667,602open jobs
39,042companies
100,809added this week
Browse all
Salary
$12k – $30k per year (Estimated)
Location
Remote (Philippines)
Employment
Full-Time
Overview
Company
Impact
Profile match
Skip to content Need Help? Talk To An Expert +1.949.268.9196 Your White Label Support Company Need Help?

The Entry-Level IT Security Analyst provides first-line review and analysis of alerts generated by Wazuh, Bitdefender, and other approved security or IT management tools. The analyst validates alert context, reviews relevant logs, inspects affected computers or devices, gathers evidence, follows approved response procedures, and records findings in the designated ticketing or incident-management system.

This role works under the direction of the IT Security Manager or assigned senior security resource. The analyst is expected to use sound basic IT and security knowledge, remain within approved access and response boundaries, escalate uncertainty promptly, protect confidential information, and avoid making unsupported conclusions or high-risk production changes without authorization.

Requirements

  • Alert Queue Monitoring: Review assigned security alerts and notifications consistently, acknowledge them promptly, and prevent unresolved events from aging without ownership.
  • Initial Incident Analysis: Gather relevant facts from Wazuh, Bitdefender, operating-system logs, ticket history, asset records, and approved supporting tools before forming an assessment.
  • Affected Equipment Inspection: Perform structured remote or physical inspection of affected endpoints and related equipment using approved checklists, access methods, and safety precautions.
  • Evidence Collection and Preservation: Capture sufficient evidence to support escalation, investigation, remediation, audit, and possible root-cause review while protecting integrity and confidentiality.
  • Incident Classification and Escalation: Apply the approved severity matrix and escalate suspected malware, unauthorized access, data exposure, policy violations, repeated detections, or uncertain findings to the designated incident lead.
  • Authorized Containment Support: Carry out only approved containment actions and immediately report any business interruption, tool failure, unexpected behavior, or unsuccessful response action.
  • Remediation Verification: Confirm that scans, updates, quarantine actions, policy corrections, patches, credential actions, or other assigned remediation steps were completed and produced the expected result.
  • Tool Coverage and Health Review: Identify inactive agents, outdated components, missed check-ins, policy mismatches, logging gaps, duplicate assets, and other conditions that weaken security visibility or protection.
  • Ticketing and Reporting: Maintain accurate, factual, and timely incident records; avoid speculation and clearly distinguish confirmed facts, working assessments, pending validation, and required decisions.
  • Policy, Privacy, and Access Compliance: Use assigned privileges only for authorized work, follow least-privilege principles, protect credentials and confidential information, and comply with evidence-retention and acceptable-use requirements.
  • Process Improvement Support: Identify repeat alerts, confusing runbook steps, missing data, common false positives, and training needs, then submit improvement recommendations to the security team.

Qualifications:

  • Associate's or bachelor's degree in Information Technology, Cybersecurity, Computer Science, Information Systems, or a related discipline, or equivalent technical education, laboratory training, certification study, internship, or practical experience.
  • Zero to two years of experience in IT support, desktop support, system administration, networking, NOC, SOC, managed services, cybersecurity operations, or a related technical environment; qualified entry-level candidates are encouraged.
  • Basic IT knowledge is required, including Windows endpoints, computer hardware, applications, user accounts, permissions, file systems, services, remote support, software installation, patching, IP addressing, DNS, and common network concepts.
  • Basic security knowledge is required, including malware, phishing, endpoint protection, event logs, indicators of compromise, vulnerabilities, patching, least privilege, account security, data protection, and incident-response fundamentals.
  • Ability to read alerts and logs, follow written procedures, perform careful equipment inspection, document technical findings clearly, and escalate when evidence is incomplete or risk is uncertain.
  • Strong attention to detail, professional judgment, confidentiality, integrity, and willingness to work with sensitive company, employee, client, or system information under approved access controls.
  • Ability to communicate clearly with security, help desk, infrastructure, network, managed services, operations, and non-technical users while remaining factual, respectful, and calm during incidents.

Preferred Certifications and Experience

  • Exposure to Wazuh, Bitdefender GravityZone, or comparable SIEM, XDR, EDR, antivirus, endpoint-management, vulnerability, or ticketing tools.
  • CompTIA A+, Network+, Security+, Microsoft, Linux, Cisco, or comparable entry-level technical training or certification.
  • Basic experience with PowerShell, Windows command-line tools, Linux commands, event logs, browser troubleshooting, packet or connection information, hashes, and common security research methods.
  • Experience or internship in a BPO, MSP, NOC, SOC, service desk, contact center, multi-site company, or remote-work support environment.

Core Competencies

  • Attention to Detail: Notices inconsistencies in alerts, logs, timestamps, users, assets, processes, and documentation before reaching conclusions.
  • Analytical Thinking: Connects related facts, tests reasonable explanations, and distinguishes evidence from assumptions.
  • Procedure Discipline: Follows approved playbooks, access controls, checklists, and escalation paths consistently.
  • Escalation Judgment: Recognizes uncertainty, potential impact, and personal authority limits, then seeks help early.
  • Communication: Writes clear incident notes and provides concise factual updates appropriate to the audience.
  • Learning Agility: Builds practical skill through training, supervised investigations, review feedback, and repeated use of tools.
  • Integrity and Teamwork: Protects confidentiality, reports mistakes promptly, supports shared ownership, and treats users and colleagues professionally.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
667,602 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Cebu City
In office • 7+ years exp
Python
JavaScript
TypeScript
SQL
PowerShell
C#
C#
ASP.NET Core
xUnit
Moq
AI/ML
Copilot
Claude
Devin
Frontend
Bootstrap
JQuery
DevOps
Rest API
Azure DevOps
Azure
CI/CD
Bitbucket
GitHub
Management
Agile
Scrum
QA
TestRail
Selenium
JMeter
Playwright
Appium
Postman
Jest
Insomnia
Apply
$27k – $59k per year (Estimated) • In office • Moscow
SQL
PowerShell
DevOps
Zabbix
VMWare
Management
Bitrix24
Apply
In office • Full-Time • India
Python
PowerShell
DevOps
Splunk
Terraform
Ansible
OpenShift
Dynatrace
Prometheus
CI/CD
Kubernetes
Grafana
Chaos Engineering
Incident Management
SLI/SLO/SLA
Apply
In office • 3+ years exp • Bachelor's Degree
Python
SQL
PowerShell
DevOps
Rest API
SLI/SLO/SLA
Management
Jira
Outlook
Agile
Apply
Cloud Engineer 11 hours ago
In office • Bachelor's Degree
Python
PowerShell
DevOps
Terraform
GCP
CloudFormation
Azure
AWS
Docker
Kubernetes
Apply
$12k – $28k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Cebu City
Apply
$11k – $27k per year (Estimated) • In office • Cebu City
Python
DevOps
Incident Management
Apply
IT Helpdesk/MSP 14 days ago
$11k – $26k per year (Estimated) • In office • Full-Time • Bachelor's Degree • General Santos
DevOps
SLI/SLO/SLA
Management
Google Workspace
ServiceNow
Apply
$10k – $25k per year (Estimated) • Remote • Full-Time • Bachelor's Degree • General Santos
PowerShell
DevOps
Zabbix
Azure
Nagios
Cybersecurity
Wireshark
Tcpdump
Microsoft Entra ID
Apply
$15k – $39k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Cebu City
DevOps
Zabbix
Nagios
Incident Management
SLI/SLO/SLA
Cybersecurity
Wireshark
Tcpdump
Apply
$7k – $15k per year (Estimated) • In office • 1+ year exp • Bachelor's Degree • Cebu City
Apply
$26k – $60k per year (Estimated) • In office • Full-Time • Associate's Degree • Cebu City
Apply
$11k – $27k per year (Estimated) • Remote/Hybrid • 3+ years exp • Bachelor's Degree • Cebu City
Analytics
Power BI
Apply
$9k – $20k per year (Estimated) • In office • Full-Time • Cebu City
Apply
$20k – $46k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Cebu City
Apply
See all jobs
This is one of many
667,602 more open roles from verified company boards, updated every day.