Nearshore Cyber is hiring 6 experienced SOC analysts for a 12-month contract to perform hands-on security operations in a Splunk-centered environment. The role involves triaging and investigating alerts, hunting threats, building and tuning detections, and automating repetitive tasks. Candidates must have 3–5 years of SOC experience, advanced Splunk ES skills, and comfort with shift work.
Key Highlights
Key Responsibilities
Technical Skills Required
Benefits & Perks
Nice to Have
Job Description
12-Month Contract | 6 Openings
Remote in the Philippines or Mexico
Principals only. No agencies, no corp-to-corp, no third-party submissions.
Hourly Rates
- Mexico: $30USD
- Philippines: $14USD
The Role
Nearshore Cyber is recruiting six experienced SOC analysts for a partner's enterprise client. This is hands-on-keyboard security operations work in a mature, Splunk-centered environment: you will triage and investigate alerts, hunt threats, write and tune detections, and automate away the repetitive work that slows response down. The team runs shift coverage, so flexibility on schedule is a condition of the role, not a nice-to-have.
This suits an analyst in the 3–5 year range who has outgrown pure alert-queue work and wants to build detection content and automation, not just consume it.
Interested in remote work opportunities in Cyber Security? Discover Cyber Security Remote Jobs featuring exclusive positions from top companies that offer flexible work arrangements.
What You Will Do
- Perform advanced SOC analysis: triage, investigation, incident reporting, and threat hunting
- Build and refine security detection content in Splunk Enterprise Security
- Work across ticketing and orchestration platforms to remediate alerts and improve detection quality
- Drive continuous improvement: alert tuning, log management, and automation of repetitive tasks
Required Qualifications
- 3–5 years as a cybersecurity analyst, including a minimum of 3 years in a SOC environment
- Demonstrated experience in incident response, triage, threat detection, and alert tuning
- Advanced Splunk ES/Core skills, including writing complex SPL queries — this is a must
- Familiarity with email and endpoint security platforms such as Proofpoint TAP/TRAP and CrowdStrike Falcon
- Comfortable with shift work
- Strong communicator who works well with cross-functional teams
- Genuine interest in growing a cybersecurity career
Browse our curated collection of remote jobs across all categories and industries, featuring positions from top companies worldwide.
Preferred Qualifications
- Hands-on experience with cloud security platforms such as Wiz and Zscaler
- Certifications such as CompTIA Security+, Network+, OSCP, or CySA+
- Scripting in Python or PowerShell for automation and enrichment
- Experience applying AI tools (Claude Code, Codex, Cursor, LLMs) to security problems
Logistics
- Independent contractor engagements for a 12-month term, extension possible
- Fully remote within Mexico and the Philippines
- Competitive hourly rate, DOE
- Direct applicants only; submissions through staffing firms will not be considered
Similar Jobs
Explore other opportunities that match your interests