Security Analyst – Tier 3

Please login or register as jobseeker to apply for this job.

TYPE OF WORK

Full Time

SALARY

Php150,000/month

HOURS PER WEEK

40

DATE UPDATED

Dec 18, 2025

JOB OVERVIEW

About AlphaRidge

AlphaRidge delivers managed cybersecurity, IT operations, and compliance-driven resilience for clients in sectors where security maturity and uptime are mission-critical. Our Security Operations Center combines proactive threat detection, response, and governance to deliver measurable resilience and audit readiness.

We are seeking an experienced Tier 3 Threat Hunter to join our SOC team. This position focuses on proactive detection, hypothesis-driven hunting, and continuous improvement of detection engineering capabilities.

Role

As a Tier 3 Threat Hunter, you will proactively search for malicious activity that evades traditional detection mechanisms. You will leverage telemetry, threat intelligence, and behavioral analytics to uncover stealthy threats and design new detections that enhance AlphaRidge’s detection posture.

Responsibilities

• Conduct proactive threat hunts across endpoint, network, identity, and cloud telemetry.
• Develop hypotheses and use adversarial simulation to validate detection coverage.
• Build and tune analytic rules and hunting queries to identify suspicious behavior.
• Investigate complex i ---------- to identify root cause and long-term mitigation.
• Collaborate with the SOC architect to optimize automation and enrichment workflows.
• Mentor Tier 1 and Tier 2 analysts to elevate investigative rigor.
• Contribute to continuous improvement of SOC processes and maturity.

Qualifications

• 4–6 years of experience in threat hunting, DFIR, or SOC operations.
• Advanced understanding of attacker TTPs, persistence techniques, and evasion methods.
• Proficiency in log analysis, detection engineering, and SIEM content development.
• Excellent problem-solving skills and ability to translate technical findings into actionable intelligence.

Preferred Skills/Certifications

• Experience with leading SIEM and EDR platforms (e.g., Sentinel, Defender, CrowdStrike, Exabeam).
• Certifications such as SC-100, GCFA, or GCTI preferred.
• Familiarity with threat intelligence enrichment, IOC correlation, and purple-team collaboration.
• Scripting knowledge (PowerShell, Python) for automation and data parsing.

VIEW OTHER JOB POSTS FROM:
SHARE THIS POST
facebook linkedin
  BENCHMARKS  
Loading Time: Base Classes  0.0011
Controller Execution Time ( Jobseekers / Job )  0.0145
Total Execution Time  0.0163
  GET DATA  
No GET data exists
  MEMORY USAGE  
1,486,752 bytes
  POST DATA  
No POST data exists
  URI STRING  
jobseekers/job/Security-Analyst-Tier-3-1516957
  CLASS/METHOD  
jobseekers/job
  DATABASE:  onlinejobs (Jobseekers:$db)   QUERIES: 13 (0.0059 seconds)  (Hide)
0.0003   SELECT *
                                
FROM exrates
                                WHERE rate_name 
'USD-PHP' 
0.0004   SELECT *
FROM `employer_jobs`
WHERE `job_id` = 1516957
 LIMIT 1 
0.0003   SELECT *
FROM `employers`
WHERE `employer_id` = 700041
 LIMIT 1 
0.0004   SELECT COUNT(*) AS `numrows`
FROM `t_thread` `t`
LEFT JOIN `t_thread_misc` `miscON `t`.`id` = `misc`.`thread_id`
WHERE `t`.`job_id` = 1516957
AND `misc`.`idIS NULL 
0.0004   SELECT e.business_namee.logoe.websitee.rebill_datee.date_added member_datehitsDATEDIFF('2026-04-20',ej.date_added) duration_daysDATEDIFF('2026-04-20',e.rebill_date) duration_rebillej.*, e.deactivate FROM employers eemployer_jobs ej WHERE e.employer_id ej.employer_id AND
                                   ((
e.user_level >= '500' AND ej.date_added <= e.rebill_date)
                                   OR 
e.employer_id '' OR (ej.date_approved <> '2000-01-01' and DATEDIFF('2026-04-20',ej.date_added) <= 14 ))
                                   AND 
e.deactivate != AND ej.deleted AND job_id '1516957' 
0.0002   SELECT *
FROM `employer_jobs_skills` `ejs`
LEFT JOIN `skills_categories` `scON `ejs`.`skill_id` = `sc`.`id`
WHERE `job_id` = 1516957 
0.0018   UPDATE employer_jobs SET hit_counts '***Nov-19-2025=86***Nov-20-2025=38***Nov-21-2025=22***Nov-22-2025=3***Nov-23-2025=11***Nov-24-2025=21***Nov-25-2025=20***Nov-26-2025=7***Nov-27-2025=9***Nov-28-2025=15***Nov-29-2025=9***Nov-30-2025=4***Dec-01-2025=12***Dec-02-2025=14***Dec-03-2025=2***Dec-04-2025=24***Dec-05-2025=11***Dec-06-2025=8***Dec-07-2025=9***Dec-08-2025=6***Dec-09-2025=9***Dec-10-2025=4***Dec-11-2025=4***Dec-12-2025=7***Dec-13-2025=6***Dec-14-2025=2***Dec-16-2025=2***Dec-18-2025=46***Dec-19-2025=53***Dec-20-2025=7***Dec-21-2025=10***Dec-22-2025=11***Dec-23-2025=10***Dec-24-2025=7***Dec-25-2025=4***Dec-26-2025=14***Dec-27-2025=5***Dec-28-2025=7***Dec-29-2025=14***Dec-30-2025=3***Dec-31-2025=1***Jan-01-2026=6***Jan-02-2026=5***Jan-03-2026=2***Jan-04-2026=7***Jan-05-2026=10***Jan-06-2026=11***Jan-07-2026=8***Jan-08-2026=10***Jan-09-2026=15***Jan-10-2026=8***Jan-11-2026=3***Jan-12-2026=2***Jan-13-2026=1***Jan-14-2026=2***Jan-15-2026=9***Jan-16-2026=5***Jan-17-2026=5***Jan-18-2026=4***Jan-19-2026=14***Jan-20-2026=1***Jan-21-2026=7***Jan-22-2026=6***Jan-23-2026=2***Jan-24-2026=6***Jan-26-2026=10***Jan-27-2026=6***Jan-28-2026=3***Jan-29-2026=5***Jan-30-2026=3***Jan-31-2026=2***Feb-01-2026=1***Feb-02-2026=6***Feb-03-2026=5***Feb-04-2026=2***Feb-05-2026=3***Feb-06-2026=3***Feb-07-2026=4***Feb-08-2026=8***Feb-09-2026=5***Feb-10-2026=8***Feb-11-2026=6***Feb-12-2026=3***Feb-13-2026=2***Feb-14-2026=3***Feb-15-2026=1***Feb-16-2026=1***Feb-17-2026=2***Feb-18-2026=9***Feb-19-2026=4***Feb-20-2026=2***Feb-21-2026=3***Feb-22-2026=2***Feb-23-2026=5***Feb-24-2026=7***Feb-25-2026=5***Feb-26-2026=3***Feb-27-2026=2***Feb-28-2026=1***Mar-02-2026=2***Mar-03-2026=5***Mar-04-2026=1***Mar-05-2026=1***Mar-06-2026=2***Mar-07-2026=1***Mar-08-2026=2***Mar-09-2026=6***Mar-10-2026=2***Mar-11-2026=6***Mar-12-2026=3***Mar-13-2026=1***Mar-14-2026=2***Mar-15-2026=2***Mar-16-2026=1***Mar-17-2026=2***Mar-18-2026=1***Mar-19-2026=3***Mar-20-2026=3***Mar-21-2026=2***Mar-23-2026=1***Mar-24-2026=3***Mar-25-2026=2***Mar-26-2026=7***Mar-27-2026=4***Mar-28-2026=2***Mar-29-2026=2***Mar-30-2026=2***Apr-03-2026=3***Apr-04-2026=1***Apr-05-2026=1***Apr-06-2026=4***Apr-07-2026=1***Apr-08-2026=3***Apr-09-2026=3***Apr-10-2026=3***Apr-11-2026=1***Apr-12-2026=1***Apr-13-2026=1***Apr-14-2026=1***Apr-15-2026=5***Apr-20-2026=2' WHERE job_id'1516957'  
0.0006   UPDATE employer_jobs SET monthly_hits '***Nov-2025=245***Dec-2025=312***Jan-2026=178***Feb-2026=106***Mar-2026=71***Apr-2026=30' WHERE job_id'1516957'  
0.0003   SELECT date_sent FROM jobseeker_sent_emails WHERE jobseeker_id '' AND job_id '1516957' AND status LIKE 'sent%' ORDER BY id DESC  
0.0002   SELECT *
FROM `employer_jobs_skills` `ejs`
LEFT JOIN `skills_categories` `scON `ejs`.`skill_id` = `sc`.`id`
WHERE `job_id` = 1516957 
0.0004   SELECT COUNT(*) AS `numrows`
FROM `employer_jobs`
WHERE `employer_id` = '700041'
AND `date_added` >= '2022-06-08' 
0.0003   select from teasers 
0.0002   SELECT FROM skill_categories WHERE skill_cat_id='' 
  HTTP HEADERS  (Show)
  SESSION DATA  (Show)
  CONFIG VARIABLES  (Show)