Citco Group logo

Senior SOC Analyst

Citco Group

Hybrid
Makati City, Philippines
Full-time
Senior
3+ yrs
Salary not listedPosted 4w ago

Real job — pulled straight from Citco Group’s careers page · Verified July 17, 2026 · No reposts.

Job description

Citco Group is hiring a Senior SOC Analyst — a full-time, based in Makati City, Philippines role. Apply directly on Citco Group's careers page below.

IT.Senior SOC Analyst

Location: Makati City, Manila, Philippines

Senior SOC Analyst

Makati - Hybrid Set-Up

Flexible Shift

  1. POSITION DESCRIPTION: 

     

This position calls for a Senior SOC Analyst with proven expertise in cybersecurity monitoring, threat detection, and incident response across complex enterprise environments. As a key member of Citco’s Computer Security Incident Response Team (CSIRT), the Senior SOC Analyst is responsible for leading the analysis of security events, proactively identifying and mitigating threats, and mentoring junior analysts within a 24x7x365 SOC environment.

 

The Senior SOC Analyst is expected to be highly proficient with modern security technologies and have deep knowledge of adversary tactics, techniques, and procedures (TTPs). This role requires experience working across hybrid-cloud environments, supporting incident handling lifecycle from detection through containment, eradication, and recovery.

 

  1. ORGANIZATIONAL RELATIONS: 

     

This position is part of the IT Security group, which oversees global cybersecurity at Citco and supports incident handling and detection initiatives across business units and platforms.

  1. PRINCIPAL ACCOUNTABILITIES:

     

  • Serve as an escalation point for complex or high-risk security incidents.
  • Lead end-to-end investigations involving malware, APTs, lateral movement, and insider threats.
  • Conduct proactive threat hunting across on-prem and cloud environments using SIEM, EDR, and threat intelligence tools.
  • Analyze logs, security telemetry, and packet captures across Windows, Linux, and network infrastructure.
  • Enhance detection content and use cases by tuning SIEM and EDR rules aligned to frameworks such as MITRE ATT&CK.
  • Develop, test, and maintain SOAR playbooks to improve investigation efficiency and automate response actions.
  • Contribute to post-incident reviews and root cause analyses, proposing hardening and lessons learned initiatives.
  • Conduct periodic evaluations of alert fidelity, detection coverage, and SOC operational metrics.
  • Collaborate with IT, Engineering, and DevSecOps teams to validate threat findings, coordinate remediation, and improve preventative defenses.
  • Lead knowledge transfer sessions and create training material for Junior SOC analysts.
  • Assist the SOC Manager in evaluating security tools and recommending operational improvements.
  • Maintain accurate and detailed documentation in the SOC’s case management system.
  • Stay current on emerging threats, adversary TTPs, and detection techniques.

 

  1. EDUCATION, EXPERIENCE & SKILLS: 

     

  • 3–5+ years of experience in a 24x7 SOC, CSIRT, or cyber incident response role in a global enterprise.
  • Deep knowledge of SIEM, EDR and SOAR platforms and security automation tools.
  • Familiarity with threat intelligence standards (e.g., STIX/TAXII) and frameworks like MITRE ATT&CK.
  • Strong hands-on experience with forensic tools and utilities (e.g., Sysinternals, Wireshark).
  • Proficient in scripting and automation (e.g., PowerShell, Python).
  • Excellent verbal and written communication skills, especially for documentation, briefings, and reporting.
  • Critical thinking and problem-solving skills with a high attention to detail.
  • Comfortable working independently or collaboratively under pressure.
  • Preferred certifications: GCIH, GCIA, CEH, CySA+, or equivalent.
  • Willingness to work flexible hours including weekends, holidays, and on-call as needed.

 

  1. WHAT WE OFFER

     

We offer a challenging job in a growing international company, an opportunity to expand your business knowledge by working with prestigious clients and complex financial and technological instruments, and a friendly and fast-paced environment. Additionally, Citco is proud to offer our employees competitive compensation, vacation and health insurance benefits.

Find out more about us! www.citco.com

 

 

Get Security Analyst jobs like this

New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.

Email me new jobs
Equifax logo

Cyber Security Web Application Firewall Analyst

San Jose, CR
✓ From careers page· 26m ago
BBVA logo

BBVA

New

Information Security Specialist

Las Condes, Region Metropolitana de Santiago
✓ From careers page· 1h ago
BBVA logo

BBVA

New

Information Security Operations Center

Ciudad de Mexico, Miguel Hidalgo
✓ From careers page· 1h ago
CoinDesk logo

Manager, Security Operations & Cyber Defense

$185k–$235kNew York, NY
✓ From careers page· 2h ago

Frequently asked questions

What skills are required for Senior SOC Analyst at Citco Group?

The required skills for Senior SOC Analyst at Citco Group include: SIEM, PowerShell, Python.

What is the seniority level for Senior SOC Analyst at Citco Group?

Senior SOC Analyst at Citco Group is a Senior level position.

How do I apply for Senior SOC Analyst at Citco Group?

You can view the full description and apply for Senior SOC Analyst at Citco Group on EchoJobs: https://echojobs.io/job/citco-group-it-senior-soc-analyst-3iytx.