IT Operations Security Analyst
Summary
Infinit-O is hiring an IT Operations Security Analyst in Pasay City to respond to security incidents, run risk and vulnerability assessments, perform penetration tests, audit systems for security gaps, and help develop incident response plans. Core focus: SIEM, firewalls, IDS/IPS, encryption, and vulnerability scanning tools.
Serve as a security incident responder, coordinating with the necessary team to address issues.
Conduct regular systems risk and vulnerability assessments, monitor progress, and ensure compliance with current security standards.
Conduct internal and external penetration tests, to assess the effectiveness of security measures and identify areas for improvement.
Conduct systems and process review / audits and identify security gaps.
Collaborate with the IT security head to review or develop an incident response plan that outlines procedures for identifying, responding to, and recovering from security incidents.
Requirements
Technical Skills:
Strong analytical and problem-solving skills
Knowledge of security technologies, including firewalls, intrusion detection systems, encryption, and incident response
Experience with security software and tools
Ability to write clear and concise technical documentation
Ability to work independently and as part of a team
Certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), or Offensive Security Certified Professional (OSCP) are a plus.
Familiarity with scripting languages (Bash, PowerShell) for automating tasks is a plus.
Soft Skills:
Excellent communication and interpersonal skills for conveying security risks and incidents to both technical and non-technical stakeholders.
Ability to work under pressure
Strong ethical and legal judgment
Commitment to lifelong learning
Experience:
Must have practical experience in security analysis, incident handling, and threat intelligence.
Must have experience with security tools such as SIEM (Security Information and Event Management) systems, antivirus programs, and intrusion detection/prevention systems, and vulnerability scanners.
At least 3 years of experience working as a Network/Systems administrator or equivalent
At least 2 years working on IT security administration or equivalent