SOC Analyst - Tier 2 - Cloudflare Services Focus

Philippines - Remote

Brixio

Brixio empowers IT companies, IT teams, and web agencies to scale smartly and securely with our global IT expertise. Our flexible, high-quality offshore services prioritize cybersecurity and compliance, ensuring peace of mind as you grow your...

View all jobs at Brixio

Apply now Apply later

Brixio is looking for a mid-level Tier 2 SOC Analyst to join our Managed Services & Support team, with a strong focus on Cloudflare Zero Trust, WAF, and DNS-related threat detection

This is a critical hire for our cybersecurity services operations and client 24/7 support initiatives. The analyst will act as an escalation point, provide in-depth analysis of alerts, and help us strengthen our detection, playbooks, and service quality in the Cloudflare ecosystem. 

Key Responsibilities: 

  • Investigate and respond to security alerts and incidents, with emphasis on Cloudflare logs and policy events (Access, Gateway, WAF) 
  • Correlate data from multiple sources (Cloudflare, SIEM, DNS, endpoint) 
  • Act as Tier 2 escalation from the 24/7 support team 
  • Work with Zero Trust policies and detect bypass/misconfig attempts 
  • Assist in building detection rules and playbooks 
  • Document incidents, enrich with context, and prepare post-incident reports 
  • Coordinate with the delivery and engineering teams on improvements 
  • Occasionally interact with clients (with support from Brixio PMs) 

Requirements

Must-Have Skills: 

  • 3–5 years in a SOC environment (Tier 1/Tier 2) 
  • Exposure to Cloudflare tools (Access, Gateway, WAF, DDoS) 
  • Experience working with SIEM platforms (e.g. Splunk, Sentinel, Elastic) 
  • Strong analytical and investigation skills 
  • Good communication skills in English (written and spoken) 
  • Ability to document findings and support incident response 

Nice-to-Haves: 

  • Scripting (Python or Bash
  • MITRE ATT&CK familiarity 
  • Previous MSSP experience 
  • Security certifications (CompTIA Sec+, GSEC, etc.) 
  • Cloud platform familiarity (Azure, AWS, GCP) 
Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: AWS Azure Bash Cloud Cloudflare CompTIA DDoS DNS GCP GSEC Incident response MITRE ATT&CK Python Scripting Sentinel SIEM SOC Splunk Threat detection Zero Trust

Perks/benefits: Team events

Regions: Remote/Anywhere Asia/Pacific
Country: Philippines

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.