About this role
Duties and Responsibilities Monitor SIEM dashboards, alerts, and security events across network, endpoint, cloud, and application log sources on a 24/7 shift rotation. Perform initial triage, classification, and prioritization of security alerts following documented playbooks and runbooks. Escalate validated or complex incidents to SOC L2 with complete and accurate documentation of findings and actions taken. Record all alerts, investigations, and response actions in the case management/ticketing system. Perform routine health checks on security monitoring tools and report gaps in log sources or detection coverage. Triage phishing reports and user-reported security concerns, executing first-response steps per playbook. Execute containment actions as directed by SOC L2 or the incident lead during active incidents. Contribute tuning recommendations to reduce false positives and improve alert quality. Maintain complete shift-handover logs to ensure continuity of monitoring between shifts. Key Performance Indicators/ Key Success Factors Mean time to acknowledge (MTTA) alerts within defined SLAs. Alert triage accuracy and quality of escalations to SOC L2. Percentage of alerts and cases handled within SLA. Completeness and quality of case documentation and shift handovers. False-positive identification and tuning recommendations submitted. Requirements Education: Bachelor’s degree in computer science, information technology, or a related field, or equivalent practical experience. Experience: 0–2 years in security operations, IT support, or network/system administration; prior SOC or managed security service experience preferred. Must be willing to work on a 24/7 shift rotation. Skills & Knowledge: Foundational knowledge of networking (TCP/IP, DNS, HTTP), Windows and Linux operating systems, and common attack techniques (MITRE ATT&CK); familiarity with SIEM platforms (Splunk, Microsoft Sentinel, QRadar, or similar) and ticketing tools. Certifications (good to have): CompTIA Security+, CompTIA CySA+, or Microsoft SC-200 preferred.
Frequently Asked Questions
Is the salary disclosed for the SOC L1/Tech Support position at solaireresort?
The salary for this SOC L1/Tech Support role at solaireresort is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the SOC L1/Tech Support position at solaireresort located?
This SOC L1/Tech Support role at solaireresort is based in Parañaque City, National Capital Region (Manila), Philippines. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the SOC L1/Tech Support role at solaireresort full-time or part-time?
This is listed as a Full time position. It is posted as a SOC L1/Tech Support role at solaireresort.
How do I apply for the SOC L1/Tech Support position at solaireresort?
Click the "Apply Now" button on this page. You will be redirected to solaireresort's official application portal hosted on zohorecruit where you can submit your application directly.
When was the SOC L1/Tech Support job at solaireresort posted?
This SOC L1/Tech Support position at solaireresort was posted on Sep 28, 2026. Apply as soon as possible — early applications are often reviewed first.