealth, Pag-IBIG)
  • Career development and certification support
  • Exposure to enterprise-level security technologies
  • Collaborative and highly technical work environment
  • Opportunities for professional growth and advancement
  • Work-life balance and supportive leadership team

Related Job Pages

More Security Analyst Jobs

Role Description As a Cybersecurity Analyst, you are expected to have a strong technical background in security operations, threat detection, and incident response. This role is responsible for protecting both internal and customer environments while serving as a key operational interface with Managed Detection and Response (MDR) partners. You will contribute to the maturity and scalability of security operations by building processes, developing runbooks, and enabling internal teams to consistently and effectively respond to security events. Key Responsibilities - Threat Monitoring and Incident Response: - Monitor security tools and platforms for suspicious activity and potential threats. - Investigate and triage alerts, respond to incidents, and document findings, root cause, and remediation actions. - MDR Customer and Partner Interface: - Serve as the primary operational interface between customers, MDR providers, and internal teams for security events and escalations. - Coordinate incident response activities across MDR partners and internal teams. - Communicate security incidents, risks, and remediation status to customers. - Participate in incident reviews, RCA discussions, and customer meetings. - Ensure MDR services align with customer SLAs and contractual requirements. - Escalate critical risks and ensure timely resolution across stakeholders. - Vulnerability and Risk Management: - Perform vulnerability assessments and coordinate remediation activities across environments. - Identify and prioritize risks and recommend mitigation strategies to internal leadership and customers. - Security Operations and Tooling: - Maintain and tune security tools including SIEM, EDR, firewalls, and intrusion detection/prevention systems. - Analyze logs and telemetry to identify threats and improve detection capabilities. - Process Development and Runbooks: - Develop and maintain security operations processes, SOPs, and incident response runbooks to support consistent and scalable service delivery. - Create repeatable workflows for incident detection, escalation, and remediation. - Continuously refine playbooks based on lessons learned and threat intelligence. - Support onboarding of new customers by defining operational procedures. - Training and Enablement (Help Desk & Infrastructure): - Partner with Help Desk and Infrastructure teams to build security awareness and operational readiness. - Deliver training on security tools, processes, and escalation procedures. - Enable teams to identify, triage, and escalate security events appropriately. - Provide ongoing guidance to improve cross-team collaboration and response effectiveness. - Governance, Compliance, and Documentation: - Support development and enforcement of security policies, standards, and procedures. - Participate in audits and maintain documentation aligned to frameworks such as ISO 27001, NIST, SOC 2, and CMMC. - Continuous Improvement: - Stay current with emerging threats, vulnerabilities, and industry trends. - Recommend and implement improvements to strengthen security posture across internal and customer environments. Qualifications - 2+ years of experience in cybersecurity, SOC operations, or managed security services. - Experience working with MDR providers or managed security environments. - Strong understanding of incident response processes and threat detection. - Experience developing documentation, runbooks, or operational processes. - Ability to communicate technical security issues to both technical and non-technical audiences. - Experience with Microsoft Security tools, CrowdStrike, Palo Alto, SentinelOne. - Strong analytical, problem-solving, and organizational skills. - Ability to manage multiple priorities and respond effectively under pressure. Preferred Certifications - CompTIA Security+ - CompTIA CySA+ - Certified Ethical Hacker (CEH) - GIAC (GSEC, GCIH) - Microsoft Security Certifications (preferred) Physical Demands - Sit at a computer for 8 hours per day. - Keyboarding for 8 hours per day. - Near Vision (working with small objects or reading small print). - Speaking (communicating information to clients/coworkers). - Hearing Requirements (In person speech, telephone, other sounds). Benefits - Medical, dental, and vision benefits with highly subsidized premiums. - Two weeks paid time off in your first year, with increasing PTO as tenure increases, and most major holidays off. - 401(k) Plan with employer match. - Onsite Fitness Center. - Onsite Monthly Massages.

United States
Domino Data Lab logo

Principal Security Analyst – Special Projects

Domino Data Lab

The Enterprise MLOps platform powering over 20% of the Fortune 100

Full TimeRemoteTeam 201-500Since 2013H1B Sponsor

• Transform vulnerability management across functions • Create technical collateral for Sales and Client Management • Tackle complex technical problems with strategic insight

Indiana + 1 moreAll locations: Indiana | Oregon
$28K - $30K / year
Ping Identity logo

Information Security Analyst

Ping Identity

Identity Security for the Global Enterprise

Full TimeRemoteTeam 1,001-5,000Since 2002H1B No Sponsor

• Maintain relationships with customers and internal stakeholders and control owners alike; • Manage customer questionnaires, RFx and security assessments; • Evaluate compliance with contractual, regulatory and compliance requirements; • Help manage the compliance and audit platform, working with system owners to implement automated evidence collection and validation to ease the customer audit lifecycle.

United Kingdom
Navia Benefit Solutions, Inc. logo

Security Analyst

Navia Benefit Solutions, Inc.

One-stop shop for consumer-directed benefit solutions with great customer service.

Full TimeRemoteTeam 1,001-5,000Since 1989H1B No Sponsor

• We are seeking a Security Analyst with an emphasis on fraud research to join our Information Security team. • This role is responsible for identifying, researching, and helping mitigate computer-based and non-computer-based fraudulent activity across the organization. • The analyst will support the investigation of suspicious activity, review trends and patterns that may indicate fraud risk, and help strengthen internal controls through monitoring, analysis, documentation, and reporting. • This position works closely with the Director of Information Security and cross-functional business partners to support fraud prevention efforts, incident response, and risk management activities.

Arizona + 20 moreAll locations: Arizona | Colorado | Florida | Illinois | Kansas | Montana | Nebraska | Nevada | New Jersey | New York | North Carolina | North Dakota | Ohio | Michigan | Minnesota | Missouri | Pennsylvania | South Dakota | Tennessee | Texas | Utah
Job Closed