Security Engineer - Support
Thrive · Angeles, Central Luzon, Philippines
IT Services and IT Consulting · 1,001-5,000 employees
About the role
The Security Engineer will support the operation, tuning, and troubleshooting of security platforms while providing escalation support to the Security Operations Center. They will also collaborate with infrastructure teams to maintain security tools and generate reports for stakeholders.
What they look for
Requirements
Candidates must have a strong understanding of networking concepts, operating systems, and cybersecurity threats. A minimum of 2 years of experience in information security or a related technical role is required.
Full description
Position Overview:
We are seeking a Security Engineer to join our Security Engineering Support team. This role supports the operation, tuning, and troubleshooting of our security platforms and provides escalation support to the Security Operations Center (SOC). The Security Engineer will work closely with senior engineers and infrastructure teams to help maintain security tools, resolve complex technical issues, and support customer environments. This is an ideal opportunity for someone early in their cybersecurity career who is interested in the engineering side of security and committed to continuous learning.
Primary Responsibilities
- Assist in the administration, monitoring, and maintenance of security tools, including SIEM, EDR, NDR, and related platforms
- Support alarm tuning and configuration changes for new and existing customers post deployment
- Troubleshoot security tool performance issues, integrations, and data ingestion problems
- Analyze SOC data and alert trends to identify areas for improvement or adjustment
- Provide escalation support to the SOC and assist with complex customer issues
- Create and maintain documentation for security processes, procedures, and technologies
- Generate and maintain reports and dashboards for internal teams and stakeholders
- Collaborate with Security Engineering Infrastructure teams on platform enhancements and improvements
- Stay current on security threats, attack techniques, and best practices through training and research
- Perform other duties as required.
Qualifications and Required Skills
- Strong understanding of networking concepts, operating systems, and application-layer protocols
- Knowledge of cybersecurity threats and incident response concepts
- Ability to communicate technical security concepts to non-technical audiences
Strong interest in cybersecurity engineering and security tooling
- Demonstrates sound security practices and attention to detail
- Willingness to learn and grow in a fast-paced technical environment
Required Skills:
- Ability to analyze data from multiple sources and use findings to support troubleshooting and decision-making
- Advanced troubleshooting experience with Windows, Mac and Linux Operating Systems
- Foundational understanding of security concepts such as logging, endpoint protection, authentication and incident response.
- Excellent Written and Verbal Communication Skills
- Computer Networking & Security
- Vulnerability Discovery and Analysis
- Operating System Internals
- Intermediate to Advanced networking knowledge, including protocols such as DNS, HTTP/S, SMTP, TCP/UDP
Preferred Skills:
- Exposure with common security tools (SIEM, EDR, etc.).
- Prior experience with ServiceNow, FortiEDR, FortiSIEM, Elastic SIEM, SentinelOne, Microsoft Sentinel, Microsoft Defender, Vectra.AI, SaaS Alerts, DNS Filter, Avanan/Harmony, etc.
- Basic scripting or automation experience (PowerShell, Python, Bash)
- 2+ Years of experience in information security or a related technical role.
- Relevant coursework, certifications or lab experience.
- Familiarity with DNS and email systems, including common configuration and troubleshooting tasks