Relomote
Remote JobsRelocation Jobs
Add companySaved
Relomote

Relomote is a job board for remote, hybrid, and relocation jobs — every listing AI-classified for the countries it actually hires from, or the visa and relocation support it offers.

LinkedInCrunchbase

Remote jobs by category

  • Remote Engineering & Development jobs
  • Remote Customer Support jobs
  • Remote Design jobs
  • Remote Marketing jobs
  • Remote Sales jobs
  • Remote Product jobs
  • Remote Data & Analytics jobs
  • Remote People & Talent jobs
  • Remote Writing & Content Creation jobs
  • Remote Finance jobs
  • Remote Legal & Compliance jobs
  • Remote Operations & Admin jobs
  • Remote Data Entry jobs
  • Remote Virtual Assistant jobs
  • Remote Education/Training jobs
  • Remote Healthcare/Clinical jobs
  • Remote Other jobs

Remote jobs by location

  • Work from anywhere jobs
  • Remote jobs in Africa
  • Remote jobs in Asia
  • Remote jobs in Europe
  • Remote jobs in Latin America
  • Remote jobs in Middle East
  • Remote jobs in North America
  • Remote jobs in Oceania
  • All remote jobs →

Relocation & visa sponsorship

  • Visa sponsorship jobs
  • Relocation package jobs
  • Relocate to Europe
  • Relocate to Germany
  • Relocate to Netherlands
  • Relocate to Spain
  • Relocate to Portugal
  • Relocate to Greece
  • Relocate to United Kingdom
  • Relocate to Canada
  • Relocate to Australia
  • Relocate to Sweden
  • Relocate to Switzerland
  • Relocate to Japan
  • Relocate to United Arab Emirates
  • All relocation jobs →

© 2026 RelomoteAboutPrivacyTerms

Contact [email protected] · Built by Mahmoud

Relomote
Remote JobsRelocation Jobs
Add companySaved
CallTek logo

Cyber Security Analyst

CallTek
Posted Jun 25, 2026, 10:02 PM UTC
🇵🇭Philippines🏠Remote📁Engineering & Development
Is this job info correct?

The Mid-Level Cyber Defense Analyst uses defensive measures and information collected from a variety of sources to identify, analyze, and report vulnerabilities and malicious events. This role focuses on maintaining the integrity of our internal and cloud networks by conducting deep-dive analysis of security data, recognizing operational trends, and leading initial incident containment efforts. Responsibilities: Investigate security alerts escalated by SOC Level 1 analysts. Perform deeper analysis of suspicious activity across SIEM, EDR, network, identity, cloud, and email security platforms. Validate whether security events represent false positives, suspicious behavior, policy violations, or confirmed cybersecurity incidents. Correlate events across multiple log sources to identify attack patterns, affected assets, compromised accounts, lateral movement, malware activity, or unauthorized access. Determine the scope, severity, business impact, and urgency of security incidents. Recommend containment, eradication, and remediation actions to the appropriate technical teams. Create and maintain accurate incident timelines, investigation notes, evidence records, and escalation summaries. Support phishing investigations, endpoint compromise analysis, suspicious login reviews, malware alerts, brute-force attacks, data exfiltration indicators, and cloud security events. Review and improve SOC playbooks, investigation procedures, and escalation criteria. Provide technical guidance, coaching, and feedback to SOC Level 1 analysts. Identify recurring false positives and recommend tuning improvements for SIEM, EDR, and other detection platforms. Participate in post-incident reviews and provide recommendations to improve detection, response, and prevention. Support shift handovers by documenting open incidents, pending actions, and important operation contexts. 2 to 4 years of experience in SOC operations, cybersecurity monitoring, incident response, security operations, network security, endpoint security, or infrastructure security. Previous experience as a SOC Analyst L1 or equivalent role. Experience investigating real security alerts and documenting incident findings. Practical knowledge of SIEM, EDR, identity logs, firewall logs, email security alerts, and endpoint events. Experience escalating incidents and recommending remediation actions. Preferred Certifications: CompTIA CySA+, Blue Team Level 1 / BTL1, Blue Team Level 2 / BTL2, Microsoft AZ-500, CompTIA Security+, CompTIA Network+, Cisco CCNA, Fortinet FCP / NSE, Microsoft AZ-500, as a plus for cloud/security environments, eCIR . Language: English C1 is required

Similar jobs

Similar jobs

YesWeHack logo

Application Security Analyst

YesWeHack

🇵🇭Philippines14 hours ago
SO

Cyber Security Analyst

Sourcepass

🇵🇭Philippines14 hours ago
NC

Mid-Tier Security Operations Center Analyst

Nearshore Cyber

🇵🇭PhilippinesYesterday
DE

Information Security Analyst

Dermorepubliq

🇵🇭Philippines4 days ago
AJAIA logo

Information Security Analyst

AJAIA

🌍Europe, India, Philippines2 weeks ago
Remote Raven logo

Security Operations Analyst

Remote Raven

🇵🇭Philippines3 weeks ago