N

Senior SOC Analyst - Splunk Enterprise Security

nearshore cyber • Philippines
Remote
Apply
AI Summary

Nearshore Cyber is hiring 6 experienced SOC analysts for a 12-month contract to perform hands-on security operations in a Splunk-centered environment. The role involves triaging and investigating alerts, hunting threats, building and tuning detections, and automating repetitive tasks. Candidates must have 3–5 years of SOC experience, advanced Splunk ES skills, and comfort with shift work.

Key Highlights
12-month contract with 6 openings, fully remote in Philippines or Mexico
Hands-on SOC work in a mature Splunk Enterprise Security environment
Competitive hourly rates: $30 USD (Mexico) / $14 USD (Philippines)
Key Responsibilities
Perform advanced SOC analysis including triage, investigation, incident reporting, and threat hunting
Build and refine security detection content in Splunk Enterprise Security
Work across ticketing and orchestration platforms to remediate alerts and improve detection quality
Drive continuous improvement through alert tuning, log management, and automation of repetitive tasks
Technical Skills Required
Splunk Enterprise Security SPL queries Incident response
Benefits & Perks
Competitive hourly rate
Fully remote work
12-month contract with possible extension
Nice to Have
Experience with cloud security platforms such as Wiz and Zscaler
Certifications such as CompTIA Security+, Network+, OSCP, or CySA+
Scripting in Python or PowerShell for automation and enrichment
Experience applying AI tools to security problems

Job Description


12-Month Contract | 6 Openings

Remote in the Philippines or Mexico

Principals only. No agencies, no corp-to-corp, no third-party submissions.



Hourly Rates

  • Mexico: $30USD
  • Philippines: $14USD



The Role

Nearshore Cyber is recruiting six experienced SOC analysts for a partner's enterprise client. This is hands-on-keyboard security operations work in a mature, Splunk-centered environment: you will triage and investigate alerts, hunt threats, write and tune detections, and automate away the repetitive work that slows response down. The team runs shift coverage, so flexibility on schedule is a condition of the role, not a nice-to-have.


This suits an analyst in the 3–5 year range who has outgrown pure alert-queue work and wants to build detection content and automation, not just consume it.



What You Will Do

  • Perform advanced SOC analysis: triage, investigation, incident reporting, and threat hunting
  • Build and refine security detection content in Splunk Enterprise Security
  • Work across ticketing and orchestration platforms to remediate alerts and improve detection quality
  • Drive continuous improvement: alert tuning, log management, and automation of repetitive tasks



Required Qualifications

  • 3–5 years as a cybersecurity analyst, including a minimum of 3 years in a SOC environment
  • Demonstrated experience in incident response, triage, threat detection, and alert tuning
  • Advanced Splunk ES/Core skills, including writing complex SPL queries — this is a must
  • Familiarity with email and endpoint security platforms such as Proofpoint TAP/TRAP and CrowdStrike Falcon
  • Comfortable with shift work
  • Strong communicator who works well with cross-functional teams
  • Genuine interest in growing a cybersecurity career



Preferred Qualifications

  • Hands-on experience with cloud security platforms such as Wiz and Zscaler
  • Certifications such as CompTIA Security+, Network+, OSCP, or CySA+
  • Scripting in Python or PowerShell for automation and enrichment
  • Experience applying AI tools (Claude Code, Codex, Cursor, LLMs) to security problems

Logistics

  • Independent contractor engagements for a 12-month term, extension possible
  • Fully remote within Mexico and the Philippines
  • Competitive hourly rate, DOE
  • Direct applicants only; submissions through staffing firms will not be considered

Similar Jobs

Explore other opportunities that match your interests

Application Security Analyst

Cyber Security
•
2w ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Associate

yeswehack

Philippines

Systems & Security Administrator

Cyber Security
•
2w ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

ajaia | ai consultancy

Philippines
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Not Applicable

cloud bridge tech recruitment

United Kingdom

Subscribe our newsletter

New Things Will Always Update Regularly