SecOps Incident Responder
3 weeks ago
Redherd is partnering with a large, well-established retail group to help expand their internal cyber security operations team. We’re looking for a technically skilled Blue Teamer with strong incident response and SOC transformation experience, who’s excited about defending against evolving cyber threats and maturing detection and response capabilities.About RedherdRedherd is a specialist cyber security recruitment firm working across offensive, defensive, and cloud security domains. We help security teams scale globally, placing exceptional talent into impactful roles — from start-ups to security consultancies to Fortune 500s. If you're looking for a role where your skills actually matter, we’ll help you find it. About the CompanyOur client is a respected multi-channel retailer headquartered in Cape Town, known for its customer-first ethos and digital transformation journey. The security function is growing, with dedicated investments in both red and blue capabilities. This is a high-impact role within a collaborative and ambitious cyber team working to build and enhance a mature internal security operation. Role Overview: Cyber Security Specialist – Blue Team This is a hands-on technical role focused on blue teaming, incident response, and transforming SOC capabilities. You’ll work across the Cyber team, GRC, and broader IT to improve detection, defence, and reporting, while maturing toolsets and processes. You’ll also play a key role in automation, threat hunting, and metric-driven reporting. Key ResponsibilitiesRespond to and investigate security incidents, including containment and root cause analysis Maintain and enhance defensive toolsets such as XDR, SIEM, and EDR Enable active defence through continual control validation across infrastructure, cloud, platforms, and applications Investigate and implement new technologies and automation to improve detection and response Collaborate with red team and threat hunters to improve posture based on discovered TTPs Support the build-out of threat intelligence capabilities Conduct proactive threat hunting and feed findings back into blue team processes Develop and maintain reporting, dashboards, and key cyber security metrics Build strong stakeholder relationships to support security operations implementation Support broader security initiatives and cross-team collaboration Champion internal security solutions, define standards, and guide implementation of improvements Job RequirementsMinimum Requirements: Matric and relevant IT or Cyber Security degree/diploma Minimum 3+ years hands-on cyber security operations experience Strong experience in incident response and blue teaming Familiarity with EDR, Microsoft security stack, SIEM platforms Broad understanding of IAM, data security, vulnerability management, infrastructure/cloud/platform security Willingness to assist after hours or be on standby if needed Advantageous: Certifications such as SANS Cyber Defence , CREST Incident Response Familiarity with MITRE ATT&CK Ability to script or automate (e.g. Python, PowerShell, etc.) #J-18808-Ljbffr
-
SecOps Incident Responder
3 days ago
Cape Town, Western Cape, South Africa Redherd Full time R600 000 - R1 200 000 per yearRedherd is partnering with a large, well-established retail group to help expand their internal cyber security operations team. We're looking for a technically skilled Blue Teamer with strong incident response and SOC transformation experience, who's excited about defending against evolving cyber threats and maturing detection and response capabilities.About...
-
SecOps Leader: Strategy
5 days ago
Cape Town, South Africa Canonical Full timeA leading technology firm is seeking a SecOps team manager to oversee the security operations team and enhance their security practices. The role demands expertise in cyber security, particularly in managing security incidents and enhancing overall security posture. A strong background in Linux security and proven management abilities are essential. This...
-
Incident Specialist
7 days ago
Cape Town, South Africa Tracking Talent Full timeOur client is looking for somone with completed articles and 1 - 4 years audit experience. **Duties & Responsibilities**: Operational reporting: - Develop, maintain, and report on all incidents logged by the business; monthly to EXCO and quarterly to the Finance & Risk Forum; - Report on incident trends, and formalizing the various categories & sub -...
-
Incident Response Analyst
3 days ago
Cape Town, South Africa S-RM Full timeOur Incident Response Senior Analysts are a critical part of our Cyber Security division’s success. You will work across the full lifecycle of security incidents to help our clients respond and recover, including: Help manage incident response cases from first contact through to closure: you will be the primary point of contact for all internal and...
-
Incident Response Analyst
3 days ago
Cape Town, Western Cape, South Africa S-RM Full time R1 000 000 - R2 500 000 per yearOur Incident Response Senior Analysts are a critical part of our Cyber Security division's success.You will work across the full lifecycle of security incidents to help our clients respond and recover, including:Help manage incident response cases from first contact through to closure: you will be the primary point of contact for all internal and external...
-
Blue Team Incident Responder: SOC Modernization
18 hours ago
Cape Town, South Africa Redherd.Io Full timeA leading cyber security recruitment firm is seeking a Cyber Security Specialist – Blue Team to join a well-established retail group in Cape Town. This role focuses on incident response, SOC transformation, and enhancing defensive capabilities. The ideal candidate will have over 3 years of experience in cyber security operations, strong familiarity with...
-
Head Of Security Operations
5 days ago
Cape Town, South Africa Canonical Full timeThis global leadership role in cyber security is to manage the Security Operations (SecOps) team responsible for design, implementation and evolution of Canonical security practices, techniques, tools, systems and policies. The team is the primary owner of strategy and practices that determine how Canonical secures its data, internal infrastructure and build...
-
Head Of Security Operations
5 days ago
Cape Town, South Africa Canonical - Jobs Full timeThis global leadership role in cyber security is to manage the Security Operations (SecOps) team responsible for design, implementation and evolution of Canonical security practices, techniques, tools, systems and policies. The team is the primary owner of strategy and practices that determine how Canonical secures its data, internal infrastructure and build...
-
Incident Manager
1 week ago
Cape Town, Western Cape, South Africa Ultima Full time R150 000 - R250 000 per yearIncident Manager - Part time – Just after MidnightLocation:RemotePart time - between 24 – 32 hours per week – Day shifts includingSaturday and Sundays 9am to 4pm (UK hours)The roleAn SLA is the promise of response time we make to our clients, and you are how we make that happen. Our Incident Managers are our first responders, who ensure that an SLA is...
-
Cloud and Devsecops Security Analyst
7 days ago
Cape Town, South Africa Progressive IT Resourcing Full time**Our Client ?** Is responsible for the provision of a Digitally Enabled Technology service as a group COE, drive business and transformation and provide group-wide digital and data architecture. They operate the various technology platforms and shared services, ensure Cyber and Information Security resilience, and act as technology governance and risk...