SIEM ADMINISTRATOR-MANILA

Sorry, this job was removed at 02:09 a.m. (CST) on Wednesday, Feb 11, 2026
Be an Early Applicant
Makati, Fourth District NCR, National Capital Region, PHL
In-Office
Information Technology • Software • Cybersecurity
The Role

SIEM Admin
Position Summary: The SIEM Administrator is responsible for the design, maintenance, optimization, and daily operational support of the organization’s SIEM platforms within the Security Operations Center (SOC). This role ensures reliable log ingestion, parsing, correlation, and data availability to support threat detection, incident response, and compliance requirements. A strong understanding of Splunk, Microsoft Sentinel, and Google SecOps is essential.

Responsibilities and Duties:

Platform Administration & Engineering Deploy, configure, and maintain SIEM platforms, primarily Splunk, MS Sentinel, and Google SecOps. Manage data onboarding: log ingestion pipelines, connectors, API integrations, and event routing. Develop and maintain parsers, normalization schemas, and correlation rules. Ensure platform availability, scalability, and performance through routine health checks and optimization. Maintain access controls, RBAC, and platform security hardening. Content Development & Optimization Build and optimize dashboards, alerts, reports, and saved searches to support SOC analysts and leadership. This can involve SIEM tool, or Data metrics tool like PowerBI or Google Lookerstudio Implement new data sources and detection opportunities as threats evolve. Operational Support Troubleshoot ingestion issues, parsing failures, and correlation logic problems. Maintain documentation for ingestion mappings, correlation logic, and platform configuration. Ensure compliance with logging requirements and retention policies. Collaboration & Governance Work closely with SOC analysts, threat intel teams, security engineers, and system owners. Participate in change management, platform upgrades, and SIEM architecture roadmap planning.

Provide mentorship and knowledge sharing to analysts regarding query building, dashboards, and SIEM best practices.

Qualifications & Requirements Education & Experience 3–5+ years of experience in a SOC, SIEM engineering, security engineering, or related cybersecurity operations role. Formal degree in Cybersecurity, Computer Science, Information Systems, or equivalent experience. Experience operating and maintaining Splunk, Microsoft Sentinel, and Google SecOps (formerly Chronicle).

Experience integrating enterprise technologies (firewalls, EDR, SaaS platforms, cloud services, network devices) into SIEM.

Technical (Hard) Skills SIEM Mastery: Splunk Enterprise (search language, data models, apps, UF/HF/IDX management). Microsoft Sentinel (Log Analytics, KQL, connectors, automation runbooks). Google SecOps / Chronicle (UDM/M, parsers, detections, rules engine). Strong proficiency in KQL, Splunk SPL, and structured query languages. Familiarity with log pipelines, ETL, and data transformation. Experience with cloud platforms (Azure, AWS, GCP) and associated logging frameworks. Knowledge of MITRE ATT&CK, SIEM correlation strategies, and detection engineering principles. Scripting experience (Python, PowerShell, Bash) for automation and tooling. Understanding of TCP/IP, DNS, authentication logs, Windows/Linux logging, EDR/AV telemetry, and cloud audit logs.

Experience with SOAR platforms (Sentinel Automation, Splunk SOAR, or others) is an asset.

Soft Skills Strong analytical thinking and problem-solving abilities. Excellent communication skills and an ability to translate technical details for non-technical audiences. Attention to detail, especially in troubleshooting complex ingestion or parsing issues. Ability to collaborate in fast-paced SOC environments with cross-functional teams. Strong prioritization and time-management, especially during incident pressure. Growth mindset with willingness to learn evolving SIEM capabilities and threat landscapes.

Similar Jobs

Wells Fargo Logo Wells Fargo

Sales Enablement Associate

Fintech • Financial Services
Hybrid
Taguig City, Metro Manila, National Capital Region, PHL
205000 Employees

Wells Fargo Logo Wells Fargo

Analytic Senior Manager (Auto)

Fintech • Financial Services
Hybrid
Taguig City, Metro Manila, National Capital Region, PHL
205000 Employees
Hybrid
2 Locations
205000 Employees

Optum Logo Optum

Cloud Engineer

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office
Makati City, Metro Manila, National Capital Region, PHL
160000 Employees
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Montreal, Quebec
102 Employees
Year Founded: 1999

What We Do

SecureOps is a global managed security services provider (MSSP) with 25 years of experience strengthening the security maturity and resilience of enterprises and mid-size companies. Based in Montreal, Canada, with follow-the-sun offices in Prague and Manila, we provide Custom SOC and Co-owned MDR, security infrastructure, and vulnerability management services-by-design for telecommunications, financial services, pharmaceuticals, oil and gas, agriculture, mining, and others. Our deep cybersecurity expertise and vendor-neutral solutions with personalized, hands-on delivery, build lasting customer relationships, some for more than two decades. Customized reporting verifies your security status and validates how your security program contributes to business objectives.

Similar Companies Hiring

Milestone Systems Thumbnail
Software • Security • Other • Big Data Analytics • Artificial Intelligence • Analytics
Lake Oswego, OR
1500 Employees
Fairly Even Thumbnail
Software • Sales • Robotics • Other • Hospitality • Hardware
New York, NY
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account