JobRaahGet matched free

Jobs

IT Security Analyst - Work From Home | Day Shift

Twoconnect · Remote · Metro Manila, Philippines · Remote

Posted Sep 29, 2026

Apply with JobRaah

Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.

The IT Security Analyst will support the protection of a Microsoft-based environment across global operations through security monitoring, incident response, identity and access management, vulnerability management, and continuous improvement of cyber security controls. The role will work closely with internal IT teams and external security providers to investigate threats, coordinate remediation, and support the organisation’s Essential Eight and IT service management processes. Triage and investigate Microsoft Defender alerts and Arctic Wolf SOC escalations, including phishing, malware, suspicious sign-ins and endpoint activity. Coordinate containment, eradication and recovery activities with Arctic Wolf and internal IT teams, maintaining incident evidence and escalating major incidents where required. Support Microsoft Defender endpoint protection, Microsoft 365 security posture, security hardening and endpoint detection and response. Prioritise vulnerabilities based on exploitability, exposure and business criticality, and track remediation through to closure. Support security baselines and patch compliance using Microsoft management tools and NinjaOne where applicable. Review and strengthen Active Directory and Microsoft Entra ID security, including MFA, Conditional Access, least-privilege access and periodic access reviews. Review privileged accounts, role-based access, service accounts and application permissions, and support identity-related threat response. Support improvement of Essential Eight controls, maintain evidence and remediation actions, and work with control owners to verify implementation. Support security risk assessments, policy reviews and audits, translating identified control gaps into prioritised actions. Record and manage security incidents, requests, problems and changes in Freshservice in line with agreed ITSM processes. Perform root cause analysis, maintain response playbooks and knowledge articles, and support continuous improvement of recurring security issues. Report on incident response, remediation ageing, Defender coverage, identity risks and Essential Eight progress. Collaborate with service desk, infrastructure, application and business teams to resolve security issues while supporting operational continuity. Provide practical security guidance and contribute to phishing awareness and user education. Support incident handovers across time zones and participate in agreed after-hours incident response arrangements when required. Other position-level duties as they arise. Requirements At least 3 years’ relevant experience in cyber security operations, incident response, or an IT role with substantial hands-on security responsibilities is essential. Practical experience securing Microsoft enterprise environments and investigating threats using Microsoft Defender for Endpoint or equivalent EDR tooling is essential. Hands-on experience with Active Directory, Microsoft Entra ID, MFA,…